Vulnerability index

Browse CVEs

771 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Reachable AssertionCWE-617 × clear
Tensorflow MEDIUM 5.5
CVE-2021-29562

TensorFlow is an end-to-end open source platform for machine learning. An attacker can cause a denial of service by exploiting a `CHECK`-failure comi…

Fix: 2.1.4 / 2.2.3+
Fix from $1,600 2021-05-14
Tensorflow MEDIUM 5.5
CVE-2021-29563

TensorFlow is an end-to-end open source platform for machine learning. An attacker can cause a denial of service by exploiting a `CHECK`-failure comi…

Fix: 2.1.4 / 2.2.3+
Fix from $1,600 2021-05-14
Tensorflow MEDIUM 5.5
CVE-2021-29567

TensorFlow is an end-to-end open source platform for machine learning. Due to lack of validation in `tf.raw_ops.SparseDenseCwiseMul`, an attacker can…

Fix: 2.1.4 / 2.2.3+
Fix from $1,600 2021-05-14
Tensorflow MEDIUM 5.5
CVE-2021-29543

TensorFlow is an end-to-end open source platform for machine learning. An attacker can trigger a denial of service via a `CHECK`-fail in `tf.raw_ops.…

Fix: 2.1.4 / 2.2.3+
Fix from $1,600 2021-05-14
Avahi MEDIUM 5.5
CVE-2021-3502

A flaw was found in avahi 0.8-5. A reachable assertion is present in avahi_s_host_name_resolver_start function allowing a local attacker to crash the…

Patch available
Fix from $1,600 2021-05-07
Aqt1000 Firmware HIGH 7.5
CVE-2021-1925

Possible denial of service scenario due to improper handling of group management action frame in Snapdragon Auto, Snapdragon Compute, Snapdragon Conn…

Mitigation only
Fix from $1,950 2021-05-07
Aqt1000 Firmware HIGH 7.5
CVE-2020-11274

Denial of service in MODEM due to assert to the invalid configuration in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Con…

Mitigation only
Fix from $1,950 2021-05-07
Debian Linux HIGH 7.5
CVE-2021-25215EPSS 11%

In BIND 9.0.0 -> 9.11.29, 9.12.0 -> 9.16.13, and versions BIND 9.9.3-S1 -> 9.11.29-S1 and 9.16.8-S1 -> 9.16.13-S1 of BIND Supported Preview Edition, …

Fix: 9.11.31 / 9.16.15+
Fix from $1,950 2021-04-29
Debian Linux MEDIUM 6.5
CVE-2021-25214EPSS 6%

In BIND 9.8.5 -> 9.8.8, 9.9.3 -> 9.11.29, 9.12.0 -> 9.16.13, and versions BIND 9.9.3-S1 -> 9.11.29-S1 and 9.16.8-S1 -> 9.16.13-S1 of BIND 9 Supported…

Fix: 1.0.1.1 / 9.11.31+
Fix from $1,600 2021-04-29
Debian Linux HIGH 7.5
CVE-2019-25036

Unbound before 1.9.5 allows an assertion failure and denial of service in synth_cname. NOTE: The vendor disputes that this is a vulnerability. Althou…

Fix: 1.9.5+
Fix from $1,950 2021-04-27
Debian Linux HIGH 7.5
CVE-2019-25037

Unbound before 1.9.5 allows an assertion failure and denial of service in dname_pkt_copy via an invalid packet. NOTE: The vendor disputes that this i…

Fix: 1.9.5+
Fix from $1,950 2021-04-27
Debian Linux HIGH 7.5
CVE-2019-25041

Unbound before 1.9.5 allows an assertion failure via a compressed name in dname_pkt_copy. NOTE: The vendor disputes that this is a vulnerability. Alt…

Fix: 1.9.5+
Fix from $1,950 2021-04-27
Privoxy HIGH 7.5
CVE-2021-20217

A flaw was found in Privoxy in versions before 3.0.31. An assertion failure triggered by a crafted CGI request may lead to denial of service. The hig…

Fix: 3.0.31+
Fix from $1,950 2021-03-25
Fedora MEDIUM 5.3
CVE-2021-28090

Tor before 0.4.5.7 allows a remote attacker to cause Tor directory authorities to exit with an assertion failure, aka TROVE-2021-002.

