Vulnerability index

Browse CVEs

8,456 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Out-of-bounds ReadCWE-125 × clear
PHP MEDIUM 5.8
CVE-2024-8929

In PHP versions 8.1.* before 8.1.31, 8.2.* before 8.2.26, 8.3.* before 8.3.14, a hostile MySQL server can cause the client to disclose the content of…

Fix: 8.1.31 / 8.2.26+
Fix from $1,600 2024-11-22
Indesign MEDIUM 5.5
CVE-2024-49529

InDesign Desktop versions 19.0, 20.0 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memor…

Fix: 19.5.1+
Fix from $1,600 2024-11-21
Wireshark MEDIUM 5.5
CVE-2024-11596

ECMP dissector crash in Wireshark 4.4.0 to 4.4.1 and 4.2.0 to 4.2.8 allows denial of service via packet injection or crafted capture file

Fix: 4.2.9 / 4.4.2+
Fix from $1,600 2024-11-21
Android MEDIUM 6.5
CVE-2018-9482

In intr_data_copy_cb of btif_hd.cc, there is a possible out of bounds read due to an integer overflow. This could lead to local information disclosur…

Patch available
Fix from $1,600 2024-11-20
Android MEDIUM 6.5
CVE-2018-9483

In bta_dm_remove_sec_dev_entry of bta_dm_act.cc, there is a possible out of bounds read due to a use after free. This could lead to remote informatio…

Patch available
Fix from $1,600 2024-11-20
Android HIGH 7.5
CVE-2018-9484

In l2cu_send_peer_config_rej of l2c_utils.cc, there is a possible out of bounds read due to a missing bounds check. This could lead to remote informa…

Patch available
Fix from $1,950 2024-11-20
Android MEDIUM 6.5
CVE-2018-9485

In l2cble_process_sig_cmd of l2c_ble.cc, there is a possible out of bounds read due to a missing bounds check. This could lead to remote information …

Patch available
Fix from $1,600 2024-11-20
Android MEDIUM 6.5
CVE-2018-9486

In hidh_l2cif_data_ind of hidh_conn.cc, there is a possible out of bounds read due to a missing bounds check. This could lead to local information di…

Patch available
Fix from $1,600 2024-11-20
Android MEDIUM 6.5
CVE-2018-9480

In bta_hd_get_report_act of bta_hd_act.cc, there is a possible out-of-bounds read due to improper input validation. This could lead to remote informa…

Patch available
Fix from $1,600 2024-11-20
Traffic Server MEDIUM 6.5
CVE-2018-9481

In bta_hd_set_report_act of bta_hd_act.cc, there is a possible out-of-bounds read due to an integer overflow. This could lead to remote information d…

Fix: 7.1.10 / 8.0.7+
Fix from $1,600 2024-11-20
Android HIGH 7.5
CVE-2018-9456

In sdpu_extract_attr_seq of sdp_utils.cc, there is a possible out of bounds read due to an incorrect bounds check. This could lead to remote denial o…

Mitigation only
Fix from $1,950 2024-11-19
Android HIGH 7.5
CVE-2018-9419

In l2cble_process_sig_cmd of l2c_ble.cc, there is a possible out of bounds read due to a missing bounds check. This could lead to remote information …

Patch available
Fix from $1,950 2024-11-19
Android HIGH 8.8
CVE-2018-9365

In smp_data_received of smp_l2c.cc, there is a possible out of bounds read followed by code execution due to a missing bounds check. This could lead …

Patch available
Fix from $1,950 2024-11-19
Android MEDIUM 5.5
CVE-2018-9410

In analyzeAxes of FontUtils.cpp, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosur…

Patch available
Fix from $1,600 2024-11-19
Android MEDIUM 6.4
CVE-2018-9371

In the Mediatek Preloader, there are out of bounds reads and writes due to an exposed interface that allows arbitrary peripheral memory mapping with …

Mitigation only
Fix from $1,600 2024-11-19
Android MEDIUM 5.5
CVE-2018-9340

In ResStringPool::setTo of ResourceTypes.cpp, it's possible for an attacker to control the value of mStringPoolSize to be out of bounds, causing info…

