Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Out-of-bounds WriteCWE-787 × clear
Arena HIGH 7.3
CVE-2024-12672

A third-party vulnerability exists in the Rockwell Automation Arena® that could allow a threat actor to write beyond the boundaries of allocated memo…

Fix: after 16.20.07
Fix from $1,950 2024-12-19
Unclassified MEDIUM 6.5
CVE-2024-7139

Due to an unchecked buffer length, a specially crafted L2CAP packet can cause a buffer overflow. This buffer overflow triggers an assert, which resul…

Mitigation only
Fix from $1,600 2024-12-19
Unclassified MEDIUM 6.5
CVE-2024-7137

The L2CAP receive data buffer for L2CAP packets is restricted to packet sizes smaller than the maximum supported packet size. Receiving a packet that…

No fix yet
Fix from $1,600 2024-12-19
Fortios HIGH 8.8
CVE-2020-12820

Under non-default configuration, a stack-based buffer overflow in FortiOS version 6.0.10 and below, version 5.6.12 and below may allow a remote attac…

Fix: 5.6.13 / 6.0.11+
Fix from $1,950 2024-12-19
Fortios HIGH 7.5
CVE-2020-12819

A heap-based buffer overflow vulnerability in the processing of Link Control Protocol messages in FortiGate versions 5.6.12, 6.0.10, 6.2.4 and 6.4.1 …

Fix: 5.6.13 / 6.0.11+
Fix from $1,950 2024-12-19
Acrobat Dc HIGH 7.8
CVE-2022-44512

Acrobat Reader DC version 22.001.20085 (and earlier), 20.005.3031x (and earlier) and 17.012.30205 (and earlier) are affected by an out-of-bounds writ…

Fix: after 22.001.20085
Fix from $1,950 2024-12-19
Acrobat Dc HIGH 7.8
CVE-2022-44513

Acrobat Reader DC version 22.001.20085 (and earlier), 20.005.3031x (and earlier) and 17.012.30205 (and earlier) are affected by an out-of-bounds writ…

Fix: after 22.001.20085
Fix from $1,950 2024-12-19
Chrome HIGH 8.8
CVE-2024-12693

Out of bounds memory access in V8 in Google Chrome prior to 131.0.6778.204 allowed a remote attacker to execute arbitrary code inside a sandbox via a…

Fix: 131.0.6778.204+
Fix from $1,950 2024-12-18
Chrome HIGH 8.8
CVE-2024-12695

Out of bounds write in V8 in Google Chrome prior to 131.0.6778.204 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted…

Fix: 131.0.6778.204+
Fix from $1,950 2024-12-18
Android HIGH 7.8
CVE-2024-47038

In dhd_prot_flowrings_pool_release of dhd_msgbuf.c, there is a possible outcof bounds write due to a missing bounds check. This could lead to localce…

Mitigation only
Fix from $1,950 2024-12-18
Navisworks HIGH 7.8
CVE-2024-12669

A maliciously crafted DWFX file, when parsed through Autodesk Navisworks, can be used to cause a Heap-based Overflow vulnerability. A malicious actor…

Fix: 2025.4+
Fix from $1,950 2024-12-17
Navisworks HIGH 7.8
CVE-2024-12670

A maliciously crafted DWFX file, when parsed through Autodesk Navisworks, can be used to cause a Heap-based Overflow vulnerability. A malicious actor…

Fix: 2025.4+
Fix from $1,950 2024-12-17
Navisworks HIGH 7.8
CVE-2024-12671

A maliciously crafted DWFX file, when parsed through Autodesk Navisworks, may force an Out-of-Bounds Write vulnerability. A malicious actor may lever…

Fix: 2025.4+
Fix from $1,950 2024-12-17
Navisworks HIGH 7.8
CVE-2024-12191

A maliciously crafted DWFX file, when parsed through Autodesk Navisworks, may force an Out-of-Bounds Write vulnerability. A malicious actor may lever…

Fix: 2025.4+
Fix from $1,950 2024-12-17
Navisworks HIGH 7.8
CVE-2024-12192

A maliciously crafted DWF file, when parsed through Autodesk Navisworks, may force an Out-of-Bounds Write vulnerability. A malicious actor may levera…

