Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Out-of-bounds WriteCWE-787 × clear
Linux Kernel HIGH 7.8
CVE-2023-52482

In the Linux kernel, the following vulnerability has been resolved: x86/srso: Add SRSO mitigation for Hygon processors Add mitigation for the specu…

Fix: 5.10.215 / 5.15.134+
Fix from $1,950 2024-02-29
Solidworks HIGH 7.8
CVE-2024-1847

Heap-based Buffer Overflow, Memory Corruption, Out-Of-Bounds Read, Out-Of-Bounds Write, Stack-based Buffer Overflow, Type Confusion, Uninitialized Va…

Fix: 2024+
Fix from $1,950 2024-02-28
Linux Kernel MEDIUM 5.5
CVE-2021-46931

In the Linux kernel, the following vulnerability has been resolved: net/mlx5e: Wrap the tx reporter dump callback to extract the sq Function mlx5e_…

Fix: 5.10.90 / 5.15.13+
Fix from $1,600 2024-02-27
Llama.cpp CRITICAL 9.8
CVE-2024-23605

A heap-based buffer overflow vulnerability exists in the GGUF library header.n_kv functionality of llama.cpp Commit 18c2e17. A specially crafted .ggu…

Fix: 2024-01-09+
Fix from $2,300 2024-02-26
Llama.cpp CRITICAL 9.8
CVE-2024-23496

A heap-based buffer overflow vulnerability exists in the GGUF library gguf_fread_str functionality of llama.cpp Commit 18c2e17. A specially crafted .…

Fix: 2024-01-09+
Fix from $2,300 2024-02-26
Llama.cpp CRITICAL 9.8
CVE-2024-21802

A heap-based buffer overflow vulnerability exists in the GGUF library info->ne functionality of llama.cpp Commit 18c2e17. A specially crafted .ggu…

Fix: 2024-01-09+
Fix from $2,300 2024-02-26
Llama.cpp CRITICAL 9.8
CVE-2024-21825

A heap-based buffer overflow vulnerability exists in the GGUF library GGUF_TYPE_ARRAY/GGUF_TYPE_STRING parsing functionality of llama.cpp Commit 18c2…

Fix: 2024-01-09+
Fix from $2,300 2024-02-26
Llama.cpp CRITICAL 9.8
CVE-2024-21836

A heap-based buffer overflow vulnerability exists in the GGUF library header.n_tensors functionality of llama.cpp Commit 18c2e17. A specially crafted…

Fix: 2024-01-09+
Fix from $2,300 2024-02-26
Linux Kernel MEDIUM 6.7
CVE-2024-26586

In the Linux kernel, the following vulnerability has been resolved: mlxsw: spectrum_acl_tcam: Fix stack corruption When tc filters are first added …

Fix: 5.10.209 / 5.15.148+
Fix from $1,600 2024-02-22
Autocad HIGH 7.8
CVE-2024-23124

A maliciously crafted STP file, when parsed in ASMIMPORT228A.dll through Autodesk AutoCAD, may force an Out-of-Bounds Write vulnerability. A maliciou…

Fix: 2021.1.4 / 2022.1.4+
Fix from $1,950 2024-02-22
Autocad Electrical HIGH 7.8
CVE-2024-23125

A maliciously crafted SLDPRT file when parsed ODXSW_DLL.dll through Autodesk applications can be used to cause a Stack-based Overflow. A malicious ac…

Fix: 2021.1.4 / 2022.1.4+
Fix from $1,950 2024-02-22
Autocad HIGH 7.8
CVE-2024-23126

A maliciously crafted CATPART file when parsed CC5Dll.dll through Autodesk applications can be used to cause a Stack-based Overflow. A malicious acto…

Fix: 2021.1.4 / 2022.1.4+
Fix from $1,950 2024-02-22
Autocad HIGH 7.8
CVE-2024-23127

A maliciously crafted MODEL, SLDPRT, or SLDASM file, when parsed in ODXSW_DLL.dll and libodxdll.dll through Autodesk applications, can be used to cau…

Fix: 2021.1.4 / 2022.1.4+
Fix from $1,950 2024-02-22
Autocad Electrical HIGH 7.8
CVE-2024-23121

A maliciously crafted MODEL file, when parsed in libodxdll.dll through Autodesk AutoCAD, may force an Out-of-Bounds Write vulnerability. A malicious …

Fix: 2021.1.4 / 2022.1.4+
Fix from $1,950 2024-02-22
Autocad Electrical HIGH 7.8
CVE-2024-23122

A maliciously crafted 3DM file, when parsed in opennurbs.dll through Autodesk AutoCAD, may force an Out-of-Bounds Write vulnerability. A malicious ac…

