Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Out-of-bounds WriteCWE-787 × clear
Chrome HIGH 8.8
CVE-2022-0604

Heap buffer overflow in Tab Groups in Google Chrome prior to 98.0.4758.102 allowed an attacker who convinced a user to install a malicious extension …

Fix: 98.0.4758.102+
Fix from $1,950 2022-04-05
Chrome HIGH 8.8
CVE-2022-0610

Inappropriate implementation in Gamepad API in Google Chrome prior to 98.0.4758.102 allowed a remote attacker to potentially exploit heap corruption …

Fix: 98.0.4758.102+
Fix from $1,950 2022-04-05
GitLab MEDIUM 6.5
CVE-2022-1185

A denial of service vulnerability when rendering RDoc files in GitLab CE/EE versions 10 to 14.7.7, 14.8.0 to 14.8.5, and 14.9.0 to 14.9.2 allows an a…

Fix: 14.7.7 / 14.8.5+
Fix from $1,600 2022-04-04
Allmediaserver CRITICAL 9.8
CVE-2022-28381EPSS 70%

Mediaserver.exe in ALLMediaServer 1.6 has a stack-based buffer overflow that allows remote attackers to execute arbitrary code via a long string to T…

No fix yet
Fix from $2,300 2022-04-03
Furnace MEDIUM 6.5
CVE-2022-1211

A vulnerability classified as critical has been found in tildearrow Furnace dev73. This affects the FUR to VGM converter in console mode which causes…

Patch available
Fix from $1,600 2022-04-03
Cx Position HIGH 7.8
CVE-2022-25959

Omron CX-Position (versions 2.5.3 and prior) is vulnerable to memory corruption while processing a specific project file, which may allow an attacker…

Fix: after 2.5.3
Fix from $1,950 2022-04-01
Cx Position HIGH 7.8
CVE-2022-26022

Omron CX-Position (versions 2.5.3 and prior) is vulnerable to an out-of-bounds write while processing a specific project file, which may allow an att…

Fix: after 2.5.3
Fix from $1,950 2022-04-01
Cx Position HIGH 7.8
CVE-2022-26419

Omron CX-Position (versions 2.5.3 and prior) is vulnerable to multiple stack-based buffer overflow conditions while parsing a specific project file, …

Fix: after 2.5.3
Fix from $1,950 2022-04-01
Modbus Slave HIGH 7.5
CVE-2022-1068

Modbus Tools Modbus Slave (versions 7.4.2 and prior) is vulnerable to a stack-based buffer overflow in the registration field. This may cause the pro…

Fix: 7.4.3+
Fix from $1,950 2022-04-01
Nport Iaw5150a 6i\/o Firmware CRITICAL 9.8
CVE-2021-32976

Five buffer overflows in the built-in web server in Moxa NPort IAW5000A-I/O series firmware version 2.2 or earlier may allow a remote attacker to ini…

Fix: after 2.2
Fix from $2,300 2022-04-01
Simple Directmedia Layer HIGH 8.8
CVE-2021-33657

There is a heap overflow problem in video/SDL_pixels.c in SDL (Simple DirectMedia Layer) 2.x to 2.0.18 versions. By crafting a malicious .BMP file, a…

Fix: after 2.0.18
Fix from $1,950 2022-04-01
Bandizip CRITICAL 9.8
CVE-2021-26623

A remote code execution vulnerability due to incomplete check for 'xheader_decode_path_record' function's parameter length value in the ark library. …

Fix: 7.19+
Fix from $2,300 2022-04-01
Apq8009w Firmware HIGH 7.8
CVE-2021-30333

Improper validation of buffer size input to the EFS file can lead to memory corruption in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivit…

Mitigation only
Fix from $1,950 2022-04-01
Ar8035 Firmware HIGH 7.8
CVE-2021-35103

Possible out of bound write due to improper validation of number of timer values received from firmware while syncing timers in Snapdragon Auto, Snap…

Patch available
Fix from $1,950 2022-04-01
Aqt1000 Firmware HIGH 8.8
CVE-2021-1942

Improper handling of permissions of a shared memory region can lead to memory corruption in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectiv…

