Vulnerability index

Browse CVEs

8,456 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Out-of-bounds ReadCWE-125 × clear
Debian Linux HIGH 8.1
CVE-2019-7636

SDL (Simple DirectMedia Layer) through 1.2.15 and 2.x through 2.0.9 has a heap-based buffer over-read in SDL_GetRGB in video/SDL_pixels.c.

Fix: after 2.0.9
Fix from $1,950 2019-02-08
Debian Linux HIGH 8.8
CVE-2019-7638

SDL (Simple DirectMedia Layer) through 1.2.15 and 2.x through 2.0.9 has a heap-based buffer over-read in Map1toN in video/SDL_pixels.c.

Fix: after 2.0.9
Fix from $1,950 2019-02-08
Debian Linux HIGH 8.1
CVE-2019-7578

SDL (Simple DirectMedia Layer) through 1.2.15 and 2.x through 2.0.9 has a heap-based buffer over-read in InitIMA_ADPCM in audio/SDL_wave.c.

Fix: after 2.0.9
Fix from $1,950 2019-02-07
Debian Linux HIGH 8.8
CVE-2019-7572

SDL (Simple DirectMedia Layer) through 1.2.15 and 2.x through 2.0.9 has a buffer over-read in IMA_ADPCM_nibble in audio/SDL_wave.c.

Fix: after 2.0.9
Fix from $1,950 2019-02-07
Debian Linux HIGH 8.8
CVE-2019-7573

SDL (Simple DirectMedia Layer) through 1.2.15 and 2.x through 2.0.9 has a heap-based buffer over-read in InitMS_ADPCM in audio/SDL_wave.c (inside the…

Fix: after 2.0.9
Fix from $1,950 2019-02-07
Debian Linux HIGH 8.8
CVE-2019-7574

SDL (Simple DirectMedia Layer) through 1.2.15 and 2.x through 2.0.9 has a heap-based buffer over-read in IMA_ADPCM_decode in audio/SDL_wave.c.

Fix: after 2.0.9
Fix from $1,950 2019-02-07
Debian Linux HIGH 8.8
CVE-2019-7576

SDL (Simple DirectMedia Layer) through 1.2.15 and 2.x through 2.0.9 has a heap-based buffer over-read in InitMS_ADPCM in audio/SDL_wave.c (outside th…

Fix: after 2.0.9
Fix from $1,950 2019-02-07
Debian Linux HIGH 8.8
CVE-2019-7577

SDL (Simple DirectMedia Layer) through 1.2.15 and 2.x through 2.0.9 has a buffer over-read in SDL_LoadWAV_RW in audio/SDL_wave.c.

Fix: after 2.0.9
Fix from $1,950 2019-02-07
Ubuntu Linux HIGH 7.5
CVE-2018-16890EPSS 5%

libcurl versions from 7.36.0 to before 7.64.0 is vulnerable to a heap buffer out-of-bounds read. The function handling incoming NTLM type-2 messages …

Fix: 7.64.0+
Fix from $1,950 2019-02-06
Ubuntu Linux HIGH 7.5
CVE-2019-3823

libcurl versions from 7.34.0 to before 7.64.0 are vulnerable to a heap out-of-bounds read in the code handling the end-of-response for SMTP. If the b…

Fix: 7.64.0+
Fix from $1,950 2019-02-06
Firefox CRITICAL 9.8
CVE-2018-18504

A crash and out-of-bounds read can occur when the buffer of a texture client is freed while it is still in use during graphic operations. This result…

Fix: 65.0+
Fix from $2,300 2019-02-05
Debian Linux HIGH 7.5
CVE-2018-8791

rdesktop versions up to and including v1.8.3 contain an Out-Of-Bounds Read in function rdpdr_process() that results in an information leak.

Fix: after 1.8.3
Fix from $1,950 2019-02-05
Debian Linux HIGH 7.5
CVE-2018-8792

rdesktop versions up to and including v1.8.3 contain an Out-Of-Bounds Read in function cssp_read_tsrequest() that results in a Denial of Service (seg…

Fix: after 1.8.3
Fix from $1,950 2019-02-05
Debian Linux HIGH 7.5
CVE-2018-8796

rdesktop versions up to and including v1.8.3 contain an Out-Of-Bounds Read in function process_bitmap_updates() that results in a Denial of Service (…

Fix: after 1.8.3
Fix from $1,950 2019-02-05
Debian Linux HIGH 7.5
CVE-2018-8798

rdesktop versions up to and including v1.8.3 contain an Out-Of-Bounds Read in function rdpsnd_process_ping() that results in an information leak.

