Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Out-of-bounds WriteCWE-787 × clear
Android MEDIUM 6.4
CVE-2023-20785

In audio, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System executi…

Mitigation only
Fix from $1,600 2023-08-07
Android MEDIUM 6.7
CVE-2023-20786

In gps, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution…

Mitigation only
Fix from $1,600 2023-08-07
Android HIGH 7.2
CVE-2023-33913

In DRM/oemcrypto, there is a possible out of bounds write due to an incorrect calculation of buffer size.This could lead to remote escalation of priv…

Mitigation only
Fix from $1,950 2023-08-07
Connected Io CRITICAL 9.8
CVE-2023-33375

Connected IO v2.1.0 and prior has a stack-based buffer overflow vulnerability in its communication protocol, enabling attackers to take control over …

Fix: after 2.1.0
Fix from $2,300 2023-08-04
Fedora MEDIUM 6.5
CVE-2023-3180

A flaw was found in the QEMU virtual crypto device while handling data encryption/decryption requests in virtio_crypto_handle_sym_req. There is no ch…

Fix: 8.1.0+
Fix from $1,600 2023-08-03
Control For Beaglebone Sl MEDIUM 6.5
CVE-2023-37557

After successful authentication as a user in multiple Codesys products in multiple versions, specific crafted remote communication requests can cause…

Fix: 4.10.0.0+
Fix from $1,600 2023-08-03
Cx Programmer HIGH 7.8
CVE-2023-38747

Heap-based buffer overflow vulnerability exists in CX-Programmer Included in CX-One CXONE-AL[][]D-V4 V9.80 and earlier. By having a user open a speci…

Fix: after 9.80
Fix from $1,950 2023-08-03
Chrome HIGH 8.8
CVE-2023-4071

Heap buffer overflow in Visuals in Google Chrome prior to 115.0.5790.170 allowed a remote attacker to potentially exploit heap corruption via a craft…

Fix: 115.0.5790.170+
Fix from $1,950 2023-08-03
Chrome HIGH 8.8
CVE-2023-4072

Out of bounds read and write in WebGL in Google Chrome prior to 115.0.5790.170 allowed a remote attacker to potentially exploit heap corruption via a…

Fix: 115.0.5790.170+
Fix from $1,950 2023-08-03
Chrome HIGH 8.8
CVE-2023-3732

Out of bounds memory access in Mojo in Google Chrome prior to 115.0.5790.98 allowed a remote attacker who had compromised the renderer process to pot…

Fix: 115.0.5790.98+
Fix from $1,950 2023-08-01
Cs C6n B0 1g2wf Firmware HIGH 8.8
CVE-2023-34552

In certain EZVIZ products, two stack based buffer overflows in mulicast_parse_sadp_packet and mulicast_get_pack_type functions of the SADP multicast …

Fix: after 5.3.2
Fix from $1,950 2023-08-01
Cs C6n B0 1g2wf Firmware HIGH 8.0
CVE-2023-34551

In certain EZVIZ products, two stack buffer overflows in netClientSetWlanCfg function of the EZVIZ SDK command server can allow an authenticated atta…

Fix: after 5.3.2
Fix from $1,950 2023-08-01
Firefox CRITICAL 9.8
CVE-2023-4056

Memory safety bugs present in Firefox 115, Firefox ESR 115.0, Firefox ESR 102.13, Thunderbird 115.0, and Thunderbird 102.13. Some of these bugs showe…

Fix: 102.14 / 115.1+
Fix from $2,300 2023-08-01
Firefox CRITICAL 9.8
CVE-2023-4057

Memory safety bugs present in Firefox 115, Firefox ESR 115.0, and Thunderbird 115.0. Some of these bugs showed evidence of memory corruption and we p…

Fix: 115.1 / 116.0+
Fix from $2,300 2023-08-01
Firefox CRITICAL 9.8
CVE-2023-4058

Memory safety bugs present in Firefox 115. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of the…

Fix: 116.0+
Fix from $2,300 2023-08-01
Firefox HIGH 7.5
CVE-2023-4050EPSS 12%

In some cases, an untrusted input stream was copied to a stack buffer without checking its size. This resulted in a potentially exploitable crash whi…

Fix: 102.14 / 115.1+
Fix from $1,950 2023-08-01
Archer Ax21 Firmware CRITICAL 9.8
CVE-2023-31710

TP-Link Archer AX21(US)_V3_1.1.4 Build 20230219 and AX21(US)_V3.6_1.1.4 Build 20230219 are vulnerable to Buffer Overflow.

