Vulnerability index

Browse CVEs

8,456 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Out-of-bounds ReadCWE-125 × clear
Cloud Foundation MEDIUM 6.8
CVE-2024-37086

VMware ESXi contains an out-of-bounds read vulnerability. A malicious actor with local administrative privileges on a virtual machine with an exist…

Fix: 5.2+
Fix from $1,600 2024-06-25
Autocad HIGH 7.8
CVE-2024-36999

A maliciously crafted 3DM file, when parsed in opennurbs.dll through Autodesk applications, can force an Out-of-Bounds Write. A malicious actor can l…

Fix: 2022.1.5 / 2023.1.6+
Fix from $1,950 2024-06-25
Advance Steel HIGH 7.8
CVE-2024-37005

A maliciously crafted X_B file, when parsed in pskernel.DLL through Autodesk applications, can force an Out-of-Bound Read. A malicious actor can leve…

Fix: 2022.1.5 / 2023.1.6+
Fix from $1,950 2024-06-25
Autocad HIGH 7.8
CVE-2024-23152

A maliciously crafted 3DM file, when parsed in opennurbs.dll through Autodesk applications, can force an Out-of-Bounds Read. A malicious actor can le…

Fix: 2022.1.5 / 2023.1.6+
Fix from $1,950 2024-06-25
Autocad HIGH 7.8
CVE-2024-23153

A maliciously crafted MODEL file, when parsed in libodx.dll through Autodesk applications, can force an Out-of-Bounds Read. A malicious actor can lev…

Fix: 2022.1.5 / 2023.1.6+
Fix from $1,950 2024-06-25
Autocad HIGH 7.8
CVE-2024-23145

A maliciously crafted PRT file, when parsed in opennurbs.dll through Autodesk applications, can force an Out-of-Bound Read. A malicious actor can lev…

Fix: 2022.1.5 / 2023.1.6+
Fix from $1,950 2024-06-25
Autocad HIGH 7.8
CVE-2024-23149

A maliciously crafted SLDDRW file, when parsed in ODXSW_DLL.dll through Autodesk applications, can force an Out-of-Bound Read. A malicious actor can …

Fix: 2022.1.5 / 2023.1.6+
Fix from $1,950 2024-06-25
Autocad Map 3d HIGH 7.8
CVE-2024-23143

A maliciously crafted 3DM, MODEL and X_B file, when parsed in ASMkern229A.dll and ASMBASE229A.dll through Autodesk applications, can force an Out-of-…

Fix: 2022.1.5 / 2023.1.6+
Fix from $1,950 2024-06-25
Autocad HIGH 7.8
CVE-2024-23140

A maliciously crafted 3DM and MODEL file, when parsed in opennurbs.dll and atf_api.dll through Autodesk applications, can force an Out-of-Bound Read.…

Fix: 2022.1.5 / 2023.1.6+
Fix from $1,950 2024-06-25
Freertos Plus Tcp HIGH 8.1
CVE-2024-38373

FreeRTOS-Plus-TCP is a lightweight TCP/IP stack for FreeRTOS. FreeRTOS-Plus-TCP versions 4.0.0 through 4.1.0 contain a buffer over-read issue in the …

Fix: 4.1.1+
Fix from $1,950 2024-06-24
Linux Kernel HIGH 7.8
CVE-2024-36477

In the Linux kernel, the following vulnerability has been resolved: tpm_tis_spi: Account for SPI header when allocating TPM SPI xfer buffer The TPM…

Fix: 6.6.33 / 6.9.4+
Fix from $1,950 2024-06-21
Linux Kernel HIGH 7.8
CVE-2024-39277

In the Linux kernel, the following vulnerability has been resolved: dma-mapping: benchmark: handle NUMA_NO_NODE correctly cpumask_of_node() can be …

Fix: 5.15.161 / 6.1.93+
Fix from $1,950 2024-06-21
Linux Kernel HIGH 7.1
CVE-2024-34777

In the Linux kernel, the following vulnerability has been resolved: dma-mapping: benchmark: fix node id validation While validating node ids in map…

Fix: 5.15.161 / 6.1.93+
Fix from $1,950 2024-06-21
Linux Kernel HIGH 7.1
CVE-2024-38635

In the Linux kernel, the following vulnerability has been resolved: soundwire: cadence: fix invalid PDI offset For some reason, we add an offset to…

Fix: 5.4.278 / 5.10.219+
Fix from $1,950 2024-06-21
Linux Kernel HIGH 7.1
CVE-2022-48738

