Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Out-of-bounds WriteCWE-787 × clear
HIGH 7.8 CVE-2024-39378 Audition versions 24.4.1, 23.6.6 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in th… Audition after 24.4.1 Fix from $1,9502024-09-11 HIGH 8.8 CVE-2024-8636 Heap buffer overflow in Skia in Google Chrome prior to 128.0.6613.137 allowed a remote attacker to potentially exploit heap corruption via a crafted … Chrome 128.0.6613.137+ Fix from $1,9502024-09-11 HIGH 7.8 CVE-2024-31336 In PVRSRVBridgeRGXKickTA3D2 of server_rgxta3d_bridge.c, there is a possible arbitrary code execution due to improper input validation. This could lea… Android Mitigation only Fix from $1,9502024-09-11 HIGH 7.8 CVE-2024-40658 In getConfig of SoftVideoDecoderOMXComponent.cpp, there is a possible out of bounds write due to a heap buffer overflow. This could lead to local esc… Android Patch available Fix from $1,9502024-09-11 MEDIUM 5.5 CVE-2024-27365 An issue was discovered in Samsung Mobile Processor Exynos Exynos 980, Exynos 850, Exynos 1080, Exynos 1280, Exynos 1380, Exynos 1330, Exynos 1480, E… Exynos 980 Firmware Mitigation only Fix from $1,6002024-09-09 HIGH 7.8 CVE-2024-27383 An issue was discovered in Samsung Mobile Processor Exynos 980, Exynos 850, Exynos 1280, Exynos 1380, and Exynos 1330. In the function slsi_get_scan_… Exynos 980 Firmware Mitigation only Fix from $1,9502024-09-09 HIGH 7.8 CVE-2024-27387 An issue was discovered in Samsung Mobile Processor Exynos 980, Exynos 850, Exynos 1280, Exynos 1380, and Exynos 1330. In the function slsi_rx_range_… Exynos 1080 Firmware Mitigation only Fix from $1,9502024-09-09 HIGH 7.5 CVE-2024-44375 D-Link DI-8100 v16.07.26A1 has a stack overflow vulnerability in the dbsrv_asp function. Di 8100 Firmware No fix yet Fix from $1,9502024-09-09 HIGH 7.8 CVE-2023-52916 In the Linux kernel, the following vulnerability has been resolved: media: aspeed: Fix memory overwrite if timing is 1600x900 When capturing 1600x9… Linux Kernel 6.1.120 / 6.6+ Fix from $1,9502024-09-06 HIGH 8.2 CVE-2024-32668 An insufficient boundary validation in the USB code could lead to an out-of-bounds write on the heap, with data controlled by the caller. A maliciou… FreeBSD 13.3+ Fix from $1,9502024-09-05 HIGH 8.4 CVE-2024-45288 A missing null-termination character in the last element of an nvlist array string can lead to writing outside the allocated buffer. Mitigation only Fix from $1,9502024-09-05 HIGH 8.4 CVE-2024-41928 Malicious software running in a guest VM can exploit the buffer overflow to achieve code execution on the host in the bhyve userspace process, which … Mitigation only Fix from $1,9502024-09-05 MEDIUM 6.7 CVE-2024-42642 Micron Crucial MX500 Series Solid State Drives M3CR046 is vulnerable to Buffer Overflow, which can be triggered by sending specially crafted ATA pack… Mx500 Firmware No fix yet Fix from $1,6002024-09-04 HIGH 7.8 CVE-2024-44977 In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: Validate TA binary size Add TA binary size validation to avoid OOB … Debian Linux 6.1.107 / 6.6.48+ Fix from $1,9502024-09-04 CRITICAL 9.8 CVE-2024-8408 A vulnerability was found in Linksys WRT54G 4.21.5. It has been rated as critical. Affected by this issue is the function validate_services_port of t… Wrt54g Firmware No fix yet Fix from $2,3002024-09-04 CRITICAL 9.8 CVE-2024-34657 Stack-based out-of-bounds write in Samsung Notes prior to version 4.4.21.62 allows remote attackers to execute arbitrary code. Notes 4.4.21.62+ Fix from $2,3002024-09-04 HIGH 7.8 CVE-2024-34660 Heap-based out-of-bounds write in Samsung Notes prior to version 4.4.21.62 allows local attackers to execute arbitrary code. Notes 4.4.21.62+ Fix from $1,9502024-09-04 HIGH 8.8 CVE-2024-7970 Out of bounds write in V8 in Google Chrome prior to 128.0.6613.119 allowed a remote attacker to potentially exploit heap corruption via a crafted HTM… Chrome 128.0.6613.119+ Fix from $1,9502024-09-03 CRITICAL 9.8 CVE-2024-8389 Memory safety bugs present in Firefox 129. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of the… Firefox Mitigation only Fix from $2,3002024-09-03 CRITICAL 9.8 CVE-2024-8384 The JavaScript garbage collector could mis-color cross-compartment objects if OOM conditions were detected at the right point between two passes. Thi… Firefox 115.15 / 128.2+ Fix from $2,3002024-09-03 CRITICAL 9.8 CVE-2024-8387 Memory safety bugs present in Firefox 129, Firefox ESR 128.1, and Thunderbird 128.1. Some of these bugs showed evidence of memory corruption and we p… Firefox Mitigation only Fix from $2,3002024-09-03 MEDIUM 5.5 CVE-2024-45306 Vim is an open source, command line text editor. Patch v9.1.0038 optimized how the cursor position is calculated and removed a loop, that verified th… Vim 9.1.0707+ Fix from $1,6002024-09-02 HIGH 7.8 CVE-2024-33052 Memory corruption when user provides data for FM HCI command control operations. Apq8017 Firmware Patch available Fix from $1,9502024-09-02 HIGH 7.8 CVE-2024-33054 Memory corruption during the handshake between the Primary Virtual Machine and Trusted Virtual Machine. Fastconnect 6700 Firmware Patch available Fix from $1,9502024-09-02 HIGH 7.8 CVE-2024-33038 Memory corruption while passing untrusted/corrupted pointers from DSP to EVA. Fastconnect 6700 Firmware Patch available Fix from $1,9502024-09-02 HIGH 7.8 CVE-2024-33042 Memory corruption when Alternative Frequency offset value is set to 255. Apq8017 Firmware Patch available Fix from $1,9502024-09-02 HIGH 7.8 CVE-2024-33045 Memory corruption when BTFM client sends new messages over Slimbus to ADSP. Ar8035 Firmware Patch available Fix from $1,9502024-09-02 HIGH 7.8 CVE-2024-39816 in OpenHarmony v4.1.0 and prior versions allow a local attacker arbitrary code execution in pre-installed apps through out-of-bounds write. Openharmony after 4.1 Fix from $1,9502024-09-02 MEDIUM 6.7 CVE-2024-20086 In vdec, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System executio… Android Mitigation only Fix from $1,6002024-09-02 MEDIUM 6.7 CVE-2024-20087 In vdec, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System executio… Android Mitigation only Fix from $1,6002024-09-02