Top technology
Linux 13140
Google 12536
Microsoft 12379
Oracle 6843
Apple 6692
Adobe 6387
Ibm 6336
Cisco 5759
Debian 3919
Mozilla 2895
Apache 2864
Redhat 2592
MEDIUM 6.7
CVE-2022-26470
In aie, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of privilege with System execut…
Android
Mitigation only
HIGH 7.8
CVE-2022-25308
A stack-based buffer overflow flaw was found in the Fribidi package. This flaw allows an attacker to pass a specially crafted file to the Fribidi app…
Enterprise Linux
1.0.12+
MEDIUM 5.5
CVE-2022-25309
A heap-based buffer overflow flaw was found in the Fribidi package and affects the fribidi_cap_rtl_to_unicode() function of the fribidi-char-sets-cap…
Enterprise Linux
1.0.12+
CRITICAL 9.8
CVE-2022-26447
In BT firmware, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execution with no additional ex…
Android
Mitigation only
MEDIUM 6.7
CVE-2022-26448
In apusys, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execut…
Android
Mitigation only
MEDIUM 6.7
CVE-2022-26449
In apusys, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execut…
Android
Mitigation only
MEDIUM 6.7
CVE-2022-26455
In gz, there is a possible memory corruption due to incorrect error handling. This could lead to local escalation of privilege with System execution …
Android
Mitigation only
MEDIUM 6.7
CVE-2022-26457
In vow, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution…
Android
Mitigation only
MEDIUM 6.5
CVE-2022-38749
Using snakeYAML to parse untrusted YAML files may be vulnerable to Denial of Service attacks (DOS). If the parser is running on user supplied input, …
Debian Linux
1.31+
MEDIUM 5.5
CVE-2022-38750
Using snakeYAML to parse untrusted YAML files may be vulnerable to Denial of Service attacks (DOS). If the parser is running on user supplied input, …
Debian Linux
1.31+
MEDIUM 6.5
CVE-2022-38751
Using snakeYAML to parse untrusted YAML files may be vulnerable to Denial of Service attacks (DOS). If the parser is running on user supplied input, …
Debian Linux
1.31+
MEDIUM 6.5
CVE-2022-38752
Using snakeYAML to parse untrusted YAML files may be vulnerable to Denial of Service attacks (DOS). If the parser is running on user supplied input, …
Snakeyaml
1.32+
HIGH 7.8
CVE-2022-39843
123elf Lotus 1-2-3 before 1.0.0rc3 for Linux, and Lotus 1-2-3 R3 for UNIX and other platforms through 9.8.2, allow attackers to execute arbitrary cod…
Lotus 1 2 3
No fix yet
HIGH 7.8
CVE-2022-39831
An issue was discovered in PSPP 1.6.2. There is a heap-based buffer overflow at the function read_bytes_internal in utilities/pspp-dump-sav.c, which …
Fedora
Patch available
HIGH 7.8
CVE-2022-39832
An issue was discovered in PSPP 1.6.2. There is a heap-based buffer overflow at the function read_string in utilities/pspp-dump-sav.c, which allows a…
Fedora
No fix yet
HIGH 7.8
CVE-2022-22070
Memory corruption in audio due to lack of check of invalid routing address into APR Routing table in Snapdragon Auto, Snapdragon Compute, Snapdragon …
Aqt1000 Firmware
Mitigation only
HIGH 7.8
CVE-2022-22080
Improper validation of backend id in PCM routing process can lead to memory corruption in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivit…
Apq8053 Firmware
Patch available
CRITICAL 9.8
CVE-2022-22096
Memory corruption in Bluetooth HOST due to stack-based buffer overflow when when extracting data using command length parameter in Snapdragon Connect…
Aqt1000 Firmware
Patch available
HIGH 7.8
CVE-2022-22100
Memory corruption in multimedia due to improper check on received export descriptors in Snapdragon Auto
Apq8096au Firmware
Mitigation only
HIGH 7.8
CVE-2022-2320
A flaw was found in the Xorg-x11-server. The specific flaw exists within the handling of ProcXkbSetDeviceInfo requests. The issue results from the la…
X Server
Patch available
MEDIUM 6.5
CVE-2021-3826
Heap/stack buffer overflow in the dlang_lname function in d-demangle.c in libiberty allows attackers to potentially cause a denial of service (segmen…
Fedora
Patch available
MEDIUM 5.5
CVE-2020-35530
In LibRaw, there is an out-of-bounds write vulnerability within the "new_node()" function (libraw\src\x3f\x3f_utils_patched.cpp) that can be triggere…
Debian Linux
Patch available
HIGH 8.8
CVE-2022-36054
Contiki-NG is an open-source, cross-platform operating system for Next-Generation IoT devices. The 6LoWPAN implementation in the Contiki-NG operating…
Contiki Ng
4.8+
HIGH 7.8
CVE-2022-2892
Measuresoft ScadaPro Server (Versions prior to 6.8.0.1) uses an unmaintained ActiveX control, which may allow an out-of-bounds write condition while …
Scadapro Server
6.8.0.1+
HIGH 7.2
CVE-2022-36571
Tenda AC9 V15.03.05.19 was discovered to contain a stack overflow via the mask parameter at /goform/WanParameterSetting.
Ac9 Firmware
No fix yet
MEDIUM 5.3
CVE-2022-1841
In subsys/net/ip/tcp.c , function tcp_flags , when the incoming parameter flags is ECN or CWR , the buf will out-of-bounds write a byte zero.
Zephyr
after 3.0.0
HIGH 8.8
CVE-2022-36568
Tenda AC9 V15.03.05.19 was discovered to contain a stack overflow via the list parameter at /goform/setPptpUserList.
Ac9 Firmware
No fix yet
HIGH 8.8
CVE-2022-36569
Tenda AC9 V15.03.05.19 was discovered to contain a stack overflow via the deviceList parameter at /goform/setMacFilterCfg.
Ac9 Firmware
No fix yet
HIGH 7.2
CVE-2022-36570
Tenda AC9 V15.03.05.19 was discovered to contain a stack overflow via the time parameter at /goform/SetLEDCfg.
Ac9 Firmware
No fix yet
HIGH 7.8
CVE-2022-2866
FATEK FvDesigner version 1.5.103 and prior is vulnerable to an out-of-bounds write while processing project files. If a valid user is tricked into us…
Fvdesigner
after 1.5.103