Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Out-of-bounds WriteCWE-787 × clear
Microstation HIGH 7.8
CVE-2021-46574

This vulnerability allows remote attackers to execute arbitrary code on affected installations of Bentley MicroStation CONNECT 10.16.0.80. User inter…

Fix: 10.16.02+
Fix from $1,950 2022-02-18
Microstation HIGH 7.8
CVE-2021-46576

This vulnerability allows remote attackers to execute arbitrary code on affected installations of Bentley MicroStation CONNECT 10.16.0.80. User inter…

Fix: 10.16.02+
Fix from $1,950 2022-02-18
Microstation HIGH 7.8
CVE-2021-46581

This vulnerability allows remote attackers to execute arbitrary code on affected installations of Bentley MicroStation CONNECT 10.16.0.80. User inter…

Fix: 10.16.02+
Fix from $1,950 2022-02-18
Microstation HIGH 7.8
CVE-2021-46583

This vulnerability allows remote attackers to execute arbitrary code on affected installations of Bentley MicroStation CONNECT 10.16.0.80. User inter…

Fix: 10.16.02+
Fix from $1,950 2022-02-18
Microstation HIGH 7.8
CVE-2021-46564

This vulnerability allows remote attackers to execute arbitrary code on affected installations of Bentley MicroStation CONNECT 10.16.0.80. User inter…

Fix: 10.16.02+
Fix from $1,950 2022-02-18
Linux Kernel HIGH 7.1
CVE-2021-4090

An out-of-bounds (OOB) memory write flaw was found in the NFSD in the Linux kernel. Missing sanity may lead to a write beyond bmval[bmlen-1] in nfsd4…

Fix: 5.16+
Fix from $1,950 2022-02-18
Linux Kernel HIGH 8.8
CVE-2021-4093

A flaw was found in the KVM's AMD code for supporting the Secure Encrypted Virtualization-Encrypted State (SEV-ES). A KVM guest using SEV-ES can trig…

Fix: 5.14.16+
Fix from $1,950 2022-02-18
Enterprise Linux CRITICAL 9.8
CVE-2021-20325

Missing fixes for CVE-2021-40438 and CVE-2021-26691 in the versions of httpd, as shipped in Red Hat Enterprise Linux 8.5.0, causes a security regress…

Mitigation only
Fix from $2,300 2022-02-18
Core Ftp MEDIUM 5.5
CVE-2022-22899

Core FTP / SFTP Server v2 Build 725 was discovered to allow unauthenticated attackers to cause a Denial of Service (DoS) via a crafted packet through…

No fix yet
Fix from $1,600 2022-02-17
Pcf2bdf HIGH 7.1
CVE-2022-23318

A heap-buffer-overflow in pcf2bdf, versions >= 1.05 allows an attacker to trigger unsafe memory access via a specially crafted PCF font file. This ou…

Patch available
Fix from $1,950 2022-02-17
Fedora HIGH 7.8
CVE-2022-0629

Stack-based Buffer Overflow in GitHub repository vim/vim prior to 8.2.

Fix: 8.2.4397 / 13.0+
Fix from $1,950 2022-02-17
Debian Linux CRITICAL 9.8
CVE-2021-43299

Stack overflow in PJSUA API when calling pjsua_player_create. An attacker-controlled 'filename' argument may cause a buffer overflow since it is copi…

Fix: after 2.11.1
Fix from $2,300 2022-02-16
Debian Linux CRITICAL 9.8
CVE-2021-43300

Stack overflow in PJSUA API when calling pjsua_recorder_create. An attacker-controlled 'filename' argument may cause a buffer overflow since it is co…

Fix: after 2.11.1
Fix from $2,300 2022-02-16
Debian Linux CRITICAL 9.8
CVE-2021-43301

Stack overflow in PJSUA API when calling pjsua_playlist_create. An attacker-controlled 'file_names' argument may cause a buffer overflow since it is …

Fix: after 2.11.1
Fix from $2,300 2022-02-16
Fedora HIGH 7.8
CVE-2022-23803

A stack-based buffer overflow vulnerability exists in the Gerber Viewer gerber and excellon ReadXYCoord coordinate parsing functionality of KiCad EDA…

No fix yet
Fix from $1,950 2022-02-16
Fedora HIGH 7.8
CVE-2022-23804

A stack-based buffer overflow vulnerability exists in the Gerber Viewer gerber and excellon ReadIJCoord coordinate parsing functionality of KiCad EDA…

