Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Out-of-bounds WriteCWE-787 × clear
Linux Kernel HIGH 7.8
CVE-2021-3612

An out-of-bounds memory write flaw was found in the Linux kernel's joystick devices subsystem in versions before 5.9-rc1, in the way the user calls i…

Fix: 5.9.0+
Fix from $1,950 2021-07-09
Enterprise Linux HIGH 8.8
CVE-2021-3570

A flaw was found in the ptp4l program of the linuxptp package. A missing length check when forwarding a PTP message between ports allows a remote att…

Fix: 1.5.1 / 1.6.1+
Fix from $1,950 2021-07-09
Prusaslicer HIGH 7.8
CVE-2020-28598

An out-of-bounds write vulnerability exists in the Admesh stl_fix_normal_directions() functionality of Prusa Research PrusaSlicer 2.2.0 and Master (c…

No fix yet
Fix from $1,950 2021-07-08
Imagegear HIGH 8.8
CVE-2021-21793

An out-of-bounds write vulnerability exists in the JPG sof_nb_comp header processing functionality of Accusoft ImageGear 19.8 and 19.9. A specially c…

No fix yet
Fix from $1,950 2021-07-08
Imagegear HIGH 7.8
CVE-2021-21794

An out-of-bounds write vulnerability exists in the TIF bits_per_sample processing functionality of Accusoft ImageGear 19.9. A specially crafted malfo…

Mitigation only
Fix from $1,950 2021-07-08
Imagegear CRITICAL 9.8
CVE-2021-21821

A stack-based buffer overflow vulnerability exists in the PDF process_fontname functionality of Accusoft ImageGear 19.9. A specially crafted malforme…

No fix yet
Fix from $2,300 2021-07-08
Ruckus Iot Controller HIGH 8.8
CVE-2021-33217

An issue was discovered in CommScope Ruckus IoT Controller 1.7.1.0 and earlier. The Web Application allows Arbitrary Read/Write actions by authentica…

Fix: after 1.7.1.0
Fix from $1,950 2021-07-07
Routeros MEDIUM 6.5
CVE-2020-20215

Mikrotik RouterOs 6.44.6 (long-term tree) suffers from a memory corruption vulnerability in the /nova/bin/diskd process. An authenticated remote atta…

Mitigation only
Fix from $1,600 2021-07-07
Linux Kernel HIGH 7.8
CVE-2021-22555 KEVEPSS 79%

A heap out-of-bounds write affecting Linux since v2.6.19-rc1 was discovered in net/netfilter/x_tables.c. This allows an attacker to gain privileges o…

Fix: 4.4.267 / 4.9.267+
Fix from $1,950 2021-07-07
Wpantund MEDIUM 6.8
CVE-2021-33889

OpenThread wpantund through 2021-07-02 has a stack-based Buffer Overflow because of an inconsistency in the integer data type for metric_len.

Fix: after 2021-07-02
Fix from $1,600 2021-07-02
Pc10g Cpu Firmware HIGH 7.5
CVE-2021-27477

When JTEKT Corporation TOYOPUC PLC versions PC10G-CPU, 2PORT-EFR, Plus CPU, Plus EX, Plus EX2, Plus EFR, Plus EFR2, Plus 2P-EFR, PC10P-DP, PC10P-DP-I…

Fix: 1.50 / 3.11+
Fix from $1,950 2021-07-01
Uwebsockets HIGH 8.8
CVE-2020-36406

uWebSockets 18.11.0 and 18.12.0 has a stack-based buffer overflow in uWS::TopicTree::trimTree (called from uWS::TopicTree::unsubscribeAll). NOTE: the…

Patch available
Fix from $1,950 2021-07-01
Libavif HIGH 8.8
CVE-2020-36407

libavif 0.8.0 and 0.8.1 has an out-of-bounds write in avifDecoderDataFillImageGrid.

Patch available
Fix from $1,950 2021-07-01
Ndpi HIGH 8.8
CVE-2021-36082

ntop nDPI 3.4 has a stack-based buffer overflow in processClientServerHello.

Patch available
Fix from $1,950 2021-07-01
Kimageformats MEDIUM 5.5
CVE-2021-36083

KDE KImageFormats 5.70.0 through 5.81.0 has a stack-based buffer overflow in XCFImageFormat::loadTileRLE.

