Vulnerability index

Browse CVEs

1,784 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Memory LeakCWE-401 × clear
Debian Linux MEDIUM 5.5
CVE-2022-42322

Xenstore: Cooperating guests can create arbitrary numbers of nodes T[his CNA information record relates to multiple CVEs; the text explains which asp…

Patch available
Fix from $1,600 2022-11-01
Debian Linux MEDIUM 5.5
CVE-2022-42323

Xenstore: Cooperating guests can create arbitrary numbers of nodes T[his CNA information record relates to multiple CVEs; the text explains which asp…

Patch available
Fix from $1,600 2022-11-01
Timg MEDIUM 5.5
CVE-2022-43151

timg v1.4.4 was discovered to contain a memory leak via the function timg::QueryBackgroundColor() at /timg/src/term-query.cc.

No fix yet
Fix from $1,600 2022-10-31
Bento4 MEDIUM 5.5
CVE-2022-3669

A vulnerability was found in Axiomatic Bento4 and classified as problematic. This issue affects the function AP4_AvccAtom::Create of the component mp…

No fix yet
Fix from $1,600 2022-10-26
Bento4 MEDIUM 5.5
CVE-2022-3668

A vulnerability has been found in Axiomatic Bento4 and classified as problematic. This vulnerability affects the function AP4_AtomFactory::CreateAtom…

No fix yet
Fix from $1,600 2022-10-26
Linux Kernel MEDIUM 5.5
CVE-2022-3630

A vulnerability was found in Linux Kernel. It has been rated as problematic. This issue affects some unknown processing of the file fs/fscache/cookie…

Patch available
Fix from $1,600 2022-10-21
Linux Kernel HIGH 7.8
CVE-2022-3577

An out-of-bounds memory write flaw was found in the Linux kernel’s Kid-friendly Wired Controller driver. This flaw allows a local user to crash or po…

Fix: 5.4.198 / 5.10.121+
Fix from $1,950 2022-10-20
Big Ip Access Policy Manager HIGH 7.5
CVE-2022-41832

In BIG-IP versions 17.0.x before 17.0.0.1, 16.1.x before 16.1.3.1, 15.1.x before 15.1.6.1, 14.1.x before 14.1.5.1, and 13.1.x before 13.1.5.1, when a…

Fix: 13.1.5.1 / 14.1.5.1+
Fix from $1,950 2022-10-19
Big Ip Access Policy Manager HIGH 7.5
CVE-2022-41624

In BIG-IP versions 17.0.x before 17.0.0.1, 16.1.x before 16.1.3.2, 15.1.x before 15.1.7, 14.1.x before 14.1.5.2, and 13.1.x before 13.1.5.1, when a s…

Fix: 13.1.5.1 / 14.1.5.2+
Fix from $1,950 2022-10-19
Bento4 MEDIUM 5.5
CVE-2022-40884

Bento4 1.6.0 has memory leaks via the mp4fragment.

Mitigation only
Fix from $1,600 2022-10-19
Bento4 MEDIUM 6.5
CVE-2022-43037

An issue was discovered in Bento4 1.6.0-639. There is a memory leak in the function AP4_File::ParseStream in /Core/Ap4File.cpp.

No fix yet
Fix from $1,600 2022-10-19
Bento4 MEDIUM 6.5
CVE-2022-43032

An issue was discovered in Bento4 v1.6.0-639. There is a memory leak in AP4_DescriptorFactory::CreateDescriptorFromStream in Core/Ap4DescriptorFactor…

No fix yet
Fix from $1,600 2022-10-19
Junos MEDIUM 5.5
CVE-2022-22240

An Allocation of Resources Without Limits or Throttling and a Missing Release of Memory after Effective Lifetime vulnerability in the routing protoco…

Fix: 20.4+
Fix from $1,600 2022-10-18
Debian Linux MEDIUM 6.5
CVE-2022-3551

A vulnerability, which was classified as problematic, has been found in X.org Server. Affected by this issue is the function ProcXkbGetKbdByName of t…

Fix: 21.1.6+
Fix from $1,600 2022-10-17
Linux Kernel MEDIUM 5.5
CVE-2022-3543

A vulnerability, which was classified as problematic, has been found in Linux Kernel. This issue affects the function unix_sock_destructor/unix_relea…

