Vulnerability index

Browse CVEs

771 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Reachable AssertionCWE-617 × clear
Unclassified HIGH 7.5
CVE-2024-4076

Client queries that trigger serving stale data and that also require lookups in local authoritative zone data may result in an assertion failure. Thi…

Mitigation only
Fix from $1,950 2024-07-23
Linux Kernel MEDIUM 5.5
CVE-2024-39509

In the Linux kernel, the following vulnerability has been resolved: HID: core: remove unnecessary WARN_ON() in implement() Syzkaller hit a warning …

Fix: 4.19.317 / 5.4.279+
Fix from $1,600 2024-07-12
Linux Kernel MEDIUM 5.5
CVE-2024-39497

In the Linux kernel, the following vulnerability has been resolved: drm/shmem-helper: Fix BUG_ON() on mmap(PROT_WRITE, MAP_PRIVATE) Lack of check f…

Fix: 5.10.229 / 5.15.169+
Fix from $1,600 2024-07-12
Unclassified HIGH 8.6
CVE-2024-39697

phonenumber is a library for parsing, formatting and validating international phone numbers. Since 0.3.4, the phonenumber parsing code may panic due …

Patch available
Fix from $1,950 2024-07-09
Linux Kernel MEDIUM 5.5
CVE-2023-52831

In the Linux kernel, the following vulnerability has been resolved: cpu/hotplug: Don't offline the last non-isolated CPU If a system has isolated C…

Fix: 6.1.64 / 6.5.13+
Fix from $1,600 2024-05-21
Linux Kernel MEDIUM 5.5
CVE-2021-47351

In the Linux kernel, the following vulnerability has been resolved: ubifs: Fix races between xattr_{set|get} and listxattr operations UBIFS may occ…

Fix: 5.4.133 / 5.10.51+
Fix from $1,600 2024-05-21
Linux Kernel MEDIUM 5.5
CVE-2021-47305

In the Linux kernel, the following vulnerability has been resolved: dma-buf/sync_file: Don't leak fences on merge failure Each add_fence() call doe…

Fix: 4.14.241 / 4.19.199+
Fix from $1,600 2024-05-21
Linux Kernel MEDIUM 5.5
CVE-2021-47315

In the Linux kernel, the following vulnerability has been resolved: memory: fsl_ifc: fix leak of IO mapping on probe failure On probe error the dri…

Fix: 4.4.276 / 4.9.276+
Fix from $1,600 2024-05-21
Linux Kernel MEDIUM 5.5
CVE-2024-36000

In the Linux kernel, the following vulnerability has been resolved: mm/hugetlb: fix missing hugetlb_lock for resv uncharge There is a recent report…

Fix: 5.10 / 6.1.91+
Fix from $1,600 2024-05-20
Linux Kernel MEDIUM 5.5
CVE-2024-35957

In the Linux kernel, the following vulnerability has been resolved: iommu/vt-d: Fix WARN_ON in iommu probe path Commit 1a75cc710b95 ("iommu/vt-d: U…

Fix: 6.8.7+
Fix from $1,600 2024-05-20
Linux Kernel MEDIUM 5.5
CVE-2024-35884

In the Linux kernel, the following vulnerability has been resolved: udp: do not accept non-tunnel GSO skbs landing in a tunnel When rx-udp-gro-forw…

Fix: 5.10.215 / 5.15.154+
Fix from $1,600 2024-05-19
MongoDB MEDIUM 5.3
CVE-2024-3374

An unauthenticated user can trigger a fatal assertion in the server while generating ftdc diagnostic metrics due to attempting to build a BSON object…

Fix: after 6.0.5
Fix from $1,600 2024-05-14
Debian Linux HIGH 7.3
CVE-2024-33601

nscd: netgroup cache may terminate daemon on memory allocation failure The Name Service Cache Daemon's (nscd) netgroup cache uses xmalloc or xreallo…

Fix: 2.40+
Fix from $1,950 2024-05-06
315 5g Iot Modem Firmware HIGH 7.5
CVE-2023-43529

Transient DOS while processing IKEv2 Informational request messages, when a malformed fragment packet is received.

