Vulnerability index

Browse CVEs

1,784 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Memory LeakCWE-401 × clear
Linux Kernel MEDIUM 5.5
CVE-2020-15393

In the Linux kernel 4.4 through 5.7.6, usbtest_disconnect in drivers/usb/misc/usbtest.c has a memory leak, aka CID-28ebeb8db770.

Fix: after 5.7.6
Fix from $1,600 2020-06-29
Mattermost Server HIGH 7.5
CVE-2019-20888

An issue was discovered in Mattermost Server before 5.7, 5.6.3, 5.5.2, and 4.10.5. It allows attackers to cause a denial of service (memory consumpti…

Fix: 4.10.5 / 5.5.2+
Fix from $1,950 2020-06-19
Mbed Coap HIGH 7.5
CVE-2020-12887

Memory leaks were discovered in the CoAP library in Arm Mbed OS 5.15.3 when using the Arm mbed-coap library 5.1.5. The CoAP parser is responsible for…

Patch available
Fix from $1,950 2020-06-18
Ios Xe HIGH 8.6
CVE-2020-3203

A vulnerability in the locally significant certificate (LSC) provisioning feature of Cisco Catalyst 9800 Series Wireless Controllers that are running…

Patch available
Fix from $1,950 2020-06-03
Linux Kernel MEDIUM 5.5
CVE-2019-20810

go7007_snd_init in drivers/media/usb/go7007/snd-go7007.c in the Linux kernel before 5.6 does not call snd_card_free for a failure path, which causes …

Fix: 5.6+
Fix from $1,600 2020-06-03
Amarok MEDIUM 5.5
CVE-2020-13152

A remote user can create a specially crafted M3U file, media playlist file that when loaded by the target user, will trigger a memory leak, whereby A…

No fix yet
Fix from $1,600 2020-05-20
Linux Kernel MEDIUM 5.5
CVE-2020-12768

An issue was discovered in the Linux kernel before 5.6. svm_cpu_uninit in arch/x86/kvm/svm.c has a memory leak, aka CID-d80b64ff297e. NOTE: third par…

Fix: 5.6+
Fix from $1,600 2020-05-09
Secure Firewall Threat Defense HIGH 8.6
CVE-2020-3189

A vulnerability in the VPN System Logging functionality for Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote atta…

Mitigation only
Fix from $1,950 2020-05-06
Secure Firewall Threat Defense HIGH 7.5
CVE-2020-3195

A vulnerability in the Open Shortest Path First (OSPF) implementation in Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat …

Fix: 6.4.0.9 / 6.5.0.5+
Fix from $1,950 2020-05-06
Linux Kernel MEDIUM 5.5
CVE-2020-12656

gss_mech_free in net/sunrpc/auth_gss/gss_mech_switch.c in the rpcsec_gss_krb5 implementation in the Linux kernel through 5.6.10 lacks certain domain_…

Fix: after 5.6.10
Fix from $1,600 2020-05-05
Big Ip Access Policy Manager HIGH 7.5
CVE-2020-5883

On BIG-IP 15.0.0-15.0.1, 14.1.0-14.1.2.3, 14.0.0-14.0.1, and 13.1.0-13.1.3.1, when a virtual server is configured with HTTP explicit proxy and has an…

Fix: after 15.0.1.3
Fix from $1,950 2020-04-30
Libvirt MEDIUM 6.5
CVE-2020-12430

An issue was discovered in qemuDomainGetStatsIOThread in qemu/qemu_driver.c in libvirt 4.10.0 though 6.x before 6.1.0. A memory leak was found in the…

Fix: 6.1.0+
Fix from $1,600 2020-04-28
Mq MEDIUM 6.5
CVE-2020-4267

IBM MQ and MQ Appliance 8.0, 9.1 LTS, and 9.1 CD could allow an authenticated user cause a denial of service due to a memory leak. IBM X-Force ID: 17…

Fix: 8.0.0.14 / 9.1.0.4+
Fix from $1,600 2020-04-24
Apq8009 Firmware HIGH 7.8
CVE-2019-10547

When issuing IOCTL calls to ION, Memory leak can occur due to failure in unassign pages under certain conditions in Snapdragon Auto, Snapdragon Compu…

Patch available
Fix from $1,950 2020-04-16
Junos MEDIUM 6.5
CVE-2020-1625

The kernel memory usage represented as "temp" via 'show system virtual-memory' may constantly increase when Integrated Routing and Bridging (IRB) is …

