Vulnerability index

Browse CVEs

3,271 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Integer OverflowCWE-190 × clear
Windows 10 1507 HIGH 7.2
CVE-2023-36401

Microsoft Remote Registry Service Remote Code Execution Vulnerability

Fix: 10.0.10240.20308 / 10.0.14393.6452+
Fix from $1,950 2023-11-14
Windows Server 2008 HIGH 7.5
CVE-2023-36395

Windows Deployment Services Denial of Service Vulnerability

Patch available
Fix from $1,950 2023-11-14
Grub MEDIUM 6.7
CVE-2023-4949

An attacker with local access to a system (either through a disk or external drive) can present a modified XFS partition to grub-legacy in such a way…

Fix: after 0.97
Fix from $1,600 2023-11-10
Mali Gpu Kernel Driver HIGH 7.8
CVE-2023-4295

A local non-privileged user can make improper GPU memory processing operations to gain access to already freed memory.

No fix yet
Fix from $1,950 2023-11-07
Chrome HIGH 8.8
CVE-2023-5849

Integer overflow in USB in Google Chrome prior to 119.0.6045.105 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML …

Fix: 119.0.6045.105+
Fix from $1,950 2023-11-01
Android HIGH 7.8
CVE-2023-21375

In Sysproxy, there is a possible out of bounds write due to an integer underflow. This could lead to local escalation of privilege with no additional…

Fix: 14.0+
Fix from $1,950 2023-10-30
Android MEDIUM 6.7
CVE-2023-21370

In the Security Element API, there is a possible out of bounds write due to an integer overflow. This could lead to local escalation of privilege wit…

Fix: 14.0+
Fix from $1,600 2023-10-30
Android MEDIUM 6.7
CVE-2023-21371

In Secure Element, there is a possible out of bounds write due to an integer overflow. This could lead to local escalation of privilege with System e…

Fix: 14.0+
Fix from $1,600 2023-10-30
Vim MEDIUM 5.5
CVE-2023-46246

Vim is an improved version of the good old UNIX editor Vi. Heap-use-after-free in memory allocated in the function `ga_grow_inner` in in the file `sr…

Fix: 9.0.2068+
Fix from $1,600 2023-10-27
Openimageio HIGH 8.8
CVE-2023-42295

An issue in OpenImageIO oiio v.2.4.12.0 allows a remote attacker to execute arbitrary code and cause a denial of service via the read_rle_image funct…

No fix yet
Fix from $1,950 2023-10-23
Stb Vorbis.c HIGH 7.8
CVE-2023-45681

stb_vorbis is a single file MIT licensed library for processing ogg vorbis files. A crafted file may trigger memory write past an allocated heap buff…

Mitigation only
Fix from $1,950 2023-10-21
Gecko Bootloader HIGH 7.8
CVE-2023-3487

An integer overflow in Silicon Labs Gecko Bootloader version 4.3.1 and earlier allows unbounded memory access when reading from or writing to storage…

Fix: after 4.3.1
Fix from $1,950 2023-10-20
Easy Postcard Max HIGH 7.8
CVE-2023-38127

An integer overflow exists in the "HyperLinkFrame" stream parser of Ichitaro 2023 1.0.1.59372. A specially crafted document can cause the parser to m…

No fix yet
Fix from $1,950 2023-10-19
Zchunk HIGH 7.8
CVE-2023-46228

zchunk before 1.3.2 has multiple integer overflows via malformed zchunk files to lib/comp/comp.c, lib/comp/zstd/zstd.c, lib/dl/multipart.c, or lib/he…

Fix: 1.3.2+
Fix from $1,950 2023-10-19
Pyminizip CRITICAL 9.8
CVE-2023-45853

MiniZip in zlib through 1.3 has an integer overflow and resultant heap-based buffer overflow in zipOpenNewFileInZip4_64 via a long filename, comment,…

