Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Out-of-bounds WriteCWE-787 × clear
HIGH 7.8 CVE-2023-27914 A maliciously crafted X_B file when parsed through Autodesk® AutoCAD® 2023 can be used to write beyond the allocated buffer causing a Stack Buffer Ov… Autocad 2023.1.3+ Fix from $1,9502023-04-14 HIGH 7.8 CVE-2023-27915 A maliciously crafted X_B file when parsed through Autodesk® AutoCAD® 2023 could lead to memory corruption vulnerability by read access violation. Th… Autocad 2023.1.3+ Fix from $1,9502023-04-14 HIGH 7.8 CVE-2023-29067 A maliciously crafted X_B file when parsed through Autodesk® AutoCAD® 2023 could lead to memory corruption vulnerability by write access violation. T… Autocad 2023.1.3+ Fix from $1,9502023-04-14 HIGH 8.8 CVE-2023-29584 mp4v2 v2.0.0 was discovered to contain a heap buffer overflow via the MP4GetVideoProfileLevel function at /src/mp4.cpp. Mp4v2 No fix yet Fix from $1,9502023-04-14 HIGH 7.8 CVE-2023-29491 ncurses before 6.4 20230408, when used by a setuid application, allows local users to trigger security-relevant memory corruption via malformed data … Ncurses 6.4+ Fix from $1,9502023-04-14 HIGH 7.8 CVE-2023-26416 Adobe Substance 3D Designer version 12.4.0 (and earlier) is affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary cod… Substance 3d Designer after 12.4.0 Fix from $1,9502023-04-13 HIGH 7.8 CVE-2023-26415 Adobe Substance 3D Designer version 12.4.0 (and earlier) is affected by an out-of-bounds write vulnerability that could result in arbitrary code exec… Substance 3d Designer after 12.4.0 Fix from $1,9502023-04-13 HIGH 7.8 CVE-2023-26412 Adobe Substance 3D Designer version 12.4.0 (and earlier) is affected by a Stack-based Buffer Overflow vulnerability that could result in arbitrary co… Substance 3d Designer after 12.4.0 Fix from $1,9502023-04-13 HIGH 7.8 CVE-2023-26413 Adobe Substance 3D Designer version 12.4.0 (and earlier) is affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary cod… Substance 3d Designer after 12.4.0 Fix from $1,9502023-04-13 CRITICAL 9.8 CVE-2022-25740 Memory corruption in modem due to buffer overwrite while building an IPv6 multicast address based on the MAC address of the iface Mdm8207 Firmware Mitigation only Fix from $2,3002023-04-13 CRITICAL 9.8 CVE-2022-25678 Memory correction in modem due to buffer overwrite during coap connection Mdm8207 Firmware Mitigation only Fix from $2,3002023-04-13 HIGH 7.8 CVE-2023-26394 Adobe Substance 3D Stager version 2.0.1 (and earlier) is affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code e… Substance 3d Stager after 2.0.1 Fix from $1,9502023-04-12 HIGH 7.8 CVE-2023-26390 Adobe Substance 3D Stager version 2.0.1 (and earlier) is affected by a Stack-based Buffer Overflow vulnerability that could result in arbitrary code … Substance 3d Stager after 2.0.1 Fix from $1,9502023-04-12 HIGH 7.8 CVE-2023-26383 Adobe Substance 3D Stager version 2.0.1 (and earlier) is affected by a Stack-based Buffer Overflow vulnerability that could result in arbitrary code … Substance 3d Stager after 2.0.1 Fix from $1,9502023-04-12 HIGH 7.8 CVE-2023-21582 Adobe Digital Editions version 4.5.11.187303 (and earlier) is affected by an out-of-bounds write vulnerability that could result in arbitrary code ex… Digital Editions 