Vulnerability index

Browse CVEs

8,456 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Out-of-bounds ReadCWE-125 × clear
Notes MEDIUM 5.5
CVE-2024-34628

Out-of-bounds read in applying binary with path in Samsung Notes prior to version 4.4.21.62 allows local attackers to potentially read memory.

Fix: 4.4.21.62+
Fix from $1,600 2024-08-07
Notes MEDIUM 5.5
CVE-2024-34629

Out-of-bounds read in applying binary with text common object in Samsung Notes prior to version 4.4.21.62 allows local attackers to potentially read …

Fix: 4.4.21.62+
Fix from $1,600 2024-08-07
Notes MEDIUM 5.5
CVE-2024-34630

Out-of-bounds read in applying own binary with textbox in Samsung Notes prior to version 4.4.21.62 allows local attackers to potentially read memory.

Fix: 4.4.21.62+
Fix from $1,600 2024-08-07
Notes MEDIUM 5.5
CVE-2024-34631

Out-of-bounds read in applying new binary in Samsung Notes prior to version 4.4.21.62 allows local attackers to potentially read memory.

Fix: 4.4.21.62+
Fix from $1,600 2024-08-07
Notes MEDIUM 5.5
CVE-2024-34621

Out-of-bounds read in applying binary with data in Samsung Notes prior to version 4.4.21.62 allows local attackers to potentially read memory.

Fix: 4.4.21.62+
Fix from $1,600 2024-08-07
Notes MEDIUM 5.5
CVE-2024-34624

Out-of-bounds read in applying paragraphs in Samsung Notes prior to version 4.4.21.62 allows local attackers to potentially read memory.

Fix: 4.4.21.62+
Fix from $1,600 2024-08-07
Notes MEDIUM 5.5
CVE-2024-34625

Out-of-bounds read in applying connection point in Samsung Notes prior to version 4.4.21.62 allows local attackers to potentially read memory.

Fix: 4.4.21.62+
Fix from $1,600 2024-08-07
Notes MEDIUM 5.5
CVE-2024-34626

Out-of-bounds read in applying own binary in Samsung Notes prior to version 4.4.21.62 allows local attackers to potentially read memory.

Fix: 4.4.21.62+
Fix from $1,600 2024-08-07
Firefox HIGH 8.8
CVE-2024-7522

Editor code failed to check an attribute value. This could have led to an out-of-bounds read. This vulnerability affects Firefox < 129, Firefox ESR <…

Fix: 115.14.0 / 129.0+
Fix from $1,950 2024-08-06
Ofono MEDIUM 5.5
CVE-2024-7537

oFono QMI SMS Handling Out-Of-Bounds Read Information Disclosure Vulnerability. This vulnerability allows local attackers to disclose sensitive infor…

Mitigation only
Fix from $1,600 2024-08-06
Csr8811 Firmware HIGH 7.5
CVE-2024-33025

Transient DOS while parsing the BSS parameter change count or MLD capabilities fields of the ML IE.

Patch available
Fix from $1,950 2024-08-05
Ar8035 Firmware HIGH 7.5
CVE-2024-33026

Transient DOS while parsing probe response and assoc response frame when received frame length is less than max size of timestamp.

Patch available
Fix from $1,950 2024-08-05
Ar8035 Firmware HIGH 7.5
CVE-2024-33020

Transient DOS while processing TID-to-link mapping IE elements.

Patch available
Fix from $1,950 2024-08-05
Ar8035 Firmware HIGH 7.5
CVE-2024-33015

Transient DOS while parsing SCAN RNR IE when bytes received from AP is such that the size of the last param of IE is less than neighbor report.

Patch available
Fix from $1,950 2024-08-05
Ar8035 Firmware HIGH 7.5
CVE-2024-33018

Transient DOS while parsing the received TID-to-link mapping element of the TID-to-link mapping action frame.

Patch available
Fix from $1,950 2024-08-05
Ar8035 Firmware HIGH 7.5
CVE-2024-33019

Transient DOS while parsing the received TID-to-link mapping action frame.

Patch available
Fix from $1,950 2024-08-05
Wsa8845h Firmware HIGH 7.5
CVE-2024-33012

Transient DOS while parsing the multiple MBSSID IEs from the beacon, when the tag length is non-zero value but with end of beacon.

Patch available
Fix from $1,950 2024-08-05
Wsa8845h Firmware HIGH 7.5
CVE-2024-33013

Transient DOS when driver accesses the ML IE memory and offset value is incremented beyond ML IE length.

Patch available
Fix from $1,950 2024-08-05
315 5g Iot Modem Firmware HIGH 7.5
CVE-2024-33014

Transient DOS while parsing ESP IE from beacon/probe response frame.

Patch available
Fix from $1,950 2024-08-05
Wsa8845h Firmware HIGH 7.5
CVE-2024-33011

Transient DOS while parsing the MBSSID IE from the beacons, when the MBSSID IE length is zero.

Mitigation only
Fix from $1,950 2024-08-05
Wsa8845h Firmware HIGH 7.5
CVE-2024-23353

Transient DOS while decoding attach reject message received by UE, when IEI is set to ESM_IEI.

No fix yet
Fix from $1,950 2024-08-05
Wsa8835 Firmware HIGH 7.5
CVE-2024-21467

Information disclosure while handling beacon probe frame during scan entry generation in client side.

Mitigation only
Fix from $1,950 2024-08-05
Wsa8835 Firmware HIGH 7.5
CVE-2024-21479

Transient DOS during music playback of ALAC content.

No fix yet
Fix from $1,950 2024-08-05
Snapdragon W5\+ Gen 1 Wearable Platform Firmware HIGH 7.5
CVE-2024-21459

Information disclosure while handling beacon or probe response frame in STA.

Mitigation only
Fix from $1,950 2024-08-05
Indesign MEDIUM 5.5
CVE-2024-39396

InDesign Desktop versions ID18.5.2, ID19.3 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive…

Fix: 18.5.3 / 19.4+
Fix from $1,600 2024-08-02
Chrome HIGH 8.8
CVE-2024-7255

Out of bounds read in WebTransport in Google Chrome prior to 127.0.6533.88 allowed a remote attacker to potentially perform out of bounds memory acce…

Fix: 127.0.6533.88+
Fix from $1,950 2024-08-01
Acrobat MEDIUM 5.5
CVE-2024-39379

Acrobat for Edge versions 126.0.2592.81 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive me…

Fix: after 126.0.2592.81
Fix from $1,600 2024-07-31
Bsafe Crypto C Micro Edition HIGH 7.1
CVE-2023-28074

Dell BSAFE Crypto-C Micro Edition, version 4.1.5, and Dell BSAFE Micro Edition Suite, versions 4.0 through 4.6.1 and version 5.0, contains an Out-of-…

Fix: 4.6.2+
Fix from $1,950 2024-07-31
Libcurl MEDIUM 6.5
CVE-2024-7264EPSS 17%

libcurl's ASN1 parser code has the `GTime2str()` function, used for parsing an ASN.1 Generalized Time field. If given an syntactically incorrect fiel…

Fix: 8.9.1+
Fix from $1,600 2024-07-31
Linux Kernel HIGH 7.8
CVE-2024-42118

In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Do not return negative stream id for array [WHY] resource_stre…

Fix: 6.9.9+
Fix from $1,950 2024-07-30