Top technology
Linux 13140
Google 12536
Microsoft 12379
Oracle 6843
Apple 6692
Adobe 6387
Ibm 6336
Cisco 5759
Debian 3919
Mozilla 2895
Apache 2864
Redhat 2592
HIGH 7.8
CVE-2024-27459EPSS 8%
The interactive service in OpenVPN 2.6.9 and earlier allows an attacker to send data causing a stack overflow which can be used to execute arbitrary …
Openvpn
2.5.10 / 2.6.10+
HIGH 8.8
CVE-2024-29506
Artifex Ghostscript before 10.03.0 has a stack-based buffer overflow in the pdfi_apply_filter() function via a long PDF filter name.
Ghostscript
10.03.0+
HIGH 8.8
CVE-2024-29509
Artifex Ghostscript before 10.03.0 has a heap-based overflow when PDFPassword (e.g., for runpdf) has a \000 byte in the middle.
Ghostscript
10.03.0+
HIGH 7.8
CVE-2022-25480
Vulnerability in Realtek RtsPer driver for PCIe Card Reader (RtsPer.sys) before 10.0.22000.21355 and Realtek RtsUer driver for USB Card Reader (RtsUe…
Rtsper
10.0.22000.21355 / 10.0.22000.31274+
HIGH 7.8
CVE-2024-4467
A flaw was found in the QEMU disk image utility (qemu-img) 'info' command. A specially crafted image file containing a `json:{}` value describing blo…
Mitigation only
MEDIUM 5.5
CVE-2024-22103
Out-of-Bounds Write vulnerability in Jungo WinDriver before 12.6.0 allows local attackers to cause a Windows blue screen error and Denial of Service …
Windriver
12.6.0+
MEDIUM 5.5
CVE-2024-22104
Out-of-Bounds Write vulnerability in Jungo WinDriver before 12.5.1 allows local attackers to cause a Windows blue screen error and Denial of Service …
Windriver
12.5.1+
MEDIUM 5.5
CVE-2023-51778
Out-of-Bounds Write vulnerability in Jungo WinDriver before 12.1.0 allows local attackers to cause a Windows blue screen error and Denial of Service …
Windriver
12.1.0+
HIGH 7.8
CVE-2024-20901
Improper input validation in copying data to buffer cache in libsaped prior to SMR Jul-2024 Release 1 allows local attackers to write out-of-bounds m…
Android
Mitigation only
HIGH 7.8
CVE-2024-20893
Improper input validation in libmediaextractorservice.so prior to SMR Jul-2024 Release 1 allows local attackers to trigger memory corruption.
Android
Mitigation only
CRITICAL 9.8
CVE-2024-37077
in OpenHarmony v4.0.0 and prior versions allow a remote attacker arbitrary code execution in pre-installed apps through out-of-bounds write.
Openharmony
after 4.0
CRITICAL 9.8
CVE-2024-37185
in OpenHarmony v4.0.0 and prior versions allow a remote attacker arbitrary code execution in pre-installed apps through out-of-bounds write.
Openharmony
after 4.0
CRITICAL 9.8
CVE-2024-36243
in OpenHarmony v4.0.0 and prior versions allow a remote attacker arbitrary code execution in pre-installed apps through out-of-bounds read and write.
Openharmony
after 4.0
CRITICAL 9.8
CVE-2024-36260
in OpenHarmony v4.0.0 and prior versions allow a remote attacker arbitrary code execution in pre-installed apps through out-of-bounds write.
Openharmony
after 4.0
HIGH 7.8
CVE-2024-21469
Memory corruption when an invoke call and a TEE call are bound for the same trusted application.
9205 Lte Modem Firmware
No fix yet
HIGH 7.8
CVE-2023-43554
Memory corruption while processing IOCTL handler in FastRPC.
Aqt1000 Firmware
No fix yet
MEDIUM 6.2
CVE-2024-39430
In faceid servive, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service with no addition…
Android
Mitigation only
MEDIUM 6.2
CVE-2024-39429
In faceid servive, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service with no addition…
Android
Mitigation only
MEDIUM 6.7
CVE-2024-20079
In gnss service, there is a possible out of bounds write due to improper input validation. This could lead to local escalation of privilege with Syst…
Android
Mitigation only
MEDIUM 6.7
CVE-2024-20081
In gnss service, there is a possible out of bounds write due to improper input validation. This could lead to local escalation of privilege with Syst…
Yocto
Mitigation only
HIGH 8.8
CVE-2024-39840
Factorio before 1.1.101 allows a crafted server to execute arbitrary code on clients via a custom map that leverages the ability of certain Lua base …
Mitigation only
MEDIUM 6.5
CVE-2024-38533
ZKsync Era is a layer 2 rollup that uses zero-knowledge proofs to scale Ethereum. There is possible invalid stack access due to the addresses used to…
Mitigation only
CRITICAL 9.8
CVE-2024-6403
A vulnerability, which was classified as critical, has been found in Tenda A301 15.13.08.12. Affected by this issue is the function formWifiBasicSet …
A301 Firmware
No fix yet
CRITICAL 9.8
CVE-2024-6402
A vulnerability classified as critical was found in Tenda A301 15.13.08.12. Affected by this vulnerability is the function fromSetWirelessRepeat of t…
A301 Firmware
No fix yet
HIGH 8.8
CVE-2024-29176
Dell PowerProtect DD, version(s) 8.0, 7.13.1.0, 7.10.1.30, 7.7.5.40, contain(s) an Out-of-bounds Write vulnerability. A low privileged attacker with …
Data Domain Operating System
5.16.0.0 / 7.7.5.40+
MEDIUM 6.3
CVE-2024-37894EPSS 6%
Squid is a caching proxy for the Web supporting HTTP, HTTPS, FTP, and more. Due to an Out-of-bounds Write error when assigning ESI variables, Squid i…
Squid
6.10+
HIGH 7.8
CVE-2024-37006
A maliciously crafted CATPRODUCT file, when parsed in CC5Dll.dll through Autodesk applications, can lead to a memory corruption vulnerability by writ…
Autocad
2022.1.5 / 2023.1.6+
HIGH 7.8
CVE-2024-36999
A maliciously crafted 3DM file, when parsed in opennurbs.dll through Autodesk applications, can force an Out-of-Bounds Write. A malicious actor can l…
Autocad
2022.1.5 / 2023.1.6+
HIGH 7.8
CVE-2024-37003
A maliciously crafted DWG and SLDPRT file, when parsed in opennurbs.dll and ODXSW_DLL.dll through Autodesk applications, can be used to cause a Stack…
Autocad
2022.1.5 / 2023.1.6+
HIGH 7.8
CVE-2024-23154
A maliciously crafted SLDPRT file, when parsed in ODXSW_DLL.dll through Autodesk applications, can be used to cause a Heap-based Overflow. A maliciou…
Autocad
2022.1.5 / 2023.1.6+