4.5.11.187658+ Fix from $1,9502023-04-12 MEDIUM 5.5 CVE-2023-1906 A heap-based buffer overflow issue was discovered in ImageMagick's ImportMultiSpectralQuantum() function in MagickCore/quantum-import.c. An attacker … Fedora 6.9.12-84+ Fix from $1,6002023-04-12 HIGH 7.8 CVE-2023-26395 Adobe Acrobat Reader versions 23.001.20093 (and earlier) and 20.005.30441 (and earlier) are affected by an out-of-bounds write vulnerability that cou… Acrobat after 23.001.20093 Fix from $1,9502023-04-12 HIGH 7.8 CVE-2023-26372 Adobe Dimension version 3.4.8 (and earlier) is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the … Dimension after 3.4.8 Fix from $1,9502023-04-12 HIGH 7.8 CVE-2023-26373 Adobe Dimension version 3.4.8 (and earlier) is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the … Dimension after 3.4.8 Fix from $1,9502023-04-12 MEDIUM 6.5 CVE-2023-28488 client.c in gdhcp in ConnMan through 1.41 could be used by network-adjacent attackers (operating a crafted DHCP server) to cause a stack-based buffer… Connman after 1.41 Fix from $1,6002023-04-12 HIGH 8.8 CVE-2023-22613 An issue was discovered in IhisiSmm in Insyde InsydeH2O with kernel 5.0 through 5.5. It is possible to write to an attacker-controlled address. An at… Insydeh2o Mitigation only Fix from $1,9502023-04-11 HIGH 7.8 CVE-2023-28252 KEVEPSS 49% Windows Common Log File System Driver Elevation of Privilege Vulnerability Windows 10 1507 10.0.10240.19869 / 10.0.14393.5850+ Fix from $1,9502023-04-11 MEDIUM 5.6 CVE-2023-26551 mstolfp in libntp/mstolfp.c in NTP 4.2.8p15 has an out-of-bounds write in the cp<cpdec while loop. An adversary may be able to attack a client ntpq p… Ntp Mitigation only Fix from $1,6002023-04-11 MEDIUM 5.6 CVE-2023-26552 mstolfp in libntp/mstolfp.c in NTP 4.2.8p15 has an out-of-bounds write when adding a decimal point. An adversary may be able to attack a client ntpq … Ntp Mitigation only Fix from $1,6002023-04-11 MEDIUM 5.6 CVE-2023-26553 mstolfp in libntp/mstolfp.c in NTP 4.2.8p15 has an out-of-bounds write when copying the trailing number. An adversary may be able to attack a client … Ntp Mitigation only Fix from $1,6002023-04-11 MEDIUM 5.6 CVE-2023-26554 mstolfp in libntp/mstolfp.c in NTP 4.2.8p15 has an out-of-bounds write when adding a '\0' character. An adversary may be able to attack a client ntpq… Ntp Mitigation only Fix from $1,6002023-04-11 MEDIUM 6.4 CVE-2023-26555 praecis_parse in ntpd/refclock_palisade.c in NTP 4.2.8p15 has an out-of-bounds write. Any attack method would be complex, e.g., with a manipulated GP… Ntp Mitigation only Fix from $1,6002023-04-11 HIGH 8.8 CVE-2023-22612 An issue was discovered in IhisiSmm in Insyde InsydeH2O with kernel 5.0 through 5.5. A malicious host OS can invoke an Insyde SMI handler with malfor… Insydeh2o Mitigation only Fix from $1,9502023-04-11 HIGH 8.8 CVE-2023-22614 An issue was discovered in ChipsetSvcSmm in Insyde InsydeH2O with kernel 5.0 through 5.5. There is insufficient input validation in BIOS Guard update… Insydeh2o No fix yet Fix from $1,9502023-04-11 HIGH 8.4 CVE-2023-22615 An issue was discovered in IhisiSmm in Insyde InsydeH2O with kernel 5.0 through 5.5. IHISI subfunction execution may corrupt SMRAM. An attacker can p… Insydeh2o Mitigation only Fix from $1,9502023-04-11