Vulnerability index

Browse CVEs

8,423 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Out-of-bounds ReadCWE-125 × clear
CRITICAL 9.1 CVE-2026-59145 Data::Intern::Shared versions before 0.02 for Perl allow an out-of-bounds read via unvalidated slot, reverse and arena indices in si_idx_find. The a… No fix yet Fix from $2,3002026-07-21 HIGH 7.8 CVE-2026-59146 Data::SpatialHash::Shared versions before 0.02 for Perl allow out-of-bounds reads and writes via unvalidated bucket, link and free-list indices in sp… No fix yet Fix from $1,9502026-07-21 CRITICAL 9.8 CVE-2026-59147 Data::DisjointSet::Shared versions before 0.02 for Perl allow out-of-bounds reads and writes via an unvalidated parent index in dsu_find. The attach… No fix yet Fix from $2,3002026-07-21 HIGH 7.5 CVE-2026-46600 Parsing an invalid SVCB or HTTPS RR can panic when the size of a parameter value overflows the message buffer. No fix yet Fix from $1,9502026-07-21 CRITICAL 9.1 CVE-2026-59139 Data::ReqRep::Shared versions before 0.05 for Perl allow an out-of-bounds read via an unvalidated arena offset and length in reqrep_recv_locked. The… Mitigation only Fix from $2,3002026-07-21 CRITICAL 9.1 CVE-2026-59140 Data::SortedSet::Shared versions before 0.03 for Perl allow an out-of-bounds read via unvalidated node indices in the rank and min/max query paths. … No fix yet Fix from $2,3002026-07-21 CRITICAL 9.1 CVE-2026-59141 Data::RadixTree::Shared versions before 0.02 for Perl allow an out-of-bounds read via unvalidated node and arena indices in rdx_find_locked. The att… No fix yet Fix from $2,3002026-07-21 CRITICAL 9.1 CVE-2026-59142 Data::HashMap::Shared versions before 0.14 for Perl allow an out-of-bounds read via an unvalidated arena offset and length in shm_str_copy. The atta… No fix yet Fix from $2,3002026-07-21 HIGH 7.5 CVE-2026-16243 In Eclipse OMR versions up to 0.11, the arraycmp SIMD implementation for Z and P does not check if the number of bytes to compare is zero. Omr after 0.10.0 Fix from $1,9502026-07-21 MEDIUM 6.3 CVE-2026-9499 An out-of-bounds read (buffer over-read) vulnerability exists in QTextCodec::codecForName() in Qt. When the function is called with a QByteArray that… No fix yet Fix from $1,6002026-07-21 MEDIUM 5.3 CVE-2026-59842 A flaw was found in libssh. During server-side GSSAPI key exchange, a client-supplied Curve25519 public key shorter than the expected length is copie… Hardened Images No fix yet Fix from $1,6002026-07-21 CRITICAL 9.1 CVE-2026-64609 Out-of-bounds read via sun.misc.Unsafe in Apache Fory. When out-of-band zero-copy deserialization is used, readAlignedVarUint() can read beyond the b… Fory 1.4.0+ Fix from $2,3002026-07-21 HIGH 8.8 CVE-2026-15903 Out of bounds read and write in V8 in Google Chrome prior to 150.0.7871.128 allowed a remote attacker to execute arbitrary code inside a sandbox via … Chrome 150.0.7871.128+ Fix from $1,9502026-07-20 MEDIUM 6.5 CVE-2026-44510 Rsync is a file-copying tool that uses a delta-transfer algorithm to synchronize remote and local files. In versions prior to 3.4.3, the receiver-sid… No fix yet Fix from $1,6002026-07-20 MEDIUM 5.3 CVE-2026-55639 xrdp is an open source RDP server. Versions 0.10.6 and prior contain a vulnerability concerning the parsing of Client Security Data within the Client… Xrdp 0.10.6.1+ Fix from $1,6002026-07-20 HIGH 7.8 CVE-2026-64191 In the Linux