Vulnerability index

Browse CVEs

771 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Reachable AssertionCWE-617 × clear
Ar8035 Firmware HIGH 7.5
CVE-2021-30287

Possible assertion due to improper validation of symbols configured for PDCCH monitoring in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectiv…

Mitigation only
Fix from $1,950 2022-01-13
Ar8035 Firmware HIGH 7.5
CVE-2021-30307

Possible denial of service due to improper validation of DNS response when DNS client requests with PTR, NAPTR or SRV query type in Snapdragon Auto, …

Mitigation only
Fix from $1,950 2022-01-13
Ar8031 Firmware HIGH 7.5
CVE-2021-30353

Improper validation of function pointer type with actual function signature can lead to assertion in Snapdragon Auto, Snapdragon Compute, Snapdragon …

Patch available
Fix from $1,950 2022-01-13
Debian Linux HIGH 7.8
CVE-2021-36409

There is an Assertion `scaling_list_pred_matrix_id_delta==1' failed at sps.cc:925 in libde265 v1.0.8 when decoding file, which allows attackers to ca…

No fix yet
Fix from $1,950 2022-01-10
Binaryen MEDIUM 5.5
CVE-2021-46054

A Denial of Service vulnerability exists in Binaryen 104 due to an assertion abort in wasm::WasmBinaryBuilder::visitRethrow(wasm::Rethrow*).

No fix yet
Fix from $1,600 2022-01-10
Binaryen MEDIUM 5.5
CVE-2021-46055

A Denial of Service vulnerability exists in Binaryen 104 due to an assertion abort in wasm::WasmBinaryBuilder::visitRethrow(wasm::Rethrow*).

No fix yet
Fix from $1,600 2022-01-10
Binaryen MEDIUM 5.5
CVE-2021-46052

A Denial of Service vulnerability exists in Binaryen 104 due to an assertion abort in wasm::Tuple::validate.

No fix yet
Fix from $1,600 2022-01-10
Binaryen MEDIUM 5.5
CVE-2021-46048

A Denial of Service vulnerability exists in Binaryen 104 due to an assertion abort in wasm::WasmBinaryBuilder::readFunctions.

No fix yet
Fix from $1,600 2022-01-10
Apq8009w Firmware HIGH 7.5
CVE-2021-30273

Possible assertion due to improper handling of IPV6 packet with invalid length in destination options header in Snapdragon Auto, Snapdragon Compute, …

Mitigation only
Fix from $1,950 2022-01-03
Ar6003 Firmware HIGH 7.5
CVE-2021-30293

Possible assertion due to lack of input validation in PUSCH configuration in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon…

Mitigation only
Fix from $1,950 2022-01-03
Apq8009w Firmware HIGH 7.8
CVE-2021-30335

Possible assertion in QOS request due to improper validation when multiple add or update request are received simultaneously in Snapdragon Auto, Snap…

Patch available
Fix from $1,950 2022-01-03
Cordova Plugin Fingerprint All In One MEDIUM 5.5
CVE-2021-43849

cordova-plugin-fingerprint-aio is a plugin provides a single and simple interface for accessing fingerprint APIs on both Android 6+ and iOS. In versi…

Fix: 5.0.1+
Fix from $1,600 2021-12-23
Fedora HIGH 7.5
CVE-2021-45290

A Denial of Service vulnerability exits in Binaryen 103 due to an assertion abort in wasm::handle_unreachable.

Patch available
Fix from $1,950 2021-12-21
Apex One MEDIUM 5.5
CVE-2021-44022

A reachable assertion vulnerability in Trend Micro Apex One could allow an attacker to crash the program on affected installations, leading to a deni…

Mitigation only
Fix from $1,600 2021-12-03
MongoDB MEDIUM 6.5
CVE-2021-32037

An authorized user may trigger an invariant which may result in denial of service or server exit if a relevant aggregation request is sent to a shard…

Fix: after 5.0.2
Fix from $1,600 2021-11-24
Ar8035 Firmware HIGH 7.5
CVE-2021-1982