Mitigation only
Fix from $1,950 2024-05-06
Open5gs HIGH 7.5
CVE-2024-34475

Open5GS before 2.7.1 is vulnerable to a reachable assertion that can cause an AMF crash via NAS messages from a UE: gmm_state_authentication in amf/g…

Fix: 2.7.1+
Fix from $1,950 2024-05-05
Linux Kernel MEDIUM 5.5
CVE-2024-26946

In the Linux kernel, the following vulnerability has been resolved: kprobes/x86: Use copy_from_kernel_nofault() to read from unsafe address Read fr…

Fix: 6.1.84 / 6.6.24+
Fix from $1,600 2024-05-01
Linux Kernel MEDIUM 5.5
CVE-2024-26937

In the Linux kernel, the following vulnerability has been resolved: drm/i915/gt: Reset queue_priority_hint on parking Originally, with strict in or…

Fix: 5.4.274 / 5.10.215+
Fix from $1,600 2024-05-01
Linux Kernel MEDIUM 5.5
CVE-2022-48633

In the Linux kernel, the following vulnerability has been resolved: drm/gma500: Fix WARN_ON(lock->magic != lock) error psb_gem_unpin() calls dma_re…

Fix: 5.19.12+
Fix from $1,600 2024-04-28
Jerryscript MEDIUM 6.2
CVE-2024-33255

Jerryscript commit cefd391 was discovered to contain an Assertion Failure via ECMA_STRING_IS_REF_EQUALS_TO_ONE (string_p) in ecma_free_string_list.

No fix yet
Fix from $1,600 2024-04-26
Unclassified HIGH 7.5
CVE-2024-31744

In Jasper 4.2.2, the jpc_streamlist_remove function in src/libjasper/jpc/jpc_dec.c:2407 has an assertion failure vulnerability, allowing attackers to…

Patch available
Fix from $1,950 2024-04-19
Envoy HIGH 7.5
CVE-2024-32475

Envoy is a cloud-native, open source edge and service proxy. When an upstream TLS cluster is used with `auto_sni` enabled, a request containing a `ho…

Fix: 1.27.5 / 1.28.3+
Fix from $1,950 2024-04-18
Enterprise Linux MEDIUM 5.5
CVE-2024-3567

A flaw was found in QEMU. An assertion failure was present in the update_sctp_checksum() function in hw/net/net_tx_pkt.c when trying to calculate the…

Fix: 8.2.3+
Fix from $1,600 2024-04-10
Linux Kernel MEDIUM 5.5
CVE-2024-26726

In the Linux kernel, the following vulnerability has been resolved: btrfs: don't drop extent_map for free space inode on write error While running …

Fix: 6.1.79 / 6.6.18+
Fix from $1,600 2024-04-03
Linux Kernel MEDIUM 5.5
CVE-2024-26727

In the Linux kernel, the following vulnerability has been resolved: btrfs: do not ASSERT() if the newly created subvolume already got read [BUG] Th…

Fix: 5.10.210 / 5.15.149+
Fix from $1,600 2024-04-03
Debian Linux HIGH 7.8
CVE-2023-52621

In the Linux kernel, the following vulnerability has been resolved: bpf: Check rcu_read_lock_trace_held() before calling bpf map helpers These thre…

Fix: 5.10.237 / 5.15.181+
Fix from $1,950 2024-03-26
315 5g Iot Modem Firmware HIGH 7.5
CVE-2023-33095

Transient DOS while processing multiple payload container type with incorrect container length received in DL NAS transport OTA in NR.

Mitigation only
Fix from $1,950 2024-03-04
315 5g Iot Modem Firmware HIGH 7.5
CVE-2023-33096

Transient DOS while processing DL NAS Transport message, as specified in 3GPP 24.501 v16.

Mitigation only
Fix from $1,950 2024-03-04
Linux Kernel MEDIUM 5.5
CVE-2023-52569

In the Linux kernel, the following vulnerability has been resolved: btrfs: remove BUG() after failure to insert delayed dir index item Instead of c…

Fix: 6.1.56 / 6.5.6+
Fix from $1,600 2024-03-02
Fedora HIGH 7.5
CVE-2023-5517

A flaw in query-handling code can cause `named` to exit prematurely with an assertion failure when: - `nxdomain-redirect <domain>;` is configured,…

Fix: after 9.19.19
Fix from $1,950 2024-02-13
Fedora HIGH 7.5
CVE-2023-5679

A bad interaction between DNS64 and serve-stale may cause `named` to crash with an assertion failure during recursive resolution, when both of these …

Fix: after 9.19.19
Fix from $1,950 2024-02-13