Vulnerability index

Browse CVEs

8,452 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Out-of-bounds ReadCWE-125 × clear
Linux Kernel HIGH 7.1
CVE-2025-38286

In the Linux kernel, the following vulnerability has been resolved: pinctrl: at91: Fix possible out-of-boundary access at91_gpio_probe() doesn't ch…

Fix: 5.4.295 / 5.10.239+
Fix from $1,950 2025-07-10
Linux Kernel HIGH 7.1
CVE-2025-38292

In the Linux kernel, the following vulnerability has been resolved: wifi: ath12k: fix invalid access to memory In ath12k_dp_rx_msdu_coalesce(), rxc…

Fix: 6.12.34 / 6.15.3+
Fix from $1,950 2025-07-10
Linux Kernel HIGH 7.1
CVE-2025-38249

In the Linux kernel, the following vulnerability has been resolved: ALSA: usb-audio: Fix out-of-bounds read in snd_usb_get_audioformat_uac3() In sn…

Fix: 5.4.296 / 5.10.240+
Fix from $1,950 2025-07-09
Illustrator MEDIUM 5.5
CVE-2025-49525

Illustrator versions 28.7.6, 29.5.1 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory…

Fix: 28.7.8 / 29.6+
Fix from $1,600 2025-07-08
Substance 3d Stager MEDIUM 5.5
CVE-2025-27165

Substance3D - Stager versions 3.1.2 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory…

Fix: 3.1.3+
Fix from $1,600 2025-07-08
Illustrator MEDIUM 5.5
CVE-2025-30313

Illustrator versions 28.7.6, 29.5.1 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory…

Fix: 28.7.8 / 29.6+
Fix from $1,600 2025-07-08
Substance 3d Viewer MEDIUM 5.5
CVE-2025-43584

Substance3D - Viewer versions 0.22 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory.…

Fix: 0.25+
Fix from $1,600 2025-07-08
Dimension MEDIUM 5.5
CVE-2025-47135

Dimension versions 4.1.2 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attack…

Fix: 4.1.3+
Fix from $1,600 2025-07-08
365 Apps HIGH 8.4
CVE-2025-49696

Out-of-bounds read in Microsoft Office allows an unauthorized attacker to execute code locally.

Mitigation only
Fix from $1,950 2025-07-08
Windows 10 1507 HIGH 8.8
CVE-2025-49687

Out-of-bounds read in Microsoft Input Method Editor (IME) allows an authorized attacker to elevate privileges locally.

Fix: 10.0.10240.21073 / 10.0.14393.8246+
Fix from $1,950 2025-07-08
Windows 10 1507 HIGH 7.8
CVE-2025-49689

Integer overflow or wraparound in Virtual Hard Disk (VHDX) allows an unauthorized attacker to elevate privileges locally.

Fix: 10.0.10240.21073 / 10.0.14393.8246+
Fix from $1,950 2025-07-08
Windows Server 2008 MEDIUM 6.5
CVE-2025-49681

Out-of-bounds read in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to disclose information over a network.

Fix: 10.0.14393.8246 / 10.0.17763.7558+
Fix from $1,600 2025-07-08
Windows Server 2008 MEDIUM 6.5
CVE-2025-49671

Exposure of sensitive information to an unauthorized actor in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to dis…

Fix: 10.0.14393.8246 / 10.0.17763.7558+
Fix from $1,600 2025-07-08
Windows 10 1507 MEDIUM 5.5
CVE-2025-49658

Out-of-bounds read in Windows TDX.sys allows an authorized attacker to disclose information locally.

Fix: 10.0.10240.21073 / 10.0.14393.8246+
Fix from $1,600 2025-07-08
Windows 10 1607 HIGH 8.6
CVE-2025-48822

Out-of-bounds read in Windows Hyper-V allows an unauthorized attacker to execute code locally.

Fix: 10.0.14393.8246 / 10.0.17763.7558+
Fix from $1,950 2025-07-08
Windows Server 2008 HIGH 8.8
CVE-2025-49657

Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to execute code over a network.

Fix: 10.0.14393.8246 / 10.0.17763.7558+
Fix from $1,950 2025-07-08
365 Apps MEDIUM 5.5
CVE-2025-48812

Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to disclose information locally.

Fix: 16.0.10417.20027+
Fix from $1,600 2025-07-08
Windows 10 1507 HIGH 7.8
CVE-2025-48816

Integer overflow or wraparound in HID class driver allows an authorized attacker to elevate privileges locally.

Fix: 10.0.10240.21073 / 10.0.14393.8246+
Fix from $1,950 2025-07-08
Windows 11 24h2 MEDIUM 5.7
CVE-2025-48002

Integer overflow or wraparound in Windows Hyper-V allows an authorized attacker to disclose information over an adjacent network.

Fix: 10.0.26100.4652+
Fix from $1,600 2025-07-08
Windows 10 1507 HIGH 7.8
CVE-2025-47996

Integer underflow (wrap or wraparound) in Windows MBT Transport driver allows an authorized attacker to elevate privileges locally.

Fix: 10.0.10240.21073 / 10.0.14393.8246+
Fix from $1,950 2025-07-08
Windows Server 2022 MEDIUM 6.5
CVE-2025-47978

Out-of-bounds read in Windows Kerberos allows an authorized attacker to deny service over a network.

Fix: 10.0.20348.3932 / 10.0.25398.1732+
Fix from $1,600 2025-07-08
After Effects MEDIUM 5.5
CVE-2025-43587

After Effects versions 25.2, 24.6.6 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory…

Fix: 24.6.7 / 25.3+
Fix from $1,600 2025-07-08
Substance 3d Designer MEDIUM 5.5
CVE-2025-21167

Substance3D - Designer versions 14.1 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memor…

Fix: 14.1.1+
Fix from $1,600 2025-07-08
Substance 3d Designer MEDIUM 5.5
CVE-2025-21168

Substance3D - Designer versions 14.1 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memor…

Fix: 14.1.1+
Fix from $1,600 2025-07-08
Aqt1000 Firmware HIGH 7.8
CVE-2025-27055

Memory corruption during the image encoding process.

No fix yet
Fix from $1,950 2025-07-08
Ar8035 Firmware HIGH 7.5
CVE-2025-27057

Transient DOS while handling beacon frames with invalid IE header length.

Patch available
Fix from $1,950 2025-07-08
Fastconnect 6900 Firmware HIGH 7.5
CVE-2025-21446

Transient DOS may occur when processing vendor-specific information elements while parsing a WLAN frame for BTM requests.

Mitigation only
Fix from $1,950 2025-07-08
Sm8635p Firmware HIGH 7.5
CVE-2025-21449

Transient DOS may occur while processing malformed length field in SSID IEs.

Mitigation only
Fix from $1,950 2025-07-08
Sa8620p Firmware HIGH 7.5
CVE-2025-21454

Transient DOS while processing received beacon frame.

Mitigation only
Fix from $1,950 2025-07-08
Sm6250 Firmware HIGH 8.2
CVE-2025-21427

Information disclosure while decoding this RTP packet Payload when UE receives the RTP packet from the network.

Mitigation only
Fix from $1,950 2025-07-08