Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Out-of-bounds WriteCWE-787 × clear
M3 Firmware HIGH 7.5
CVE-2022-32037

Tenda M3 V1.0.0.12 was discovered to contain a stack overflow via the function formSetAPCfg.

No fix yet
Fix from $1,950 2022-07-01
M3 Firmware HIGH 7.5
CVE-2022-32039

Tenda M3 V1.0.0.12 was discovered to contain a stack overflow via the listN parameter in the function fromDhcpListClient.

No fix yet
Fix from $1,950 2022-07-01
M3 Firmware HIGH 7.5
CVE-2022-32040

Tenda M3 V1.0.0.12 was discovered to contain a stack overflow via the function formSetCfm.

No fix yet
Fix from $1,950 2022-07-01
M3 Firmware HIGH 7.5
CVE-2022-32041

Tenda M3 V1.0.0.12 was discovered to contain a stack overflow via the function formGetPassengerAnalyseData.

No fix yet
Fix from $1,950 2022-07-01
M3 Firmware HIGH 7.5
CVE-2022-32043

Tenda M3 V1.0.0.12 was discovered to contain a stack overflow via the function formSetAccessCodeInfo.

No fix yet
Fix from $1,950 2022-07-01
T6 Firmware HIGH 7.5
CVE-2022-32044

TOTOLINK T6 V4.1.9cu.5179_B20201015 was discovered to contain a stack overflow via the password parameter in the function FUN_00413f80.

Patch available
Fix from $1,950 2022-07-01
T6 Firmware HIGH 7.5
CVE-2022-32045

TOTOLINK T6 V4.1.9cu.5179_B20201015 was discovered to contain a stack overflow via the desc parameter in the function FUN_00413be4.

No fix yet
Fix from $1,950 2022-07-01
T6 Firmware HIGH 7.5
CVE-2022-32046

TOTOLINK T6 V4.1.9cu.5179_B20201015 was discovered to contain a stack overflow via the desc parameter in the function FUN_0041880c.

No fix yet
Fix from $1,950 2022-07-01
T6 Firmware HIGH 7.5
CVE-2022-32047

TOTOLINK T6 V4.1.9cu.5179_B20201015 was discovered to contain a stack overflow via the desc parameter in the function FUN_00412ef4.

No fix yet
Fix from $1,950 2022-07-01
T6 Firmware HIGH 7.5
CVE-2022-32048

TOTOLINK T6 V4.1.9cu.5179_B20201015 was discovered to contain a stack overflow via the command parameter in the function FUN_0041cc88.

No fix yet
Fix from $1,950 2022-07-01
T6 Firmware HIGH 7.5
CVE-2022-32049

TOTOLINK T6 V4.1.9cu.5179_B20201015 was discovered to contain a stack overflow via the url parameter in the function FUN_00418540.

No fix yet
Fix from $1,950 2022-07-01
T6 Firmware HIGH 7.5
CVE-2022-32050

TOTOLINK T6 V4.1.9cu.5179_B20201015 was discovered to contain a stack overflow via the cloneMac parameter in the function FUN_0041af40.

No fix yet
Fix from $1,950 2022-07-01
T6 Firmware HIGH 7.5
CVE-2022-32051

TOTOLINK T6 V4.1.9cu.5179_B20201015 was discovered to contain a stack overflow via the desc, week, sTime, eTime parameters in the function FUN_004133…

No fix yet
Fix from $1,950 2022-07-01
T6 Firmware HIGH 7.5
CVE-2022-32052

TOTOLINK T6 V4.1.9cu.5179_B20201015 was discovered to contain a stack overflow via the desc parameter in the function FUN_004137a4.

No fix yet
Fix from $1,950 2022-07-01
T6 Firmware HIGH 7.5
CVE-2022-32053

TOTOLINK T6 V4.1.9cu.5179_B20201015 was discovered to contain a stack overflow via the cloneMac parameter in the function FUN_0041621c.