No fix yet
Fix from $2,300 2023-08-01
Kepserverex HIGH 7.5
CVE-2023-3825

PTC’s KEPServerEX Versions 6.0 to 6.14.263 are vulnerable to being made to read a recursively defined object that leads to uncontrolled resource cons…

Fix: after 6.14.263
Fix from $1,950 2023-07-31
Chrome HIGH 8.8
CVE-2022-4914

Heap buffer overflow in PrintPreview in Google Chrome prior to 104.0.5112.79 allowed an attacker who convinced a user to install a malicious extensio…

Fix: 104.0.5112.79+
Fix from $1,950 2023-07-29
Chrome CRITICAL 9.6
CVE-2022-4920

Heap buffer overflow in Blink in Google Chrome prior to 101.0.4951.41 allowed a remote attacker who convinced a user to engage in specific UI gesture…

Fix: 101.0.4951.41+
Fix from $2,300 2023-07-29
Chrome HIGH 8.8
CVE-2023-3598

Out of bounds read and write in ANGLE in Google Chrome prior to 114.0.5735.90 allowed a remote attacker to potentially exploit heap corruption via a …

Fix: 114.0.5735.90+
Fix from $1,950 2023-07-28
Ipados CRITICAL 9.8
CVE-2023-38604

An out-of-bounds write issue was addressed with improved input validation. This issue is fixed in watchOS 9.6, macOS Big Sur 11.7.9, iOS 15.7.8 and i…

Fix: 9.6 / 11.7.9+
Fix from $2,300 2023-07-28
Fortiproxy CRITICAL 9.8
CVE-2023-33308

A stack-based overflow vulnerability [CWE-124] in Fortinet FortiOS version 7.0.0 through 7.0.10 and 7.2.0 through 7.2.3 and FortiProxy version 7.0.0 …

Fix: after 7.2.3
Fix from $2,300 2023-07-26
Paddlepaddle CRITICAL 9.8
CVE-2023-38671

Heap buffer overflow in paddle.trace in PaddlePaddle before 2.5.0. This flaw can lead to a denial of service, information disclosure, or more damage …

Fix: 2.5.0+
Fix from $2,300 2023-07-26
Rtu500 Firmware HIGH 7.5
CVE-2022-4608

A vulnerability exists in HCI IEC 60870-5-104 function included in certain versions of the RTU500 series product. The vulnerability can only be explo…

Mitigation only
Fix from $1,950 2023-07-26
Gdb MEDIUM 5.5
CVE-2023-39128

GNU gdb (GDB) 13.0.50.20220805-git was discovered to contain a stack overflow via the function ada_decode at /gdb/ada-lang.c.

No fix yet
Fix from $1,600 2023-07-25
Gdb MEDIUM 5.5
CVE-2023-39130

GNU gdb (GDB) 13.0.50.20220805-git was discovered to contain a heap buffer overflow via the function pe_as16() at /gdb/coff-pe-read.c.

Mitigation only
Fix from $1,600 2023-07-25
A1001 Firmware HIGH 8.8
CVE-2023-21406

Ariel Harush and Roy Hodir from OTORIO have found a flaw in the AXIS A1001 when communicating over OSDP. A heap-based buffer overflow was found in th…

Fix: after 1.65.4
Fix from $1,950 2023-07-25
Command Centre HIGH 7.5
CVE-2023-22363

A stack-based buffer overflow in the Command Centre Server allows an attacker to cause a denial of service attack via assigning cardholders to an Acc…

Fix: 8.80.1192+
Fix from $1,950 2023-07-25
Imagemagick MEDIUM 5.5
CVE-2023-3745

A heap-based buffer overflow issue was found in ImageMagick's PushCharPixel() function in quantum-private.h. This issue may allow a local attacker to…

Fix: 6.9-11-0 / 7.0.10-0+
Fix from $1,600 2023-07-24