Fix: 6.1+
Fix from $1,600 2022-10-17
Linux Kernel HIGH 7.5
CVE-2022-3526

A vulnerability classified as problematic was found in Linux Kernel. This vulnerability affects the function macvlan_handle_frame of the file drivers…

Fix: 5.15.35 / 5.17.4+
Fix from $1,950 2022-10-16
Linux Kernel MEDIUM 5.5
CVE-2022-3524

A vulnerability was found in Linux Kernel. It has been declared as problematic. Affected by this vulnerability is the function ipv6_renew_options of …

Fix: 2.6.12+
Fix from $1,600 2022-10-16
Fedora HIGH 7.5
CVE-2022-2963

A vulnerability found in jasper. This security vulnerability happens because of a memory leak bug in function cmdopts_parse that can cause a crash or…

Patch available
Fix from $1,950 2022-10-14
Nucleus Net HIGH 7.5
CVE-2022-38371

A vulnerability has been identified in APOGEE MBC (PPC) (BACnet) (All versions), APOGEE MBC (PPC) (P2 Ethernet) (All versions), APOGEE MEC (PPC) (BAC…

Fix: after 2.3
Fix from $1,950 2022-10-11
Fedora HIGH 7.5
CVE-2022-41556

A resource leak in gw_backend.c in lighttpd 1.4.56 through 1.4.66 could lead to a denial of service (connection-slot exhaustion) after a large amount…

Fix: 1.4.67+
Fix from $1,950 2022-10-06
Bento4 MEDIUM 6.5
CVE-2022-41427

Bento4 v1.6.0-639 was discovered to contain a memory leak in the AP4_AvcFrameParser::Feed function in mp4mux.

No fix yet
Fix from $1,600 2022-10-03
Bento4 MEDIUM 6.5
CVE-2022-41424

Bento4 v1.6.0-639 was discovered to contain a memory leak via the AP4_SttsAtom::Create function in mp42hls.

No fix yet
Fix from $1,600 2022-10-03
Bento4 MEDIUM 6.5
CVE-2022-41426

Bento4 v1.6.0-639 was discovered to contain a memory leak via the AP4_AtomFactory::CreateAtomFromStream function in mp4split.

No fix yet
Fix from $1,600 2022-10-03
Bento4 MEDIUM 6.5
CVE-2022-41419

Bento4 v1.6.0-639 was discovered to contain a memory leak via the AP4_Processor::Process function in the mp4encrypt binary.

No fix yet
Fix from $1,600 2022-10-03
Bento4 MEDIUM 5.5
CVE-2022-41847

An issue was discovered in Bento4 1.6.0-639. A memory leak exists in AP4_StdcFileByteStream::Create(AP4_FileByteStream*, char const*, AP4_FileByteStr…

No fix yet
Fix from $1,600 2022-09-30
Insydeh2o MEDIUM 6.0
CVE-2022-35894

An issue was discovered in Insyde InsydeH2O with kernel 5.0 through 5.5. The SMI handler for the FwBlockServiceSmm driver uses an untrusted pointer a…

Fix: 05.09.37 / 5.17.37+
Fix from $1,600 2022-09-22
Bind HIGH 7.5
CVE-2022-2906

An attacker can leverage this flaw to gradually erode available memory to the point where named crashes for lack of resources. Upon restart the attac…

Fix: 9.18.7 / 9.19.5+
Fix from $1,950 2022-09-21
Debian Linux HIGH 7.5
CVE-2022-38177

By spoofing the target resolver with responses that have a malformed ECDSA signature, an attacker can trigger a small memory leak. It is possible to …

Fix: after 9.16.32
Fix from $1,950 2022-09-21
Debian Linux HIGH 7.5
CVE-2022-38178

By spoofing the target resolver with responses that have a malformed EdDSA signature, an attacker can trigger a small memory leak. It is possible to …

Fix: after 9.16.32
Fix from $1,950 2022-09-21
Swftools MEDIUM 5.5
CVE-2022-35085

SWFTools commit 772e55a2 was discovered to contain a memory leak via /lib/mem.c.

No fix yet
Fix from $1,600 2022-09-21