Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Out-of-bounds WriteCWE-787 × clear
MEDIUM 6.7 CVE-2022-26470 In aie, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of privilege with System execut… Android Mitigation only Fix from $1,6002022-09-06 HIGH 7.8 CVE-2022-25308 A stack-based buffer overflow flaw was found in the Fribidi package. This flaw allows an attacker to pass a specially crafted file to the Fribidi app… Enterprise Linux 1.0.12+ Fix from $1,9502022-09-06 MEDIUM 5.5 CVE-2022-25309 A heap-based buffer overflow flaw was found in the Fribidi package and affects the fribidi_cap_rtl_to_unicode() function of the fribidi-char-sets-cap… Enterprise Linux 1.0.12+ Fix from $1,6002022-09-06 CRITICAL 9.8 CVE-2022-26447 In BT firmware, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execution with no additional ex… Android Mitigation only Fix from $2,3002022-09-06 MEDIUM 6.7 CVE-2022-26448 In apusys, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execut… Android Mitigation only Fix from $1,6002022-09-06 MEDIUM 6.7 CVE-2022-26449 In apusys, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execut… Android Mitigation only Fix from $1,6002022-09-06 MEDIUM 6.7 CVE-2022-26455 In gz, there is a possible memory corruption due to incorrect error handling. This could lead to local escalation of privilege with System execution … Android Mitigation only Fix from $1,6002022-09-06 MEDIUM 6.7 CVE-2022-26457 In vow, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution… Android Mitigation only Fix from $1,6002022-09-06 MEDIUM 6.5 CVE-2022-38749 Using snakeYAML to parse untrusted YAML files may be vulnerable to Denial of Service attacks (DOS). If the parser is running on user supplied input, … Debian Linux 1.31+ Fix from $1,6002022-09-05 MEDIUM 5.5 CVE-2022-38750 Using snakeYAML to parse untrusted YAML files may be vulnerable to Denial of Service attacks (DOS). If the parser is running on user supplied input, … Debian Linux 1.31+ Fix from $1,6002022-09-05 MEDIUM 6.5 CVE-2022-38751 Using snakeYAML to parse untrusted YAML files may be vulnerable to Denial of Service attacks (DOS). If the parser is running on user supplied input, … Debian Linux 1.31+ Fix from $1,6002022-09-05 MEDIUM 6.5 CVE-2022-38752 Using snakeYAML to parse untrusted YAML files may be vulnerable to Denial of Service attacks (DOS). If the parser is running on user supplied input, … Snakeyaml 1.32+ Fix from $1,6002022-09-05 HIGH 7.8 CVE-2022-39843 123elf Lotus 1-2-3 before 1.0.0rc3 for Linux, and Lotus 1-2-3 R3 for UNIX and other platforms through 9.8.2, allow attackers to execute arbitrary cod… Lotus 1 2 3 No fix yet Fix from $1,9502022-09-05 HIGH 7.8 CVE-2022-39831 An issue was discovered in PSPP 1.6.2. There is a heap-based buffer overflow at the function read_bytes_internal in utilities/pspp-dump-sav.c, which … Fedora Patch available Fix from $1,9502022-09-05 HIGH 7.8 CVE-2022-39832 An issue was discovered in PSPP 1.6.2. There is a heap-based buffer overflow at the function read_string in utilities/pspp-dump-sav.c, which allows a… Fedora No fix yet Fix from $1,9502022-09-05 HIGH 7.8 CVE-2022-22070 Memory corruption in audio due to lack of check of invalid routing address into APR Routing table in Snapdragon Auto, Snapdragon Compute, Snapdragon … Aqt1000 Firmware Mitigation only Fix from $1,9502022-09-02 HIGH 7.8 CVE-2022-22080 Improper validation of backend id in PCM routing process can lead to memory corruption in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivit… Apq8053 Firmware Patch available Fix from $1,9502022-09-02 CRITICAL 9.8 CVE-2022-22096 Memory corruption in Bluetooth HOST due to stack-based buffer overflow when when extracting data using command length parameter in Snapdragon Connect… Aqt1000 Firmware Patch available Fix from $2,3002022-09-02 HIGH 7.8 CVE-2022-22100 Memory corruption in multimedia due to improper check on received export descriptors in Snapdragon Auto Apq8096au Firmware Mitigation only Fix from $1,9502022-09-02 HIGH 7.8 CVE-2022-2320 A flaw was found in the Xorg-x11-server. The specific flaw exists within the handling of ProcXkbSetDeviceInfo requests. The issue results from the la… X Server Patch available Fix from $1,9502022-09-01 MEDIUM 6.5 CVE-2021-3826 Heap/stack buffer overflow in the dlang_lname function in d-demangle.c in libiberty allows attackers to potentially cause a denial of service (segmen… Fedora Patch available Fix from $1,6002022-09-01 MEDIUM 5.5 CVE-2020-35530 In LibRaw, there is an out-of-bounds write vulnerability within the "new_node()" function (libraw\src\x3f\x3f_utils_patched.cpp) that can be triggere… Debian Linux Patch available Fix from $1,6002022-09-01 HIGH 8.8 CVE-2022-36054 Contiki-NG is an open-source, cross-platform operating system for Next-Generation IoT devices. The 6LoWPAN implementation in the Contiki-NG operating… Contiki Ng 4.8+ Fix from $1,9502022-09-01 HIGH 7.8 CVE-2022-2892 Measuresoft ScadaPro Server (Versions prior to 6.8.0.1) uses an unmaintained ActiveX control, which may allow an out-of-bounds write condition while … Scadapro Server 6.8.0.1+ Fix from $1,9502022-08-31 HIGH 7.2 CVE-2022-36571 Tenda AC9 V15.03.05.19 was discovered to contain a stack overflow via the mask parameter at /goform/WanParameterSetting. Ac9 Firmware No fix yet Fix from $1,9502022-08-31 MEDIUM 5.3 CVE-2022-1841 In subsys/net/ip/tcp.c , function tcp_flags , when the incoming parameter flags is ECN or CWR , the buf will out-of-bounds write a byte zero. Zephyr after 3.0.0 Fix from $1,6002022-08-31 HIGH 8.8 CVE-2022-36568 Tenda AC9 V15.03.05.19 was discovered to contain a stack overflow via the list parameter at /goform/setPptpUserList. Ac9 Firmware No fix yet Fix from $1,9502022-08-31 HIGH 8.8 CVE-2022-36569 Tenda AC9 V15.03.05.19 was discovered to contain a stack overflow via the deviceList parameter at /goform/setMacFilterCfg. Ac9 Firmware No fix yet Fix from $1,9502022-08-31 HIGH 7.2 CVE-2022-36570 Tenda AC9 V15.03.05.19 was discovered to contain a stack overflow via the time parameter at /goform/SetLEDCfg. Ac9 Firmware No fix yet Fix from $1,9502022-08-31 HIGH 7.8 CVE-2022-2866 FATEK FvDesigner version 1.5.103 and prior is vulnerable to an out-of-bounds write while processing project files. If a valid user is tricked into us… Fvdesigner after 1.5.103 Fix from $1,9502022-08-31