Vulnerability index

Browse CVEs

8,456 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Out-of-bounds ReadCWE-125 × clear
Linux Kernel HIGH 7.8
CVE-2024-26952

In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix potencial out-of-bounds when buffer offset is invalid I found potenc…

Fix: 5.15.181 / 6.1.119+
Fix from $1,950 2024-05-01
Linux Kernel HIGH 7.1
CVE-2024-26954

In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix slab-out-of-bounds in smb_strndup_from_utf16() If ->NameOffset of sm…

Fix: 6.1.119 / 6.7.12+
Fix from $1,950 2024-05-01
Lunasvg HIGH 7.5
CVE-2024-33763

lunasvg v2.3.9 was discovered to contain a stack-buffer-underflow at lunasvg/source/layoutcontext.cpp.

No fix yet
Fix from $1,950 2024-05-01
Lunasvg MEDIUM 5.0
CVE-2024-33767

lunasvg v2.3.9 was discovered to contain a segmentation violation via the component composition_solid_source.

No fix yet
Fix from $1,600 2024-05-01
Unclassified HIGH 7.5
CVE-2024-33270

An issue in FME Modules fileuploads v.2.0.3 and before and fixed in v2.0.4 allows a remote attacker to obtain sensitive information via the uploadfil…

Mitigation only
Fix from $1,950 2024-04-30
Onos Lib Go HIGH 8.1
CVE-2023-52727

Open Networking Foundation SD-RAN ONOS onos-lib-go 0.10.25 allows an index out-of-range condition in parseAlignBits.

No fix yet
Fix from $1,950 2024-04-30
Traffic Steering Xapplication HIGH 7.5
CVE-2024-34049

Open Networking Foundation SD-RAN Rimedo rimedo-ts 0.1.1 has a slice bounds out-of-range panic in "return plmnIdString[0:3], plmnIdString[3:]" in rea…

No fix yet
Fix from $1,950 2024-04-30
Linux Kernel HIGH 7.7
CVE-2022-48651

In the Linux kernel, the following vulnerability has been resolved: ipvlan: Fix out-of-bound bugs caused by unset skb->mac_header If an AF_PACKET s…

Fix: 4.9.330 / 4.14.295+
Fix from $1,950 2024-04-28
Linux Kernel HIGH 7.8
CVE-2022-48655

In the Linux kernel, the following vulnerability has been resolved: firmware: arm_scmi: Harden accesses to the reset domains Accessing reset domain…

Fix: 5.4.277 / 5.10.218+
Fix from $1,950 2024-04-28
Fedora MEDIUM 6.5
CVE-2024-25569

An out-of-bounds read vulnerability exists in the RAWCodec::DecodeBytes functionality of Mathieu Malaterre Grassroot DICOM 3.0.23. A specially crafte…

No fix yet
Fix from $1,600 2024-04-25
Avalanche HIGH 7.5
CVE-2024-23527

An out-of-bounds read vulnerability in WLAvalancheService component of Ivanti Avalanche before 6.4.3, in certain conditions can allow an unauthentica…

Fix: 6.4.3.528+
Fix from $1,950 2024-04-25
Fedora CRITICAL 9.8
CVE-2024-32662

FreeRDP is a free implementation of the Remote Desktop Protocol. FreeRDP based clients prior to version 3.5.1 are vulnerable to out-of-bounds read. T…

Fix: 3.5.1+
Fix from $2,300 2024-04-23
Fedora CRITICAL 9.8
CVE-2024-32659

FreeRDP is a free implementation of the Remote Desktop Protocol. FreeRDP based clients prior to version 3.5.1 are vulnerable to out-of-bounds read if…

Fix: 2.11.7 / 3.5.1+
Fix from $2,300 2024-04-23
Fedora CRITICAL 9.8
CVE-2024-32658

FreeRDP is a free implementation of the Remote Desktop Protocol. FreeRDP based clients prior to version 3.5.1 are vulnerable to out-of-bounds read. V…

Fix: 2.11.7 / 3.5.1+
Fix from $2,300 2024-04-23
Fedora CRITICAL 9.8
CVE-2024-32459

FreeRDP is a free implementation of the Remote Desktop Protocol. FreeRDP based clients and servers that use a version of FreeRDP prior to 3.5.0 or 2.…

Fix: 2.11.6 / 3.5.0+
Fix from $2,300 2024-04-22
Fedora CRITICAL 9.8
CVE-2024-32460

