Vulnerability index

Browse CVEs

8,452 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Out-of-bounds ReadCWE-125 × clear
HIGH 7.1 CVE-2025-38286 In the Linux kernel, the following vulnerability has been resolved: pinctrl: at91: Fix possible out-of-boundary access at91_gpio_probe() doesn't ch… Linux Kernel 5.4.295 / 5.10.239+ Fix from $1,9502025-07-10 HIGH 7.1 CVE-2025-38292 In the Linux kernel, the following vulnerability has been resolved: wifi: ath12k: fix invalid access to memory In ath12k_dp_rx_msdu_coalesce(), rxc… Linux Kernel 6.12.34 / 6.15.3+ Fix from $1,9502025-07-10 HIGH 7.1 CVE-2025-38249 In the Linux kernel, the following vulnerability has been resolved: ALSA: usb-audio: Fix out-of-bounds read in snd_usb_get_audioformat_uac3() In sn… Linux Kernel 5.4.296 / 5.10.240+ Fix from $1,9502025-07-09 MEDIUM 5.5 CVE-2025-49525 Illustrator versions 28.7.6, 29.5.1 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory… Illustrator 28.7.8 / 29.6+ Fix from $1,6002025-07-08 MEDIUM 5.5 CVE-2025-27165 Substance3D - Stager versions 3.1.2 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory… Substance 3d Stager 3.1.3+ Fix from $1,6002025-07-08 MEDIUM 5.5 CVE-2025-30313 Illustrator versions 28.7.6, 29.5.1 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory… Illustrator 28.7.8 / 29.6+ Fix from $1,6002025-07-08 MEDIUM 5.5 CVE-2025-43584 Substance3D - Viewer versions 0.22 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory.… Substance 3d Viewer 0.25+ Fix from $1,6002025-07-08 MEDIUM 5.5 CVE-2025-47135 Dimension versions 4.1.2 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attack… Dimension 4.1.3+ Fix from $1,6002025-07-08 HIGH 8.4 CVE-2025-49696 Out-of-bounds read in Microsoft Office allows an unauthorized attacker to execute code locally. 365 Apps Mitigation only Fix from $1,9502025-07-08 HIGH 8.8 CVE-2025-49687 Out-of-bounds read in Microsoft Input Method Editor (IME) allows an authorized attacker to elevate privileges locally. Windows 10 1507 10.0.10240.21073 / 10.0.14393.8246+ Fix from $1,9502025-07-08 HIGH 7.8 CVE-2025-49689 Integer overflow or wraparound in Virtual Hard Disk (VHDX) allows an unauthorized attacker to elevate privileges locally. Windows 10 1507 10.0.10240.21073 / 10.0.14393.8246+ Fix from $1,9502025-07-08 MEDIUM 6.5 CVE-2025-49681 Out-of-bounds read in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to disclose information over a network. Windows Server 2008 10.0.14393.8246 / 10.0.17763.7558+ Fix from $1,6002025-07-08 MEDIUM 6.5 CVE-2025-49671 Exposure of sensitive information to an unauthorized actor in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to dis… Windows Server 2008 10.0.14393.8246 / 10.0.17763.7558+ Fix from $1,6002025-07-08 MEDIUM 5.5 CVE-2025-49658 Out-of-bounds read in Windows TDX.sys allows an authorized attacker to disclose information locally. Windows 10 1507 10.0.10240.21073 / 10.0.14393.8246+ Fix from $1,6002025-07-08 HIGH 8.6 CVE-2025-48822 Out-of-bounds read in Windows Hyper-V allows an unauthorized attacker to execute code locally. Windows 10 1607 10.0.14393.8246 / 10.0.17763.7558+ Fix from $1,9502025-07-08 HIGH 8.8 CVE-2025-49657 Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to execute code over a network. Windows Server 2008 10.0.14393.8246 / 10.0.17763.7558+ Fix from $1,9502025-07-08 MEDIUM 5.5 CVE-2025-48812 Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to disclose information locally. 365 Apps 16.0.10417.20027+ Fix from $1,6002025-07-08 HIGH 7.8 CVE-2025-48816 Integer overflow or wraparound in HID class driver allows an authorized attacker to elevate privileges locally. Windows 10 1507 10.0.10240.21073 / 10.0.14393.8246+ Fix from $1,9502025-07-08 MEDIUM 5.7 CVE-2025-48002 Integer overflow or wraparound in Windows Hyper-V allows an authorized attacker to disclose information over an adjacent network. Windows 11 24h2 10.0.26100.4652+ Fix from $1,6002025-07-08 HIGH 7.8 CVE-2025-47996 Integer underflow (wrap or wraparound) in Windows MBT Transport driver allows an authorized attacker to elevate privileges locally. Windows 10 1507 10.0.10240.21073 / 10.0.14393.8246+ Fix from $1,9502025-07-08 MEDIUM 6.5 CVE-2025-47978 Out-of-bounds read in Windows Kerberos allows an authorized attacker to deny service over a network. Windows Server 2022 10.0.20348.3932 / 10.0.25398.1732+ Fix from $1,6002025-07-08 MEDIUM 5.5 CVE-2025-43587 After Effects versions 25.2, 24.6.6 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory… After Effects 24.6.7 / 25.3+ Fix from $1,6002025-07-08 MEDIUM 5.5 CVE-2025-21167 Substance3D - Designer versions 14.1 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memor… Substance 3d Designer 14.1.1+ Fix from $1,6002025-07-08 MEDIUM 5.5 CVE-2025-21168 Substance3D - Designer versions 14.1 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memor… Substance 3d Designer 14.1.1+ Fix from $1,6002025-07-08 HIGH 7.8 CVE-2025-27055 Memory corruption during the image encoding process. Aqt1000 Firmware No fix yet Fix from $1,9502025-07-08 HIGH 7.5 CVE-2025-27057 Transient DOS while handling beacon frames with invalid IE header length. Ar8035 Firmware Patch available Fix from $1,9502025-07-08 HIGH 7.5 CVE-2025-21446 Transient DOS may occur when processing vendor-specific information elements while parsing a WLAN frame for BTM requests. Fastconnect 6900 Firmware Mitigation only Fix from $1,9502025-07-08 HIGH 7.5 CVE-2025-21449 Transient DOS may occur while processing malformed length field in SSID IEs. Sm8635p Firmware Mitigation only Fix from $1,9502025-07-08 HIGH 7.5 CVE-2025-21454 Transient DOS while processing received beacon frame. Sa8620p Firmware Mitigation only Fix from $1,9502025-07-08 HIGH 8.2 CVE-2025-21427 Information disclosure while decoding this RTP packet Payload when UE receives the RTP packet from the network. Sm6250 Firmware Mitigation only Fix from $1,9502025-07-08