Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Out-of-bounds WriteCWE-787 × clear
Xplatform CRITICAL 9.8
CVE-2020-7853

An outbound read/write vulnerability exists in XPLATFORM that does not check offset input ranges, allowing out-of-range data to be read. An attacker …

Fix: after 9.2.2.250
Fix from $2,300 2021-03-24
Rbw30 Firmware HIGH 8.4
CVE-2021-29081

Certain NETGEAR devices are affected by a stack-based buffer overflow by an unauthenticated attacker. This affects RBW30 before 2.6.2.2, RBK852 befor…

Fix: 2.6.2.2 / 3.2.17.12+
Fix from $1,950 2021-03-23
R8000p Firmware HIGH 8.4
CVE-2021-29073

Certain NETGEAR devices are affected by a stack-based buffer overflow by an authenticated user. This affects R8000P before 1.4.1.66, MK62 before 1.0.…

Fix: 1.0.2.82 / 1.0.6.110+
Fix from $1,950 2021-03-23
Rbw30 Firmware HIGH 8.4
CVE-2021-29074

Certain NETGEAR devices are affected by a stack-based buffer overflow by an authenticated user. This affects RBW30 before 2.6.2.2, RBK852 before 3.2.…

Fix: 2.6.2.2 / 3.2.17.12+
Fix from $1,950 2021-03-23
Rbw30 Firmware HIGH 8.4
CVE-2021-29075

Certain NETGEAR devices are affected by a stack-based buffer overflow by an authenticated user. This affects RBW30 before 2.6.2.2, RBK852 before 3.2.…

Fix: 2.6.2.2 / 3.2.17.12+
Fix from $1,950 2021-03-23
Pillow CRITICAL 9.8
CVE-2021-25289

An issue was discovered in Pillow before 8.1.1. TiffDecode has a heap-based buffer overflow when decoding crafted YCbCr files because of certain inte…

Fix: 8.1.1+
Fix from $2,300 2021-03-19
Pillow HIGH 7.5
CVE-2021-25290

An issue was discovered in Pillow before 8.1.1. In TiffDecode.c, there is a negative-offset memcpy with an invalid size.

Fix: 8.1.1+
Fix from $1,950 2021-03-19
Fedora HIGH 7.5
CVE-2020-26797

Mediainfo before version 20.08 has a heap buffer overflow vulnerability via MediaInfoLib::File_Gxf::ChooseParser_ChannelGrouping.

Fix: 20.08+
Fix from $1,950 2021-03-18
Cairo HIGH 7.8
CVE-2020-35492

A flaw was found in cairo's image-compositor.c in all versions prior to 1.17.4. This flaw allows an attacker who can provide a crafted input file to …

Fix: 1.17.4+
Fix from $1,950 2021-03-18
Image Viewer HIGH 7.8
CVE-2021-26233

FastStone Image Viewer <= 7.5 is affected by a user mode write access violation near NULL at 0x005bdfcb, triggered when a user opens or views a malfo…

Fix: after 7.5
Fix from $1,950 2021-03-18
Image Viewer HIGH 7.8
CVE-2021-26234

FastStone Image Viewer <= 7.5 is affected by a user mode write access violation at 0x00402d8a, triggered when a user opens or views a malformed CUR f…

Fix: after 7.5
Fix from $1,950 2021-03-18
Image Viewer HIGH 7.8
CVE-2021-26237

FastStone Image Viewer <= 7.5 is affected by a user mode write access violation at 0x00402d7d, triggered when a user opens or views a malformed CUR f…

Fix: after 7.5
Fix from $1,950 2021-03-18
Image Viewer HIGH 7.8
CVE-2021-26236

FastStone Image Viewer v.<= 7.5 is affected by a Stack-based Buffer Overflow at 0x005BDF49, affecting the CUR file parsing functionality (BITMAPINFOH…

Fix: after 7.5
Fix from $1,950 2021-03-18
Linux Kernel HIGH 8.8
CVE-2021-28660

rtw_wx_set_scan in drivers/staging/rtl8188eu/os_dep/ioctl_linux.c in the Linux kernel through 5.11.6 allows writing beyond the end of the ->ssid[] ar…

