Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Out-of-bounds WriteCWE-787 × clear
CRITICAL 9.8 CVE-2023-47118 ClickHouse® is an open-source column-oriented database management system that allows generating analytical data reports in real-time. A heap buffer o… Clickhouse 23.3.16.7 / 23.8.6.16+ Fix from $2,3002023-12-20 HIGH 7.5 CVE-2023-46804 An attacker sending specially crafted data packets to the Mobile Device Server can cause memory corruption which could result to a Denial of Service … Avalanche 6.4.2+ Fix from $1,9502023-12-19 CRITICAL 9.8 CVE-2023-46261EPSS 11% An attacker sending specially crafted data packets to the Mobile Device Server can cause memory corruption which could result to a Denial of Service … Avalanche 6.4.2+ Fix from $2,3002023-12-19 HIGH 7.5 CVE-2023-46803 An attacker sending specially crafted data packets to the Mobile Device Server can cause memory corruption which could result to a Denial of Service … Avalanche 6.4.2+ Fix from $1,9502023-12-19 CRITICAL 9.8 CVE-2023-46224EPSS 7% An attacker sending specially crafted data packets to the Mobile Device Server can cause memory corruption which could result to a Denial of Service … Avalanche 6.4.2+ Fix from $2,3002023-12-19 CRITICAL 9.8 CVE-2023-46225EPSS 11% An attacker sending specially crafted data packets to the Mobile Device Server can cause memory corruption which could result to a Denial of Service … Avalanche 6.4.2+ Fix from $2,3002023-12-19 CRITICAL 9.8 CVE-2023-46257EPSS 11% An attacker sending specially crafted data packets to the Mobile Device Server can cause memory corruption which could result to a Denial of Service … Avalanche 6.4.2+ Fix from $2,3002023-12-19 CRITICAL 9.8 CVE-2023-46258EPSS 7% An attacker sending specially crafted data packets to the Mobile Device Server can cause memory corruption which could result to a Denial of Service … Avalanche 6.4.2+ Fix from $2,3002023-12-19 CRITICAL 9.8 CVE-2023-46259EPSS 11% An attacker sending specially crafted data packets to the Mobile Device Server can cause memory corruption which could result to a Denial of Service … Avalanche 6.4.2+ Fix from $2,3002023-12-19 CRITICAL 9.8 CVE-2023-46260EPSS 10% An attacker sending specially crafted data packets to the Mobile Device Server can cause memory corruption which could result to a Denial of Service … Avalanche 6.4.2+ Fix from $2,3002023-12-19 CRITICAL 9.8 CVE-2023-46216EPSS 36% An attacker sending specially crafted data packets to the Mobile Device Server can cause memory corruption which could result to a Denial of Service … Avalanche 6.4.2+ Fix from $2,3002023-12-19 CRITICAL 9.8 CVE-2023-46217EPSS 36% An attacker sending specially crafted data packets to the Mobile Device Server can cause memory corruption which could result to a Denial of Service … Avalanche 6.4.2+ Fix from $2,3002023-12-19 CRITICAL 9.8 CVE-2023-46220EPSS 11% An attacker sending specially crafted data packets to the Mobile Device Server can cause memory corruption which could result to a Denial of Service … Avalanche 6.4.2+ Fix from $2,3002023-12-19 CRITICAL 9.8 CVE-2023-46221EPSS 7% An attacker sending specially crafted data packets to the Mobile Device Server can cause memory corruption which could result to a Denial of Service … Avalanche 6.4.2+ Fix from $2,3002023-12-19 CRITICAL 9.8 CVE-2023-46222EPSS 7% An attacker sending specially crafted data packets to the Mobile Device Server can cause memory corruption which could result to a Denial of Service … Avalanche 6.4.2+ Fix from $2,3002023-12-19 CRITICAL 9.8 CVE-2023-46223EPSS 7% An attacker sending specially crafted data packets to the Mobile Device Server can cause memory corruption which could result to a Denial of Service … Avalanche 6.4.2+ Fix from $2,3002023-12-19 CRITICAL 9.8 CVE-2023-41727EPSS 36% An attacker sending specially crafted data packets to the Mobile Device Server can cause memory corruption which could result to a Denial of Service … Avalanche 6.4.2+ Fix from $2,3002023-12-19 HIGH 8.8 CVE-2023-6873 Memory safety bugs present in Firefox 120. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of the… Firefox 121.0+ Fix from $1,9502023-12-19 HIGH 7.0 CVE-2023-6931 A heap out-of-bounds write vulnerability in the Linux kernel's Performance Events system component can be exploited to achieve local privilege escala… Linux Kernel 6.7+ Fix from $1,9502023-12-19 HIGH 8.8 CVE-2023-6856EPSS 20% The WebGL `DrawElementsInstanced` method was susceptible to a heap buffer overflow when used on systems with the Mesa VM driver. This issue could al… Firefox 115.6 / 121.0+ Fix from $1,9502023-12-19 HIGH 8.8 CVE-2023-6858 Firefox was susceptible to a heap buffer overflow in `nsTextFragment` due to insufficient OOM handling. This vulnerability affects Firefox ESR < 115.… Firefox 115.6 / 121.0+ Fix from $1,9502023-12-19 HIGH 8.8 CVE-2023-6861 The `nsWindow::PickerOpen(void)` method was susceptible to a heap buffer overflow when running in headless mode. This vulnerability affects Firefox E… Firefox 115.6 / 121.0+ Fix from $1,9502023-12-19 HIGH 8.8 CVE-2023-6864 Memory safety bugs present in Firefox 120, Firefox ESR 115.5, and Thunderbird 115.5. Some of these bugs showed evidence of memory corruption and we p… Firefox 115.6 / 121.0+ Fix from $1,9502023-12-19 HIGH 7.8 CVE-2023-6314 Stack-based buffer overflow in FPWin Pro version 7.7.0.0 and all previous versions may allow attackers to execute arbitrary code via a specially craf… Fpwin Pro after 7.7.0.0 Fix from $1,9502023-12-19 HIGH 7.5 CVE-2023-3430 A vulnerability was found in OpenImageIO, where a heap buffer overflow exists in the src/gif.imageio/gifinput.cpp file. This flaw allows a remote att… Openimageio No fix yet Fix from $1,9502023-12-18 HIGH 7.8 CVE-2023-47038 A vulnerability was found in perl 5.30.0 through 5.38.0. This issue occurs when a crafted regular expression is compiled by perl, which can allow an … Perl after 5.38.0 Fix from $1,9502023-12-18 CRITICAL 9.8 CVE-2023-50965 In MicroHttpServer (aka Micro HTTP Server) through 4398570, _ReadStaticFiles in lib/middleware.c allows a stack-based buffer overflow and potentially… Micro Http Server No fix yet Fix from $2,3002023-12-17 CRITICAL 9.8 CVE-2023-6888 A vulnerability classified as critical was found in PHZ76 RtspServer 1.0.0. This vulnerability affects the function ParseRequestLine of the file Rtsp… Rtspserver No fix yet Fix from $2,3002023-12-17 CRITICAL 9.1 CVE-2023-4020 An unvalidated input in a library function responsible for communicating between secure and non-secure memory in Silicon Labs TrustZone implementatio… Gecko Software Development Kit 4.4.0+ Fix from $2,3002023-12-15 CRITICAL 9.8 CVE-2023-33222 When handling contactless cards, usage of a specific function to get additional information from the card which doesn't check the boundary on the da… Sigma Lite Firmware 1.2.7 / 2.12.2+ Fix from $2,3002023-12-15