Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Out-of-bounds WriteCWE-787 × clear
Audition HIGH 7.8
CVE-2024-39378

Audition versions 24.4.1, 23.6.6 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in th…

Fix: after 24.4.1
Fix from $1,950 2024-09-11
Chrome HIGH 8.8
CVE-2024-8636

Heap buffer overflow in Skia in Google Chrome prior to 128.0.6613.137 allowed a remote attacker to potentially exploit heap corruption via a crafted …

Fix: 128.0.6613.137+
Fix from $1,950 2024-09-11
Android HIGH 7.8
CVE-2024-31336

In PVRSRVBridgeRGXKickTA3D2 of server_rgxta3d_bridge.c, there is a possible arbitrary code execution due to improper input validation. This could lea…

Mitigation only
Fix from $1,950 2024-09-11
Android HIGH 7.8
CVE-2024-40658

In getConfig of SoftVideoDecoderOMXComponent.cpp, there is a possible out of bounds write due to a heap buffer overflow. This could lead to local esc…

Patch available
Fix from $1,950 2024-09-11
Exynos 980 Firmware MEDIUM 5.5
CVE-2024-27365

An issue was discovered in Samsung Mobile Processor Exynos Exynos 980, Exynos 850, Exynos 1080, Exynos 1280, Exynos 1380, Exynos 1330, Exynos 1480, E…

Mitigation only
Fix from $1,600 2024-09-09
Exynos 980 Firmware HIGH 7.8
CVE-2024-27383

An issue was discovered in Samsung Mobile Processor Exynos 980, Exynos 850, Exynos 1280, Exynos 1380, and Exynos 1330. In the function slsi_get_scan_…

Mitigation only
Fix from $1,950 2024-09-09
Exynos 1080 Firmware HIGH 7.8
CVE-2024-27387

An issue was discovered in Samsung Mobile Processor Exynos 980, Exynos 850, Exynos 1280, Exynos 1380, and Exynos 1330. In the function slsi_rx_range_…

Mitigation only
Fix from $1,950 2024-09-09
Di 8100 Firmware HIGH 7.5
CVE-2024-44375

D-Link DI-8100 v16.07.26A1 has a stack overflow vulnerability in the dbsrv_asp function.

No fix yet
Fix from $1,950 2024-09-09
Linux Kernel HIGH 7.8
CVE-2023-52916

In the Linux kernel, the following vulnerability has been resolved: media: aspeed: Fix memory overwrite if timing is 1600x900 When capturing 1600x9…

Fix: 6.1.120 / 6.6+
Fix from $1,950 2024-09-06
FreeBSD HIGH 8.2
CVE-2024-32668

An insufficient boundary validation in the USB code could lead to an out-of-bounds write on the heap, with data controlled by the caller. A maliciou…

Fix: 13.3+
Fix from $1,950 2024-09-05
Unclassified HIGH 8.4
CVE-2024-45288

A missing null-termination character in the last element of an nvlist array string can lead to writing outside the allocated buffer.

Mitigation only
Fix from $1,950 2024-09-05
Unclassified HIGH 8.4
CVE-2024-41928

Malicious software running in a guest VM can exploit the buffer overflow to achieve code execution on the host in the bhyve userspace process, which …

Mitigation only
Fix from $1,950 2024-09-05
Mx500 Firmware MEDIUM 6.7
CVE-2024-42642

Micron Crucial MX500 Series Solid State Drives M3CR046 is vulnerable to Buffer Overflow, which can be triggered by sending specially crafted ATA pack…

No fix yet
Fix from $1,600 2024-09-04
Debian Linux HIGH 7.8
CVE-2024-44977

In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: Validate TA binary size Add TA binary size validation to avoid OOB …

Fix: 6.1.107 / 6.6.48+
Fix from $1,950 2024-09-04
Wrt54g Firmware CRITICAL 9.8
CVE-2024-8408

A vulnerability was found in Linksys WRT54G 4.21.5. It has been rated as critical. Affected by this issue is the function validate_services_port of t…

No fix yet
Fix from $2,300 2024-09-04
Notes CRITICAL 9.8
CVE-2024-34657

Stack-based out-of-bounds write in Samsung Notes prior to version 4.4.21.62 allows remote attackers to execute arbitrary code.

Fix: 4.4.21.62+
Fix from $2,300 2024-09-04
Notes HIGH 7.8
CVE-2024-34660

Heap-based out-of-bounds write in Samsung Notes prior to version 4.4.21.62 allows local attackers to execute arbitrary code.

Fix: 4.4.21.62+
Fix from $1,950 2024-09-04
Chrome HIGH 8.8
CVE-2024-7970

Out of bounds write in V8 in Google Chrome prior to 128.0.6613.119 allowed a remote attacker to potentially exploit heap corruption via a crafted HTM…

Fix: 128.0.6613.119+
Fix from $1,950 2024-09-03
Firefox CRITICAL 9.8
CVE-2024-8389

Memory safety bugs present in Firefox 129. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of the…

Mitigation only
Fix from $2,300 2024-09-03
Firefox CRITICAL 9.8
CVE-2024-8384

The JavaScript garbage collector could mis-color cross-compartment objects if OOM conditions were detected at the right point between two passes. Thi…

Fix: 115.15 / 128.2+
Fix from $2,300 2024-09-03
Firefox CRITICAL 9.8
CVE-2024-8387

Memory safety bugs present in Firefox 129, Firefox ESR 128.1, and Thunderbird 128.1. Some of these bugs showed evidence of memory corruption and we p…

Mitigation only
Fix from $2,300 2024-09-03
Vim MEDIUM 5.5
CVE-2024-45306

Vim is an open source, command line text editor. Patch v9.1.0038 optimized how the cursor position is calculated and removed a loop, that verified th…

Fix: 9.1.0707+
Fix from $1,600 2024-09-02
Apq8017 Firmware HIGH 7.8
CVE-2024-33052

Memory corruption when user provides data for FM HCI command control operations.

Patch available
Fix from $1,950 2024-09-02
Fastconnect 6700 Firmware HIGH 7.8
CVE-2024-33054

Memory corruption during the handshake between the Primary Virtual Machine and Trusted Virtual Machine.

Patch available
Fix from $1,950 2024-09-02
Fastconnect 6700 Firmware HIGH 7.8
CVE-2024-33038

Memory corruption while passing untrusted/corrupted pointers from DSP to EVA.

Patch available
Fix from $1,950 2024-09-02
Apq8017 Firmware HIGH 7.8
CVE-2024-33042

Memory corruption when Alternative Frequency offset value is set to 255.

Patch available
Fix from $1,950 2024-09-02
Ar8035 Firmware HIGH 7.8
CVE-2024-33045

Memory corruption when BTFM client sends new messages over Slimbus to ADSP.

Patch available
Fix from $1,950 2024-09-02
Openharmony HIGH 7.8
CVE-2024-39816

in OpenHarmony v4.1.0 and prior versions allow a local attacker arbitrary code execution in pre-installed apps through out-of-bounds write.

Fix: after 4.1
Fix from $1,950 2024-09-02
Android MEDIUM 6.7
CVE-2024-20086

In vdec, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System executio…

Mitigation only
Fix from $1,600 2024-09-02
Android MEDIUM 6.7
CVE-2024-20087

In vdec, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System executio…

Mitigation only
Fix from $1,600 2024-09-02