Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Out-of-bounds WriteCWE-787 × clear
Exynos 980 Firmware HIGH 7.8
CVE-2024-27370

An issue was discovered in Samsung Mobile Processor Exynos 980, Exynos 850, Exynos 1280, Exynos 1380, and Exynos 1330. In the function slsi_nan_confi…

Mitigation only
Fix from $1,950 2024-06-05
Exynos 980 Firmware HIGH 7.8
CVE-2024-27371

An issue was discovered in Samsung Mobile Processor Exynos 980, Exynos 850, Exynos 1280, Exynos 1380, and Exynos 1330. In the function slsi_nan_follo…

Mitigation only
Fix from $1,950 2024-06-05
Exynos 980 Firmware HIGH 7.8
CVE-2024-27372

An issue was discovered in Samsung Mobile Processor Exynos 980, Exynos 850, Exynos 1280, Exynos 1380, and Exynos 1330. In the function slsi_nan_confi…

Mitigation only
Fix from $1,950 2024-06-05
Envoy MEDIUM 6.5
CVE-2024-34364

Envoy is a cloud-native, open source edge and service proxy. Envoy exposed an out-of-memory (OOM) vector from the mirror response, since async HTTP c…

Fix: 1.27.6 / 1.28.4+
Fix from $1,600 2024-06-04
Android MEDIUM 6.8
CVE-2024-20880

Stack-based buffer overflow vulnerability in bootloader prior to SMR Jun-2024 Release 1 allows physical attackers to overwrite memory.

Mitigation only
Fix from $1,600 2024-06-04
Android HIGH 7.8
CVE-2024-20877

Heap out-of-bound write vulnerability in parsing grid image header in libsavscmn.so prior to SMR Jun-2024 Release 1 allows local attackers to execute…

Mitigation only
Fix from $1,950 2024-06-04
Android HIGH 7.8
CVE-2024-20878

Heap out-of-bound write vulnerability in parsing grid image in libsavscmn.so prior to SMR June-2024 Release 1 allows local attackers to execute arbit…

Mitigation only
Fix from $1,950 2024-06-04
Android MEDIUM 6.0
CVE-2024-20873

Improper input validation vulnerability in caminfo driver prior to SMR Jun-2024 Release 1 allows local privileged attackers to write out-of-bounds me…

Mitigation only
Fix from $1,600 2024-06-04
Software Development Kit MEDIUM 6.6
CVE-2024-20072

In wlan driver, there is a possible out of bounds write due to improper input validation. This could lead to local escalation of privilege with Syste…

Fix: after 5.0.5.0
Fix from $1,600 2024-06-03
Software Development Kit MEDIUM 6.6
CVE-2024-20073

In wlan service, there is a possible out of bounds write due to improper input validation. This could lead to local escalation of privilege with Syst…

Fix: after 5.0.5.0
Fix from $1,600 2024-06-03
Android MEDIUM 6.6
CVE-2024-20074

In dmc, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution…

Mitigation only
Fix from $1,600 2024-06-03
Android MEDIUM 6.7
CVE-2024-20075

In eemgpu, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execut…

Mitigation only
Fix from $1,600 2024-06-03
Nr16 HIGH 7.5
CVE-2024-20066

In modem, there is a possible out of bounds write due to an incorrect bounds check. This could lead to remote denial of service with no additional ex…

Mitigation only
Fix from $1,950 2024-06-03
Nr16 CRITICAL 9.8
CVE-2024-20067

In modem, there is a possible out of bounds write due to improper input invalidation. This could lead to remote denial of service with no additional …

Mitigation only
Fix from $2,300 2024-06-03
Nr16 MEDIUM 5.9
CVE-2024-20068

In modem, there is a possible system crash due to improper input validation. This could lead to remote denial of service with no additional execution…

Mitigation only
Fix from $1,600 2024-06-03
Chrome HIGH 8.8
CVE-2024-5493

Heap buffer overflow in WebRTC in Google Chrome prior to 125.0.6422.141 allowed a remote attacker to potentially exploit heap corruption via a crafte…