Fix: 2021.1.4 / 2022.1.4+
Fix from $1,950 2024-02-22
Autocad HIGH 7.8
CVE-2024-23123

A maliciously crafted CATPART file, when parsed in CC5Dll.dll and ASMBASE228A.dll through Autodesk AutoCAD, may force an Out-of-Bounds Write vulnerab…

Fix: 2021.1.4 / 2022.1.4+
Fix from $1,950 2024-02-22
Cinema 4d HIGH 7.0
CVE-2024-25423

An issue in MAXON CINEMA 4D R2024.2.0 allows a local attacker to execute arbitrary code via a crafted c4d_base.xdl64 file.

Mitigation only
Fix from $1,950 2024-02-22
Autocad HIGH 7.8
CVE-2024-23120

A maliciously crafted STP and STEP file, when parsed in ASMIMPORT228A.dll and ASMIMPORT229A.dll through Autodesk AutoCAD, may force an Out-of-Bounds …

Fix: 2021.1.4 / 2022.1.4+
Fix from $1,950 2024-02-22
Autocad HIGH 7.8
CVE-2024-0446

A maliciously crafted STP, CATPART or MODEL file, when parsed in ASMKERN228A.dll and ASMdatax229A.dll through Autodesk AutoCAD, may force an Out-of-B…

Fix: 2021.1.4 / 2022.1.4+
Fix from $1,950 2024-02-22
Ipad Os HIGH 7.8
CVE-2023-42848

The issue was addressed with improved bounds checks. This issue is fixed in watchOS 10.1, macOS Sonoma 14.1, tvOS 17.1, iOS 16.7.2 and iPadOS 16.7.2,…

Fix: 10.1 / 13.6.1+
Fix from $1,950 2024-02-21
Ipad Os HIGH 7.8
CVE-2023-42873

The issue was addressed with improved bounds checks. This issue is fixed in macOS Sonoma 14.1, tvOS 17.1, macOS Monterey 12.7.1, iOS 16.7.2 and iPadO…

Fix: 12.7.1 / 13.6.1+
Fix from $1,950 2024-02-21
Chrome HIGH 8.8
CVE-2024-1669

Out of bounds memory access in Blink in Google Chrome prior to 122.0.6261.57 allowed a remote attacker to perform out of bounds memory access via a c…

Fix: 122.0.6261.57+
Fix from $1,950 2024-02-21
Fedora CRITICAL 9.8
CVE-2024-23606

An out-of-bounds write vulnerability exists in the sopen_FAMOS_read functionality of The Biosig Project libbiosig 2.5.0 and Master Branch (ab0ee111).…

No fix yet
Fix from $2,300 2024-02-20
Fedora CRITICAL 9.8
CVE-2024-21795

A heap-based buffer overflow vulnerability exists in the .egi parsing functionality of The Biosig Project libbiosig 2.5.0 and Master Branch (ab0ee111…

No fix yet
Fix from $2,300 2024-02-20
Fedora CRITICAL 9.8
CVE-2024-23305

An out-of-bounds write vulnerability exists in the BrainVisionMarker Parsing functionality of The Biosig Project libbiosig 2.5.0 and Master Branch (a…

No fix yet
Fix from $2,300 2024-02-20
Gecko Software Development Kit CRITICAL 9.8
CVE-2023-45318

A heap-based buffer overflow vulnerability exists in the HTTP Server functionality of Weston Embedded uC-HTTP git commit 80d4004. A specially crafted…

No fix yet
Fix from $2,300 2024-02-20
Firefox HIGH 8.1
CVE-2024-1557

Memory safety bugs present in Firefox 122. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of the…

Fix: 123.0+
Fix from $1,950 2024-02-20
Qemu MEDIUM 6.0
CVE-2024-26328

An issue was discovered in QEMU 7.1.0 through 8.2.1. register_vfs in hw/pci/pcie_sriov.c does not set NumVFs to PCI_SRIOV_TOTAL_VF, and thus interact…

Fix: after 8.2.1
Fix from $1,600 2024-02-19
Qemu MEDIUM 5.3
CVE-2024-26327

An issue was discovered in QEMU 7.1.0 through 8.2.1. register_vfs in hw/pci/pcie_sriov.c mishandles the situation where a guest writes NumVFs greater…

Fix: after 8.2.1
Fix from $1,600 2024-02-19
Zephyr CRITICAL 9.8
CVE-2023-5779

can: out of bounds in remove_rx_filter function

Fix: after 3.5.0
Fix from $2,300 2024-02-18