Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Out-of-bounds WriteCWE-787 × clear
HIGH 8.8 CVE-2023-21356 In Bluetooth, there is a possible out of bounds write due to a missing bounds check. This could lead to remote (proximal/adjacent) code execution wit… Android Mitigation only Fix from $1,9502023-10-30 MEDIUM 6.7 CVE-2023-21360 In Bluetooth, there is a possible out of bounds write due to improper input validation. This could lead to local escalation of privilege with System … Android Mitigation only Fix from $1,6002023-10-30 MEDIUM 6.7 CVE-2023-21310 In Bluetooth, there is a possible out of bounds write due to a heap buffer overflow. This could lead to local escalation of privilege with System exe… Android 14.0+ Fix from $1,6002023-10-30 MEDIUM 6.5 CVE-2023-46866 In International Color Consortium DemoIccMAX 79ecb74, CIccCLUT::Interp3d in IccProfLib/IccTagLut.cpp in libSampleICC.a attempts to access array eleme… Demoiccmax Patch available Fix from $1,6002023-10-30 HIGH 7.8 CVE-2023-40128 In several functions of xmlregexp.c, there is a possible out of bounds write due to a heap buffer overflow. This could lead to local escalation of pr… Android Patch available Fix from $1,9502023-10-27 HIGH 8.8 CVE-2023-40129 In build_read_multi_rsp of gatt_sr.cc, there is a possible out of bounds write due to a heap buffer overflow. This could lead to remote (proximal/adj… Android Patch available Fix from $1,9502023-10-27 HIGH 8.8 CVE-2022-34886 A remote code execution vulnerability was found in the firmware used in some Lenovo printers, which can be caused by a remote user pushing an illegal… Gm265dn Firmware 02.06.00.04.00+ Fix from $1,9502023-10-27 HIGH 7.8 CVE-2023-39427 In Ashlar-Vellum Cobalt, Xenon, Argon, Lithium, and Cobalt Share v12 SP0 Build (1204.77), the affected applications lack proper validation of user-su… Cobalt 12.4.1204.200+ Fix from $1,9502023-10-26 HIGH 7.5 CVE-2023-31419EPSS 61% A flaw was discovered in Elasticsearch, affecting the _search API that allowed a specially crafted query string to cause a Stack Overflow and ultimat… Elasticsearch after 8.9.0 Fix from $1,9502023-10-26 HIGH 7.8 CVE-2023-5367 A out-of-bounds write flaw was found in the xorg-x11-server. This issue occurs due to an incorrect calculation of a buffer offset when copying data s… Enterprise Linux Patch available Fix from $1,9502023-10-25 CRITICAL 9.8 CVE-2023-5730 Memory safety bugs present in Firefox 118, Firefox ESR 115.3, and Thunderbird 115.3. Some of these bugs showed evidence of memory corruption and we p… Firefox 115.4 / 115.4.1+ Fix from $2,3002023-10-25 CRITICAL 9.8 CVE-2023-5731 Memory safety bugs present in Firefox 118. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of the… Firefox 119.0+ Fix from $2,3002023-10-25 MEDIUM 6.5 CVE-2023-5568 A heap-based Buffer Overflow flaw was discovered in Samba. It could allow a remote, authenticated attacker to exploit this vulnerability to cause a d… Samba 4.19.2+ Fix from $1,6002023-10-25 HIGH 7.8 CVE-2023-5717 A heap out-of-bounds write vulnerability in the Linux kernel's Linux Kernel Performance Events (perf) component can be exploited to achieve local pri… Linux Kernel 3.3 / 3.17+ Fix from $1,9502023-10-25 HIGH 7.8 CVE-2023-4692 