Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Out-of-bounds WriteCWE-787 × clear
Android HIGH 8.8
CVE-2023-21356

In Bluetooth, there is a possible out of bounds write due to a missing bounds check. This could lead to remote (proximal/adjacent) code execution wit…

Mitigation only
Fix from $1,950 2023-10-30
Android MEDIUM 6.7
CVE-2023-21360

In Bluetooth, there is a possible out of bounds write due to improper input validation. This could lead to local escalation of privilege with System …

Mitigation only
Fix from $1,600 2023-10-30
Android MEDIUM 6.7
CVE-2023-21310

In Bluetooth, there is a possible out of bounds write due to a heap buffer overflow. This could lead to local escalation of privilege with System exe…

Fix: 14.0+
Fix from $1,600 2023-10-30
Demoiccmax MEDIUM 6.5
CVE-2023-46866

In International Color Consortium DemoIccMAX 79ecb74, CIccCLUT::Interp3d in IccProfLib/IccTagLut.cpp in libSampleICC.a attempts to access array eleme…

Patch available
Fix from $1,600 2023-10-30
Android HIGH 7.8
CVE-2023-40128

In several functions of xmlregexp.c, there is a possible out of bounds write due to a heap buffer overflow. This could lead to local escalation of pr…

Patch available
Fix from $1,950 2023-10-27
Android HIGH 8.8
CVE-2023-40129

In build_read_multi_rsp of gatt_sr.cc, there is a possible out of bounds write due to a heap buffer overflow. This could lead to remote (proximal/adj…

Patch available
Fix from $1,950 2023-10-27
Gm265dn Firmware HIGH 8.8
CVE-2022-34886

A remote code execution vulnerability was found in the firmware used in some Lenovo printers, which can be caused by a remote user pushing an illegal…

Fix: 02.06.00.04.00+
Fix from $1,950 2023-10-27
Cobalt HIGH 7.8
CVE-2023-39427

In Ashlar-Vellum Cobalt, Xenon, Argon, Lithium, and Cobalt Share v12 SP0 Build (1204.77), the affected applications lack proper validation of user-su…

Fix: 12.4.1204.200+
Fix from $1,950 2023-10-26
Elasticsearch HIGH 7.5
CVE-2023-31419EPSS 61%

A flaw was discovered in Elasticsearch, affecting the _search API that allowed a specially crafted query string to cause a Stack Overflow and ultimat…

Fix: after 8.9.0
Fix from $1,950 2023-10-26
Enterprise Linux HIGH 7.8
CVE-2023-5367

A out-of-bounds write flaw was found in the xorg-x11-server. This issue occurs due to an incorrect calculation of a buffer offset when copying data s…

Patch available
Fix from $1,950 2023-10-25
Firefox CRITICAL 9.8
CVE-2023-5730

Memory safety bugs present in Firefox 118, Firefox ESR 115.3, and Thunderbird 115.3. Some of these bugs showed evidence of memory corruption and we p…

Fix: 115.4 / 115.4.1+
Fix from $2,300 2023-10-25
Firefox CRITICAL 9.8
CVE-2023-5731

Memory safety bugs present in Firefox 118. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of the…

Fix: 119.0+
Fix from $2,300 2023-10-25
Samba MEDIUM 6.5
CVE-2023-5568

A heap-based Buffer Overflow flaw was discovered in Samba. It could allow a remote, authenticated attacker to exploit this vulnerability to cause a d…

Fix: 4.19.2+
Fix from $1,600 2023-10-25
Linux Kernel HIGH 7.8
CVE-2023-5717

A heap out-of-bounds write vulnerability in the Linux kernel's Linux Kernel Performance Events (perf) component can be exploited to achieve local pri…

Fix: 3.3 / 3.17+
Fix from $1,950 2023-10-25
Enterprise Linux HIGH 7.8
CVE-2023-4692

An out-of-bounds write flaw was found in grub2's NTFS filesystem driver. This issue may allow an attacker to present a specially crafted NTFS filesys…

Fix: 2.12+
Fix from $1,950 2023-10-25
X2000r Firmware CRITICAL 9.8
CVE-2023-46548

TOTOLINK X2000R Gh v1.0.0-B20230221.0948.web was discovered to contain a stack overflow via the function formWlanRedirect.