Possible denial of service scenario due to improper input validation of received NAS OTA message in Snapdragon Auto, Snapdragon Compute, Snapdragon C…

Mitigation only
Fix from $1,950 2021-11-12
Tensorflow MEDIUM 5.5
CVE-2021-41200

TensorFlow is an open source platform for machine learning. In affected versions if `tf.summary.create_file_writer` is called with non-scalar argumen…

Fix: 2.4.4 / 2.5.2+
Fix from $1,600 2021-11-05
Zephyr HIGH 7.5
CVE-2021-3454

Truncated L2CAP K-frame causes assertion failure. Zephyr versions >= 2.4.0, >= v.2.50 contain Improper Handling of Length Parameter Inconsistency (CW…

Fix: 2.6.0+
Fix from $1,950 2021-10-19
Internet Gatekeeper HIGH 7.5
CVE-2021-33600

A denial-of-service (DoS) vulnerability was discovered in the web user interface of F-Secure Internet Gatekeeper. The vulnerability occurs because of…

Fix: after 5.50.47
Fix from $1,950 2021-09-28
Aqt1000 Firmware HIGH 7.5
CVE-2021-1971

Possible assertion due to lack of physical layer state validation in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consume…

Mitigation only
Fix from $1,950 2021-09-09
Libjxl HIGH 7.5
CVE-2021-36691

libjxl v0.5.0 is affected by a Assertion failed issue in lib/jxl/image.cc jxl::PlaneBase::PlaneBase(). When encoding a malicous GIF file using cjxl, …

No fix yet
Fix from $1,950 2021-08-30
Tor HIGH 7.5
CVE-2021-38385

Tor before 0.3.5.16, 0.4.5.10, and 0.4.6.7 mishandles the relationship between batch-signature verification and single-signature verification, leadin…

Fix: 0.3.5.16 / 0.4.5.10+
Fix from $1,950 2021-08-30
Lib60870 HIGH 7.5
CVE-2021-21778

A denial of service vulnerability exists in the ASDU message processing functionality of MZ Automation GmbH lib60870.NET 2.2.0. A specially crafted n…

No fix yet
Fix from $1,950 2021-08-25
Knot Resolver HIGH 7.5
CVE-2021-40083

Knot Resolver before 5.3.2 is prone to an assertion failure, triggerable by a remote attacker in an edge case (NSEC3 with too many iterations used fo…

Fix: 5.3.2+
Fix from $1,950 2021-08-25
Fedora HIGH 7.5
CVE-2021-25218

In BIND 9.16.19, 9.17.16. Also, version 9.16.19-S1 of BIND Supported Preview Edition When a vulnerable version of named receives a query under the ci…

Patch available
Fix from $1,950 2021-08-18
Live555 MEDIUM 5.5
CVE-2021-39283

liveMedia/FramedSource.cpp in Live555 through 1.08 allows an assertion failure and application exit via multiple SETUP and PLAY commands.

Fix: after 1.08
Fix from $1,600 2021-08-18
Tensorflow MEDIUM 5.5
CVE-2021-37644

TensorFlow is an end-to-end open source platform for machine learning. In affected versions providing a negative element to `num_elements` list argum…

Fix: 2.3.4 / 2.4.3+
Fix from $1,600 2021-08-12
Debian Linux HIGH 7.5
CVE-2021-38291

FFmpeg version (git commit de8e6e67e7523e48bb27ac224a0b446df05e1640) suffers from a an assertion failure at src/libavutil/mathematics.c.

Fix: 4.1.7 / 4.2.5+
Fix from $1,950 2021-08-12
Fedora MEDIUM 5.5
CVE-2021-32815

Exiv2 is a command-line utility and C++ library for reading, writing, deleting, and modifying the metadata of image files. The assertion failure is t…

Fix: after 0.27.4
Fix from $1,600 2021-08-09
Asterisk MEDIUM 6.5
CVE-2021-31878

An issue was discovered in PJSIP in Asterisk before 16.19.1 and before 18.5.1. To exploit, a re-INVITE without SDP must be received after Asterisk ha…

Patch available
Fix from $1,600 2021-07-30