Vulnerability index

Browse CVEs

8,456 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Out-of-bounds ReadCWE-125 × clear
Windows 10 1507 MEDIUM 6.8
CVE-2024-43643

Windows USB Video Class System Driver Elevation of Privilege Vulnerability

Fix: 10.0.10240.20826 / 10.0.14393.7515+
Fix from $1,600 2024-11-12
Windows 10 1507 HIGH 7.8
CVE-2024-43644

Windows Client-Side Caching Elevation of Privilege Vulnerability

Fix: 10.0.10240.20826 / 10.0.14393.7515+
Fix from $1,950 2024-11-12
Windows 10 1507 MEDIUM 6.8
CVE-2024-43638

Windows USB Video Class System Driver Elevation of Privilege Vulnerability

Fix: 10.0.10240.20826 / 10.0.14393.7515+
Fix from $1,600 2024-11-12
Windows 10 1507 MEDIUM 6.8
CVE-2024-43634

Windows USB Video Class System Driver Elevation of Privilege Vulnerability

Fix: 10.0.10240.20826 / 10.0.14393.7515+
Fix from $1,600 2024-11-12
Windows 10 1507 MEDIUM 6.8
CVE-2024-43637

Windows USB Video Class System Driver Elevation of Privilege Vulnerability

Fix: 10.0.10240.20826 / 10.0.14393.7515+
Fix from $1,600 2024-11-12
Windows 10 1507 MEDIUM 6.8
CVE-2024-43449

Windows USB Video Class System Driver Elevation of Privilege Vulnerability

Fix: 10.0.10240.20826 / 10.0.14393.7515+
Fix from $1,600 2024-11-12
Secure Access Client MEDIUM 5.5
CVE-2024-9843

A buffer over-read in Ivanti Secure Access Client before 22.7R4 allows a local unauthenticated attacker to cause a denial of service.

Fix: 22.7+
Fix from $1,600 2024-11-12
Animate MEDIUM 5.5
CVE-2024-49527

Animate versions 23.0.7, 24.0.4 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An…

Fix: 23.0.8 / 24.0.5+
Fix from $1,600 2024-11-12
Avalanche HIGH 7.5
CVE-2024-50331

An out-of-bounds read vulnerability in Ivanti Avalanche before 6.4.6 allows a remote unauthenticated attacker to leak sensitive information in memory.

Fix: 6.4.6+
Fix from $1,950 2024-11-12
Unclassified MEDIUM 6.5
CVE-2024-51565

The hda driver is vulnerable to a buffer over-read from a guest-controlled value.

No fix yet
Fix from $1,600 2024-11-12
Unclassified MEDIUM 6.5
CVE-2024-51562

The NVMe driver function nvme_opc_get_log_page is vulnerable to a buffer over-read from a guest-controlled value.

Mitigation only
Fix from $1,600 2024-11-12
Solid Edge Se2024 HIGH 7.8
CVE-2024-47941

A vulnerability has been identified in Solid Edge SE2024 (All versions < V224.0 Update 9). The affected applications contain an out of bounds read pa…

Fix: 224.00.09.04+
Fix from $1,950 2024-11-12
Solid Edge Se2024 HIGH 7.8
CVE-2024-47940

A vulnerability has been identified in Solid Edge SE2024 (All versions < V224.0 Update 9). The affected applications contain an out of bounds read pa…

Fix: 224.00.09.04+
Fix from $1,950 2024-11-12
Sinec Ins HIGH 7.5
CVE-2024-46891

A vulnerability has been identified in SINEC INS (All versions < V1.0 SP2 Update 3). The affected application does not properly restrict the size of …

Fix: after 1.0
Fix from $1,950 2024-11-12
Debian Linux MEDIUM 5.5
CVE-2024-46955

An issue was discovered in psi/zcolor.c in Artifex Ghostscript before 10.04.0. There is an out-of-bounds read when reading color in Indexed color spa…

Fix: 10.04.0+
Fix from $1,600 2024-11-10
Debian Linux HIGH 7.8
CVE-2024-46956

An issue was discovered in psi/zfile.c in Artifex Ghostscript before 10.04.0. Out-of-bounds data access in filenameforall can lead to arbitrary code …

