Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Out-of-bounds WriteCWE-787 × clear
Fedora HIGH 7.5
CVE-2022-29536

In GNOME Epiphany before 41.4 and 42.x before 42.2, an HTML document can trigger a client buffer overflow (in ephy_string_shorten in the UI process) …

Fix: 41.4 / 42.2+
Fix from $1,950 2022-04-20
Advance Steel HIGH 7.8
CVE-2022-25788

A maliciously crafted JT file in Autodesk AutoCAD 2022 may be used to write beyond the allocated buffer while parsing JT files. This vulnerability ca…

Fix: 2022.1.2 / 2022.2.2+
Fix from $1,950 2022-04-19
Navisworks HIGH 7.8
CVE-2022-27527

A Memory Corruption vulnerability may lead to code execution through maliciously crafted DLL files. It was fixed in PDFTron earlier than 9.0.7 versio…

Fix: 2019.6 / 2020.4+
Fix from $1,950 2022-04-19
Fedora MEDIUM 5.3
CVE-2021-42781

Heap buffer overflow issues were found in Opensc before version 0.22.0 in pkcs15-oberthur.c that could potentially crash programs using the library.

Fix: 0.22.0+
Fix from $1,600 2022-04-18
Fedora MEDIUM 5.3
CVE-2021-42782

Stack buffer overflow issues were found in Opensc before version 0.22.0 in various places that could potentially crash programs using the library.

Fix: 0.22.0+
Fix from $1,600 2022-04-18
Design Review HIGH 7.8
CVE-2022-27525

A malicious crafted .dwf or .pct file when consumed through DesignReview.exe application could lead to memory corruption vulnerability by write acces…

Mitigation only
Fix from $1,950 2022-04-18
Design Review HIGH 7.8
CVE-2022-27526

A malicious crafted TGA file when consumed through DesignReview.exe application could lead to memory corruption vulnerability. This vulnerability in …

Mitigation only
Fix from $1,950 2022-04-18
Advance Steel HIGH 7.8
CVE-2022-27529

A maliciously crafted PICT, BMP, PSD or TIF file in Autodesk AutoCAD 2022, 2021, 2020, 2019 may be used to write beyond the allocated buffer while pa…

Fix: 2019.1.4 / 2020.1.5+
Fix from $1,950 2022-04-18
Advance Steel HIGH 7.8
CVE-2022-27530

A maliciously crafted TIF or PICT file in Autodesk AutoCAD 2022, 2021, 2020, 2019 can be used to write beyond the allocated buffer through Buffer ove…

Fix: 2019.1.4 / 2020.1.5+
Fix from $1,950 2022-04-18
Openusd MEDIUM 5.5
CVE-2020-13495

An exploitable vulnerability exists in the way Pixar OpenUSD 20.05 handles file offsets in binary USD files. A specially crafted malformed file can t…

No fix yet
Fix from $1,600 2022-04-18
Fedora HIGH 7.8
CVE-2022-1381

global heap buffer overflow in skip_range in GitHub repository vim/vim prior to 8.2.4763. This vulnerability is capable of crashing software, Bypass …

Fix: 8.2.4763 / 13.0+
Fix from $1,950 2022-04-18
Radare2 MEDIUM 6.1
CVE-2022-1383

Heap-based Buffer Overflow in GitHub repository radareorg/radare2 prior to 5.6.8. The bug causes the program reads data past the end of the intented …

Fix: 5.6.8+
Fix from $1,600 2022-04-18
Wasm3 MEDIUM 5.5
CVE-2022-28966

Wasm3 0.5.0 has a heap-based buffer overflow in NewCodePage in m3_code.c (called indirectly from Compile_BranchTable in m3_compile.c).

