Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Out-of-bounds WriteCWE-787 × clear
Exynos 9820 Firmware MEDIUM 5.3
CVE-2024-46919

An issue was discovered in Samsung Mobile Processor Exynos 9820, 9825, 980, 990, 850, 1080, 2100, and 1280. Lack of a length check leads to a stack o…

Mitigation only
Fix from $1,600 2025-01-13
Unclassified HIGH 8.8
CVE-2024-47897

Software installed and run as a non-privileged user may conduct improper GPU system calls resulting in platform instability and reboots.

Mitigation only
Fix from $1,950 2025-01-13
Linux Kernel HIGH 7.8
CVE-2024-57850

In the Linux kernel, the following vulnerability has been resolved: jffs2: Prevent rtime decompress memory corruption The rtime decompression routi…

Fix: 5.4.287 / 5.10.231+
Fix from $1,950 2025-01-11
Linux Kernel HIGH 7.0
CVE-2024-57876

In the Linux kernel, the following vulnerability has been resolved: drm/dp_mst: Fix resetting msg rx state after topology removal If the MST topolo…

Fix: 5.11 / 5.16+
Fix from $1,950 2025-01-11
Linux Kernel HIGH 7.8
CVE-2024-51729

In the Linux kernel, the following vulnerability has been resolved: mm: use aligned address in copy_user_gigantic_page() In current kernel, hugetlb…

Fix: 6.12.7+
Fix from $1,950 2025-01-11
Linux Kernel HIGH 7.8
CVE-2024-52319

In the Linux kernel, the following vulnerability has been resolved: mm: use aligned address in clear_gigantic_page() In current kernel, hugetlb_no_…

Fix: 6.12.7+
Fix from $1,950 2025-01-11
Ac6 Firmware CRITICAL 9.8
CVE-2025-0349

A vulnerability classified as critical has been found in Tenda AC6 15.03.05.16. Affected is the function GetParentControlInfo of the file /goform/Get…

No fix yet
Fix from $2,300 2025-01-09
Connect Secure CRITICAL 9.0
CVE-2025-0282 KEVEPSS 100%

A stack-based buffer overflow in Ivanti Connect Secure before version 22.7R2.5, Ivanti Policy Secure before version 22.7R1.2, and Ivanti Neurons for …

Mitigation only
Fix from $2,300 2025-01-08
Connect Secure HIGH 7.0
CVE-2025-0283EPSS 17%

A stack-based buffer overflow in Ivanti Connect Secure before version 22.7R2.5, Ivanti Policy Secure before version 22.7R1.2, and Ivanti Neurons for …

Fix: 9.1 / 22.7+
Fix from $1,950 2025-01-08
Linux Kernel HIGH 7.8
CVE-2024-56784

In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Adding array index check to prevent memory corruption [Why & H…

Fix: 6.12.5+
Fix from $1,950 2025-01-08
Unclassified HIGH 7.8
CVE-2024-55412

A vulnerability exits in driver snxpsamd.sys in SUNIX Serial Driver x64 - 10.1.0.0, which allows low-privileged users to read and write arbitary i/o …

Mitigation only
Fix from $1,950 2025-01-07
Unclassified HIGH 7.8
CVE-2024-55413

A vulnerability exits in driver snxppamd.sys in SUNIX Parallel Driver x64 - 10.1.0.0, which allows low-privileged users to read and write arbitary i/…

Mitigation only
Fix from $1,950 2025-01-07
Firefox CRITICAL 9.8
CVE-2025-0247EPSS 9%

Memory safety bugs present in Firefox 133 and Thunderbird 133. Some of these bugs showed evidence of memory corruption and we presume that with enoug…

Fix: 134.0+
Fix from $2,300 2025-01-07
Firefox MEDIUM 6.5
CVE-2025-0242EPSS 13%

Memory safety bugs present in Firefox 133, Thunderbird 133, Firefox ESR 115.18, Firefox ESR 128.5, Thunderbird 115.18, and Thunderbird 128.5. Some of…

Fix: 128.6.0 / 134.0+
Fix from $1,600 2025-01-07
Firefox MEDIUM 5.1
CVE-2025-0243

Memory safety bugs present in Firefox 133, Thunderbird 133, Firefox ESR 128.5, and Thunderbird 128.5. Some of these bugs showed evidence of memory co…

Fix: 128.6.0 / 133.0+
Fix from $1,600 2025-01-07
Openharmony HIGH 8.8
CVE-2024-47398

in OpenHarmony v4.1.2 and prior versions allow a local attacker cause the device is unable to boot up through out-of-bounds write.

Fix: after 4.1.2
Fix from $1,950 2025-01-07
Suricata HIGH 7.5
CVE-2024-55627

Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine. Prior to 7.0.8, a specially cra…

Fix: 7.0.8+
Fix from $1,950 2025-01-06
Msm8996au Firmware HIGH 7.8
CVE-2024-45555

Memory corruption can occur if an already verified IFS2 image is overwritten, bypassing boot verification. This allows unauthorized programs to be in…

Mitigation only
Fix from $1,950 2025-01-06
Aqt1000 Firmware HIGH 7.8
CVE-2024-45542

Memory corruption when IOCTL call is invoked from user-space to write board data to WLAN driver.

Mitigation only
Fix from $1,950 2025-01-06
Fastconnect 6900 Firmware HIGH 7.8
CVE-2024-33041

Memory corruption when input parameter validation for number of fences is missing for fence frame IOCTL calls,

Patch available
Fix from $1,950 2025-01-06
Yocto CRITICAL 9.8
CVE-2024-20148

In wlan STA FW, there is a possible out of bounds write due to improper input validation. This could lead to remote (proximal/adjacent) code executio…

Fix: after 2.4
Fix from $2,300 2025-01-06
Nr16 MEDIUM 6.7
CVE-2024-20151

In Modem, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of privilege if a malicious a…

Mitigation only
Fix from $1,600 2025-01-06
Lr12a HIGH 8.8
CVE-2024-20154

In Modem, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execution, if a UE has connected to a…

Mitigation only
Fix from $1,950 2025-01-06
Android MEDIUM 6.7
CVE-2024-20105

In m4u, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege if a malicious actor …

Mitigation only
Fix from $1,600 2025-01-06
Yocto MEDIUM 6.7
CVE-2024-20140

In power, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege if a malicious acto…

Mitigation only
Fix from $1,600 2025-01-06
Yocto MEDIUM 6.6
CVE-2024-20143

In V6 DA, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege, if an attacker has…

Mitigation only
Fix from $1,600 2025-01-06
Yocto MEDIUM 6.6
CVE-2024-20144

In V6 DA, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege, if an attacker has…

Mitigation only
Fix from $1,600 2025-01-06
Yocto MEDIUM 6.6
CVE-2024-20145

In V6 DA, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege, if an attacker has…

Mitigation only
Fix from $1,600 2025-01-06
Yocto HIGH 8.1
CVE-2024-20146

In wlan STA driver, there is a possible out of bounds write due to improper input validation. This could lead to remote (proximal/adjacent) code exec…

Fix: after 2.5
Fix from $1,950 2025-01-06
Android HIGH 7.8
CVE-2024-53833

In prepare_response_locked of lwis_transaction.c, there is a possible out of bounds write due to improper input validation. This could lead to local…

Mitigation only
Fix from $1,950 2025-01-03