Fix: after 1.8.3
Fix from $1,950 2019-02-05
Debian Linux HIGH 7.5
CVE-2018-8799

rdesktop versions up to and including v1.8.3 contain an Out-Of-Bounds Read in function process_secondary_order() that results in a Denial of Service …

Fix: after 1.8.3
Fix from $1,950 2019-02-05
Laquis Scada HIGH 7.8
CVE-2018-18986

LCDS Laquis SCADA prior to version 4.1.0.4150 allows the opening of a specially crafted report format file that may cause an out of bounds read, whic…

Fix: 4.1.0.4150+
Fix from $1,950 2019-02-05
Debian Linux MEDIUM 6.5
CVE-2019-1000019

libarchive version commit bf9aec176c6748f0ee7a678c5f9f9555b9a757c1 onwards (release v3.0.2 onwards) contains a CWE-125: Out-of-bounds Read vulnerabil…

Fix: 3.4.0+
Fix from $1,600 2019-02-04
Ubuntu Linux HIGH 7.8
CVE-2019-7310

In Poppler 0.73.0, a heap-based buffer over-read (due to an integer signedness error in the XRef::getEntry function in XRef.cc) allows remote attacke…

No fix yet
Fix from $1,950 2019-02-03
Laquis Scada HIGH 8.8
CVE-2018-18988

LCDS Laquis SCADA prior to version 4.1.0.4150 allows execution of script code by opening a specially crafted report format file. This may allow remot…

Fix: 4.1.0.4150+
Fix from $1,950 2019-02-01
Phantompdf HIGH 7.1
CVE-2018-3956EPSS 46%

An exploitable out-of-bounds read vulnerability exists in the handling of certain XFA element attributes of Foxit Software's PDF Reader version 9.1.0…

Fix: after 9.3.0.10826
Fix from $1,950 2019-01-30
Elfutils MEDIUM 5.5
CVE-2019-7146

In elfutils 0.175, there is a buffer over-read in the ebl_object_note function in eblobjnote.c in libebl. Remote attackers could leverage this vulner…

No fix yet
Fix from $1,600 2019-01-29
Netwide Assembler MEDIUM 5.5
CVE-2019-7147

A buffer over-read exists in the function crc64ib in crc64.c in nasmlib in Netwide Assembler (NASM) 2.14rc16. A crafted asm input can cause segmentat…

No fix yet
Fix from $1,600 2019-01-29
Debian Linux MEDIUM 6.5
CVE-2019-7149

A heap-based buffer over-read was discovered in the function read_srclines in dwarf_getsrclines.c in libdw in elfutils 0.175. A crafted input can cau…

Patch available
Fix from $1,600 2019-01-29
Debian Linux MEDIUM 5.5
CVE-2019-7150

An issue was discovered in elfutils 0.175. A segmentation fault can occur in the function elf64_xlatetom in libelf/elf32_xlatetom.c, due to dwfl_segm…

Patch available
Fix from $1,600 2019-01-29
Binaryen MEDIUM 6.5
CVE-2019-7152

A heap-based buffer over-read was discovered in wasm::WasmBinaryBuilder::processFunctions() in wasm/wasm-binary.cpp (when calling wasm::WasmBinaryBui…

Fix: 65+
Fix from $1,600 2019-01-29
Acrobat Dc MEDIUM 6.5
CVE-2018-19721

Adobe Acrobat and Reader versions 2018.011.20058 and earlier, 2017.011.30099 and earlier, and 2015.006.30448 and earlier have an out-of-bounds read v…

Fix: after 18.011.20058
Fix from $1,600 2019-01-28
Acrobat Dc HIGH 7.5
CVE-2018-19723

Adobe Acrobat and Reader versions 2018.011.20058 and earlier, 2017.011.30099 and earlier, and 2015.006.30448 and earlier have an out-of-bounds read v…

Fix: after 18.011.20058
Fix from $1,950 2019-01-28
Acrobat Dc MEDIUM 6.5
CVE-2018-19728

Adobe Acrobat and Reader versions 2019.008.20081 and earlier, 2019.008.20080 and earlier, 2019.008.20081 and earlier, 2017.011.30106 and earlier vers…

Fix: after 19.008.20081
Fix from $1,600 2019-01-28
3d HIGH 8.8
CVE-2019-6985

An issue was discovered in Foxit 3D Plugin Beta before 9.4.0.16807 for Foxit Reader and PhantomPDF. The application could encounter an Out-of-Bounds …

Fix: 9.4.0.16807+
Fix from $1,950 2019-01-28