Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Out-of-bounds WriteCWE-787 × clear
Android MEDIUM 6.7
CVE-2021-0935

In ip6_xmit of ip6_output.c, there is a possible out of bounds write due to a use after free. This could lead to local escalation of privilege with S…

Mitigation only
Fix from $1,600 2021-10-25
Android MEDIUM 6.7
CVE-2021-0940

In TBD of TBD, there is a possible out of bounds write due to improper locking. This could lead to local escalation of privilege in the kernel with S…

Mitigation only
Fix from $1,600 2021-10-25
PHP HIGH 7.0
CVE-2021-21703

In PHP versions 7.3.x up to and including 7.3.31, 7.4.x below 7.4.25 and 8.0.x below 8.0.12, when running PHP FPM SAPI with main FPM daemon process r…

Fix: 7.4.25 / 8.0.12+
Fix from $1,950 2021-10-25
Internet Download Manager HIGH 7.1
CVE-2020-23060

Internet Download Manager 6.37.11.1 was discovered to contain a stack buffer overflow in the Export/Import function. This vulnerability allows attack…

No fix yet
Fix from $1,950 2021-10-22
Internet Download Manager MEDIUM 6.7
CVE-2020-28964

Internet Download Manager 6.37.11.1 was discovered to contain a stack buffer overflow in the Search function. This vulnerability allows attackers to …

No fix yet
Fix from $1,600 2021-10-22
Versiondog HIGH 8.8
CVE-2021-38473

The affected product’s code base doesn’t properly control arguments for specific functions, which could lead to a stack overflow.

Fix: 8.0.0+
Fix from $1,950 2021-10-22
Versiondog HIGH 7.5
CVE-2021-38479

Many API function codes receive raw pointers remotely from the user and trust these pointers as valid in-bound memory regions. An attacker can manipu…

Fix: 8.0.0+
Fix from $1,950 2021-10-22
Fedora HIGH 8.8
CVE-2021-41159

FreeRDP is a free implementation of the Remote Desktop Protocol (RDP), released under the Apache license. All FreeRDP clients prior to version 2.4.1 …

Fix: 2.4.1+
Fix from $1,950 2021-10-21
Fedora HIGH 8.8
CVE-2021-41160

FreeRDP is a free implementation of the Remote Desktop Protocol (RDP), released under the Apache license. In affected versions a malicious server mig…

Fix: 2.4.1+
Fix from $1,950 2021-10-21
Linux Kernel MEDIUM 6.7
CVE-2021-42327

dp_link_settings_write in drivers/gpu/drm/amd/display/amdgpu_dm/amdgpu_dm_debugfs.c in the Linux kernel through 5.14.14 allows a heap-based buffer ov…

Fix: after 5.14.14
Fix from $1,600 2021-10-21
Apex One HIGH 7.8
CVE-2021-42012

A stack-based buffer overflow vulnerability in Trend Micro Apex One, Apex One as a Service and Worry-Free Business Security 10.0 SP1 could allow a lo…

Patch available
Fix from $1,950 2021-10-21
Mf971r Firmware CRITICAL 9.8
CVE-2021-21748

ZTE MF971R product has two stack-based buffer overflow vulnerabilities. An attacker could exploit the vulnerabilities to execute arbitrary code.

Mitigation only
Fix from $2,300 2021-10-20
Mf971r Firmware CRITICAL 9.8
CVE-2021-21749

ZTE MF971R product has two stack-based buffer overflow vulnerabilities. An attacker could exploit the vulnerabilities to execute arbitrary code.

