Vulnerability index

Browse CVEs

1,784 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Memory LeakCWE-401 × clear
Binutils MEDIUM 5.5
CVE-2022-47011

An issue was discovered function parse_stab_struct_fields in stabs.c in Binutils 2.34 thru 2.38, allows attackers to cause a denial of service due to…

Fix: after 2.38
Fix from $1,600 2023-08-22
Mupdf MEDIUM 5.5
CVE-2020-26683

A memory leak issue discovered in /pdf/pdf-font-add.c in Artifex Software MuPDF 1.17.0 allows attackers to obtain sensitive information.

Patch available
Fix from $1,600 2023-08-22
Binutils MEDIUM 5.5
CVE-2020-21490

An issue was discovered in GNU Binutils 2.34. It is a memory leak when process microblaze-dis.c. This one will consume memory on each insn disassembl…

Fix: 2.34+
Fix from $1,600 2023-08-22
Binutils MEDIUM 5.5
CVE-2020-19724

A memory consumption issue in get_data function in binutils/nm.c in GNU nm before 2.34 allows attackers to cause a denial of service via crafted comm…

Fix: 2.34+
Fix from $1,600 2023-08-22
Linux Kernel HIGH 7.5
CVE-2023-32247

A flaw was found in the Linux kernel's ksmbd, a high-performance in-kernel SMB server. The specific flaw exists within the handling of SMB2_SESSION_S…

Fix: 5.15.145 / 6.1.29+
Fix from $1,950 2023-07-24
Scipy MEDIUM 5.5
CVE-2023-25399

A refcounting issue which leads to potential memory leak was discovered in scipy commit 8627df31ab in Py_FindObjects() function. Note: This is disput…

Fix: 1.10.0+
Fix from $1,600 2023-07-05
Cometbft MEDIUM 5.3
CVE-2023-34450

CometBFT is a Byzantine Fault Tolerant (BFT) middleware that takes a state transition machine and replicates it on many machines. An internal modific…

Fix: 0.34.29 / 0.37.2+
Fix from $1,600 2023-07-03
Cometbft HIGH 8.2
CVE-2023-34451

CometBFT is a Byzantine Fault Tolerant (BFT) middleware that takes a state transition machine and replicates it on many machines. The mempool maintai…

Fix: 0.34.29 / 0.37.2+
Fix from $1,950 2023-07-03
Bluetooth Low Energy Software Development Kit MEDIUM 6.5
CVE-2023-2683

A memory leak in the EFR32 Bluetooth LE stack 5.1.0 through 5.1.1 allows an attacker to send an invalid pairing message and cause future legitimate c…

Fix: after 5.1.1
Fix from $1,600 2023-06-15
Fedora MEDIUM 6.5
CVE-2023-33460

There's a memory leak in yajl 2.1.0 with use of yajl_tree_parse function. which will cause out-of-memory in server and cause crash.

Patch available
Fix from $1,600 2023-06-06
Mp4v2 MEDIUM 5.5
CVE-2023-33717

mp4v2 v2.1.3 was discovered to contain a memory leak when a method calling MP4File::ReadBytes() had allocated memory but did not catch exceptions thr…

No fix yet
Fix from $1,600 2023-06-02
Mp4v2 MEDIUM 5.5
CVE-2023-33716

mp4v2 v2.1.3 was discovered to contain a memory leak via the class MP4StringProperty at mp4property.cpp.

Mitigation only
Fix from $1,600 2023-06-01
Mp4v2 MEDIUM 5.5
CVE-2023-33719

mp4v2 v2.1.3 was discovered to contain a memory leak via MP4SdpAtom::Read() at atom_sdp.cpp

No fix yet
Fix from $1,600 2023-06-01
Mp4v2 HIGH 8.8
CVE-2023-33718

mp4v2 v2.1.3 was discovered to contain a memory leak via MP4File::ReadString() at mp4file_io.cpp

Patch available
Fix from $1,950 2023-05-31
Teeworlds HIGH 7.5
CVE-2023-31517

A memory leak in the component CConsole::Chain of Teeworlds v0.7.5 allows attackers to cause a Denial of Service (DoS) via opening a crafted file.