No fix yet
Fix from $1,950 2022-02-16
After Effects HIGH 7.8
CVE-2022-23200

Adobe After Effects versions 22.1.1 (and earlier) and 18.4.3 (and earlier) are affected by an out-of-bounds write vulnerability that could result in …

Fix: after 22.1.1
Fix from $1,950 2022-02-16
Illustrator HIGH 7.8
CVE-2022-23186

Adobe Illustrator versions 25.4.3 (and earlier) and 26.0.2 (and earlier) are affected by an out-of-bounds write vulnerability that could result in ar…

Fix: after 26.0.2
Fix from $1,950 2022-02-16
Hancom Office 2020 HIGH 7.8
CVE-2021-21958

A heap-based buffer overflow vulnerability exists in the Hword HwordApp.dll functionality of Hancom Office 2020 11.0.0.2353. A specially-crafted malf…

No fix yet
Fix from $1,950 2022-02-16
Ax12 Firmware HIGH 7.5
CVE-2021-45391

A Buffer Overflow vulnerability exists in Tenda Router AX12 V22.03.01.21_CN in the sub_422CE4 function in the goform/setIPv6Status binary file /usr/s…

No fix yet
Fix from $1,950 2022-02-16
Sp 320dn Firmware CRITICAL 9.8
CVE-2021-33945

RICOH Printer series SP products 320DN, SP 325DNw, SP 320SN, SP 320SFN, SP 325SNw, SP 325SFNw, SP 330SN, Aficio SP 3500SF, SP 221S, SP 220SNw, SP 221…

No fix yet
Fix from $2,300 2022-02-15
Phaser 4622 Firmware CRITICAL 9.8
CVE-2021-37354

Xerox Phaser 4622 v35.013.01.000 was discovered to contain a buffer overflow in the function sub_3226AC via the TIMEZONE variable. This vulnerability…

No fix yet
Fix from $2,300 2022-02-15
Ac11 Firmware CRITICAL 9.8
CVE-2021-46262

Tenda AC Series Router AC11_V02.03.01.104_CN was discovered to contain a stack buffer overflow in the PPPoE module. This vulnerability allows attacke…

No fix yet
Fix from $2,300 2022-02-15
Ac11 Firmware CRITICAL 9.8
CVE-2021-46263

Tenda AC Series Router AC11_V02.03.01.104_CN was discovered to contain a stack buffer overflow in the wifiTime module. This vulnerability allows atta…

No fix yet
Fix from $2,300 2022-02-15
Ac11 Firmware CRITICAL 9.8
CVE-2021-46264

Tenda AC Series Router AC11_V02.03.01.104_CN was discovered to contain a stack buffer overflow in the onlineList module. This vulnerability allows at…

No fix yet
Fix from $2,300 2022-02-15
Ac11 Firmware CRITICAL 9.8
CVE-2021-46265

Tenda AC Series Router AC11_V02.03.01.104_CN was discovered to contain a stack buffer overflow in the wanBasicCfg module. This vulnerability allows a…

No fix yet
Fix from $2,300 2022-02-15
Ac11 Firmware CRITICAL 9.8
CVE-2021-46321

Tenda AC Series Router AC11_V02.03.01.104_CN was discovered to contain a stack buffer overflow in the wifiBasicCfg module. This vulnerability allows …

No fix yet
Fix from $2,300 2022-02-15
Wireshark HIGH 7.5
CVE-2022-0583

Crash in the PVFS protocol dissector in Wireshark 3.6.0 to 3.6.1 and 3.4.0 to 3.4.11 allows denial of service via packet injection or crafted capture…

Fix: 3.4.12 / 3.6.2+
Fix from $1,950 2022-02-14
Mujs CRITICAL 9.8
CVE-2021-45005

Artifex MuJS v1.1.3 was discovered to contain a heap buffer overflow which is caused by conflicting JumpList of nested try/finally statements.

Patch available
Fix from $2,300 2022-02-14
Ax12 Firmware HIGH 7.5
CVE-2021-45392EPSS 12%

A Buffer Overflow vulnerability exists in Tenda Router AX12 V22.03.01.21_CN in the sub_422CE4 function in page /goform/setIPv6Status via the prefixDe…

No fix yet
Fix from $1,950 2022-02-14