Mitigation only
Fix from $2,300 2021-10-20
Mysql Cluster MEDIUM 6.3
CVE-2021-35593EPSS 51%

Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are 7.4.33 and prior, …

Fix: after 8.0.26
Fix from $1,600 2021-10-20
Mysql Cluster MEDIUM 6.3
CVE-2021-35590EPSS 88%

Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are 7.4.33 and prior, …

Fix: after 8.0.26
Fix from $1,600 2021-10-20
Linux Kernel MEDIUM 6.7
CVE-2021-42739

The firewire subsystem in the Linux kernel through 5.14.13 has a buffer overflow related to drivers/media/firewire/firedtv-avc.c and drivers/media/fi…

Fix: after 5.14.13
Fix from $1,600 2021-10-20
Apq8017 Firmware HIGH 7.8
CVE-2021-30256

Possible stack overflow due to improper validation of camera name length before copying the name in VR Service in Snapdragon Compute, Snapdragon Conn…

Mitigation only
Fix from $1,950 2021-10-20
Apq8017 Firmware HIGH 7.8
CVE-2021-30257

Possible out of bound read or write in VR service due to lack of validation of DSP selection values in Snapdragon Compute, Snapdragon Connectivity, S…

Mitigation only
Fix from $1,950 2021-10-20
Apq8017 Firmware HIGH 7.8
CVE-2021-30258

Possible buffer overflow due to improper size calculation of payload received in VR service in Snapdragon Auto, Snapdragon Compute, Snapdragon Connec…

Mitigation only
Fix from $1,950 2021-10-20
Apq8009 Firmware HIGH 7.8
CVE-2021-30288

Possible stack overflow due to improper length check of TLV while copying the TLV to a local stack variable in Snapdragon Auto, Snapdragon Compute, S…

Mitigation only
Fix from $1,950 2021-10-20
Apq8017 Firmware HIGH 7.8
CVE-2021-30291

Possible memory corruption due to lack of validation of client data used for memory allocation in Snapdragon Auto, Snapdragon Compute, Snapdragon Con…

Mitigation only
Fix from $1,950 2021-10-20
Apq8017 Firmware HIGH 7.8
CVE-2021-30292

Possible memory corruption due to lack of validation of client data used for memory allocation in Snapdragon Auto, Snapdragon Compute, Snapdragon Con…

Mitigation only
Fix from $1,950 2021-10-20
Apq8009 Firmware HIGH 7.8
CVE-2021-1959

Possible memory corruption due to lack of bound check of input index in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Cons…

Mitigation only
Fix from $1,950 2021-10-20
Apq8009 Firmware MEDIUM 5.3
CVE-2021-1967

Possible stack buffer overflow due to lack of check on the maximum number of post NAN discovery attributes while processing a NAN Match event in Snap…

Patch available
Fix from $1,600 2021-10-20
Junos HIGH 7.5
CVE-2021-31383

In Point to MultiPoint (P2MP) scenarios within established sessions between network or adjacent neighbors the improper use of a source to destination…

Mitigation only
Fix from $1,950 2021-10-19
Junos HIGH 7.5
CVE-2021-31374

On Juniper Networks Junos OS and Junos OS Evolved devices processing a specially crafted BGP UPDATE or KEEPALIVE message can lead to a routing proces…

Mitigation only
Fix from $1,950 2021-10-19
Mac Os X HIGH 7.8
CVE-2021-30832

A memory corruption issue was addressed with improved state management. This issue is fixed in Security Update 2021-005 Catalina, macOS Big Sur 11.6.…

Fix: 11.6+
Fix from $1,950 2021-10-19
Safari HIGH 7.8
CVE-2021-30846

A memory corruption issue was addressed with improved memory handling. This issue is fixed in iOS 14.8 and iPadOS 14.8, Safari 15, tvOS 15, iOS 15 an…

Fix: 8.0 / 12.0.1+
Fix from $1,950 2021-10-19
Safari HIGH 7.8
CVE-2021-30848

A memory corruption issue was addressed with improved memory handling. This issue is fixed in iOS 14.8 and iPadOS 14.8, Safari 15, iOS 15 and iPadOS …

Fix: 12.0.1 / 14.8+
Fix from $1,950 2021-10-19
Safari HIGH 7.8
CVE-2021-30849

Multiple memory corruption issues were addressed with improved memory handling. This issue is fixed in iOS 14.8 and iPadOS 14.8, watchOS 8, Safari 15…

Fix: 8.0 / 12.0.1+
Fix from $1,950 2021-10-19