In the Linux kernel, the following vulnerability has been resolved: ASoC: ops: Reject out of bounds values in snd_soc_put_volsw() We don't currentl…

Fix: 4.9.300 / 4.14.265+
Fix from $1,950 2024-06-20
Linux Kernel HIGH 7.1
CVE-2022-48739

In the Linux kernel, the following vulnerability has been resolved: ASoC: hdmi-codec: Fix OOB memory accesses Correct size of iec_status array by c…

Fix: 5.15.22 / 5.16.8+
Fix from $1,950 2024-06-20
Linux Kernel HIGH 7.1
CVE-2022-48714

In the Linux kernel, the following vulnerability has been resolved: bpf: Use VM_MAP instead of VM_ALLOC for ringbuf After commit 2fd3fb0be1d1 ("kas…

Fix: 5.10.99 / 5.15.22+
Fix from $1,950 2024-06-20
Linux Kernel MEDIUM 5.5
CVE-2021-47620

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: refactor malicious adv data check Check for out-of-bound read was be…

Fix: 4.4.302 / 4.9.300+
Fix from $1,600 2024-06-20
Chrome HIGH 8.8
CVE-2024-6102

Out of bounds memory access in Dawn in Google Chrome prior to 126.0.6478.114 allowed a remote attacker to potentially exploit heap corruption via a c…

Fix: 126.0.6478.114+
Fix from $1,950 2024-06-20
Linux Kernel HIGH 7.1
CVE-2021-47604

In the Linux kernel, the following vulnerability has been resolved: vduse: check that offset is within bounds in get_config() This condition checks…

Fix: 5.15.11+
Fix from $1,950 2024-06-19
Linux Kernel MEDIUM 5.5
CVE-2021-47586

In the Linux kernel, the following vulnerability has been resolved: net: stmmac: dwmac-rk: fix oob read in rk_gmac_setup KASAN reports an out-of-bo…

Fix: 5.15.11+
Fix from $1,600 2024-06-19
Linux Kernel HIGH 7.1
CVE-2024-38606

In the Linux kernel, the following vulnerability has been resolved: crypto: qat - validate slices count returned by FW The function adf_send_admin_…

Fix: 6.8.12 / 6.9.3+
Fix from $1,950 2024-06-19
Linux Kernel HIGH 7.1
CVE-2024-38599

In the Linux kernel, the following vulnerability has been resolved: jffs2: prevent xattr node from overflowing the eraseblock Add a check to make s…

Fix: 4.19.316 / 5.4.278+
Fix from $1,950 2024-06-19
Linux Kernel HIGH 7.1
CVE-2024-38585

In the Linux kernel, the following vulnerability has been resolved: tools/nolibc/stdlib: fix memory error in realloc() Pass user_p_len to memcpy() …

Fix: 6.1.93 / 6.6.33+
Fix from $1,950 2024-06-19
Linux Kernel HIGH 7.1
CVE-2024-38572

In the Linux kernel, the following vulnerability has been resolved: wifi: ath12k: fix out-of-bound access of qmi_invoke_handler() Currently, there …

Fix: 6.6.33 / 6.8.12+
Fix from $1,950 2024-06-19
Linux Kernel HIGH 7.1
CVE-2024-38560

In the Linux kernel, the following vulnerability has been resolved: scsi: bfa: Ensure the copied buf is NUL terminated Currently, we allocate a nby…

Fix: 4.19.316 / 5.4.278+
Fix from $1,950 2024-06-19
Unclassified HIGH 7.5
CVE-2024-37795

A segmentation fault in CVC5 Solver v1.1.3 allows attackers to cause a Denial of Service (DoS) via a crafted SMT-LIB input file containing the `set-l…

Mitigation only
Fix from $1,950 2024-06-17
Emui MEDIUM 5.5
CVE-2024-36502

Out-of-bounds read vulnerability in the audio module Impact: Successful exploitation of this vulnerability will affect availability.

No fix yet
Fix from $1,600 2024-06-14
Android MEDIUM 5.5
CVE-2024-32914

In tpu_get_int_state of tpu.c, there is a possible information disclosure due to uninitialized data. This could lead to local information disclosure …

Mitigation only
Fix from $1,600 2024-06-13
Android HIGH 7.1
CVE-2024-32920

In set_secure_reg of sac_handler.c, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclo…

Mitigation only
Fix from $1,950 2024-06-13