No fix yet
Fix from $2,300 2023-10-25
X2000r Firmware CRITICAL 9.8
CVE-2023-46549

TOTOLINK X2000R Gh v1.0.0-B20230221.0948.web was discovered to contain a stack overflow via the function formSetLg.

No fix yet
Fix from $2,300 2023-10-25
X2000r Firmware CRITICAL 9.8
CVE-2023-46550

TOTOLINK X2000R Gh v1.0.0-B20230221.0948.web was discovered to contain a stack overflow via the function formMapDelDevice.

No fix yet
Fix from $2,300 2023-10-25
X2000r Firmware CRITICAL 9.8
CVE-2023-46551

TOTOLINK X2000R Gh v1.0.0-B20230221.0948.web was discovered to contain a stack overflow via the function formReflashClientTbl.

No fix yet
Fix from $2,300 2023-10-25
X2000r Firmware CRITICAL 9.8
CVE-2023-46552

TOTOLINK X2000R Gh v1.0.0-B20230221.0948.web was discovered to contain a stack overflow via the function formMultiAP.

No fix yet
Fix from $2,300 2023-10-25
X2000r Firmware CRITICAL 9.8
CVE-2023-46553

TOTOLINK X2000R Gh v1.0.0-B20230221.0948.web was discovered to contain a stack overflow via the function formParentControl.

No fix yet
Fix from $2,300 2023-10-25
X2000r Firmware CRITICAL 9.8
CVE-2023-46554

TOTOLINK X2000R Gh v1.0.0-B20230221.0948.web was discovered to contain a stack overflow via the function formMapDel.

No fix yet
Fix from $2,300 2023-10-25
X2000r Firmware CRITICAL 9.8
CVE-2023-46555

TOTOLINK X2000R Gh v1.0.0-B20230221.0948.web was discovered to contain a stack overflow via the function formPortFw.

No fix yet
Fix from $2,300 2023-10-25
X2000r Firmware CRITICAL 9.8
CVE-2023-46556

TOTOLINK X2000R Gh v1.0.0-B20230221.0948.web was discovered to contain a stack overflow via the function formFilter.

No fix yet
Fix from $2,300 2023-10-25
X2000r Firmware CRITICAL 9.8
CVE-2023-46557

TOTOLINK X2000R Gh v1.0.0-B20230221.0948.web was discovered to contain a stack overflow via the function formMultiAPVLAN.

No fix yet
Fix from $2,300 2023-10-25
X2000r Firmware CRITICAL 9.8
CVE-2023-46558

TOTOLINK X2000R Gh v1.0.0-B20230221.0948.web was discovered to contain a stack overflow via the function formMapDelDevice.

No fix yet
Fix from $2,300 2023-10-25
X2000r Firmware CRITICAL 9.8
CVE-2023-46559

TOTOLINK X2000R Gh v1.0.0-B20230221.0948.web was discovered to contain a stack overflow via the function formIPv6Addr.

No fix yet
Fix from $2,300 2023-10-25
X2000r Firmware CRITICAL 9.8
CVE-2023-46560

TOTOLINK X2000R Gh v1.0.0-B20230221.0948.web was discovered to contain a stack overflow via the function formTcpipSetup.

No fix yet
Fix from $2,300 2023-10-25
X2000r Firmware CRITICAL 9.8
CVE-2023-46562

TOTOLINK X2000R Gh v1.0.0-B20230221.0948.web was discovered to contain a stack overflow via the function formDosCfg.

No fix yet
Fix from $2,300 2023-10-25
X2000r Firmware CRITICAL 9.8
CVE-2023-46563

TOTOLINK X2000R Gh v1.0.0-B20230221.0948.web was discovered to contain a stack overflow via the function formIpQoS.

No fix yet
Fix from $2,300 2023-10-25