Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Out-of-bounds WriteCWE-787 × clear
Ar8035 Firmware HIGH 7.8
CVE-2023-28574

Memory corruption in core services when Diag handler receives a command to configure event listeners.

No fix yet
Fix from $1,950 2023-11-07
Apq8017 Firmware HIGH 7.8
CVE-2023-33031

Memory corruption in Automotive Audio while copying data from ADSP shared buffer to the VOC packet data buffer.

Patch available
Fix from $1,950 2023-11-07
Ar8035 Firmware CRITICAL 9.8
CVE-2023-33045

Memory corruption in WLAN Firmware while parsing a NAN management frame carrying a S3 attribute.

Mitigation only
Fix from $2,300 2023-11-07
315 5g Iot Modem Firmware CRITICAL 9.8
CVE-2023-22388

Memory Corruption in Multi-mode Call Processor while processing bit mask API.

Mitigation only
Fix from $2,300 2023-11-07
315 5g Iot Modem Firmware HIGH 7.8
CVE-2023-24852

Memory Corruption in Core due to secure memory access by user while loading modem image.

Mitigation only
Fix from $1,950 2023-11-07
315 5g Iot Modem Firmware HIGH 7.8
CVE-2023-28545

Memory corruption in TZ Secure OS while loading an app ELF.

Mitigation only
Fix from $1,950 2023-11-07
Redisgraph HIGH 8.8
CVE-2023-47004

Buffer Overflow vulnerability in Redis RedisGraph v.2.x through v.2.12.8 and fixed in v.2.12.9 allows an attacker to execute arbitrary code via the c…

Fix: 2.12.9+
Fix from $1,950 2023-11-06
Exiv2 HIGH 8.8
CVE-2023-44398

Exiv2 is a C++ library and a command-line utility to read, write, delete and modify Exif, IPTC, XMP and ICC image metadata. An out-of-bounds write wa…

Patch available
Fix from $1,950 2023-11-06
Android MEDIUM 6.7
CVE-2023-32838

In dpe, there is a possible out of bounds write due to a missing valid range checking. This could lead to local escalation of privilege with System e…

Mitigation only
Fix from $1,600 2023-11-06
Android MEDIUM 6.7
CVE-2023-32839

In dpe, there is a possible out of bounds write due to a missing valid range checking. This could lead to local escalation of privilege with System e…

Mitigation only
Fix from $1,600 2023-11-06
Lr12a MEDIUM 6.5
CVE-2023-32840

In modem CCCI, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System ex…

Mitigation only
Fix from $1,600 2023-11-06
Android HIGH 7.0
CVE-2023-32832

In video, there is a possible memory corruption due to a race condition. This could lead to local escalation of privilege with no additional executio…

No fix yet
Fix from $1,950 2023-11-06
Android MEDIUM 6.7
CVE-2023-32836

In display, there is a possible out of bounds write due to an integer overflow. This could lead to local escalation of privilege with System executio…

Mitigation only
Fix from $1,600 2023-11-06
Android HIGH 7.8
CVE-2023-32837

In video, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with no additional …

No fix yet
Fix from $1,950 2023-11-06
Demoiccmax MEDIUM 6.5
CVE-2023-47249

In International Color Consortium DemoIccMAX 79ecb74, a CIccXmlArrayType:::ParseText function (for unsigned short) in IccUtilXml.cpp in libIccXML.a h…

No fix yet
Fix from $1,600 2023-11-05
Insydeh2o HIGH 7.8
CVE-2023-39283

An SMM memory corruption vulnerability in the SMM driver (SMRAM write) in CsmInt10HookSmm in Insyde InsydeH2O with kernel 5.0 through 5.5 allows atta…

Fix: after 5.5
Fix from $1,950 2023-11-02
PHP MEDIUM 5.5
CVE-2022-4900

A vulnerability was found in PHP where setting the environment variable PHP_CLI_SERVER_WORKERS to a large value leads to a heap buffer overflow.

Fix: 8.0.22+
Fix from $1,600 2023-11-02
Enterprise Linux MEDIUM 5.5
CVE-2023-3164

A heap-buffer-overflow vulnerability was found in LibTIFF, in extractImageSection() at tools/tiffcrop.c:7916 and tools/tiffcrop.c:7801. This flaw all…

Fix: 4.6.0+
Fix from $1,600 2023-11-02
Insydeh2o CRITICAL 9.8
CVE-2023-39281

A stack buffer overflow vulnerability discovered in AsfSecureBootDxe in Insyde InsydeH2O with kernel 5.0 through 5.5 allows attackers to run arbitrar…

Mitigation only
Fix from $2,300 2023-11-01
Gpac MEDIUM 5.5
CVE-2023-46927

GPAC 2.3-DEV-rev605-gfc9e29089-master contains a heap-buffer-overflow in gf_isom_use_compact_size gpac/src/isomedia/isom_write.c:3403:3 in gpac/MP4Bo…

Patch available
Fix from $1,600 2023-11-01
Gpac MEDIUM 5.5
CVE-2023-46928

GPAC 2.3-DEV-rev605-gfc9e29089-master contains a SEGV in gpac/MP4Box in gf_media_change_pl /afltest/gpac/src/media_tools/isom_tools.c:3293:42.

Patch available
Fix from $1,600 2023-11-01
Gpac MEDIUM 5.5
CVE-2023-46930

GPAC 2.3-DEV-rev605-gfc9e29089-master contains a SEGV in gpac/MP4Box in gf_isom_find_od_id_for_track /afltest/gpac/src/isomedia/media_odf.c:522:14.

Patch available
Fix from $1,600 2023-11-01
Gpac MEDIUM 5.5
CVE-2023-46931

GPAC 2.3-DEV-rev605-gfc9e29089-master contains a heap-buffer-overflow in ffdmx_parse_side_data /afltest/gpac/src/filters/ff_dmx.c:202:14 in gpac/MP4B…

Patch available
Fix from $1,600 2023-11-01
Android MEDIUM 5.5
CVE-2023-42653

In faceid service, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service with no addition…

Mitigation only
Fix from $1,600 2023-11-01
Android MEDIUM 5.5
CVE-2022-48454

In wifi service, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service with no additional…

Mitigation only
Fix from $1,600 2023-11-01
Android MEDIUM 5.5
CVE-2022-48455

In wifi service, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service with no additional…

Mitigation only
Fix from $1,600 2023-11-01
Px4 Drone Autopilot CRITICAL 9.8
CVE-2023-46256

PX4-Autopilot provides PX4 flight control solution for drones. In versions 1.14.0-rc1 and prior, PX4-Autopilot has a heap buffer overflow vulnerabili…

Fix: after 1.13.3
Fix from $2,300 2023-10-31
Lr1200gb Firmware CRITICAL 9.8
CVE-2023-46977EPSS 9%

TOTOLINK LR1200GB V9.1.0u.6619_B20230130 was discovered to contain a stack overflow via the password parameter in the function loginAuth.

No fix yet
Fix from $2,300 2023-10-31
Android MEDIUM 6.7
CVE-2023-21380

In Bluetooth, there is a possible out of bounds write due to a heap buffer overflow. This could lead to local escalation of privilege with System exe…

Fix: 14.0+
Fix from $1,600 2023-10-30
Android MEDIUM 5.5
CVE-2023-21385

In Whitechapel, there is a possible out of bounds read due to memory corruption. This could lead to local information disclosure with no additional e…

Fix: 14.0+
Fix from $1,600 2023-10-30