Fix: 4.4.262 / 4.9.262+
Fix from $1,950 2021-03-17
Apq8009 Firmware CRITICAL 9.8
CVE-2020-11227

Out of bound write while parsing RTT/TTY packet parsing due to lack of check of buffer size before copying into buffer in Snapdragon Auto, Snapdragon…

Mitigation only
Fix from $2,300 2021-03-17
Apq8009 Firmware CRITICAL 9.8
CVE-2020-11192

Out of bound write while parsing SDP string due to missing check on null termination in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity,…

Mitigation only
Fix from $2,300 2021-03-17
Chrome HIGH 8.8
CVE-2021-21192

Heap buffer overflow in tab groups in Google Chrome prior to 89.0.4389.90 allowed a remote attacker to potentially exploit heap corruption via a craf…

Fix: 89.0.4389.90+
Fix from $1,950 2021-03-16
Solid Edge HIGH 7.8
CVE-2021-27380

A vulnerability has been identified in Solid Edge SE2020 (All versions < SE2020MP13), Solid Edge SE2021 (All Versions < SE2021MP4). Affected applicat…

Patch available
Fix from $1,950 2021-03-15
Ruggedcom Rm1224 Firmware HIGH 8.8
CVE-2021-25667

A vulnerability has been identified in RUGGEDCOM RM1224 (All versions >= V4.3 and < V6.4), SCALANCE M-800 (All versions >= V4.3 and < V6.4), SCALANCE…

Fix: 2.1.3 / 4.1+
Fix from $1,950 2021-03-15
Solid Edge HIGH 7.8
CVE-2020-28385

A vulnerability has been identified in Solid Edge SE2020 (All versions < SE2020MP13), Solid Edge SE2021 (All Versions < SE2021MP4). Affected applicat…

Patch available
Fix from $1,950 2021-03-15
Animate HIGH 7.8
CVE-2021-21077EPSS 8%

Adobe Animate version 21.0.3 (and earlier) is affected by a Heap-based Buffer Overflow vulnerability. An unauthenticated attacker could leverage this…

Fix: after 21.0.3
Fix from $1,950 2021-03-12
Photoshop HIGH 7.8
CVE-2021-21082

Adobe Photoshop versions 21.2.5 (and earlier) and 22.2 (and earlier) are affected by a Memory Corruption vulnerability when parsing a specially craft…

Fix: after 22.2
Fix from $1,950 2021-03-12
Photoshop 2020 HIGH 7.8
CVE-2021-21067

Adobe Photoshop versions 21.2.5 (and earlier) and 22.2 (and earlier) are affected by an Out-of-bounds Write vulnerability in the CoolType library. An…

Fix: 21.2.6 / 22.3+
Fix from $1,950 2021-03-12
Animate HIGH 7.8
CVE-2021-21071

Adobe Animate version 21.0.3 (and earlier) is affected by a Memory Corruption vulnerability. An unauthenticated attacker could leverage this vulnerab…

Fix: after 21.0.3
Fix from $1,950 2021-03-12
Vxworks CRITICAL 9.8
CVE-2016-20009

A DNS client stack-based buffer overflow in ipdnsc_decode_name() affects Wind River VxWorks 6.5 through 7. NOTE: This vulnerability only affects prod…

Fix: after 7.0
Fix from $2,300 2021-03-11
Android MEDIUM 6.7
CVE-2021-0454

In the Citadel chip firmware, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege…

Mitigation only
Fix from $1,600 2021-03-10
Android MEDIUM 6.7
CVE-2021-0455

In the Citadel chip firmware, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege…

Mitigation only
Fix from $1,600 2021-03-10
Android MEDIUM 6.7
CVE-2021-0456

In the Citadel chip firmware, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege…

Mitigation only
Fix from $1,600 2021-03-10
Android MEDIUM 6.7
CVE-2021-0457

In the FingerTipS touch screen driver, there is a possible out of bounds write due to a heap buffer overflow. This could lead to local escalation of …

Mitigation only
Fix from $1,600 2021-03-10
Android MEDIUM 6.7
CVE-2021-0461

In iaxxx_core_sensor_change_state of iaxxx-module.c, there is a possible out of bounds write due to a missing bounds check. This could lead to local …

Mitigation only
Fix from $1,600 2021-03-10