Mitigation only
Fix from $1,950 2022-04-01
Dir 645 Firmware CRITICAL 9.8
CVE-2021-43722

D-Link DIR-645 1.03 A1 is vulnerable to Buffer Overflow. The hnap_main function in the cgibin handler uses sprintf to format the soapaction header on…

No fix yet
Fix from $2,300 2022-03-31
Cam Pan V2 Firmware CRITICAL 9.8
CVE-2019-12266

Stack-based Buffer Overflow vulnerability in Wyze Cam Pan v2, Cam v2, Cam v3 allows an attacker to run arbitrary code on the affected device. This is…

Fix: 4.9.8.1002 / 4.36.8.32+
Fix from $2,300 2022-03-30
Fedora HIGH 7.8
CVE-2022-1160

heap buffer overflow in get_one_sourceline in GitHub repository vim/vim prior to 8.2.4647.

Fix: 8.2.4647+
Fix from $1,950 2022-03-30
Android MEDIUM 6.7
CVE-2021-39786

In NFC, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution…

Mitigation only
Fix from $1,600 2022-03-30
Android HIGH 7.8
CVE-2021-39741

In Keymaster, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System exe…

Mitigation only
Fix from $1,950 2022-03-30
Open5gs HIGH 7.5
CVE-2021-44081

A buffer overflow vulnerability exists in the AMF of open5gs 2.1.4. When the length of MSIN in Supi exceeds 24 characters, it leads to AMF denial of …

Patch available
Fix from $1,950 2022-03-29
Re2c CRITICAL 9.8
CVE-2022-23901

A stack overflow re2c 2.2 exists due to infinite recursion issues in src/dfa/dead_rules.cc.

Patch available
Fix from $2,300 2022-03-29
Ac9 Firmware CRITICAL 9.8
CVE-2022-26278

Tenda AC9 v15.03.2.21_cn was discovered to contain a stack overflow via the time parameter in the PowerSaveSet function.

No fix yet
Fix from $2,300 2022-03-28
Sonicos CRITICAL 9.8
CVE-2022-22274EPSS 58%

A Stack-based buffer overflow vulnerability in the SonicOS via HTTP request allows a remote unauthenticated attacker to cause Denial of Service (DoS)…

Fix: after 7.0.1-5050
Fix from $2,300 2022-03-25
Linux Kernel HIGH 8.8
CVE-2022-0435EPSS 68%

A stack overflow flaw was found in the Linux kernel's TIPC protocol functionality in the way a user sends a packet with malicious content where the n…

Fix: 4.9.301 / 4.14.266+
Fix from $1,950 2022-03-25
Linux Kernel HIGH 7.8
CVE-2022-0500

A flaw was found in unrestricted eBPF usage by the BPF_BTF_LOAD, leading to a possible out-of-bounds memory write in the Linux kernel’s BPF subsystem…

Fix: 5.15.37 / 5.16.11+
Fix from $1,950 2022-03-25
Linux Kernel HIGH 7.8
CVE-2022-0995EPSS 6%

An out-of-bounds (OOB) memory write flaw was found in the Linux kernel’s watch_queue event notification subsystem. This flaw can overwrite parts of t…

Fix: 5.10.106 / 5.15.29+
Fix from $1,950 2022-03-25
Caribou HIGH 7.5
CVE-2021-3567

A flaw was found in Caribou due to a regression of CVE-2020-25712 fix. An attacker could use this flaw to bypass screen-locking applications that lev…

Fix: 0.4.21+
Fix from $1,950 2022-03-25
Nokogiri HIGH 7.5
CVE-2018-25032EPSS 52%

zlib before 1.2.12 allows memory corruption when deflating (i.e., when compressing) if the input has many distant matches.

Fix: 1.2.12 / 1.13.4+
Fix from $1,950 2022-03-25
Data Center Gpu Manager MEDIUM 6.3
CVE-2022-21820EPSS 17%

NVIDIA DCGM contains a vulnerability in nvhostengine, where a network user can cause detection of error conditions without action, which may lead to …

Fix: 2.3.5+
Fix from $1,600 2022-03-24