Vulnerability index

Browse CVEs

8,456 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Out-of-bounds ReadCWE-125 × clear
Linux Kernel MEDIUM 6.3
CVE-2024-42111

In the Linux kernel, the following vulnerability has been resolved: btrfs: always do the basic checks for btrfs_qgroup_inherit structure [BUG] Syzb…

Fix: 6.9 / 6.9.9+
Fix from $1,600 2024-07-30
Ipados MEDIUM 5.5
CVE-2024-40806

An out-of-bounds read issue was addressed with improved input validation. This issue is fixed in iOS 16.7.9 and iPadOS 16.7.9, iOS 17.6 and iPadOS 17…

Fix: 1.3 / 10.6+
Fix from $1,600 2024-07-29
macOS MEDIUM 5.5
CVE-2024-40816

An out-of-bounds read was addressed with improved input validation. This issue is fixed in macOS Monterey 12.7.6, macOS Sonoma 14.6, macOS Ventura 13…

Fix: 12.7.6 / 13.6.8+
Fix from $1,600 2024-07-29
Safari MEDIUM 6.5
CVE-2024-40789

An out-of-bounds access issue was addressed with improved bounds checking. This issue is fixed in Safari 17.6, iOS 16.7.9 and iPadOS 16.7.9, iOS 17.6…

Fix: 1.3 / 10.6+
Fix from $1,600 2024-07-29
Ipados HIGH 7.1
CVE-2024-40799

An out-of-bounds read issue was addressed with improved input validation. This issue is fixed in iOS 16.7.9 and iPadOS 16.7.9, iOS 17.6 and iPadOS 17…

Fix: 1.3 / 10.6+
Fix from $1,950 2024-07-29
Ipados MEDIUM 5.5
CVE-2024-40777EPSS 8%

An out-of-bounds access issue was addressed with improved bounds checking. This issue is fixed in iOS 17.6 and iPadOS 17.6, macOS Sonoma 14.6, tvOS 1…

Fix: 1.3 / 10.6+
Fix from $1,600 2024-07-29
Safari MEDIUM 5.5
CVE-2024-40779

An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in Safari 17.6, iOS 16.7.9 and iPadOS 16.7.9, iOS 17.6 and iPa…

Fix: 1.3 / 10.6+
Fix from $1,600 2024-07-29
Safari MEDIUM 5.5
CVE-2024-40780

An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in Safari 17.6, iOS 16.7.9 and iPadOS 16.7.9, iOS 17.6 and iPa…

Fix: 1.3 / 10.6+
Fix from $1,600 2024-07-29
macOS MEDIUM 5.5
CVE-2023-42943

A privacy issue was addressed with improved private data redaction for log entries. This issue is fixed in macOS Sonoma 14. An app may be able to rea…

Fix: 14.0+
Fix from $1,600 2024-07-29
Linux Kernel MEDIUM 5.5
CVE-2024-41019

In the Linux kernel, the following vulnerability has been resolved: fs/ntfs3: Validate ff offset This adds sanity checks for ff offset. There is a …

Fix: 5.15.164 / 6.1.102+
Fix from $1,600 2024-07-29
Linux Kernel HIGH 7.1
CVE-2024-41090

In the Linux kernel, the following vulnerability has been resolved: tap: add missing verification for short frame The cited commit missed to check …

Fix: 5.4.281 / 5.10.223+
Fix from $1,950 2024-07-29
Linux Kernel HIGH 7.1
CVE-2024-41091

In the Linux kernel, the following vulnerability has been resolved: tun: add missing verification for short frame The cited commit missed to check …

Fix: 5.4.281 / 5.10.223+
Fix from $1,950 2024-07-29
Linux Kernel HIGH 7.1
CVE-2024-41013

In the Linux kernel, the following vulnerability has been resolved: xfs: don't walk off the end of a directory data block This adds sanity checks f…

Fix: 6.1.142 / 6.6.68+
Fix from $1,950 2024-07-29
Linux Kernel HIGH 7.1
CVE-2024-41014

In the Linux kernel, the following vulnerability has been resolved: xfs: add bounds checking to xlog_recover_process_data There is a lack of verifi…

Fix: 6.1.120 / 6.6.64+
Fix from $1,950 2024-07-29
Edge Gateway 3200 Firmware MEDIUM 6.0
CVE-2023-32471

Dell Edge Gateway BIOS, versions 3200 and 5200, contains an out-of-bounds read vulnerability. A local authenticated malicious user with high privileg…

