Vulnerability index

Browse CVEs

771 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Reachable AssertionCWE-617 × clear
Fedora HIGH 7.5
CVE-2022-36440

A reachable assertion was found in Frrouting frr-bgpd 8.3.0 in the peek_for_as4_capability function. Attackers can maliciously construct BGP open pac…

No fix yet
Fix from $1,950 2023-04-03
Redis MEDIUM 5.5
CVE-2023-28425EPSS 55%

Redis is an in-memory database that persists on disk. Starting in version 7.0.8 and prior to version 7.0.10, authenticated users can use the MSETNX c…

Fix: 7.0.10+
Fix from $1,600 2023-03-20
Tcpreplay HIGH 7.5
CVE-2023-27788

An issue found in TCPrewrite v.4.4.3 allows a remote attacker to cause a denial of service via the ports2PORT function at the portmap.c:69 endpoint.

Patch available
Fix from $1,950 2023-03-16
Tcpreplay HIGH 7.5
CVE-2023-27789

An issue found in TCPprep v.4.4.3 allows a remote attacker to cause a denial of service via the cidr2cidr function at the cidr.c:178 endpoint.

Patch available
Fix from $1,950 2023-03-16
Tcpreplay HIGH 7.5
CVE-2023-27783

An issue found in TCPreplay tcprewrite v.4.4.3 allows a remote attacker to cause a denial of service via the tcpedit_dlt_cleanup function at plugins/…

Patch available
Fix from $1,950 2023-03-16
Ar8035 Firmware HIGH 7.5
CVE-2022-33272

Transient DOS in modem due to reachable assertion.

Mitigation only
Fix from $1,950 2023-03-10
Ar8035 Firmware HIGH 7.5
CVE-2022-40527

Transient DOS due to reachable assertion in WLAN while processing PEER ID populated by TQM.

Mitigation only
Fix from $1,950 2023-03-10
Ar8035 Firmware HIGH 7.5
CVE-2022-33244

Transient DOS due to reachable assertion in modem during MIB reception and SIB timeout

Mitigation only
Fix from $1,950 2023-03-10
Ar8035 Firmware HIGH 7.5
CVE-2022-33250

Transient DOS due to reachable assertion in modem when network repeatedly sent invalid message container for NR to LTE handover.

Mitigation only
Fix from $1,950 2023-03-10
Aqt1000 Firmware HIGH 7.5
CVE-2022-33254

Transient DOS due to reachable assertion in Modem while processing SIB1 Message.

Mitigation only
Fix from $1,950 2023-03-10
Music Player Daemon HIGH 7.5
CVE-2022-48363

In MPD before 0.23.8, as used on Automotive Grade Linux and other platforms, the PipeWire output plugin mishandles a Drain call in certain situations…

Fix: 0.23.8+
Fix from $1,950 2023-02-26
Bind HIGH 7.5
CVE-2022-3924EPSS 16%

This issue can affect BIND 9 resolvers with `stale-answer-enable yes;` that also make use of the option `stale-answer-client-timeout`, configured wit…

Fix: 9.16.37 / 9.18.11+
Fix from $1,950 2023-01-26
Bind HIGH 7.5
CVE-2022-3488EPSS 19%

Processing of repeated responses to the same query, where both responses contain ECS pseudo-options, but where the first is broken in some way, can c…

No fix yet
Fix from $1,950 2023-01-26
Dht HIGH 7.5
CVE-2020-36562

Due to unchecked type assertions, maliciously crafted messages can cause panics, which may be used as a denial of service vector.

