Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Out-of-bounds WriteCWE-787 × clear
Firefox CRITICAL 9.8
CVE-2023-34417

Memory safety bugs present in Firefox 113. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of the…

Fix: 114.0+
Fix from $2,300 2023-06-19
Firefox CRITICAL 9.8
CVE-2023-29531

An attacker could have caused an out of bounds memory access using WebGL APIs, leading to memory corruption and a potentially exploitable crash. *Th…

Fix: 102.10 / 112.0+
Fix from $2,300 2023-06-19
Firefox HIGH 7.5
CVE-2023-32209

A maliciously crafted favicon could have led to an out of memory crash. This vulnerability affects Firefox < 113.

Fix: 113.0+
Fix from $1,950 2023-06-19
Firefox CRITICAL 9.8
CVE-2023-32216

Mozilla developers and community members Ronald Crane, Andrew McCreight, Randell Jesup and the Mozilla Fuzzing Team reported memory safety bugs prese…

Fix: 113.0+
Fix from $2,300 2023-06-19
Tellus HIGH 7.8
CVE-2023-32201

Stack-based buffer overflow vulnerability exists in TELLUS v4.0.15.0 and TELLUS Lite v4.0.15.0. Opening a specially crafted SIM2 file may lead to inf…

Mitigation only
Fix from $1,950 2023-06-19
Tellus HIGH 7.8
CVE-2023-32273

Stack-based buffer overflow vulnerability exists in TELLUS v4.0.15.0 and TELLUS Lite v4.0.15.0. Opening a specially crafted SIM2 file may lead to inf…

Mitigation only
Fix from $1,950 2023-06-19
Tellus HIGH 7.8
CVE-2023-32276

Stack-based buffer overflow vulnerability exists in TELLUS v4.0.15.0 and TELLUS Lite v4.0.15.0. Opening a specially crafted V8 file may lead to infor…

Mitigation only
Fix from $1,950 2023-06-19
Tellus HIGH 7.8
CVE-2023-32538

Stack-based buffer overflow vulnerability exists in TELLUS v4.0.15.0 and TELLUS Lite v4.0.15.0. Opening a specially crafted SIM2 file may lead to inf…

Mitigation only
Fix from $1,950 2023-06-19
Nanopb CRITICAL 9.8
CVE-2014-125106

Nanopb before 0.3.1 allows size_t overflows in pb_dec_bytes and pb_dec_string.

Fix: 0.3.1+
Fix from $2,300 2023-06-17
Linux Kernel HIGH 7.8
CVE-2023-35788

An issue was discovered in fl_set_geneve_opt in net/sched/cls_flower.c in the Linux kernel before 6.3.7. It allows an out-of-bounds write in the flow…

Fix: 4.19.285 / 5.4.246+
Fix from $1,950 2023-06-16
Fedora MEDIUM 5.5
CVE-2023-3195

A stack-based buffer overflow issue was found in ImageMagick's coders/tiff.c. This flaw allows an attacker to trick the user into opening a specially…

Fix: 6.9.12-26 / 7.1.1-10+
Fix from $1,600 2023-06-16
Fedora MEDIUM 5.5
CVE-2023-34474

A heap-based buffer overflow issue was discovered in ImageMagick's ReadTIM2ImageData() function in coders/tim2.c. A local attacker could trick the us…

Fix: 7.1.1-10+
Fix from $1,600 2023-06-16
Flmg 10 Firmware HIGH 8.0
CVE-2022-48330

A Huawei sound box product has an out-of-bounds write vulnerability. Attackers can exploit this vulnerability to cause buffer overflow. Affected prod…

Mitigation only
Fix from $1,950 2023-06-16
Android CRITICAL 9.8
CVE-2021-0945

In _PMRCreate of the PowerVR kernel driver, a missing bounds check means it is possible to overwrite heap memory via PhysmemNewRamBackedPMR. This cou…

Mitigation only
Fix from $2,300 2023-06-15
Libtiff MEDIUM 5.5
CVE-2023-26965

loadImage() in tools/tiffcrop.c in LibTIFF through 4.5.0 has a heap-based use after free via a crafted TIFF image.

