Vulnerability index

Browse CVEs

8,456 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Out-of-bounds ReadCWE-125 × clear
Dp300 Firmware MEDIUM 5.3
CVE-2017-17316

Huawei DP300 V500R002C00; RP200 V500R002C00; V600R006C00; TE30 V100R001C10; V500R002C00; V600R006C00; TE40 V500R002C00; V600R006C00; TE50 V500R002C00…

Mitigation only
Fix from $1,600 2018-07-02
Gpmf Parser CRITICAL 9.8
CVE-2018-13026

An issue was discovered in gpmf-parser 1.1.2. There is a heap-based buffer over-read in GPMF_parser.c in the function GPMF_Type.

Mitigation only
Fix from $2,300 2018-06-30
Gpmf Parser CRITICAL 9.8
CVE-2018-13011

An issue was discovered in gpmf-parser 1.1.2. There is a heap-based buffer over-read in GPMF_parser.c in the function GPMF_Validate.

No fix yet
Fix from $2,300 2018-06-29
Debian Linux CRITICAL 9.8
CVE-2018-13005

An issue was discovered in MP4Box in GPAC 0.7.1. The function urn_Read in isomedia/box_code_base.c has a heap-based buffer over-read.

No fix yet
Fix from $2,300 2018-06-29
Debian Linux CRITICAL 9.8
CVE-2018-13006

An issue was discovered in MP4Box in GPAC 0.7.1. There is a heap-based buffer over-read in the isomedia/box_dump.c function hdlr_dump.

Patch available
Fix from $2,300 2018-06-29
Gpmf Parser CRITICAL 9.8
CVE-2018-13007

An issue was discovered in gpmf-parser 1.1.2. There is a heap-based buffer over-read in GPMF_parser.c in the function GPMF_Next, related to certain c…

No fix yet
Fix from $2,300 2018-06-29
Gpmf Parser CRITICAL 9.8
CVE-2018-13008

An issue was discovered in gpmf-parser 1.1.2. There is a heap-based buffer over-read in GPMF_parser.c in the function GPMF_Next, related to certain c…

No fix yet
Fix from $2,300 2018-06-29
Gpmf Parser CRITICAL 9.8
CVE-2018-13009

An issue was discovered in gpmf-parser 1.1.2. There is a heap-based buffer over-read in GPMF_parser.c in the function GPMF_Next, related to certain c…

No fix yet
Fix from $2,300 2018-06-29
Podofo HIGH 7.8
CVE-2018-12983

A stack-based buffer over-read in the PdfEncryptMD5Base::ComputeEncryptionKey() function in PdfEncrypt.cpp in PoDoFo 0.9.6-rc1 could be leveraged by …

No fix yet
Fix from $1,950 2018-06-29
Pbc CRITICAL 9.8
CVE-2018-12915

In libpbc.a in PBC through 2017-03-02, there is a buffer over-read in calc_hash in map.c.

Fix: after 20170302
Fix from $2,300 2018-06-27
Pbc CRITICAL 9.8
CVE-2018-12917

In libpbc.a in PBC through 2017-03-02, there is a heap-based buffer over-read in _pbcM_ip_new in map.c.

Fix: after 20170302
Fix from $2,300 2018-06-27
Civetweb HIGH 7.1
CVE-2018-12684

Out-of-bounds Read in the send_ssi_file function in civetweb.c in CivetWeb through 1.10 allows attackers to cause a Denial of Service or Information …

Fix: after 1.10
Fix from $1,950 2018-06-22
Nx Os CRITICAL 9.8
CVE-2018-0310

A vulnerability in the Cisco Fabric Services component of Cisco FXOS Software and Cisco NX-OS Software could allow an unauthenticated, remote attacke…

Fix: 1.1.4.179 / 2.0.1.153+
Fix from $2,300 2018-06-21
Nexus 7000 Firmware CRITICAL 9.8
CVE-2018-0304EPSS 8%

A vulnerability in the Cisco Fabric Services component of Cisco FXOS Software and Cisco NX-OS Software could allow an unauthenticated, remote attacke…

Mitigation only
Fix from $2,300 2018-06-20
Mongoose HIGH 7.5
CVE-2018-10945

The mg_handle_cgi function in mongoose.c in Mongoose 6.11 allows remote attackers to cause a denial of service (heap-based buffer over-read and appli…

