Vulnerability index

Browse CVEs

1,784 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Memory LeakCWE-401 × clear
Gss Ntlmssp HIGH 7.5
CVE-2023-25566

GSS-NTLMSSP is a mechglue plugin for the GSSAPI library that implements NTLM authentication. Prior to version 1.2.0, a memory leak can be triggered w…

Fix: 1.2.0+
Fix from $1,950 2023-02-14
Linux Kernel MEDIUM 5.5
CVE-2023-0615

A memory leak flaw and potential divide by zero and Integer overflow was found in the Linux kernel V4L2 and vivid test code functionality. This issue…

Fix: 6.2+
Fix from $1,600 2023-02-06
Linux Kernel HIGH 7.8
CVE-2022-4139

An incorrect TLB flush issue was found in the Linux kernel’s GPU i915 kernel driver, potentially leading to random memory corruption or data leaks. T…

Fix: 5.4.226 / 5.10.157+
Fix from $1,950 2023-01-27
Uatoolkit Embedded HIGH 7.5
CVE-2022-45920

In Softing uaToolkit Embedded before 1.41, a malformed CreateMonitoredItems request may cause a memory leak.

Fix: 1.41+
Fix from $1,950 2023-01-26
Gpac HIGH 7.8
CVE-2023-23145

GPAC version 2.2-rev0-gab012bbfb-master was discovered to contain a memory leak in lsr_read_rare_full function.

Patch available
Fix from $1,950 2023-01-20
Junos MEDIUM 6.5
CVE-2023-22410

A Missing Release of Memory after Effective Lifetime vulnerability in the Juniper Networks Junos OS on MX Series platforms with MPC10/MPC11 line card…

Fix: 20.2+
Fix from $1,600 2023-01-13
Junos MEDIUM 6.5
CVE-2023-22414

A Missing Release of Memory after Effective Lifetime vulnerability in Flexible PIC Concentrator (FPC) of Juniper Networks Junos OS allows an adjacent…

Mitigation only
Fix from $1,600 2023-01-13
Junos HIGH 7.5
CVE-2023-22417

A Missing Release of Memory after Effective Lifetime vulnerability in the Flow Processing Daemon (flowd) of Juniper Networks Junos OS allows a networ…

Mitigation only
Fix from $1,950 2023-01-13
Junos MEDIUM 6.5
CVE-2023-22395

A Missing Release of Memory after Effective Lifetime vulnerability in the kernel of Juniper Networks Junos OS allows an unauthenticated, adjacent att…

Fix: 19.3+
Fix from $1,600 2023-01-13
Junos MEDIUM 6.5
CVE-2023-22406

A Missing Release of Memory after Effective Lifetime vulnerability in the kernel of Juniper Networks Junos OS and Junos OS Evolved allows an adjacent…

Fix: 19.3 / 20.4+
Fix from $1,600 2023-01-13
Enterprise Linux HIGH 7.5
CVE-2022-4743

A potential memory leak issue was discovered in SDL2 in GLES_CreateTexture() function in SDL_render_gles.c. The vulnerability allows an attacker to c…

Fix: 2.26.0+
Fix from $1,950 2023-01-12
Gpac MEDIUM 5.5
CVE-2022-46489

GPAC version 2.1-DEV-rev505-gb9577e6ad-master was discovered to contain a memory leak via the gf_isom_box_parse_ex function at box_funcs.c.

Fix: 2.2.0+
Fix from $1,600 2023-01-05
Gpac MEDIUM 5.5
CVE-2022-46490

GPAC version 2.1-DEV-rev505-gb9577e6ad-master was discovered to contain a memory leak via the afrt_box_read function at box_code_adobe.c.

Fix: 2.2.0+
Fix from $1,600 2023-01-05
Linux Kernel HIGH 7.5
CVE-2022-47941

An issue was discovered in ksmbd in the Linux kernel 5.15 through 5.19 before 5.19.2. fs/ksmbd/smb2pdu.c omits a kfree call in certain smb2_handle_ne…

Fix: 5.15.61 / 5.18.18+
Fix from $1,950 2022-12-23
Containerd MEDIUM 6.5
CVE-2022-23471

containerd is an open source container runtime. A bug was found in containerd's CRI implementation where a user can exhaust memory on the host. In th…

Fix: 1.5.16 / 1.6.12+
Fix from $1,600 2022-12-07
Dcmtk HIGH 7.5
CVE-2022-43272

DCMTK v3.6.7 was discovered to contain a memory leak via the T_ASC_Association object.

