Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Out-of-bounds WriteCWE-787 × clear
Substance 3d Painter HIGH 7.8
CVE-2023-29284

Adobe Substance 3D Painter versions 8.3.0 (and earlier) is affected by a Stack-based Buffer Overflow vulnerability that could result in arbitrary cod…

Fix: after 8.3.0
Fix from $1,950 2023-05-11
Substance 3d Painter HIGH 7.8
CVE-2023-29285

Adobe Substance 3D Painter versions 8.3.0 (and earlier) is affected by an out-of-bounds write vulnerability that could result in arbitrary code execu…

Fix: after 8.3.0
Fix from $1,950 2023-05-11
Substance 3d Painter HIGH 7.8
CVE-2023-29276

Adobe Substance 3D Painter versions 8.3.0 (and earlier) is affected by an out-of-bounds write vulnerability that could result in arbitrary code execu…

Fix: after 8.3.0
Fix from $1,950 2023-05-11
Substance 3d Painter HIGH 7.8
CVE-2023-29282

Adobe Substance 3D Painter versions 8.3.0 (and earlier) is affected by an out-of-bounds write vulnerability that could result in arbitrary code execu…

Fix: after 8.3.0
Fix from $1,950 2023-05-11
Vyper CRITICAL 9.1
CVE-2023-31146

Vyper is a Pythonic smart contract language for the Ethereum virtual machine. Prior to version 0.3.8, during codegen, the length word of a dynarray i…

Fix: 0.3.8+
Fix from $2,300 2023-05-11
Mf642cdw Firmware CRITICAL 9.8
CVE-2023-0854

Buffer overflow in NetBIOS QNAME registering and communication process of Office / Small Office Multifunction Printers and Laser Printers(*) which ma…

Fix: after 11.04
Fix from $2,300 2023-05-11
Mf642cdw Firmware CRITICAL 9.8
CVE-2023-0855

Buffer overflow in IPP number-up attribute process of Office / Small Office Multifunction Printers and Laser Printers(*) which may allow an attacker …

Fix: after 11.04
Fix from $2,300 2023-05-11
Mf642cdw Firmware CRITICAL 9.8
CVE-2023-0856

Buffer overflow in IPP sides attribute process of Office / Small Office Multifunction Printers and Laser Printers(*) which may allow an attacker on t…

Fix: after 11.04
Fix from $2,300 2023-05-11
Mf642cdw Firmware CRITICAL 9.8
CVE-2023-0851

Buffer overflow in CPCA Resource Download process of Office / Small Office Multifunction Printers and Laser Printers(*) which may allow an attacker o…

Fix: after 11.04
Fix from $2,300 2023-05-11
Mf642cdw Firmware CRITICAL 9.8
CVE-2023-0852

Buffer overflow in the Address Book of Mobile Device function of Office / Small Office Multifunction Printers and Laser Printers(*) which may allow a…

Fix: after 11.04
Fix from $2,300 2023-05-11
Mf642cdw Firmware CRITICAL 9.8
CVE-2023-0853

Buffer overflow in mDNS NSEC record registering process of Office / Small Office Multifunction Printers and Laser Printers(*) which may allow an atta…

Fix: after 11.04
Fix from $2,300 2023-05-11
Podofo MEDIUM 6.5
CVE-2023-31556

podofoinfo 0.10.0 was discovered to contain a segmentation violation via the function PoDoFo::PdfDictionary::findKeyParent.

Patch available
Fix from $1,600 2023-05-10
Podofo HIGH 8.8
CVE-2023-31567

Podofo v0.10.0 was discovered to contain a heap buffer overflow via the component PoDoFo::PdfEncryptAESV3::PdfEncryptAESV3.

Patch available
Fix from $1,950 2023-05-10
Podofo HIGH 8.8
CVE-2023-31568

Podofo v0.10.0 was discovered to contain a heap buffer overflow via the component PoDoFo::PdfEncryptRC4::PdfEncryptRC4.