Fix: 125.0.6422.141+
Fix from $1,950 2024-05-30
Chrome HIGH 8.8
CVE-2024-5497

Out of bounds memory access in Browser UI in Google Chrome prior to 125.0.6422.141 allowed a remote attacker who convinced a user to engage in specif…

Fix: 125.0.6422.141+
Fix from $1,950 2024-05-30
Chrome HIGH 8.8
CVE-2024-5499

Out of bounds write in Streams API in Google Chrome prior to 125.0.6422.141 allowed a remote attacker to execute arbitrary code inside a sandbox via …

Fix: 125.0.6422.141+
Fix from $1,950 2024-05-30
Linux Kernel HIGH 7.8
CVE-2024-36934

In the Linux kernel, the following vulnerability has been resolved: bna: ensure the copied buf is NUL terminated Currently, we allocate a nbytes-si…

Fix: 4.19.314 / 5.4.276+
Fix from $1,950 2024-05-30
Linux Kernel HIGH 7.8
CVE-2024-36906

In the Linux kernel, the following vulnerability has been resolved: ARM: 9381/1: kasan: clear stale stack poison We found below OOB crash: [ 33.…

Fix: 5.15.159 / 6.1.91+
Fix from $1,950 2024-05-30
Linux Kernel HIGH 7.8
CVE-2024-36895

In the Linux kernel, the following vulnerability has been resolved: usb: gadget: uvc: use correct buffer size when parsing configfs lists This comm…

Fix: 6.6.31 / 6.8.10+
Fix from $1,950 2024-05-30
Linux Kernel MEDIUM 5.5
CVE-2024-36018

In the Linux kernel, the following vulnerability has been resolved: nouveau/uvmm: fix addr/range calcs for remap operations dEQP-VK.sparse_resource…

Fix: 6.6.26 / 6.8.5+
Fix from $1,600 2024-05-30
Unclassified HIGH 8.6
CVE-2024-36114

Aircompressor is a library with ports of the Snappy, LZO, LZ4, and Zstandard compression algorithms to Java. All decompressor implementations of Airc…

Patch available
Fix from $1,950 2024-05-29
Nginx Open Source MEDIUM 6.5
CVE-2024-32760

When NGINX Plus or NGINX OSS are configured to use the HTTP/3 QUIC module, undisclosed HTTP/3 encoder instructions can cause NGINX worker processes t…

Fix: 1.26.1+
Fix from $1,600 2024-05-29
P3 550e Firmware CRITICAL 9.8
CVE-2024-24962

A stack-based buffer overflow vulnerability exists in the Programming Software Connection FileSelect functionality of AutomationDirect P3-550E 1.2.10…

No fix yet
Fix from $2,300 2024-05-28
P3 550e Firmware CRITICAL 9.8
CVE-2024-24963

A stack-based buffer overflow vulnerability exists in the Programming Software Connection FileSelect functionality of AutomationDirect P3-550E 1.2.10…

No fix yet
Fix from $2,300 2024-05-28
P3 550e Firmware HIGH 8.2
CVE-2024-24955

Several out-of-bounds write vulnerabilities exist in the Programming Software Connection FileSystem API functionality of AutomationDirect P3-550E 1.2…

No fix yet
Fix from $1,950 2024-05-28
P3 550e Firmware HIGH 8.2
CVE-2024-24956

Several out-of-bounds write vulnerabilities exist in the Programming Software Connection FileSystem API functionality of AutomationDirect P3-550E 1.2…

No fix yet
Fix from $1,950 2024-05-28
P3 550e Firmware HIGH 8.2
CVE-2024-24957

Several out-of-bounds write vulnerabilities exist in the Programming Software Connection FileSystem API functionality of AutomationDirect P3-550E 1.2…

No fix yet
Fix from $1,950 2024-05-28
P3 550e Firmware HIGH 8.2
CVE-2024-24958

Several out-of-bounds write vulnerabilities exist in the Programming Software Connection FileSystem API functionality of AutomationDirect P3-550E 1.2…

No fix yet
Fix from $1,950 2024-05-28