Vulnerability index

Browse CVEs

8,456 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Out-of-bounds ReadCWE-125 × clear
MEDIUM 6.5 CVE-2018-16069 Unintended floating-point error accumulation in SwiftShader in Google Chrome prior to 69.0.3497.81 allowed a remote attacker to leak cross-origin dat… Chrome 69.0.3497.81+ Fix from $1,6002019-06-27 MEDIUM 5.5 CVE-2019-12972 An issue was discovered in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.32. There is a heap-based buffer o… Ubuntu Linux Patch available Fix from $1,6002019-06-26 HIGH 7.8 CVE-2019-12957 In Xpdf 4.01.01, a buffer over-read could be triggered in FoFiType1C::convertToType1 in fofi/FoFiType1C.cc when the index number is larger than the c… Fedora No fix yet Fix from $1,9502019-06-25 MEDIUM 5.5 CVE-2019-12958 In Xpdf 4.01.01, a heap-based buffer over-read could be triggered in FoFiType1C::convertToType0 in fofi/FoFiType1C.cc when it is trying to access the… Xpdfreader No fix yet Fix from $1,6002019-06-25 HIGH 8.8 CVE-2019-12869 An issue was discovered in PHOENIX CONTACT PC Worx through 1.86, PC Worx Express through 1.86, and Config+ through 1.86. A manipulated PC Worx or Con… Automationworx Software Suite after 1.86 Fix from $1,9502019-06-24 HIGH 8.8 CVE-2019-6964 A heap-based buffer over-read in Service_SetParamStringValue in cosa_x_cisco_com_ddns_dml.c of the RDK RDKB-20181217-1 CcspPandM module may allow att… Rdkb Ccsppandm Mitigation only Fix from $1,9502019-06-20 HIGH 7.5 CVE-2019-12894 Alternate Pic View 2.600 has a Read Access Violation at the Instruction Pointer after a call from PicViewer!PerfgrapFinalize+0x00000000000a9a1b. Alternate Pic View No fix yet Fix from $1,9502019-06-19 HIGH 7.5 CVE-2019-12897 Edraw Max 7.9.3 has a Read Access Violation at the Instruction Pointer after a call from ObjectModule!Paint::Clear+0x0000000000000074. Edraw Max No fix yet Fix from $1,9502019-06-19 MEDIUM 6.5 CVE-2018-9561 In llcp_util_parse_connect of llcp_util.cc, there is a possible out-of-bound read due to a missing bounds check. This could lead to local information… Android Mitigation only Fix from $1,6002019-06-19 MEDIUM 6.5 CVE-2018-9563 In llcp_util_parse_cc of llcp_util.cc, there is a possible out-of-bound read due to a missing bounds check. This could lead to local information disc… Android Mitigation only Fix from $1,6002019-06-19 MEDIUM 6.5 CVE-2018-9564 In llcp_util_parse_link_params of llcp_util.cc, there is a possible out-of-bound read due to a missing bounds check. This could lead to local informa… Android Mitigation only Fix from $1,6002019-06-19 MEDIUM 6.5 CVE-2019-2019 In ce_t4t_data_cback of ce_t4t.cc, there is a possible out-of-bound read due to a missing bounds check. This could lead to local information disclosu… Android Mitigation only Fix from $1,6002019-06-19 MEDIUM 6.5 CVE-2019-2020 In llcp_dlc_proc_rr_rnr_pdu of llcp_dlc.cc, there is a possible out-of-bound read due to a missing bounds check. This could lead to local information… Android Mitigation only Fix from $1,6002019-06-19 MEDIUM 6.5 CVE-2019-2021 In rw_t3t_act_handle_ndef_detect_rsp of rw_t3t.cc, there is a possible out-of-bound read due to a missing bounds check. This could lead to local info… Android Mitigation only Fix from $1,6002019-06-19 MEDIUM 6.5 CVE-2019-2022 In rw_t3t_act_handle_fmt_rsp and rw_t3t_act_handle_sro_rsp of rw_t3t.cc, there is a possible out-of-bound read due to a missing bounds check. This co… Android Mitigation only Fix from $1,6002019-06-19 