Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Out-of-bounds WriteCWE-787 × clear
Parsson HIGH 7.5
CVE-2023-7272

In Eclipse Parsson before 1.0.4 and 1.1.3, a document with a large depth of nested objects can allow an attacker to cause a Java stack overflow excep…

Fix: 1.0.4 / 1.1.3+
Fix from $1,950 2024-07-17
Chrome HIGH 8.8
CVE-2024-3176

Out of bounds write in SwiftShader in Google Chrome prior to 117.0.5938.62 allowed a remote attacker to perform an out of bounds memory write via a c…

Fix: 117.0.5938.62+
Fix from $1,950 2024-07-16
Weblogic Server CRITICAL 9.1
CVE-2024-21175

Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Core). Supported versions that are affected are 12.2.1.4…

Mitigation only
Fix from $2,300 2024-07-16
Chrome CRITICAL 9.6
CVE-2024-6779EPSS 6%

Out of bounds memory access in V8 in Google Chrome prior to 126.0.6478.182 allowed a remote attacker to potentially perform a sandbox escape via a cr…

Fix: 126.0.6478.182+
Fix from $2,300 2024-07-16
Chrome HIGH 8.8
CVE-2024-6772

Inappropriate implementation in V8 in Google Chrome prior to 126.0.6478.182 allowed a remote attacker to perform out of bounds memory access via a cr…

Fix: 126.0.6478.182+
Fix from $1,950 2024-07-16
Chrome HIGH 8.8
CVE-2024-6773

Inappropriate implementation in V8 in Google Chrome prior to 126.0.6478.182 allowed a remote attacker to potentially exploit heap corruption via a cr…

Fix: 126.0.6478.182+
Fix from $1,950 2024-07-16
Open5gs CRITICAL 9.8
CVE-2024-40129

Open5GS v2.6.4 is vulnerable to Buffer Overflow. via /lib/pfcp/context.c.

Patch available
Fix from $2,300 2024-07-16
Open5gs CRITICAL 9.8
CVE-2024-40130

open5gs v2.6.4 is vulnerable to Buffer Overflow. via /lib/core/abts.c.

Patch available
Fix from $2,300 2024-07-16
Ac18 Firmware CRITICAL 9.8
CVE-2024-33180

Tenda AC18 V15.03.3.10_EN was discovered to contain a stack-based buffer overflow vulnerability via the deviceId parameter at ip/goform/saveParentCon…

No fix yet
Fix from $2,300 2024-07-16
Ac18 Firmware CRITICAL 9.8
CVE-2024-33182

Tenda AC18 V15.03.3.10_EN was discovered to contain a stack-based buffer overflow vulnerability via the deviceId parameter at ip/goform/addWifiMacFil…

No fix yet
Fix from $2,300 2024-07-16
Linux Kernel HIGH 7.8
CVE-2022-48847

In the Linux kernel, the following vulnerability has been resolved: watch_queue: Fix filter limit check In watch_queue_set_filter(), there are a co…

Fix: 5.10.106 / 5.15.29+
Fix from $1,950 2024-07-16
Ax1806 Firmware CRITICAL 9.8
CVE-2024-40415

A vulnerability in /goform/SetStaticRouteCfg in the sub_519F4 function in Tenda AX1806 1.0.0.1 firmware leads to stack-based buffer overflow.

Mitigation only
Fix from $2,300 2024-07-15
Ax1806 Firmware CRITICAL 9.8
CVE-2024-40416

A vulnerability in /goform/SetVirtualServerCfg in the sub_6320C function in Tenda AX1806 1.0.0.1 firmware leads to stack-based buffer overflow.

Mitigation only
Fix from $2,300 2024-07-15
Ax1806 Firmware CRITICAL 9.8
CVE-2024-40414

A vulnerability in /goform/SetNetControlList in the sub_656BC function in Tenda AX1806 1.0.0.1 firmware leads to stack-based buffer overflow.