Patch available
Fix from $1,950 2023-05-10
Jerryscript HIGH 7.8
CVE-2023-31906

Jerryscript 3.0.0(commit 1a2c047) was discovered to contain a heap-buffer-overflow via the component lexer_compare_identifier_to_chars at /jerry-core…

Patch available
Fix from $1,950 2023-05-10
Jerryscript HIGH 7.8
CVE-2023-31907

Jerryscript 3.0.0 was discovered to contain a heap-buffer-overflow via the component scanner_literal_is_created at /jerry-core/parser/js/js-scanner-u…

Patch available
Fix from $1,950 2023-05-10
Jerryscript HIGH 7.8
CVE-2023-31908

Jerryscript 3.0 (commit 05dbbd1) was discovered to contain a heap-buffer-overflow via the component ecma_builtin_typedarray_prototype_sort.

Patch available
Fix from $1,950 2023-05-10
Jerryscript HIGH 7.8
CVE-2023-31910

Jerryscript 3.0 (commit 05dbbd1) was discovered to contain a heap-buffer-overflow via the component parser_parse_function_statement at /jerry-core/pa…

Patch available
Fix from $1,950 2023-05-10
I915 Graphics HIGH 7.8
CVE-2023-28410

Improper restriction of operations within the bounds of a memory buffer in some Intel(R) i915 Graphics drivers for linux before kernel version 6.2.10…

Fix: 6.2.10+
Fix from $1,950 2023-05-10
Oneapi Hpc Toolkit HIGH 7.8
CVE-2023-23580

Stack-based buffer overflow for some Intel(R) Trace Analyzer and Collector software before version 2021.8.0 published Dec 2022 may allow an authentic…

Fix: 2021.8.0 / 2023.0.0+
Fix from $1,950 2023-05-10
Oneapi Hpc Toolkit HIGH 7.8
CVE-2023-23910

Out-of-bounds write for some Intel(R) Trace Analyzer and Collector software before version 2021.8.0 published Dec 2022 may allow an authenticated use…

Fix: 2021.8.0 / 2023.0.0+
Fix from $1,950 2023-05-10
Oneapi Hpc Toolkit HIGH 7.8
CVE-2023-23569

Stack-based buffer overflow for some Intel(R) Trace Analyzer and Collector software before version 2021.8.0 published Dec 2022 may allow an authentic…

Fix: 2021.8.0 / 2023.0.0+
Fix from $1,950 2023-05-10
Server System D50tnp1mhcrlc Firmware HIGH 7.1
CVE-2023-22442

Out of bounds write in some Intel(R) Server Board BMC firmware before version 2.90 may allow a privileged user to enable escalation of privilege via …

Fix: 2.90+
Fix from $1,950 2023-05-10
Quickassist Technology HIGH 7.8
CVE-2022-21804

Out-of-bounds write in software for the Intel QAT Driver for Windows before version 1.9.0-0008 may allow an authenticated user to potentially enable …

Fix: 1.9.0.-0008+
Fix from $1,950 2023-05-10
Cx Drive HIGH 7.8
CVE-2023-27385

Heap-based buffer overflow vulnerability exists in CX-Drive All models all versions. By having a user open a specially crafted SDD file, arbitrary co…

Fix: after 3.01
Fix from $1,950 2023-05-10
Ryzen 5300g Firmware MEDIUM 6.1
CVE-2021-46759

Improper syscall input validation in AMD TEE (Trusted Execution Environment) may allow an attacker with physical access and control of a Uapp that ru…

Mitigation only
Fix from $1,600 2023-05-09
Epyc 72f3 Firmware HIGH 7.5
CVE-2021-46763

Insufficient input validation in the SMU may enable a privileged attacker to write beyond the intended bounds of a shared memory buffer potentially l…

Mitigation only
Fix from $1,950 2023-05-09
Epyc 72f3 Firmware HIGH 7.5
CVE-2021-46764

Improper validation of DRAM addresses in SMU may allow an attacker to overwrite sensitive memory locations within the ASP potentially resulting in a …

Mitigation only
Fix from $1,950 2023-05-09
Epyc 72f3 Firmware CRITICAL 9.8
CVE-2023-20520

Improper access control settings in ASP Bootloader may allow an attacker to corrupt the return address causing a stack-based buffer overrun potential…

Mitigation only
Fix from $2,300 2023-05-09
Epyc 72f3 Firmware HIGH 7.5
CVE-2023-20524

An attacker with a compromised ASP could possibly send malformed commands to an ASP on another CPU, resulting in an out of bounds write, potentially …

Mitigation only
Fix from $1,950 2023-05-09