Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Out-of-bounds WriteCWE-787 × clear
Debian Linux HIGH 7.8
CVE-2021-3498

GStreamer before 1.18.4 might cause heap corruption when parsing certain malformed Matroska files.

Fix: 1.18.4+
Fix from $1,950 2021-04-19
Gpac HIGH 7.8
CVE-2021-29279

There is a integer overflow in function filter_core/filter_props.c:gf_props_assign_value in GPAC 1.0.1. In which, the arg const GF_PropertyValue *val…

Patch available
Fix from $1,950 2021-04-19
Gpac MEDIUM 5.5
CVE-2021-30019

In the adts_dmx_process function in filters/reframe_adts.c in GPAC 1.0.1, a crafted file may cause ctx->hdr.frame_size to be smaller than ctx->hdr.hd…

Patch available
Fix from $1,600 2021-04-19
Gpac MEDIUM 5.5
CVE-2021-30020

In the function gf_hevc_read_pps_bs_internal function in media_tools/av_parsers.c in GPAC 1.0.1 there is a loop, which with crafted file, pps->num_ti…

Patch available
Fix from $1,600 2021-04-19
Gpac HIGH 7.8
CVE-2021-31254

Buffer overflow in the tenc_box_read function in MP4Box in GPAC 1.0.1 allows attackers to cause a denial of service or execute arbitrary code via a c…

Patch available
Fix from $1,950 2021-04-19
Fbx Review HIGH 7.8
CVE-2021-27028

A Memory Corruption Vulnerability in Autodesk FBX Review version 1.5.0 and prior may lead to remote code execution through maliciously crafted DLL fi…

Fix: after 1.5.0
Fix from $1,950 2021-04-19
Debian Linux MEDIUM 6.5
CVE-2021-31229

An issue was discovered in libezxml.a in ezXML 0.8.6. The function ezxml_internal_dtd() performs incorrect memory handling while parsing crafted XML …

Patch available
Fix from $1,600 2021-04-15
Bridge HIGH 7.8
CVE-2021-21092

Adobe Bridge versions 10.1.1 (and earlier) and 11.0.1 (and earlier) are affected by a memory corruption vulnerability when parsing a specially crafte…

Fix: after 11.0.1
Fix from $1,950 2021-04-15
Bridge HIGH 7.8
CVE-2021-21093

Adobe Bridge versions 10.1.1 (and earlier) and 11.0.1 (and earlier) are affected by a memory corruption vulnerability when parsing a specially crafte…

Fix: after 11.0.1
Fix from $1,950 2021-04-15
Bridge HIGH 7.8
CVE-2021-21094

Adobe Bridge versions 10.1.1 (and earlier) and 11.0.1 (and earlier) are affected by an Out-of-bounds write vulnerability when parsing a specially cra…

Fix: after 11.0.1
Fix from $1,950 2021-04-15
Bridge HIGH 7.8
CVE-2021-21095

Adobe Bridge versions 10.1.1 (and earlier) and 11.0.1 (and earlier) are affected by an Out-of-bounds write vulnerability when parsing a crafted file.…

Fix: after 11.0.1
Fix from $1,950 2021-04-15
Cs158 Af Firmware CRITICAL 9.8
CVE-2020-28592

A heap-based buffer overflow vulnerability exists in the configuration server functionality of the Cosori Smart 5.8-Quart Air Fryer CS158-AF 1.1.0. A…

No fix yet
Fix from $2,300 2021-04-15
Android MEDIUM 6.7
CVE-2021-0488

In pb_write of pb_encode.c, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege w…

Patch available
Fix from $1,600 2021-04-15
Br200 Firmware HIGH 8.8
CVE-2021-27253

This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of NETGEAR Nighthawk R7800. Although authent…

Fix: 1.0.0.134 / 1.0.1.60+
Fix from $1,950 2021-04-14
Dir 816 Firmware CRITICAL 9.8
CVE-2021-27114EPSS 25%