No fix yet
Fix from $1,950 2022-07-01
Ax1806 Firmware HIGH 7.5
CVE-2022-32030

Tenda AX1806 v1.0.0.1 was discovered to contain a stack overflow via the list parameter in the function formSetQosBand.

No fix yet
Fix from $1,950 2022-07-01
Ax1806 Firmware HIGH 7.5
CVE-2022-32031

Tenda AX1806 v1.0.0.1 was discovered to contain a stack overflow via the list parameter in the function fromSetRouteStatic.

No fix yet
Fix from $1,950 2022-07-01
Ax1806 Firmware CRITICAL 9.8
CVE-2022-32032EPSS 10%

Tenda AX1806 v1.0.0.1 was discovered to contain a stack overflow via the deviceList parameter in the function formAddMacfilterRule.

No fix yet
Fix from $2,300 2022-07-01
Fedora HIGH 7.5
CVE-2022-33099

An issue in the component luaG_runerror of Lua v5.4.4 and below leads to a heap-buffer overflow when a recursive error occurs.

Fix: after 5.4.4
Fix from $1,950 2022-07-01
U Boot HIGH 7.8
CVE-2022-33103

Das U-Boot from v2020.10 to v2022.07-rc3 was discovered to contain an out-of-bounds write via the function sqfs_readdir().

Fix: 2022.07+
Fix from $1,950 2022-07-01
OpenSSL CRITICAL 9.8
CVE-2022-2274EPSS 45%

The OpenSSL 3.0.4 release introduced a serious bug in the RSA implementation for X86_64 CPUs supporting the AVX512IFMA instructions. This issue makes…

No fix yet
Fix from $2,300 2022-07-01
Archer A5 Firmware HIGH 7.5
CVE-2022-33087

A stack overflow in the function DM_ In fillobjbystr() of TP-Link Archer C50&A5(US)_V5_200407 allows attackers to cause a Denial of Service (DoS) via…

No fix yet
Fix from $1,950 2022-06-30
U Boot CRITICAL 9.8
CVE-2022-34835

In Das U-Boot through 2022.07-rc5, an integer signedness error and resultant stack-based buffer overflow in the "i2c md" command enables the corrupti…

Fix: 2022.07+
Fix from $2,300 2022-06-30
Zephyr HIGH 7.8
CVE-2021-3434

Stack based buffer overflow in le_ecred_conn_req(). Zephyr versions >= v2.5.0 Stack-based Buffer Overflow (CWE-121). For more information, see https:…

Fix: 2.6.0+
Fix from $1,950 2022-06-28
Xpdf HIGH 7.8
CVE-2022-33108

XPDF v4.04 was discovered to contain a stack overflow vulnerability via the Object::Copy class of object.cc files.

No fix yet
Fix from $1,950 2022-06-28
Tew 752dru Firmware HIGH 8.8
CVE-2022-33007

TRENDnet Wi-Fi routers TEW751DR v1.03 and TEW-752DRU v1.03 were discovered to contain a stack overflow via the function genacgi_main.

Fix: after 1.03
Fix from $1,950 2022-06-27
Gpac MEDIUM 5.5
CVE-2021-40942

In GPAC MP4Box v1.1.0, there is a heap-buffer-overflow in the function filter_parse_dyn_args function in filter_core/filter.c:1454, as demonstrated b…

Patch available
Fix from $1,600 2022-06-27
Mindspore HIGH 7.5
CVE-2021-33647

When performing the inference shape operation of the Tile operator, if the input data type is not int or int32, it will access data outside of bounds…

Fix: 1.3.0+
Fix from $1,950 2022-06-27
Fedora HIGH 7.8
CVE-2022-2210

Out-of-bounds Write in GitHub repository vim/vim prior to 8.2.

Fix: 8.2.5164+
Fix from $1,950 2022-06-27
Esp Idf HIGH 8.8
CVE-2022-24893

ESP-IDF is the official development framework for Espressif SoCs. In Espressif’s Bluetooth Mesh SDK (`ESP-BLE-MESH`), a memory corruption vulnerabili…

Patch available
Fix from $1,950 2022-06-25