Fix: 10.04.0+
Fix from $1,950 2024-11-10
Linux Kernel MEDIUM 5.5
CVE-2024-50259

In the Linux kernel, the following vulnerability has been resolved: netdevsim: Add trailing zero to terminate the string in nsim_nexthop_bucket_acti…

Fix: 5.15.171 / 6.1.116+
Fix from $1,600 2024-11-09
Linux Kernel HIGH 7.1
CVE-2024-50247

In the Linux kernel, the following vulnerability has been resolved: fs/ntfs3: Check if more than chunk-size bytes are written A incorrectly formatt…

Fix: 5.15.171 / 6.1.116+
Fix from $1,950 2024-11-09
Linux Kernel HIGH 7.1
CVE-2024-50227

In the Linux kernel, the following vulnerability has been resolved: thunderbolt: Fix KASAN reported stack out-of-bounds read in tb_retimer_scan() K…

Fix: 6.11.7+
Fix from $1,950 2024-11-09
Vmir HIGH 7.8
CVE-2024-35423

vmir e8117 was discovered to contain a heap buffer overflow via the wasm_parse_section_functions function at /src/vmir_wasm_parser.c.

No fix yet
Fix from $1,950 2024-11-08
Wasm3 HIGH 8.4
CVE-2024-27528

wasm3 139076a suffers from Invalid Memory Read, leading to DoS and potential Code Execution.

No fix yet
Fix from $1,950 2024-11-08
Wasm3 HIGH 8.4
CVE-2024-27529

wasm3 139076a contains memory leaks in Read_utf8.

No fix yet
Fix from $1,950 2024-11-08
Webassembly Micro Runtime HIGH 7.8
CVE-2024-25431

An issue in bytecodealliance wasm-micro-runtime before v.b3f728c and fixed in commit 06df58f allows a remote attacker to escalate privileges via a cr…

Fix: 1.3.2+
Fix from $1,950 2024-11-08
Linux Kernel MEDIUM 5.5
CVE-2024-50208

In the Linux kernel, the following vulnerability has been resolved: RDMA/bnxt_re: Fix a bug while setting up Level-2 PBL pages Avoid memory corrupt…

Fix: 5.10.229 / 5.15.170+
Fix from $1,600 2024-11-08
Linux Kernel HIGH 7.8
CVE-2024-50158

In the Linux kernel, the following vulnerability has been resolved: RDMA/bnxt_re: Fix out of bound check Driver exports pacing stats only on GenP5 …

Fix: 6.6.59 / 6.11.6+
Fix from $1,950 2024-11-07
Linux Kernel HIGH 7.1
CVE-2024-50123

In the Linux kernel, the following vulnerability has been resolved: bpf: Add the missing BPF_LINK_TYPE invocation for sockmap There is an out-of-bo…

Fix: 6.11.6+
Fix from $1,950 2024-11-05
Linux Kernel HIGH 7.1
CVE-2024-50128

In the Linux kernel, the following vulnerability has been resolved: net: wwan: fix global oob in wwan_rtnl_policy The variable wwan_rtnl_link_ops a…

Fix: 5.15.170 / 6.1.115+
Fix from $1,950 2024-11-05
Linux Kernel HIGH 7.1
CVE-2024-50115

In the Linux kernel, the following vulnerability has been resolved: KVM: nSVM: Ignore nCR3[4:0] when loading PDPTEs from memory Ignore nCR3[4:0] wh…

Fix: 5.10.229 / 5.15.170+
Fix from $1,950 2024-11-05
Openharmony MEDIUM 5.5
CVE-2024-47402

in OpenHarmony v4.0.0 and prior versions allow a local attacker cause DOS through out-of-bounds read.

Fix: after 4.1
Fix from $1,600 2024-11-05
Wsa8845h Firmware MEDIUM 6.5
CVE-2024-38403

Transient DOS while parsing BTM ML IE when per STA profile is not included.

Patch available
Fix from $1,600 2024-11-04