FreeRDP is a free implementation of the Remote Desktop Protocol. FreeRDP based based clients using `/bpp:32` legacy `GDI` drawing path with a version…

Fix: 2.11.6 / 3.5.0+
Fix from $2,300 2024-04-22
Fedora CRITICAL 9.8
CVE-2024-32041

FreeRDP is a free implementation of the Remote Desktop Protocol. FreeRDP based clients that use a version of FreeRDP prior to 3.5.0 or 2.11.6 are vul…

Fix: 2.11.6 / 3.5.0+
Fix from $2,300 2024-04-22
Fedora CRITICAL 9.8
CVE-2024-32458

FreeRDP is a free implementation of the Remote Desktop Protocol. FreeRDP based clients that use a version of FreeRDP prior to 3.5.0 or 2.11.6 are vul…

Fix: 2.11.6 / 3.5.0+
Fix from $2,300 2024-04-22
Pytorch MEDIUM 5.5
CVE-2024-31584

Pytorch before v2.2.0 has an Out-of-bounds Read vulnerability via the component torch/csrc/jit/mobile/flatbuffer_loader.cpp.

Fix: 2.2.0+
Fix from $1,600 2024-04-19
Fedora HIGH 7.8
CVE-2023-51791

Buffer Overflow vulenrability in Ffmpeg v.N113007-g8d24a28d06 allows a local attacker to execute arbitrary code via the libavcodec/jpegxl_parser.c in…

Mitigation only
Fix from $1,950 2024-04-19
Avalanche HIGH 7.5
CVE-2024-23526

An out-of-bounds read vulnerability in WLAvalancheService component of Ivanti Avalanche before 6.4.3, in certain conditions can allow an unauthentica…

Fix: 6.4.3.528+
Fix from $1,950 2024-04-19
Avalanche HIGH 7.5
CVE-2024-23528

An out-of-bounds read vulnerability in WLAvalancheService component of Ivanti Avalanche before 6.4.3, in certain conditions can allow an unauthentica…

Fix: 6.4.3.528+
Fix from $1,950 2024-04-19
Avalanche HIGH 7.5
CVE-2024-23529

An out-of-bounds read vulnerability in WLAvalancheService component of Ivanti Avalanche before 6.4.3, in certain conditions can allow an unauthentica…

Fix: 6.4.3.528+
Fix from $1,950 2024-04-19
Avalanche HIGH 7.5
CVE-2024-23530

An out-of-bounds read vulnerability in WLAvalancheService component of Ivanti Avalanche before 6.4.3, in certain conditions can allow an unauthentica…

Fix: 6.4.3.528+
Fix from $1,950 2024-04-19
Avalanche HIGH 7.5
CVE-2024-23532

An out-of-bounds Read vulnerability in WLAvalancheService component of Ivanti Avalanche before 6.4.3 allows an authenticated remote attacker to perfo…

Fix: 6.4.3.528+
Fix from $1,950 2024-04-19
Avalanche MEDIUM 6.5
CVE-2024-23533

An out-of-bounds read vulnerability in WLAvalancheService component of Ivanti Avalanche before 6.4.3, in certain conditions can allow an authenticate…

Fix: 6.4.3.528+
Fix from $1,600 2024-04-19
W30e Firmware CRITICAL 9.8
CVE-2024-32286

Tenda W30E v1.0 V1.0.1.25(633) firmware has a stack overflow vulnerability located via the page parameter in the fromVirtualSer function.

No fix yet
Fix from $2,300 2024-04-17
Ac7 Firmware CRITICAL 9.8
CVE-2024-32301

Tenda AC7V1.0 v15.03.06.44 firmware has a stack overflow vulnerability via the PPW parameter in the fromWizardHandle function.

No fix yet
Fix from $2,300 2024-04-17
Linux Kernel HIGH 7.8
CVE-2024-26890

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: btrtl: fix out of bounds memory access The problem is detected by KA…

Fix: 6.6.23 / 6.7.11+
Fix from $1,950 2024-04-17
Linux Kernel MEDIUM 5.5
CVE-2024-26896

In the Linux kernel, the following vulnerability has been resolved: wifi: wfx: fix memory leak when starting AP Kmemleak reported this error: …

Fix: 6.1.83 / 6.6.23+
Fix from $1,600 2024-04-17