No fix yet
Fix from $1,600 2020-04-08
Android HIGH 7.5
CVE-2018-21079

An issue was discovered on Samsung mobile devices with L(5.x), M(6.0), N(7.x), and O(8.0) software. There is a kernel pointer leak in the USB gadget …

Mitigation only
Fix from $1,950 2020-04-08
Ipados MEDIUM 5.5
CVE-2020-3914

A memory initialization issue was addressed with improved memory handling. This issue is fixed in iOS 13.4 and iPadOS 13.4, macOS Catalina 10.15.4, t…

Fix: 6.2 / 10.15.4+
Fix from $1,600 2020-04-01
Debian Linux HIGH 7.5
CVE-2020-6079

An exploitable denial-of-service vulnerability exists in the resource allocation handling of Videolabs libmicrodns 0.1.0. When encountering errors wh…

No fix yet
Fix from $1,950 2020-03-24
Debian Linux HIGH 7.5
CVE-2020-6080

An exploitable denial-of-service vulnerability exists in the resource allocation handling of Videolabs libmicrodns 0.1.0. When encountering errors wh…

No fix yet
Fix from $1,950 2020-03-24
Android HIGH 7.1
CVE-2020-10840

An issue was discovered on Samsung mobile devices with P(9.0) and Q(10.0) (Exynos 9610 chipsets) software. There is a kernel pointer leak in the vipx…

Mitigation only
Fix from $1,950 2020-03-24
Tor HIGH 7.5
CVE-2020-10593

Tor before 0.3.5.10, 0.4.x before 0.4.1.9, and 0.4.2.x before 0.4.2.7 allows remote attackers to cause a Denial of Service (memory leak), aka TROVE-2…

Fix: 0.3.5.10 / 0.4.1.9+
Fix from $1,950 2020-03-23
Wireshark HIGH 7.5
CVE-2020-9431

In Wireshark 3.2.0 to 3.2.1, 3.0.0 to 3.0.8, and 2.6.0 to 2.6.14, the LTE RRC dissector could leak memory. This was addressed in epan/dissectors/pack…

Fix: after 3.2.1
Fix from $1,950 2020-02-27
Nip6800 Firmware HIGH 7.5
CVE-2020-1815

Huawei NIP6800 versions V500R001C30, V500R001C60SPC500, and V500R005C00; Secospace USG6600 and USG9500 versions V500R001C30SPC200, V500R001C30SPC600,…

Mitigation only
Fix from $1,950 2020-02-18
Acrobat Dc HIGH 7.5
CVE-2020-3753

Adobe Acrobat and Reader versions 2019.021.20061 and earlier, 2017.011.30156 and earlier, 2017.011.30156 and earlier, and 2015.006.30508 and earlier …

Fix: after 19.021.20061
Fix from $1,950 2020-02-13
Acrobat Dc HIGH 7.5
CVE-2020-3756

Adobe Acrobat and Reader versions 2019.021.20061 and earlier, 2017.011.30156 and earlier, 2017.011.30156 and earlier, and 2015.006.30508 and earlier …

Fix: after 19.021.20061
Fix from $1,950 2020-02-13
Wicked HIGH 7.5
CVE-2020-7217

An ni_dhcp4_fsm_process_dhcp4_packet memory leak in openSUSE wicked 0.6.55 and earlier allows network attackers to cause a denial of service by sendi…

Fix: after 0.6.55
Fix from $1,950 2020-02-11
Wicked HIGH 7.5
CVE-2020-7216

An ni_dhcp4_parse_response memory leak in openSUSE wicked 0.6.55 and earlier allows network attackers to cause a denial of service by sending DHCP4 p…

Fix: after 0.6.55
Fix from $1,950 2020-02-05
Debian Linux HIGH 7.5
CVE-2019-20388

xmlSchemaPreRun in xmlschemas.c in libxml2 2.9.10 allows an xmlSchemaValidateStream memory leak.

Patch available
Fix from $1,950 2020-01-21
Junos HIGH 8.6
CVE-2020-1603

Specific IPv6 packets sent by clients processed by the Routing Engine (RE) are improperly handled. These IPv6 packets are designed to be blocked by t…

Mitigation only
Fix from $1,950 2020-01-15
Debian Linux MEDIUM 5.5
CVE-2019-20171

An issue was discovered in GPAC version 0.5.2 and 0.9.0-development-20191109. There are memory leaks in metx_New in isomedia/box_code_base.c and abst…

Fix: after 0.8.0
Fix from $1,600 2019-12-31