Patch available
Fix from $1,950 2022-12-02
Gpac MEDIUM 5.5
CVE-2022-45204

GPAC v2.1-DEV-rev428-gcb8ae46c8-master was discovered to contain a memory leak via the function dimC_box_read at isomedia/box_code_3gpp.c.

Fix: 2.2.0+
Fix from $1,600 2022-11-29
Proftpd HIGH 7.5
CVE-2021-46854

mod_radius in ProFTPD before 1.3.7c allows memory disclosure to RADIUS servers because it copies blocks of 16 characters.

Fix: 1.3.7c+
Fix from $1,950 2022-11-23
Gpac MEDIUM 6.5
CVE-2022-3957

A vulnerability classified as problematic was found in GPAC. Affected by this vulnerability is the function svg_parse_preserveaspectratio of the file…

Fix: 2.2.0+
Fix from $1,600 2022-11-11
Server Platform Services Firmware MEDIUM 5.5
CVE-2022-29515

Missing release of memory after effective lifetime in firmware for Intel(R) SPS before versions SPS_E3_06.00.03.035.0 may allow a privileged user to …

Mitigation only
Fix from $1,600 2022-11-11
Enterprise Driver MEDIUM 5.5
CVE-2021-26393

Insufficient memory cleanup in the AMD Secure Processor (ASP) Trusted Execution Environment (TEE) may allow an authenticated attacker with privileges…

Fix: 22.q2 / 22.5.2+
Fix from $1,600 2022-11-09
Gpac MEDIUM 5.5
CVE-2022-43254

GPAC v2.1-DEV-rev368-gfd054169b-master was discovered to contain a memory leak via the component gf_list_new at utils/list.c.

Fix: 2.2.0+
Fix from $1,600 2022-11-02
Gpac MEDIUM 5.5
CVE-2022-43255

GPAC v2.1-DEV-rev368-gfd054169b-master was discovered to contain a memory leak via the component gf_odf_new_iod at odf/odf_code.c.

Fix: 2.2.0+
Fix from $1,600 2022-11-02
Bento4 MEDIUM 6.5
CVE-2022-3812

A vulnerability was found in Axiomatic Bento4. It has been rated as problematic. Affected by this issue is the function AP4_ContainerAtom::AP4_Contai…

No fix yet
Fix from $1,600 2022-11-01
Open5gs HIGH 7.5
CVE-2022-43221

open5gs v2.4.11 was discovered to contain a memory leak in the component src/upf/pfcp-path.c. This vulnerability allows attackers to cause a Denial o…

No fix yet
Fix from $1,950 2022-11-01
Open5gs HIGH 7.5
CVE-2022-43222

open5gs v2.4.11 was discovered to contain a memory leak in the component src/smf/pfcp-path.c. This vulnerability allows attackers to cause a Denial o…

No fix yet
Fix from $1,950 2022-11-01
Open5gs HIGH 7.5
CVE-2022-43223

open5gs v2.4.11 was discovered to contain a memory leak in the component ngap-handler.c. This vulnerability allows attackers to cause a Denial of Ser…

No fix yet
Fix from $1,950 2022-11-01
Debian Linux MEDIUM 5.5
CVE-2022-42325

Xenstore: Guests can create arbitrary number of nodes via transactions T[his CNA information record relates to multiple CVEs; the text explains which…

Patch available
Fix from $1,600 2022-11-01
Debian Linux MEDIUM 5.5
CVE-2022-42326

Xenstore: Guests can create arbitrary number of nodes via transactions T[his CNA information record relates to multiple CVEs; the text explains which…

Patch available
Fix from $1,600 2022-11-01
Debian Linux MEDIUM 6.5
CVE-2022-42319

Xenstore: Guests can cause Xenstore to not free temporary memory When working on a request of a guest, xenstored might need to allocate quite large a…

Patch available
Fix from $1,600 2022-11-01