Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Out-of-bounds WriteCWE-787 × clear
Android MEDIUM 6.7
CVE-2022-26470

In aie, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of privilege with System execut…

Mitigation only
Fix from $1,600 2022-09-06
Enterprise Linux HIGH 7.8
CVE-2022-25308

A stack-based buffer overflow flaw was found in the Fribidi package. This flaw allows an attacker to pass a specially crafted file to the Fribidi app…

Fix: 1.0.12+
Fix from $1,950 2022-09-06
Enterprise Linux MEDIUM 5.5
CVE-2022-25309

A heap-based buffer overflow flaw was found in the Fribidi package and affects the fribidi_cap_rtl_to_unicode() function of the fribidi-char-sets-cap…

Fix: 1.0.12+
Fix from $1,600 2022-09-06
Android CRITICAL 9.8
CVE-2022-26447

In BT firmware, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execution with no additional ex…

Mitigation only
Fix from $2,300 2022-09-06
Android MEDIUM 6.7
CVE-2022-26448

In apusys, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execut…

Mitigation only
Fix from $1,600 2022-09-06
Android MEDIUM 6.7
CVE-2022-26449

In apusys, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execut…

Mitigation only
Fix from $1,600 2022-09-06
Android MEDIUM 6.7
CVE-2022-26455

In gz, there is a possible memory corruption due to incorrect error handling. This could lead to local escalation of privilege with System execution …

Mitigation only
Fix from $1,600 2022-09-06
Android MEDIUM 6.7
CVE-2022-26457

In vow, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution…

Mitigation only
Fix from $1,600 2022-09-06
Debian Linux MEDIUM 6.5
CVE-2022-38749

Using snakeYAML to parse untrusted YAML files may be vulnerable to Denial of Service attacks (DOS). If the parser is running on user supplied input, …

Fix: 1.31+
Fix from $1,600 2022-09-05
Debian Linux MEDIUM 5.5
CVE-2022-38750

Using snakeYAML to parse untrusted YAML files may be vulnerable to Denial of Service attacks (DOS). If the parser is running on user supplied input, …

Fix: 1.31+
Fix from $1,600 2022-09-05
Debian Linux MEDIUM 6.5
CVE-2022-38751

Using snakeYAML to parse untrusted YAML files may be vulnerable to Denial of Service attacks (DOS). If the parser is running on user supplied input, …

Fix: 1.31+
Fix from $1,600 2022-09-05
Snakeyaml MEDIUM 6.5
CVE-2022-38752

Using snakeYAML to parse untrusted YAML files may be vulnerable to Denial of Service attacks (DOS). If the parser is running on user supplied input, …

Fix: 1.32+
Fix from $1,600 2022-09-05
Lotus 1 2 3 HIGH 7.8
CVE-2022-39843

123elf Lotus 1-2-3 before 1.0.0rc3 for Linux, and Lotus 1-2-3 R3 for UNIX and other platforms through 9.8.2, allow attackers to execute arbitrary cod…

No fix yet
Fix from $1,950 2022-09-05
Fedora HIGH 7.8
CVE-2022-39831

An issue was discovered in PSPP 1.6.2. There is a heap-based buffer overflow at the function read_bytes_internal in utilities/pspp-dump-sav.c, which …

Patch available
Fix from $1,950 2022-09-05
Fedora HIGH 7.8
CVE-2022-39832

An issue was discovered in PSPP 1.6.2. There is a heap-based buffer overflow at the function read_string in utilities/pspp-dump-sav.c, which allows a…

No fix yet
Fix from $1,950 2022-09-05
Aqt1000 Firmware HIGH 7.8
CVE-2022-22070

Memory corruption in audio due to lack of check of invalid routing address into APR Routing table in Snapdragon Auto, Snapdragon Compute, Snapdragon …

Mitigation only
Fix from $1,950 2022-09-02
Apq8053 Firmware HIGH 7.8
CVE-2022-22080

Improper validation of backend id in PCM routing process can lead to memory corruption in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivit…

Patch available
Fix from $1,950 2022-09-02
Aqt1000 Firmware CRITICAL 9.8
CVE-2022-22096

Memory corruption in Bluetooth HOST due to stack-based buffer overflow when when extracting data using command length parameter in Snapdragon Connect…

Patch available
Fix from $2,300 2022-09-02
Apq8096au Firmware HIGH 7.8
CVE-2022-22100

Memory corruption in multimedia due to improper check on received export descriptors in Snapdragon Auto

Mitigation only
Fix from $1,950 2022-09-02
X Server HIGH 7.8
CVE-2022-2320

A flaw was found in the Xorg-x11-server. The specific flaw exists within the handling of ProcXkbSetDeviceInfo requests. The issue results from the la…

Patch available
Fix from $1,950 2022-09-01
Fedora MEDIUM 6.5
CVE-2021-3826

Heap/stack buffer overflow in the dlang_lname function in d-demangle.c in libiberty allows attackers to potentially cause a denial of service (segmen…

Patch available
Fix from $1,600 2022-09-01
Debian Linux MEDIUM 5.5
CVE-2020-35530

In LibRaw, there is an out-of-bounds write vulnerability within the "new_node()" function (libraw\src\x3f\x3f_utils_patched.cpp) that can be triggere…

Patch available
Fix from $1,600 2022-09-01
Contiki Ng HIGH 8.8
CVE-2022-36054

Contiki-NG is an open-source, cross-platform operating system for Next-Generation IoT devices. The 6LoWPAN implementation in the Contiki-NG operating…

Fix: 4.8+
Fix from $1,950 2022-09-01
Scadapro Server HIGH 7.8
CVE-2022-2892

Measuresoft ScadaPro Server (Versions prior to 6.8.0.1) uses an unmaintained ActiveX control, which may allow an out-of-bounds write condition while …

Fix: 6.8.0.1+
Fix from $1,950 2022-08-31
Ac9 Firmware HIGH 7.2
CVE-2022-36571

Tenda AC9 V15.03.05.19 was discovered to contain a stack overflow via the mask parameter at /goform/WanParameterSetting.

No fix yet
Fix from $1,950 2022-08-31
Zephyr MEDIUM 5.3
CVE-2022-1841

In subsys/net/ip/tcp.c , function tcp_flags , when the incoming parameter flags is ECN or CWR , the buf will out-of-bounds write a byte zero.

Fix: after 3.0.0
Fix from $1,600 2022-08-31
Ac9 Firmware HIGH 8.8
CVE-2022-36568

Tenda AC9 V15.03.05.19 was discovered to contain a stack overflow via the list parameter at /goform/setPptpUserList.

No fix yet
Fix from $1,950 2022-08-31
Ac9 Firmware HIGH 8.8
CVE-2022-36569

Tenda AC9 V15.03.05.19 was discovered to contain a stack overflow via the deviceList parameter at /goform/setMacFilterCfg.

No fix yet
Fix from $1,950 2022-08-31
Ac9 Firmware HIGH 7.2
CVE-2022-36570

Tenda AC9 V15.03.05.19 was discovered to contain a stack overflow via the time parameter at /goform/SetLEDCfg.

No fix yet
Fix from $1,950 2022-08-31
Fvdesigner HIGH 7.8
CVE-2022-2866

FATEK FvDesigner version 1.5.103 and prior is vulnerable to an out-of-bounds write while processing project files. If a valid user is tricked into us…

Fix: after 1.5.103
Fix from $1,950 2022-08-31