An issue was discovered in D-Link DIR-816 A2 1.10 B05 devices. Within the handler function of the /goform/addassignment route, a very long text entry…

No fix yet
Fix from $2,300 2021-04-14
Surveillance Station CRITICAL 9.8
CVE-2021-28797EPSS 6%

A stack-based buffer overflow vulnerability has been reported to affect QNAP NAS devices running Surveillance Station. If exploited, this vulnerabili…

Fix: 5.1.5.3.3 / 5.1.5.4.3+
Fix from $2,300 2021-04-14
365 Apps HIGH 7.1
CVE-2021-28452

Microsoft Outlook Memory Corruption Vulnerability

Patch available
Fix from $1,950 2021-04-13
Windows 10 1803 HIGH 7.8
CVE-2021-28310 KEVEPSS 8%

Win32k Elevation of Privilege Vulnerability

Patch available
Fix from $1,950 2021-04-13
Imagegear HIGH 7.8
CVE-2021-21784

An out-of-bounds write vulnerability exists in the JPG format SOF marker processing of Accusoft ImageGear 19.8. A specially crafted malformed file ca…

No fix yet
Fix from $1,950 2021-04-13
Android HIGH 7.8
CVE-2021-0439

In setPowerModeWithHandle of com_android_server_power_PowerManagerService.cpp, there is a possible out of bounds write due to a missing bounds check.…

Patch available
Fix from $1,950 2021-04-13
Android HIGH 7.8
CVE-2021-0426

In parsePrimaryFieldFirstUidAnnotation of LogEvent.cpp, there is a possible out of bounds write due to a heap buffer overflow. This could lead to loc…

Patch available
Fix from $1,950 2021-04-13
Android HIGH 7.8
CVE-2021-0427

In parseExclusiveStateAnnotation of LogEvent.cpp, there is a possible out of bounds write due to a heap buffer overflow. This could lead to local esc…

Patch available
Fix from $1,950 2021-04-13
Android CRITICAL 9.8
CVE-2021-0430

In rw_mfc_handle_read_op of rw_mfc.cc, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code executio…

Patch available
Fix from $2,300 2021-04-13
Vxworks CRITICAL 9.8
CVE-2021-29998

An issue was discovered in Wind River VxWorks before 6.5. There is a possible heap overflow in dhcp client.

Fix: 6.5+
Fix from $2,300 2021-04-13
Vxworks CRITICAL 9.8
CVE-2021-29999

An issue was discovered in Wind River VxWorks through 6.8. There is a possible stack overflow in dhcp server.

Fix: after 6.8
Fix from $2,300 2021-04-13
Fortiproxy MEDIUM 6.5
CVE-2019-17656

A Stack-based Buffer Overflow vulnerability in the HTTPD daemon of FortiOS 6.0.10 and below, 6.2.2 and below and FortiProxy 1.0.x, 1.1.x, 1.2.9 and b…

Fix: 1.2.10 / 2.0.2+
Fix from $1,600 2021-04-12
Rust HIGH 7.5
CVE-2020-36317

In the standard library in Rust before 1.49.0, String::retain() function has a panic safety problem. It allows creation of a non-UTF-8 Rust string wh…

Fix: 1.49.0+
Fix from $1,950 2021-04-11
Chrome HIGH 8.8
CVE-2021-21196

Heap buffer overflow in TabStrip in Google Chrome on Windows prior to 89.0.4389.114 allowed a remote attacker to potentially exploit heap corruption …

Fix: 89.0.4389.114+
Fix from $1,950 2021-04-09
Chrome HIGH 8.8
CVE-2021-21197

Heap buffer overflow in TabStrip in Google Chrome prior to 89.0.4389.114 allowed a remote attacker to potentially exploit heap corruption via a craft…

Fix: 89.0.4389.114+
Fix from $1,950 2021-04-09
Android CRITICAL 9.8
CVE-2021-25360

An improper input validation vulnerability in libswmfextractor library prior to SMR APR-2021 Release 1 allows attackers to execute arbitrary code on …

Mitigation only
Fix from $2,300 2021-04-09