kernel, the following vulnerability has been resolved: i2c: stub: Reject I2C block transfers with invalid length The I2C_SMBUS_I2C_BLO… Linux Kernel 5.10.260 / 5.15.211+ Fix from $1,9502026-07-20 MEDIUM 6.5 CVE-2026-55645 xrdp is an open source RDP server. Versions 0.10.6 and prior contain a vulnerability concerning the processing of Client Control PDUs. During the RDP… Xrdp 0.10.6.1+ Fix from $1,6002026-07-20 MEDIUM 5.3 CVE-2026-44978 xrdp is an open source RDP server. Versions 0.10.6 and prior contain a heap out-of-bounds read vulnerability within the FIPS-specific receive paths. … Xrdp 0.10.6.1+ Fix from $1,6002026-07-20 MEDIUM 6.5 CVE-2026-35217 NanoMQ contains a protocol-semantics flaw in its MQTT v5 `SUBSCRIBE` handling: if a subscription entry is missing the final 1-byte `Subscription Opti… No fix yet Fix from $1,6002026-07-20 HIGH 7.5 CVE-2026-26197 HDF5 is a high-performance library and a file format specification that implements the HDF5 data model. If a file is corrupted such that an array dat… Hdf5 2.1.0+ Fix from $1,9502026-07-20 HIGH 7.1 CVE-2026-64186 In the Linux kernel, the following vulnerability has been resolved: iommu/amd: Remove latent out-of-bounds access in IOMMU debugfs In iommu_mmio_wr… Linux Kernel 6.18.34 / 7.0.11+ Fix from $1,9502026-07-19 HIGH 7.8 CVE-2026-64133 In the Linux kernel, the following vulnerability has been resolved: ALSA: asihpi: Fix potential OOB array access at reading cache find_control() to… Linux Kernel 5.10.258 / 5.15.209+ Fix from $1,9502026-07-19 HIGH 7.3 CVE-2026-64126 In the Linux kernel, the following vulnerability has been resolved: Bluetooth: MGMT: validate Add Extended Advertising Data length MGMT_OP_ADD_EXT_… Linux Kernel 5.15.210 / 6.1.175+ Fix from $1,9502026-07-19 HIGH 7.1 CVE-2026-64121 In the Linux kernel, the following vulnerability has been resolved: net: ifb: report ethtool stats over num_tx_queues ifb_dev_init() allocates dp->… Linux Kernel 6.1.175 / 6.6.142+ Fix from $1,9502026-07-19 HIGH 7.8 CVE-2026-64114 In the Linux kernel, the following vulnerability has been resolved: ipv4: raw: reject IP_HDRINCL packets with ihl < 5 raw_send_hdrinc() validates t… Linux Kernel 5.10.258 / 5.15.209+ Fix from $1,9502026-07-19 CRITICAL 9.8 CVE-2026-64102 In the Linux kernel, the following vulnerability has been resolved: RDMA/siw: Reject MPA FPDU length underflow before signed receive math A malicio… Linux Kernel 5.10.258 / 5.15.209+ Fix from $2,3002026-07-19 HIGH 8.8 CVE-2026-63807 In the Linux kernel, the following vulnerability has been resolved: KVM: x86/mmu: Ensure hugepage is in by slot before checking max mapping level W… Linux Kernel 5.15.211 / 6.1.177+ Fix from $1,9502026-07-19 HIGH 8.8 CVE-2026-63796 In the Linux kernel, the following vulnerability has been resolved: ocfs2: reject oversized group bitmap descriptors ocfs2_validate_gd_parent() onl… Linux Kernel 5.10.260 / 5.15.211+ Fix from $1,9502026-07-19 HIGH 7.8 CVE-2026-63799 In the Linux kernel, the following vulnerability has been resolved: sched/mmcid: Fix OOB clear_bit when CID is MM_CID_UNSET in fixup path In mm_cid… Linux Kernel 7.1.3+ Fix from $1,9502026-07-19 HIGH 7.1 CVE-2026-53402 In the Linux kernel, the following vulnerability has been resolved: fbdev: fbcon: fix out-of-bounds read in err_out of fbcon_do_set_font() When fbc… Linux Kernel 5.10.261 / 5.15.212+ Fix from $1,9502026-07-19