CRITICAL 9.1 CVE-2019-11039 Function iconv_mime_decode_headers() in PHP versions 7.1.x below 7.1.30, 7.2.x below 7.2.19 and 7.3.x below 7.3.6 may perform out-of-buffer read due … PHP 7.1.30 / 7.2.19+ Fix from $2,3002019-06-19 CRITICAL 9.1 CVE-2019-11040 When PHP EXIF extension is parsing EXIF information from an image, e.g. via exif_read_data() function, in PHP versions 7.1.x below 7.1.30, 7.2.x belo… PHP 7.1.30 / 7.2.19+ Fix from $2,3002019-06-19 CRITICAL 9.8 CVE-2018-6350 An out-of-bounds read was possible in WhatsApp due to incorrect parsing of RTP extension headers. This issue affects WhatsApp for Android prior to 2.… Whatsapp 2.18.99 / 2.18.100.2+ Fix from $2,3002019-06-14 CRITICAL 9.8 CVE-2018-11955 Lack of check on length of reason-code fetched from payload may lead driver access the memory not allocated to the frame and results in out of bound … Mdm9150 Firmware Patch available Fix from $2,3002019-06-14 HIGH 7.8 CVE-2018-13910 Out-of-Bounds access in TZ due to invalid index calculated to check against DDR in Snapdragon Auto, Snapdragon Connectivity, Snapdragon Consumer Elec… Ipq8074 Firmware Mitigation only Fix from $1,9502019-06-14 CRITICAL 9.8 CVE-2018-13911 Out of bounds memory read and access may lead to unexpected behavior in GNSS XTRA Parser in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer … Mdm9150 Firmware Mitigation only Fix from $2,3002019-06-14 MEDIUM 6.7 CVE-2019-11124 Out of bound read/write in system firmware for Intel(R) NUC Kit may allow a privileged user to potentially enable escalation of privilege, denial of … Nuc Kit Firmware Patch available Fix from $1,6002019-06-13 MEDIUM 6.7 CVE-2019-11129 Out of bound read/write in system firmware for Intel(R) NUC Kit may allow a privileged user to potentially enable escalation of privilege, denial of … Nuc Kit Firmware Patch available Fix from $1,6002019-06-13 HIGH 7.8 CVE-2019-12790 In radare2 through 3.5.1, there is a heap-based buffer over-read in the r_egg_lang_parsechar function of egg_lang.c. This allows remote attackers to … Radare2 after 3.5.1 Fix from $1,9502019-06-10 HIGH 7.4 CVE-2019-3956 Dameware Remote Mini Control version 12.1.0.34 and prior contains an unauthenticated remote buffer over-read due to the server not properly validatin… Remote Mini Control after 12.1.0.34 Fix from $1,9502019-06-07 HIGH 7.4 CVE-2019-3957EPSS 26% Dameware Remote Mini Control version 12.1.0.34 and prior contains an unauthenticated remote buffer over-read due to the server not properly validatin… Dameware Mini Remote Control after 12.1.0.34 Fix from $1,9502019-06-07 MEDIUM 5.5 CVE-2019-2101 In uvc_parse_standard_control of uvc_driver.c, there is a possible out-of-bound read due to improper input validation. This could lead to local infor… Debian Linux No fix yet Fix from $1,6002019-06-07 HIGH 7.1 CVE-2019-5522 VMware Tools for Windows update addresses an out of bounds read vulnerability in vm3dmp driver which is installed with vmtools in Windows guest machi… Tools 10.3.10+ Fix from $1,9502019-06-06 HIGH 7.5 CVE-2019-12554 In SweetScape 010 Editor 9.0.1, improper validation of arguments in the internal implementation of the WSubStr function (provided by the scripting en… 010 Editor No fix yet Fix from $1,9502019-06-05 HIGH 7.5 CVE-2019-12555 In SweetScape 010 Editor 9.0.1, improper validation of arguments in the internal implementation of the SubStr function (provided by the scripting eng… 010 Editor No fix yet Fix from $1,9502019-06-05