Fix: 2025.4+
Fix from $1,950 2024-12-17
Navisworks HIGH 7.8
CVE-2024-12193

A maliciously crafted DWFX file, when parsed through Autodesk Navisworks, may force an Out-of-Bounds Write vulnerability. A malicious actor may lever…

Fix: 2025.4+
Fix from $1,950 2024-12-17
Navisworks HIGH 7.8
CVE-2024-12194

A maliciously crafted DWFX file, when parsed through Autodesk Navisworks, can force a Memory Corruption vulnerability. A malicious actor can leverage…

Fix: 2025.4+
Fix from $1,950 2024-12-17
Navisworks HIGH 7.8
CVE-2024-12197

A maliciously crafted DWFX file, when parsed through Autodesk Navisworks, may force an Out-of-Bounds Write vulnerability. A malicious actor may lever…

Fix: 2025.4+
Fix from $1,950 2024-12-17
Navisworks HIGH 7.8
CVE-2024-12198

A maliciously crafted DWFX file, when parsed through Autodesk Navisworks, may force an Out-of-Bounds Write vulnerability. A malicious actor may lever…

Fix: 2025.4+
Fix from $1,950 2024-12-17
Navisworks HIGH 7.8
CVE-2024-12199

A maliciously crafted DWFX file, when parsed through Autodesk Navisworks, may force an Out-of-Bounds Write vulnerability. A malicious actor may lever…

Fix: 2025.4+
Fix from $1,950 2024-12-17
Navisworks HIGH 7.8
CVE-2024-12200

A maliciously crafted DWFX file, when parsed through Autodesk Navisworks, may force an Out-of-Bounds Write vulnerability. A malicious actor may lever…

Fix: 2025.4+
Fix from $1,950 2024-12-17
Navisworks HIGH 7.8
CVE-2024-11422

A maliciously crafted DWFX file, when parsed through Autodesk Navisworks, can force an Out-of-Bounds Write vulnerability. A malicious actor can lever…

Fix: 2025.4+
Fix from $1,950 2024-12-17
Navisworks HIGH 7.8
CVE-2024-12178

A maliciously crafted DWFX file, when parsed through Autodesk Navisworks, can force a Memory Corruption vulnerability. A malicious actor can leverage…

Fix: 2025.4+
Fix from $1,950 2024-12-17
Navisworks HIGH 7.8
CVE-2024-12179

A maliciously crafted DWFX file, when parsed through Autodesk Navisworks, can be used to cause a Heap-based Overflow vulnerability. A malicious actor…

Fix: 2025.4+
Fix from $1,950 2024-12-17
Unclassified HIGH 8.2
CVE-2024-12668

Velocidex WinPmem versions below 4.1 suffer from an Out of Bounds Write vulnerability. By using an IO Control, a user space program can trick the dri…

Mitigation only
Fix from $1,950 2024-12-16
Zephyr MEDIUM 6.5
CVE-2024-8798

No proper validation of the length of user input in olcp_ind_handler in zephyr/subsys/bluetooth/services/ots/ots_client.c.

Fix: after 3.7.0
Fix from $1,600 2024-12-16
Connext Professional HIGH 7.1
CVE-2024-52065

Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') vulnerability in RTI Connext Professional on non-Windows (Persistence Service)…

Fix: 6.1.2.21 / 7.3.0.2+
Fix from $1,950 2024-12-13
Connext Professional HIGH 7.8
CVE-2024-52066

Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') vulnerability in RTI Connext Professional (Routing Service) allows Overflow Va…

Fix: 6.0.1.40 / 6.1.2.21+
Fix from $1,950 2024-12-13
Connext Professional CRITICAL 9.8
CVE-2024-52061

Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') vulnerability in RTI Connext Professional (Core Libraries, Queuing Service, Re…

Fix: 5.3.1.45 / 6.0.1.40+
Fix from $2,300 2024-12-13
Connext Professional HIGH 7.8
CVE-2024-52062

Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') vulnerability in RTI Connext Professional (Core Libraries) allows Overflow Var…

Fix: 5.3.1.45 / 6.0.1.40+
Fix from $1,950 2024-12-13