No fix yet
Fix from $1,950 2022-12-28
Drachtio Server HIGH 7.5
CVE-2022-47516

An issue was discovered in the libsofia-sip fork in drachtio-server before 0.8.20. It allows remote attackers to cause a denial of service (daemon cr…

Fix: 0.8.20+
Fix from $1,950 2022-12-18
Ar8035 Firmware HIGH 7.5
CVE-2022-25689

Denial of service in Modem due to reachable assertion in Snapdragon Mobile

Mitigation only
Fix from $1,950 2022-12-13
Ar8035 Firmware HIGH 7.5
CVE-2022-25691

Denial of service in Modem due to reachable assertion while processing SIB1 with invalid SCS and bandwidth settings in Snapdragon Mobile

Mitigation only
Fix from $1,950 2022-12-13
Ar8035 Firmware HIGH 7.5
CVE-2022-25692

Denial of service in Modem due to reachable assertion while processing the common config procedure in Snapdragon Auto, Snapdragon Compute, Snapdragon…

Mitigation only
Fix from $1,950 2022-12-13
Apq8009 Firmware HIGH 7.5
CVE-2022-25702

Denial of service in modem due to reachable assertion while processing reconfiguration message in Snapdragon Auto, Snapdragon Compute, Snapdragon Ind…

Mitigation only
Fix from $1,950 2022-12-13
Ar8035 Firmware HIGH 7.5
CVE-2022-25672

Denial of service in MODEM due to reachable assertion while processing SIB1 with invalid Bandwidth in Snapdragon Mobile

Mitigation only
Fix from $1,950 2022-12-13
Ar8035 Firmware HIGH 7.5
CVE-2022-25673

Denial of service in MODEM due to reachable assertion while processing configuration from network in Snapdragon Mobile

Mitigation only
Fix from $1,950 2022-12-13
Aqt1000 Firmware MEDIUM 5.5
CVE-2022-25675

Denial of service due to reachable assertion in modem while processing filter rule from application client in Snapdragon Compute, Snapdragon Industri…

Mitigation only
Fix from $1,600 2022-12-13
Tensorflow HIGH 7.5
CVE-2022-41901

TensorFlow is an open source platform for machine learning. An input `sparse_matrix` that is not a matrix with a shape with rank 0 will trigger a `CH…

Fix: 2.8.4 / 2.9.3+
Fix from $1,950 2022-11-18
Tensorflow HIGH 7.5
CVE-2022-41899

TensorFlow is an open source platform for machine learning. Inputs `dense_features` or `example_state_data` not of rank 2 will trigger a `CHECK` fail…

Fix: 2.8.4 / 2.9.3+
Fix from $1,950 2022-11-18
Tensorflow HIGH 7.5
CVE-2022-41893

TensorFlow is an open source platform for machine learning. If `tf.raw_ops.TensorListResize` is given a nonscalar value for input `size`, it results …

Fix: 2.8.4 / 2.9.3+
Fix from $1,950 2022-11-18
Ar8035 Firmware HIGH 7.5
CVE-2022-25671

Denial of service in MODEM due to reachable assertion in Snapdragon Mobile

No fix yet
Fix from $1,950 2022-11-15
Lr12a HIGH 7.5
CVE-2022-26446

In Modem 4G RRC, there is a possible system crash due to improper input validation. This could lead to remote denial of service, when concatenating i…

Mitigation only
Fix from $1,950 2022-11-08
Tensorflow HIGH 7.5
CVE-2022-36012

TensorFlow is an open source platform for machine learning. When `mlir::tfg::ConvertGenericFunctionToFunctionDef` is given empty function attributes,…

Fix: 2.7.2 / 2.8.1+
Fix from $1,950 2022-09-16
Tensorflow HIGH 7.5
CVE-2022-36016

TensorFlow is an open source platform for machine learning. When `tensorflow::full_type::SubstituteFromAttrs` receives a `FullTypeDef& t` that is not…

Fix: 2.7.2 / 2.8.1+
Fix from $1,950 2022-09-16
Tensorflow HIGH 7.5
CVE-2022-35991

TensorFlow is an open source platform for machine learning. When `TensorListScatter` and `TensorListScatterV2` receive an `element_shape` of a rank g…

Fix: 2.7.2 / 2.8.1+
Fix from $1,950 2022-09-16