Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Out-of-bounds WriteCWE-787 × clear
Autocad HIGH 7.8
CVE-2022-42944

A malicious crafted dwf or .pct file when consumed through DesignReview.exe application could lead to memory corruption vulnerability by read access …

Patch available
Fix from $1,950 2022-10-21
Debian Linux MEDIUM 6.5
CVE-2022-3598

LibTIFF 4.4.0 has an out-of-bounds write in extractContigSamplesShifted24bits in tools/tiffcrop.c:3604, allowing attackers to cause a denial-of-servi…

Fix: after 4.4.0
Fix from $1,600 2022-10-21
Debian Linux MEDIUM 6.5
CVE-2022-3626

LibTIFF 4.4.0 has an out-of-bounds write in _TIFFmemset in libtiff/tif_unix.c:340 when called from processCropSelections, tools/tiffcrop.c:7619, allo…

Fix: after 4.4.0
Fix from $1,600 2022-10-21
Debian Linux MEDIUM 6.5
CVE-2022-3627

LibTIFF 4.4.0 has an out-of-bounds write in _TIFFmemcpy in libtiff/tif_unix.c:346 when called from extractImageSection, tools/tiffcrop.c:6860, allowi…

Fix: after 4.4.0
Fix from $1,600 2022-10-21
Autocad HIGH 7.8
CVE-2022-41309

A malicious crafted .dwf or .pct file when consumed through DesignReview.exe application could lead to memory corruption vulnerability by write acces…

Patch available
Fix from $1,950 2022-10-21
Autocad HIGH 7.8
CVE-2022-41310

A malicious crafted .dwf or .pct file when consumed through DesignReview.exe application could lead to memory corruption vulnerability by write acces…

Patch available
Fix from $1,950 2022-10-21
Autocad HIGH 7.8
CVE-2022-42933

A malicious crafted .dwf or .pct file when consumed through DesignReview.exe application could lead to memory corruption vulnerability by write acces…

Patch available
Fix from $1,950 2022-10-21
Autocad HIGH 7.8
CVE-2022-42934

A malicious crafted .dwf or .pct file when consumed through DesignReview.exe application could lead to memory corruption vulnerability by write acces…

Patch available
Fix from $1,950 2022-10-21
Autocad HIGH 7.8
CVE-2022-42935

A malicious crafted .dwf or .pct file when consumed through DesignReview.exe application could lead to memory corruption vulnerability by write acces…

Patch available
Fix from $1,950 2022-10-21
Autocad HIGH 7.8
CVE-2022-42936

A malicious crafted .dwf or .pct file when consumed through DesignReview.exe application could lead to memory corruption vulnerability by write acces…

Patch available
Fix from $1,950 2022-10-21
Autocad HIGH 7.8
CVE-2022-42937

A malicious crafted .dwf or .pct file when consumed through DesignReview.exe application could lead to memory corruption vulnerability by write acces…

Patch available
Fix from $1,950 2022-10-21
Autocad HIGH 7.8
CVE-2022-42938

A malicious crafted TGA file when consumed through DesignReview.exe application could lead to memory corruption vulnerability. This vulnerability in …

Patch available
Fix from $1,950 2022-10-21
Autocad HIGH 7.8
CVE-2022-42939

A malicious crafted TGA file when consumed through DesignReview.exe application could lead to memory corruption vulnerability. This vulnerability in …

Patch available
Fix from $1,950 2022-10-21
Autocad HIGH 7.8
CVE-2022-42940

A malicious crafted TGA file when consumed through DesignReview.exe application could lead to memory corruption vulnerability. This vulnerability in …

Patch available
Fix from $1,950 2022-10-21
Autocad HIGH 7.8
CVE-2022-42941

A malicious crafted dwf or .pct file when consumed through DesignReview.exe application could lead to memory corruption vulnerability by read access …

Patch available
Fix from $1,950 2022-10-21
Autocad HIGH 7.8
CVE-2022-42942

A malicious crafted dwf or .pct file when consumed through DesignReview.exe application could lead to memory corruption vulnerability by read access …

Patch available
Fix from $1,950 2022-10-21
Debian Linux MEDIUM 5.5
CVE-2022-3570

Multiple heap buffer overflows in tiffcrop.c utility in libtiff library Version 4.4.0 allows attacker to trigger unsafe or out of bounds memory acces…