Mitigation only
Fix from $1,950 2023-05-23
Libvirt MEDIUM 5.5
CVE-2023-2700

A vulnerability was found in libvirt. This security flaw ouccers due to repeatedly querying an SR-IOV PCI device's capabilities that exposes a memory…

Patch available
Fix from $1,600 2023-05-15
Opencv HIGH 7.5
CVE-2023-2618

A vulnerability, which was classified as problematic, has been found in OpenCV wechat_qrcode Module up to 4.7.0. Affected by this issue is the functi…

Fix: 4.8.0+
Fix from $1,950 2023-05-10
Libming HIGH 7.8
CVE-2021-31240

An issue found in libming v.0.4.8 allows a local attacker to execute arbitrary code via the parseSWF_IMPORTASSETS function in the parser.c file.

No fix yet
Fix from $1,950 2023-05-09
Yasm MEDIUM 5.5
CVE-2023-31973

yasm v1.3.0 was discovered to contain a use after free via the function expand_mmac_params at /nasm/nasm-pp.c. Note: Multiple third parties dispute t…

No fix yet
Fix from $1,600 2023-05-09
Big Ip Access Policy Manager HIGH 7.5
CVE-2023-29163

When UDP profile with idle timeout set to immediate or the value 0 is configured on a virtual server, undisclosed traffic can cause TMM to terminate.…

Fix: 14.1.5.4 / 15.1.8.2+
Fix from $1,950 2023-05-03
Wcn3998 Firmware HIGH 7.8
CVE-2023-21666

Memory Corruption in Graphics while accessing a buffer allocated through the graphics pool.

Patch available
Fix from $1,950 2023-05-02
Junos HIGH 7.5
CVE-2023-28982

A Missing Release of Memory after Effective Lifetime vulnerability in the routing protocol daemon of Juniper Networks Junos OS and Junos OS Evolved a…

Mitigation only
Fix from $1,950 2023-04-17
Braft HIGH 7.5
CVE-2023-30637

Baidu braft 1.1.2 has a memory leak related to use of the new operator in example/atomic/atomic_server. NOTE: installations with brpc-0.14.0 and late…

No fix yet
Fix from $1,950 2023-04-13
Eos HIGH 7.5
CVE-2023-24511

On affected platforms running Arista EOS with SNMP configured, a specially crafted packet can cause a memory leak in the snmpd process. This may resu…

Fix: 4.26.10m / 4.27.9m+
Fix from $1,950 2023-04-12
Linux Kernel MEDIUM 5.5
CVE-2023-1074

A memory leak flaw was found in the Linux kernel's Stream Control Transmission Protocol. This issue may occur when a user starts a malicious networki…

Patch available
Fix from $1,600 2023-03-27
Opensips HIGH 7.5
CVE-2023-28096

OpenSIPS, a Session Initiation Protocol (SIP) server implementation, has a memory leak starting in the 2.3 branch and priot to versions 3.1.8 and 3.2…

Fix: 3.1.8 / 3.2.5+
Fix from $1,950 2023-03-15
Dlt Daemon HIGH 7.5
CVE-2023-26257

An issue was discovered in the Connected Vehicle Systems Alliance (COVESA; formerly GENIVI) dlt-daemon through 2.18.8. Dynamic memory is not released…

Fix: after 2.18.8
Fix from $1,950 2023-02-27
Lib60870 MEDIUM 5.5
CVE-2023-23205

An issue was discovered in lib60870 v2.3.2. There is a memory leak in lib60870/lib60870-C/examples/multi_client_server/multi_client_server.c.

No fix yet
Fix from $1,600 2023-02-24
Nx Os MEDIUM 6.5
CVE-2023-20089

A vulnerability in the Link Layer Discovery Protocol (LLDP) feature for Cisco Nexus 9000 Series Fabric Switches in Application Centric Infrastructure…

Mitigation only
Fix from $1,600 2023-02-23
Linux Kernel MEDIUM 5.5
CVE-2023-0597

A flaw possibility of memory leak in the Linux kernel cpu_entry_area mapping of X86 CPU data to memory was found in the way user can guess location o…

Patch available
Fix from $1,600 2023-02-23