Fix: 0.3.5.14 / 0.4.4.8+
Fix from $1,600 2021-03-19
Nbdkit MEDIUM 6.5
CVE-2019-14851

A denial of service vulnerability was discovered in nbdkit. A client issuing a certain sequence of commands could possibly trigger an assertion failu…

Fix: 1.12.7 / 1.14.1+
Fix from $1,600 2021-03-18
Apq8017 Firmware HIGH 7.5
CVE-2020-11218

Denial of service in baseband when NW configures LTE betaOffset-RI-Index due to lack of data validation in Snapdragon Auto, Snapdragon Compute, Snapd…

Mitigation only
Fix from $1,950 2021-03-17
Fedora HIGH 7.5
CVE-2021-28543

Varnish varnish-modules before 0.17.1 allows remote attackers to cause a denial of service (daemon restart) in some configurations. This does not aff…

Fix: 0.17.1+
Fix from $1,950 2021-03-16
Mvfst HIGH 7.5
CVE-2021-24029

A packet of death scenario is possible in mvfst via a specially crafted message during a QUIC session, which causes a crash via a failed assertion. P…

Fix: 2021-03-13 / 2021.03.15.00+
Fix from $1,950 2021-03-15
Debian Linux HIGH 7.5
CVE-2021-20272

A flaw was found in privoxy before 3.0.32. An assertion failure could be triggered with a crafted CGI request leading to server crash.

Fix: 3.0.32+
Fix from $1,950 2021-03-09
Firefox MEDIUM 6.5
CVE-2021-23970

Context-specific code was included in a shared jump table; resulting in assertions being triggered in multithreaded wasm code. This vulnerability aff…

Fix: 86.0+
Fix from $1,600 2021-02-26
Apq8009 Firmware HIGH 7.5
CVE-2020-11296

Arithmetic overflow can happen while processing NOA IE due to improper error handling in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity…

Mitigation only
Fix from $1,950 2021-02-22
Aqt1000 Firmware HIGH 7.5
CVE-2020-11278

Possible denial of service while handling host WMI command due to improper validation in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity…

Mitigation only
Fix from $1,950 2021-02-22
Aqt1000 Firmware HIGH 7.5
CVE-2020-11280

Denial of service while processing fine timing measurement request (FTMR) frame with reserved bits set in the FTM parameter IE due to improper error …

No fix yet
Fix from $1,950 2021-02-22
Debian Linux HIGH 7.5
CVE-2021-27212EPSS 64%

In OpenLDAP through 2.4.57 and 2.5.x through 2.5.1alpha, an assertion failure in slapd can occur in the issuerAndThisUpdateCheck function via a craft…

Fix: after 2.4.57
Fix from $1,950 2021-02-14
Debian Linux HIGH 7.5
CVE-2021-3326

The iconv function in the GNU C Library (aka glibc or libc6) 2.32 and earlier, when processing invalid input sequences in the ISO-2022-JP-3 encoding,…

Fix: after 11.60.3
Fix from $1,950 2021-01-27
Debian Linux HIGH 7.5
CVE-2020-36230EPSS 12%

A flaw was discovered in OpenLDAP before 2.4.57 leading in an assertion failure in slapd in the X.509 DN parsing in decode.c ber_next_element, result…

Fix: 2.4.57 / 10.14.6+
Fix from $1,950 2021-01-26
Debian Linux HIGH 7.5
CVE-2020-36222EPSS 78%

A flaw was discovered in OpenLDAP before 2.4.57 leading to an assertion failure in slapd in the saslAuthzTo validation, resulting in denial of servic…

Fix: 2.4.57 / 10.14.6+
Fix from $1,950 2021-01-26
Debian Linux MEDIUM 6.5
CVE-2020-27617

eth_get_gso_type in net/eth.c in QEMU 4.2.1 allows guest OS users to trigger an assertion failure. A guest can crash the QEMU process via packet data…

Patch available
Fix from $1,600 2020-11-06
Debian Linux HIGH 7.5
CVE-2020-27638

receive.c in fastd before v21 allows denial of service (assertion failure) when receiving packets with an invalid type code.

Fix: 21.0+
Fix from $1,950 2020-10-22
Junos Os Evolved MEDIUM 6.5
CVE-2020-1681

Receipt of a specifically malformed NDP packet sent from the local area network (LAN) to a device running Juniper Networks Junos OS Evolved can cause…

Mitigation only
Fix from $1,600 2020-10-16