Fix: after 4.4.0
Fix from $1,600 2022-10-21
Debian Linux MEDIUM 6.5
CVE-2022-3597

LibTIFF 4.4.0 has an out-of-bounds write in _TIFFmemcpy in libtiff/tif_unix.c:346 when called from extractImageSection, tools/tiffcrop.c:6826, allowi…

Fix: after 4.4.0
Fix from $1,600 2022-10-21
Edgeaggregator HIGH 7.5
CVE-2022-37453

An issue was discovered in Softing OPC UA C++ SDK before 6.10. A buffer overflow or an excess allocation happens due to unchecked array and matrix bo…

Fix: after 6.00
Fix from $1,950 2022-10-20
Linux Kernel HIGH 7.8
CVE-2022-3577

An out-of-bounds memory write flaw was found in the Linux kernel’s Kid-friendly Wired Controller driver. This flaw allows a local user to crash or po…

Fix: 5.4.198 / 5.10.121+
Fix from $1,950 2022-10-20
Jt2go HIGH 7.8
CVE-2022-2069

The APDFL.dll in Siemens JT2Go prior to V13.3.0.5 and Siemens Teamcenter Visualization prior to V14.0.0.2 contains an out of bounds write past the fi…

Fix: 13.3.0.5 / 14.0.0.2+
Fix from $1,950 2022-10-20
Nginx HIGH 7.8
CVE-2022-41741

NGINX Open Source before versions 1.23.2 and 1.22.1, NGINX Open Source Subscription before versions R2 P1 and R1 P1, and NGINX Plus before versions R…

Fix: after 2.4.0
Fix from $1,950 2022-10-19
Nginx HIGH 7.1
CVE-2022-41742

NGINX Open Source before versions 1.23.2 and 1.22.1, NGINX Open Source Subscription before versions R2 P1 and R1 P1, and NGINX Plus before versions R…

Fix: after 2.4.0
Fix from $1,950 2022-10-19
Nginx Ingress Controller HIGH 7.0
CVE-2022-41743

NGINX Plus before versions R27 P1 and R26 P1 have a vulnerability in the module ngx_http_hls_module that might allow a local attacker to corrupt NGIN…

Fix: after 2.4.0
Fix from $1,950 2022-10-19
Tx3 Firmware CRITICAL 9.8
CVE-2022-43024

Tenda TX3 US_TX3V1.0br_V16.03.13.11_multi_TDE01 was discovered to contain a stack overflow via the list parameter at /goform/SetVirtualServerCfg.

Mitigation only
Fix from $2,300 2022-10-19
Tx3 Firmware CRITICAL 9.8
CVE-2022-43025

Tenda TX3 US_TX3V1.0br_V16.03.13.11_multi_TDE01 was discovered to contain a stack overflow via the startIp parameter at /goform/SetPptpServerCfg.

Mitigation only
Fix from $2,300 2022-10-19
Tx3 Firmware CRITICAL 9.8
CVE-2022-43026

Tenda TX3 US_TX3V1.0br_V16.03.13.11_multi_TDE01 was discovered to contain a stack overflow via the endIp parameter at /goform/SetPptpServerCfg.

Mitigation only
Fix from $2,300 2022-10-19
Tx3 Firmware CRITICAL 9.8
CVE-2022-43027

Tenda TX3 US_TX3V1.0br_V16.03.13.11_multi_TDE01 was discovered to contain a stack overflow via the firewallEn parameter at /goform/SetFirewallCfg.

Mitigation only
Fix from $2,300 2022-10-19
Tx3 Firmware CRITICAL 9.8
CVE-2022-43028

Tenda TX3 US_TX3V1.0br_V16.03.13.11_multi_TDE01 was discovered to contain a stack overflow via the timeZone parameter at /goform/SetSysTimeCfg.

Mitigation only
Fix from $2,300 2022-10-19
Tx3 Firmware CRITICAL 9.8
CVE-2022-43029

Tenda TX3 US_TX3V1.0br_V16.03.13.11_multi_TDE01 was discovered to contain a stack overflow via the time parameter at /goform/SetSysTimeCfg.

Mitigation only
Fix from $2,300 2022-10-19