Fix: 1.3.1+
Fix from $2,300 2023-10-14
Linux Kernel MEDIUM 5.5
CVE-2023-42752

An integer overflow flaw was found in the Linux kernel. This issue leads to the kernel allocating `skb_shared_info` in the userspace, which is exploi…

Fix: after 6.5.7
Fix from $1,600 2023-10-13
Gpac MEDIUM 5.5
CVE-2023-42298

An issue in GPAC GPAC v.2.2.1 and before allows a local attacker to cause a denial of service via the Q_DecCoordOnUnitSphere function of file src/bif…

Fix: after 2.2.1
Fix from $1,600 2023-10-12
Yf325 Firmware CRITICAL 9.8
CVE-2023-35967

Two heap-based buffer overflow vulnerabilities exist in the gwcfg_cgi_set_manage_post_data functionality of Yifan YF325 v1.0_20221108. A specially cr…

Mitigation only
Fix from $2,300 2023-10-11
Yf325 Firmware CRITICAL 9.8
CVE-2023-35968

Two heap-based buffer overflow vulnerabilities exist in the gwcfg_cgi_set_manage_post_data functionality of Yifan YF325 v1.0_20221108. A specially cr…

Mitigation only
Fix from $2,300 2023-10-11
Yf325 Firmware CRITICAL 9.8
CVE-2023-35965

Two heap-based buffer overflow vulnerabilities exist in the httpd manage_post functionality of Yifan YF325 v1.0_20221108. A specially crafted network…

Mitigation only
Fix from $2,300 2023-10-11
Yf325 Firmware CRITICAL 9.8
CVE-2023-35966

Two heap-based buffer overflow vulnerabilities exist in the httpd manage_post functionality of Yifan YF325 v1.0_20221108. A specially crafted network…

Mitigation only
Fix from $2,300 2023-10-11
Xerces C\+\+ HIGH 8.8
CVE-2023-37536

An integer overflow in xerces-c++ 3.2.3 in BigFix Platform allows remote attackers to cause out-of-bound access via HTTP request.

Fix: 9.5.23 / 10.0.10+
Fix from $1,950 2023-10-11
Windows 10 HIGH 7.3
CVE-2023-36582

Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability

Fix: 10.0.10240.20232 / 10.0.14393.6351+
Fix from $1,950 2023-10-10
Windows 10 HIGH 7.3
CVE-2023-36593

Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability

Fix: 10.0.10240.20232 / 10.0.14393.6351+
Fix from $1,950 2023-10-10
Windows 10 1507 MEDIUM 5.5
CVE-2023-36576

Windows Kernel Information Disclosure Vulnerability

Fix: 10.0.10240.20232 / 10.0.17763.4974+
Fix from $1,600 2023-10-10
Jenkins HIGH 7.5
CVE-2023-36478

Eclipse Jetty provides a web server and servlet container. In versions 11.0.0 through 11.0.15, 10.0.0 through 10.0.15, and 9.0.0 through 9.4.52, an i…

Fix: 2.414.3 / 2.428+
Fix from $1,950 2023-10-10
Enterprise Linux HIGH 7.8
CVE-2023-43787

A vulnerability was found in libX11 due to an integer overflow within the XCreateImage() function. This flaw allows a local user to trigger an intege…

Fix: 1.8.7+
Fix from $1,950 2023-10-10
Fedora MEDIUM 6.5
CVE-2023-40745

LibTIFF is vulnerable to an integer overflow. This flaw allows remote attackers to cause a denial of service (application crash) or possibly execute …

Fix: 4.6.0+
Fix from $1,600 2023-10-05
Fedora MEDIUM 6.5
CVE-2023-41175

A vulnerability was found in libtiff due to multiple potential integer overflows in raw2tiff.c. This flaw allows remote attackers to cause a denial o…

Fix: 4.6.0+
Fix from $1,600 2023-10-05
Iot Yocto MEDIUM 6.7
CVE-2023-32828

In vpu, there is a possible out of bounds write due to an integer overflow. This could lead to local escalation of privilege with System execution pr…

Mitigation only
Fix from $1,600 2023-10-02