Mitigation only
Fix from $2,300 2024-07-15
Secure Email Gateway CRITICAL 9.8
CVE-2024-6744

The SMTP Listener of Secure Email Gateway from Cellopoint does not properly validate user input, leading to a Buffer Overflow vulnerability. An unaut…

Fix: 4.5.0+
Fix from $2,300 2024-07-15
Linux Kernel HIGH 7.8
CVE-2024-41003

In the Linux kernel, the following vulnerability has been resolved: bpf: Fix reg_set_min_max corruption of fake_reg Juan reported that after doing …

Fix: 6.9.7+
Fix from $1,950 2024-07-12
Linux Kernel MEDIUM 5.5
CVE-2024-40987

In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: fix UBSAN warning in kv_dpm.c Adds bounds check for sumo_vid_mappin…

Fix: 4.19.317 / 5.4.279+
Fix from $1,600 2024-07-12
Linux Kernel HIGH 7.8
CVE-2024-40974

In the Linux kernel, the following vulnerability has been resolved: powerpc/pseries: Enforce hcall result buffer validity and size plpar_hcall(), p…

Fix: 4.19.317 / 5.4.279+
Fix from $1,950 2024-07-12
Linux Kernel MEDIUM 5.5
CVE-2024-40955

In the Linux kernel, the following vulnerability has been resolved: ext4: fix slab-out-of-bounds in ext4_mb_find_good_group_avg_frag_lists() We can…

Fix: 6.6.36 / 6.9.7+
Fix from $1,600 2024-07-12
Linux Kernel HIGH 7.8
CVE-2024-40901

In the Linux kernel, the following vulnerability has been resolved: scsi: mpt3sas: Avoid test/set_bit() operating in non-allocated memory There is …

Fix: 4.19.317 / 5.4.279+
Fix from $1,950 2024-07-12
Ecostruxure Foxboro Dcs Control Core Services HIGH 7.1
CVE-2024-5679

CWE-787: Out-of-Bounds Write vulnerability exists that could cause local denial-of-service, or kernel memory leak when a malicious actor with local u…

Fix: after 9.8
Fix from $1,950 2024-07-11
Junos HIGH 7.0
CVE-2024-39556

A Stack-Based Buffer Overflow vulnerability in Juniper Networks Junos OS and Juniper Networks Junos OS Evolved may allow a local, low-privileged atta…

Fix: 21.4+
Fix from $1,950 2024-07-10
Junos HIGH 7.5
CVE-2024-39518

A Heap-based Buffer Overflow vulnerability in the telemetry sensor process (sensord) of Juniper Networks Junos OS on MX240, MX480, MX960 platforms us…

Mitigation only
Fix from $1,950 2024-07-10
Unclassified HIGH 8.2
CVE-2024-39927

Out-of-bounds write vulnerability exists in Ricoh MFPs and printers. If a remote attacker sends a specially crafted request to the affected products,…

Mitigation only
Fix from $1,950 2024-07-10
Edge Gateway 3200 Firmware HIGH 8.2
CVE-2023-32472

Dell Edge Gateway BIOS, versions 3200 and 5200, contains an out-of-bounds write vulnerability. A local authenticated malicious user with high privile…

Fix: 1.05.10+
Fix from $1,950 2024-07-10
Cncsoft G2 HIGH 8.8
CVE-2024-39883

Delta Electronics CNCSoft-G2 lacks proper validation of the length of user-supplied data prior to copying it to a fixed-length heap-based buffer. If …

No fix yet
Fix from $1,950 2024-07-09
Cncsoft G2 HIGH 8.8
CVE-2024-39880

Delta Electronics CNCSoft-G2 lacks proper validation of the length of user-supplied data prior to copying it to a fixed-length stack-based buffer. If…

Mitigation only
Fix from $1,950 2024-07-09
Cncsoft G2 HIGH 8.8
CVE-2024-39881

Delta Electronics CNCSoft-G2 lacks proper validation of user-supplied data, which can result in a memory corruption condition. If a target visits a m…

Mitigation only
Fix from $1,950 2024-07-09
Android HIGH 7.8
CVE-2024-23698

In RGXFWChangeOSidPriority of rgxfwutils.c, there is a possible arbitrary code execution due to a missing bounds check. This could lead to local esca…

Mitigation only
Fix from $1,950 2024-07-09
Android HIGH 7.8
CVE-2024-31311

In increment_annotation_count of stats_event.c, there is a possible out of bounds write due to a missing bounds check. This could lead to local escal…

Patch available
Fix from $1,950 2024-07-09