No fix yet
Fix from $1,600 2022-04-16
7 Zip HIGH 7.8
CVE-2022-29072

7-Zip through 21.07 on Windows allows privilege escalation and command execution when a file with the .7z extension is dragged to the Help>Contents a…

Fix: after 21.07
Fix from $1,950 2022-04-15
Windows 10 1507 HIGH 7.8
CVE-2022-24521 KEVEPSS 7%

Windows Common Log File System Driver Elevation of Privilege Vulnerability

Fix: 10.0.10240.19265 / 10.0.14393.5066+
Fix from $1,950 2022-04-15
Gt.m CRITICAL 9.1
CVE-2021-44488

An issue was discovered in YottaDB through r1.32 and V7.0-000. Using crafted input, attackers can control the size and input to calls to memcpy in op…

Fix: after 7.0-000
Fix from $2,300 2022-04-15
Ios Xe HIGH 8.6
CVE-2022-20683

A vulnerability in the Application Visibility and Control (AVC-FNF) feature of Cisco IOS XE Software for Cisco Catalyst 9800 Series Wireless Controll…

Mitigation only
Fix from $1,950 2022-04-15
Debian Linux CRITICAL 9.8
CVE-2022-28044

Irzip v0.640 was discovered to contain a heap memory corruption via the component lrzip.c:initialise_control.

Patch available
Fix from $2,300 2022-04-15
Enterprise Linux HIGH 7.8
CVE-2022-1304

An out-of-bounds read/write vulnerability was found in e2fsprogs 1.46.5. This issue leads to a segmentation fault and possibly arbitrary code executi…

Mitigation only
Fix from $1,950 2022-04-14
Sound Exchange HIGH 8.8
CVE-2021-40426

A heap-based buffer overflow vulnerability exists in the sphere.c start_read() functionality of Sound Exchange libsox 14.4.2 and master commit 42b355…

No fix yet
Fix from $1,950 2022-04-14
Apweb CRITICAL 9.8
CVE-2022-28711

A memory corruption vulnerability exists in the cgi.c unescape functionality of ArduPilot APWeb master branch 50b6b7ac - master branch 46177cb9. A sp…

No fix yet
Fix from $2,300 2022-04-14
Imagegear HIGH 8.8
CVE-2021-21939

A heap-based buffer overflow vulnerability exists in the XWD parser functionality of Accusoft ImageGear 19.10. A specially-crafted file can lead to c…

No fix yet
Fix from $1,950 2022-04-14
Imagegear HIGH 8.8
CVE-2021-21942

An out-of-bounds write vulnerability exists in the TIFF YCbCr image parser functionality of Accusoft ImageGear 19.10. A specially-crafted file can le…

No fix yet
Fix from $1,950 2022-04-14
Imagegear HIGH 8.8
CVE-2021-21944

Two heap-based buffer overflow vulnerabilities exist in the TIFF parser functionality of Accusoft ImageGear 19.10. A specially-crafted file can lead …

No fix yet
Fix from $1,950 2022-04-14
Imagegear HIGH 8.8
CVE-2021-21945

Two heap-based buffer overflow vulnerabilities exist in the TIFF parser functionality of Accusoft ImageGear 19.10. A specially-crafted file can lead …

No fix yet
Fix from $1,950 2022-04-14
Imagegear HIGH 8.8
CVE-2021-21946

Two heap-based buffer overflow vulnerabilities exists in the JPEG-JFIF lossless Huffman image parser functionality of Accusoft ImageGear 19.10. A spe…

No fix yet
Fix from $1,950 2022-04-14
Imagegear HIGH 7.8
CVE-2021-40398

An out-of-bounds write vulnerability exists in the parse_raster_data functionality of Accusoft ImageGear 19.10. A specially-crafted malformed file ca…

No fix yet
Fix from $1,950 2022-04-14
Xmill CRITICAL 9.8
CVE-2022-26507

A heap-based buffer overflow exists in XML Decompression DecodeTreeBlock in AT&T Labs Xmill 0.7. A crafted input file can lead to remote code executi…

Fix: 15.1 / 2021+
Fix from $2,300 2022-04-14
Ghostpcl HIGH 7.8
CVE-2022-1350

A vulnerability classified as problematic was found in GhostPCL 9.55.0. This vulnerability affects the function chunk_free_object of the file gsmchun…

Mitigation only
Fix from $1,950 2022-04-14
Dwg Trueview HIGH 7.8
CVE-2022-25797

A maliciously crafted PDF file in Autodesk AutoCAD 2022, 2021, 2020, 2019 can be used to dereference for a write beyond the allocated buffer while pa…

Mitigation only
Fix from $1,950 2022-04-13