No fix yet
Fix from $1,950 2018-06-19
Libpff MEDIUM 5.5
CVE-2018-11723

The libpff_name_to_id_map_entry_read function in libpff_name_to_id_map.c in libyal libpff through 2018-04-28 allows remote attackers to cause an info…

Fix: after 20180428
Fix from $1,600 2018-06-19
Libmobi HIGH 8.8
CVE-2018-11724

The mobi_pk1_decrypt function in encryption.c in Libmobi 0.3 allows remote attackers to cause a denial of service (heap-based buffer overflow) or pos…

No fix yet
Fix from $1,950 2018-06-19
Libmobi MEDIUM 6.5
CVE-2018-11725

The mobi_parse_index_entry function in index.c in Libmobi 0.3 allows remote attackers to cause an information disclosure (heap-based buffer over-read…

No fix yet
Fix from $1,600 2018-06-19
Libfsntfs MEDIUM 5.5
CVE-2018-11727

The libfsntfs_attribute_read_from_mft function in libfsntfs_attribute.c in libfsntfs through 2018-04-20 allows remote attackers to cause an informati…

Fix: after 20180420
Fix from $1,600 2018-06-19
Libfsntfs MEDIUM 5.5
CVE-2018-11728

The libfsntfs_reparse_point_values_read_data function in libfsntfs_reparse_point_values.c in libfsntfs through 2018-04-20 allows remote attackers to …

Fix: after 20180420
Fix from $1,600 2018-06-19
Libfsntfs MEDIUM 5.5
CVE-2018-11729

The libfsntfs_mft_entry_read_header function in libfsntfs_mft_entry.c in libfsntfs through 2018-04-20 allows remote attackers to cause an information…

Fix: after 20180420
Fix from $1,600 2018-06-19
Libfsntfs MEDIUM 5.5
CVE-2018-11731

The libfsntfs_mft_entry_read_attributes function in libfsntfs_mft_entry.c in libfsntfs through 2018-04-20 allows remote attackers to cause an informa…

Fix: after 20180420
Fix from $1,600 2018-06-19
Liblnk MEDIUM 5.5
CVE-2018-12096

The liblnk_data_string_get_utf8_string_size function in liblnk_data_string.c in liblnk through 2018-04-19 allows remote attackers to cause an informa…

Fix: after 20180419
Fix from $1,600 2018-06-19
Liblnk MEDIUM 5.5
CVE-2018-12097

The liblnk_location_information_read_data function in liblnk_location_information.c in liblnk through 2018-04-19 allows remote attackers to cause an …

Fix: after 20180419
Fix from $1,600 2018-06-19
Liblnk MEDIUM 5.5
CVE-2018-12098

The liblnk_data_block_read function in liblnk_data_block.c in liblnk through 2018-04-19 allows remote attackers to cause an information disclosure (h…

Fix: after 20180419
Fix from $1,600 2018-06-19
Delta Industrial Automation Dopsoft CRITICAL 9.8
CVE-2018-10623

Delta Electronics Delta Industrial Automation DOPSoft version 4.00.04 and prior performs read operations on a memory buffer where the position can be…

Fix: after 4.00.04
Fix from $2,300 2018-06-18
Tinyexr CRITICAL 9.8
CVE-2018-12503

tinyexr 0.9.5 has a heap-based buffer over-read in LoadEXRImageFromMemory in tinyexr.h.

Mitigation only
Fix from $2,300 2018-06-16
Debian Linux MEDIUM 5.5
CVE-2018-12495

The quoteblock function in markdown.c in libmarkdown.a in DISCOUNT 2.2.3a allows remote attackers to cause a denial of service (heap-based buffer ove…

No fix yet
Fix from $1,600 2018-06-15
Yara HIGH 7.8
CVE-2018-12034

In YARA 3.7.1 and prior, parsing a specially crafted compiled rule file can cause an out of bounds read vulnerability in yr_execute_code in libyara/e…

Fix: after 3.7.1
Fix from $1,950 2018-06-15
Radare2 HIGH 7.8
CVE-2018-12321

There is a heap out of bounds read in radare2 2.6.0 in java_switch_op() in libr/anal/p/anal_java.c via a crafted Java binary file.

Patch available
Fix from $1,950 2018-06-13