An out-of-bounds write flaw was found in grub2's NTFS filesystem driver. This issue may allow an attacker to present a specially crafted NTFS filesys… Enterprise Linux 2.12+ Fix from $1,9502023-10-25 CRITICAL 9.8 CVE-2023-46548 TOTOLINK X2000R Gh v1.0.0-B20230221.0948.web was discovered to contain a stack overflow via the function formWlanRedirect. X2000r Firmware No fix yet Fix from $2,3002023-10-25 CRITICAL 9.8 CVE-2023-46549 TOTOLINK X2000R Gh v1.0.0-B20230221.0948.web was discovered to contain a stack overflow via the function formSetLg. X2000r Firmware No fix yet Fix from $2,3002023-10-25 CRITICAL 9.8 CVE-2023-46550 TOTOLINK X2000R Gh v1.0.0-B20230221.0948.web was discovered to contain a stack overflow via the function formMapDelDevice. X2000r Firmware No fix yet Fix from $2,3002023-10-25 CRITICAL 9.8 CVE-2023-46551 TOTOLINK X2000R Gh v1.0.0-B20230221.0948.web was discovered to contain a stack overflow via the function formReflashClientTbl. X2000r Firmware No fix yet Fix from $2,3002023-10-25 CRITICAL 9.8 CVE-2023-46552 TOTOLINK X2000R Gh v1.0.0-B20230221.0948.web was discovered to contain a stack overflow via the function formMultiAP. X2000r Firmware No fix yet Fix from $2,3002023-10-25 CRITICAL 9.8 CVE-2023-46553 TOTOLINK X2000R Gh v1.0.0-B20230221.0948.web was discovered to contain a stack overflow via the function formParentControl. X2000r Firmware No fix yet Fix from $2,3002023-10-25 CRITICAL 9.8 CVE-2023-46554 TOTOLINK X2000R Gh v1.0.0-B20230221.0948.web was discovered to contain a stack overflow via the function formMapDel. X2000r Firmware No fix yet Fix from $2,3002023-10-25 CRITICAL 9.8 CVE-2023-46555 TOTOLINK X2000R Gh v1.0.0-B20230221.0948.web was discovered to contain a stack overflow via the function formPortFw. X2000r Firmware No fix yet Fix from $2,3002023-10-25 CRITICAL 9.8 CVE-2023-46556 TOTOLINK X2000R Gh v1.0.0-B20230221.0948.web was discovered to contain a stack overflow via the function formFilter. X2000r Firmware No fix yet Fix from $2,3002023-10-25 CRITICAL 9.8 CVE-2023-46557 TOTOLINK X2000R Gh v1.0.0-B20230221.0948.web was discovered to contain a stack overflow via the function formMultiAPVLAN. X2000r Firmware No fix yet Fix from $2,3002023-10-25 CRITICAL 9.8 CVE-2023-46558 TOTOLINK X2000R Gh v1.0.0-B20230221.0948.web was discovered to contain a stack overflow via the function formMapDelDevice. X2000r Firmware No fix yet Fix from $2,3002023-10-25 CRITICAL 9.8 CVE-2023-46559 TOTOLINK X2000R Gh v1.0.0-B20230221.0948.web was discovered to contain a stack overflow via the function formIPv6Addr. X2000r Firmware No fix yet Fix from $2,3002023-10-25 CRITICAL 9.8 CVE-2023-46560 TOTOLINK X2000R Gh v1.0.0-B20230221.0948.web was discovered to contain a stack overflow via the function formTcpipSetup. X2000r Firmware No fix yet Fix from $2,3002023-10-25 CRITICAL 9.8 CVE-2023-46562 TOTOLINK X2000R Gh v1.0.0-B20230221.0948.web was discovered to contain a stack overflow via the function formDosCfg. X2000r Firmware No fix yet Fix from $2,3002023-10-25 CRITICAL 9.8 CVE-2023-46563 TOTOLINK X2000R Gh v1.0.0-B20230221.0948.web was discovered to contain a stack overflow via the function formIpQoS. X2000r Firmware No fix yet Fix from $2,3002023-10-25