Mitigation only
Fix from $1,600 2024-07-24
Labview HIGH 7.8
CVE-2024-4079

An out of bounds read due to a missing bounds check in LabVIEW may disclose information or result in arbitrary code execution. Successful exploitati…

Fix: after 2020
Fix from $1,950 2024-07-23
Chrome MEDIUM 6.5
CVE-2024-2884

Out of bounds read in V8 in Google Chrome prior to 121.0.6167.139 allowed a remote attacker to potentially perform out of bounds memory access via a …

Fix: 121.0.6167.139+
Fix from $1,600 2024-07-16
Istore MEDIUM 5.3
CVE-2024-21143

Vulnerability in the Oracle iStore product of Oracle E-Business Suite (component: User Management). Supported versions that are affected are 12.2.3-…

Fix: after 12.2.13
Fix from $1,600 2024-07-16
Chrome CRITICAL 9.6
CVE-2024-6779EPSS 6%

Out of bounds memory access in V8 in Google Chrome prior to 126.0.6478.182 allowed a remote attacker to potentially perform a sandbox escape via a cr…

Fix: 126.0.6478.182+
Fix from $2,300 2024-07-16
Linux Kernel HIGH 7.1
CVE-2022-48866

In the Linux kernel, the following vulnerability has been resolved: HID: hid-thrustmaster: fix OOB read in thrustmaster_interrupts Syzbot reported …

Fix: 5.15.29 / 5.16.15+
Fix from $1,950 2024-07-16
Linux Kernel MEDIUM 5.5
CVE-2022-48839

In the Linux kernel, the following vulnerability has been resolved: net/packet: fix slab-out-of-bounds access in packet_recvmsg() syzbot found that…

Fix: 4.9.308 / 4.14.273+
Fix from $1,600 2024-07-16
Linux Kernel HIGH 7.1
CVE-2022-48827

In the Linux kernel, the following vulnerability has been resolved: NFSD: Fix the behavior of READ near OFFSET_MAX Dan Aloni reports: > Due to comm…

Fix: 5.10.220 / 5.15.24+
Fix from $1,950 2024-07-16
Linux Kernel MEDIUM 5.5
CVE-2022-48803

In the Linux kernel, the following vulnerability has been resolved: phy: ti: Fix missing sentinel for clk_div_table _get_table_maxdiv() tries to ac…

Fix: 5.10.101 / 5.15.24+
Fix from $1,600 2024-07-16
Linux Kernel HIGH 7.8
CVE-2022-48805

In the Linux kernel, the following vulnerability has been resolved: net: usb: ax88179_178a: Fix out-of-bounds accesses in RX fixup ax88179_rx_fixup…

Fix: 4.9.303 / 4.14.268+
Fix from $1,950 2024-07-16
Linux Kernel MEDIUM 6.4
CVE-2023-52886

In the Linux kernel, the following vulnerability has been resolved: USB: core: Fix race by not overwriting udev->descriptor in hub_port_init() Syzb…

Fix: 5.10.195 / 5.15.132+
Fix from $1,600 2024-07-16
Linux Kernel HIGH 7.1
CVE-2024-40978

In the Linux kernel, the following vulnerability has been resolved: scsi: qedi: Fix crash while reading debugfs attribute The qedi_dbg_do_not_recov…

Fix: 4.19.317 / 5.4.279+
Fix from $1,950 2024-07-12
Linux Kernel HIGH 7.1
CVE-2024-40929

In the Linux kernel, the following vulnerability has been resolved: wifi: iwlwifi: mvm: check n_ssids before accessing the ssids In some versions o…

Fix: 5.10.221 / 5.15.162+
Fix from $1,950 2024-07-12
Stringbuilder CRITICAL 9.1
CVE-2024-21524

All versions of the package node-stringbuilder are vulnerable to Out-of-bounds Read due to incorrect memory length calculation, by calling ToBuffer, …

Fix: after 2.2.7
Fix from $2,300 2024-07-10
Cncsoft G2 HIGH 8.8
CVE-2024-39882

Delta Electronics CNCSoft-G2 lacks proper validation of user-supplied data, which can result in a read past the end of an allocated buffer. If a targ…

Mitigation only
Fix from $1,950 2024-07-09
Bridge MEDIUM 5.5
CVE-2024-34140

Bridge versions 14.0.4, 13.0.7, 14.1 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memor…

Fix: 14.0.4+
Fix from $1,600 2024-07-09