Patch available
Fix from $1,600 2024-11-19
Linux Kernel HIGH 7.1
CVE-2024-53082

In the Linux kernel, the following vulnerability has been resolved: virtio_net: Add hash_key_length check Add hash_key_length check in virtnet_prob…

Fix: 6.1.117 / 6.6.61+
Fix from $1,950 2024-11-19
Linux Kernel HIGH 7.1
CVE-2024-50301

In the Linux kernel, the following vulnerability has been resolved: security/keys: fix slab-out-of-bounds in key_task_permission KASAN reports an o…

Fix: 4.19.324 / 5.4.286+
Fix from $1,950 2024-11-19
Linux Kernel HIGH 7.1
CVE-2024-50278

In the Linux kernel, the following vulnerability has been resolved: dm cache: fix potential out-of-bounds access on the first resume Out-of-bounds …

Fix: 4.19.324 / 5.4.286+
Fix from $1,950 2024-11-19
Linux Kernel HIGH 7.1
CVE-2024-50279

In the Linux kernel, the following vulnerability has been resolved: dm cache: fix out-of-bounds access to the dirty bitset when resizing dm-cache c…

Fix: 4.19.324 / 5.4.286+
Fix from $1,950 2024-11-19
Linux Kernel HIGH 7.1
CVE-2024-50268

In the Linux kernel, the following vulnerability has been resolved: usb: typec: fix potential out of bounds in ucsi_ccg_update_set_new_cam_cmd() Th…

Fix: 5.10.230 / 5.15.172+
Fix from $1,950 2024-11-19
Tecnomatix Plant Simulation HIGH 7.8
CVE-2024-52574

A vulnerability has been identified in Teamcenter Visualization V14.2 (All versions < V14.2.0.14), Teamcenter Visualization V14.3 (All versions < V14…

Fix: 2302.0018 / 2404.0007+
Fix from $1,950 2024-11-18
Tecnomatix Plant Simulation HIGH 7.8
CVE-2024-52567

A vulnerability has been identified in Teamcenter Visualization V14.2 (All versions < V14.2.0.14), Teamcenter Visualization V14.3 (All versions < V14…

Fix: 2302.0018 / 2404.0007+
Fix from $1,950 2024-11-18
Linux Kernel HIGH 7.5
CVE-2023-39180

A flaw was found within the handling of SMB2_READ commands in the kernel ksmbd module. The issue results from not releasing memory after its effectiv…

Mitigation only
Fix from $1,950 2024-11-18
Linux Kernel HIGH 7.5
CVE-2023-39176

A flaw was found within the parsing of SMB2 requests that have a transform header in the kernel ksmbd module. The issue results from the lack of prop…

Mitigation only
Fix from $1,950 2024-11-18
Linux Kernel HIGH 7.5
CVE-2023-39179

A flaw was found within the handling of SMB2 read requests in the kernel ksmbd module. The issue results from the lack of proper validation of user-s…

Mitigation only
Fix from $1,950 2024-11-18
Unclassified HIGH 7.5
CVE-2024-52876

Holy Stone Remote ID Module HSRID01, firmware distributed with the Drone Go2 mobile application before 1.1.8, allows unauthenticated "remote power of…

Mitigation only
Fix from $1,950 2024-11-17
Audition MEDIUM 5.5
CVE-2024-49536

Audition versions 23.6.9, 24.4.6 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. A…

Fix: 24.6.3+
Fix from $1,600 2024-11-15
Unclassified MEDIUM 5.9
CVE-2024-24452

An invalid memory access when handling the ProtocolIE_ID field of E-RAB Release Indication messages in Athonet vEPC MME v11.4.0 allows attackers to c…

Mitigation only
Fix from $1,600 2024-11-15
Unclassified MEDIUM 5.9
CVE-2024-24453

An invalid memory access when handling the ProtocolIE_ID field of E-RAB NotToBeModifiedBearerModInd information element in Athonet vEPC MME v11.4.0 a…

Mitigation only
Fix from $1,600 2024-11-15