Fix: after 4.5.0
Fix from $1,600 2023-06-14
Cpdb Libs CRITICAL 9.8
CVE-2023-34095

cpdb-libs provides frontend and backend libraries for the Common Printing Dialog Backends (CPDB) project. In versions 1.0 through 2.0b4, cpdb-libs is…

Fix: 2.0+
Fix from $2,300 2023-06-14
Ph Json HIGH 7.5
CVE-2023-34612

An issue was discovered ph-json thru 9.5.5 allows attackers to cause a denial of service or other unspecified impacts via crafted object that uses cy…

Fix: after 9.5.5
Fix from $1,950 2023-06-14
Sojo HIGH 7.5
CVE-2023-34613

An issue was discovered sojo thru 1.1.1 allows attackers to cause a denial of service or other unspecified impacts via crafted object that uses cycli…

Fix: after 1.1.1
Fix from $1,950 2023-06-14
Jsonij HIGH 7.5
CVE-2023-34614

An issue was discovered jmarsden/jsonij thru 0.5.2 allows attackers to cause a denial of service or other unspecified impacts via crafted object that…

Fix: after 0.5.2
Fix from $1,950 2023-06-14
Jsonutil HIGH 7.5
CVE-2023-34615

An issue was discovered JSONUtil thru 5.0 allows attackers to cause a denial of service or other unspecified impacts via crafted object that uses cyc…

Fix: after 5.0
Fix from $1,950 2023-06-14
Pbjson HIGH 7.5
CVE-2023-34616

An issue was discovered pbjson thru 0.4.0 allows attackers to cause a denial of service or other unspecified impacts via crafted object that uses cyc…

Fix: after 0.4.0
Fix from $1,950 2023-06-14
Genson HIGH 7.5
CVE-2023-34617

An issue was discovered genson thru 1.6 allows attackers to cause a denial of service or other unspecified impacts via crafted object that uses cycli…

Fix: after 1.6
Fix from $1,950 2023-06-14
Hjson HIGH 7.5
CVE-2023-34620

An issue was discovered hjson thru 3.0.0 allows attackers to cause a denial of service or other unspecified impacts via crafted object that uses cycl…

Fix: after 3.0.0
Fix from $1,950 2023-06-14
Jtidy HIGH 7.5
CVE-2023-34623

An issue was discovered jtidy thru r938 allows attackers to cause a denial of service or other unspecified impacts via crafted object that uses cycli…

No fix yet
Fix from $1,950 2023-06-14
Htmlcleaner HIGH 7.5
CVE-2023-34624

An issue was discovered htmlcleaner thru = 2.28 allows attackers to cause a denial of service or other unspecified impacts via crafted object that us…

Fix: after 2.28
Fix from $1,950 2023-06-14
Fdkaac MEDIUM 5.5
CVE-2023-34823

fdkaac before 1.0.5 was discovered to contain a stack overflow in read_callback function in src/main.c.

Fix: 1.0.5+
Fix from $1,600 2023-06-14
Fdkaac MEDIUM 5.5
CVE-2023-34824

fdkaac before 1.0.5 was discovered to contain a heap buffer overflow in caf_info function in caf_reader.c.

Fix: 1.0.5+
Fix from $1,600 2023-06-14
Jjson HIGH 7.5
CVE-2023-35110

An issue was discovered jjson thru 0.1.7 allows attackers to cause a denial of service or other unspecified impacts via crafted object that uses cycl…

Fix: after 0.1.7
Fix from $1,950 2023-06-14
Flexjson HIGH 7.5
CVE-2023-34609

An issue was discovered flexjson thru 3.3 allows attackers to cause a denial of service or other unspecified impacts via crafted object that uses cyc…

Fix: after 3.3
Fix from $1,950 2023-06-14
Json Io HIGH 7.5
CVE-2023-34610

An issue was discovered json-io thru 4.14.0 allows attackers to cause a denial of service or other unspecified impacts via crafted object that uses c…

Fix: after 4.14.0
Fix from $1,950 2023-06-14