Fix: after 5.81.0
Fix from $1,600 2021-07-01
Grok HIGH 7.8
CVE-2021-36089

Grok 7.6.6 through 9.2.0 has a heap-based buffer overflow in grk::FileFormatDecompress::apply_palette_clr (called from grk::FileFormatDecompress::app…

Fix: after 9.2.0
Fix from $1,950 2021-07-01
Unrar HIGH 7.8
CVE-2017-20006

UnRAR 5.6.1.2 and 5.6.1.3 has a heap-based buffer overflow in Unpack::CopyString (called from Unpack::Unpack5 and CmdExtract::ExtractCurrentFile).

Patch available
Fix from $1,950 2021-07-01
Rawspeed CRITICAL 9.8
CVE-2018-25017

RawSpeed (aka librawspeed) 3.1 has a heap-based buffer overflow in TableLookUp::setTable.

Patch available
Fix from $2,300 2021-07-01
Unrar HIGH 7.8
CVE-2018-25018

UnRAR 5.6.1.7 through 5.7.4 and 6.0.3 has an out-of-bounds write during a memcpy in QuickOpen::ReadRaw when called from QuickOpen::ReadNext.

Fix: after 5.7.4
Fix from $1,950 2021-07-01
Libzmq CRITICAL 9.8
CVE-2020-36400

ZeroMQ libzmq 4.3.3 has a heap-based buffer overflow in zmq::tcp_read, a different vulnerability than CVE-2021-20235.

Patch available
Fix from $2,300 2021-07-01
Solidity HIGH 7.8
CVE-2020-36402

Solidity 0.7.5 has a stack-use-after-return issue in smtutil::CHCSmtLib2Interface::querySolver. NOTE: c39a5e2b7a3fabbf687f53a2823fc087be6c1a7e is cit…

Patch available
Fix from $1,950 2021-07-01
Htslib HIGH 8.8
CVE-2020-36403

HTSlib through 1.10.2 allows out-of-bounds write access in vcf_parse_format (called from vcf_parse and vcf_read).

Fix: after 1.10.2
Fix from $1,950 2021-07-01
Emui CRITICAL 9.8
CVE-2021-22345

There is an Input Verification Vulnerability in Huawei Smartphone. Successful exploitation of this vulnerability may cause out-of-bounds memory write.

No fix yet
Fix from $2,300 2021-06-30
Debian Linux MEDIUM 5.5
CVE-2021-3630

An out-of-bounds write vulnerability was found in DjVuLibre in DJVU::DjVuTXT::decode() in DjVuText.cpp via a crafted djvu file which may lead to cras…

Fix: 3.5.28+
Fix from $1,600 2021-06-30
Jetson Linux MEDIUM 6.0
CVE-2021-34373

Trusty trusted Linux kernel (TLK) contains a vulnerability in the NVIDIA TLK kernel where a lack of heap hardening could cause heap overflows, which …

Fix: 32.5.1+
Fix from $1,600 2021-06-30
Jetson Linux MEDIUM 6.7
CVE-2021-34375

Trusty contains a vulnerability in all trusted applications (TAs) where the stack cookie was not randomized, which might result in stack-based buffer…

Fix: 32.5.1+
Fix from $1,600 2021-06-30
Jetson Linux MEDIUM 6.7
CVE-2021-34379

Trusty contains a vulnerability in the HDCP service TA where bounds checking in command 10 is missing. The length of an I/O buffer parameter is not c…

Fix: 32.5.1+
Fix from $1,600 2021-06-30
Jetson Linux HIGH 7.8
CVE-2021-34380

Bootloader contains a vulnerability in NVIDIA MB2 where potential heap overflow might cause corruption of the heap metadata, which might lead to arbi…

Fix: 32.5.1+
Fix from $1,950 2021-06-30
Jetson Linux MEDIUM 6.7
CVE-2021-34383

Bootloader contains a vulnerability in NVIDIA MB2 where a potential heap overflow might lead to denial of service or escalation of privileges.

Fix: 32.5.1+
Fix from $1,600 2021-06-30
Jetson Linux HIGH 7.8
CVE-2021-34384

Bootloader contains a vulnerability in NVIDIA MB2 where a potential heap overflow could cause memory corruption, which might lead to denial of servic…

Fix: 32.5.1+
Fix from $1,950 2021-06-30