Vulnerability index

Browse CVEs

598 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Debian Linux CRITICAL 9.1
CVE-2023-40181

FreeRDP is a free implementation of the Remote Desktop Protocol (RDP), released under the Apache license. Affected versions are subject to an Integer…

Fix: 2.11.0+
Fix from $2,300 2023-08-31
Debian Linux CRITICAL 9.1
CVE-2023-39353

FreeRDP is a free implementation of the Remote Desktop Protocol (RDP), released under the Apache license. Affected versions are subject to a missing …

Fix: 2.11.0+
Fix from $2,300 2023-08-31
Debian Linux CRITICAL 9.1
CVE-2023-39356

FreeRDP is a free implementation of the Remote Desktop Protocol (RDP), released under the Apache license. In affected versions a missing offset valid…

Fix: 2.11.0+
Fix from $2,300 2023-08-31
Debian Linux CRITICAL 9.8
CVE-2023-39352

FreeRDP is a free implementation of the Remote Desktop Protocol (RDP), released under the Apache license. Affected versions are subject to an invalid…

Fix: 2.11.0+
Fix from $2,300 2023-08-31
Debian Linux CRITICAL 9.8
CVE-2023-39355

FreeRDP is a free implementation of the Remote Desktop Protocol (RDP), released under the Apache license. Versions of FreeRDP on the 3.x release bran…

Patch available
Fix from $2,300 2023-08-31
Debian Linux CRITICAL 9.8
CVE-2023-41361

An issue was discovered in FRRouting FRR 9.0. bgpd/bgp_open.c does not check for an overly large length of the rcv software version.

Fix: after 9.0
Fix from $2,300 2023-08-29
Debian Linux CRITICAL 9.1
CVE-2023-41360

An issue was discovered in FRRouting FRR through 9.0. bgpd/bgp_packet.c can read the initial byte of the ORF header in an ahead-of-stream situation.

Fix: after 9.0
Fix from $2,300 2023-08-29
Debian Linux CRITICAL 9.8
CVE-2022-48174

There is a stack overflow vulnerability in ash.c:6030 in busybox before 1.35. In the environment of Internet of Vehicles, this vulnerability can be e…

Fix: after 1.36.1
Fix from $2,300 2023-08-22
Debian Linux CRITICAL 9.8
CVE-2023-28879EPSS 6%

In Artifex Ghostscript through 10.01.0, there is a buffer overflow leading to potential corruption of data internal to the PostScript interpreter, in…

Fix: 10.01.0+
Fix from $2,300 2023-03-31
Debian Linux CRITICAL 9.8
CVE-2022-23121EPSS 9%

This vulnerability allows remote attackers to execute arbitrary code on affected installations of Netatalk. Authentication is not required to exploit…

Fix: 3.1.13+
Fix from $2,300 2023-03-28
Debian Linux CRITICAL 9.8
CVE-2022-23122

This vulnerability allows remote attackers to execute arbitrary code on affected installations of Netatalk. Authentication is not required to exploit…

Fix: 3.1.13+
Fix from $2,300 2023-03-28
Debian Linux CRITICAL 9.8
CVE-2022-23123

This vulnerability allows remote attackers to disclose sensitive information on affected installations of Netatalk. Authentication is not required to…

Fix: 3.1.13+
Fix from $2,300 2023-03-28
Debian Linux CRITICAL 9.8
CVE-2022-23124

This vulnerability allows remote attackers to disclose sensitive information on affected installations of Netatalk. Authentication is not required to…

Fix: 3.1.13+
Fix from $2,300 2023-03-28
Debian Linux CRITICAL 9.8
CVE-2022-23125

This vulnerability allows remote attackers to execute arbitrary code on affected installations of Netatalk. Authentication is not required to exploit…

Fix: 3.1.13+
Fix from $2,300 2023-03-28
Debian Linux CRITICAL 9.8
CVE-2022-0194

This vulnerability allows remote attackers to execute arbitrary code on affected installations of Netatalk. Authentication is not required to exploit…

Fix: 3.1.13+
Fix from $2,300 2023-03-28
Debian Linux CRITICAL 9.8
CVE-2023-27372EPSS 100%

SPIP before 4.2.1 allows Remote Code Execution via form values in the public area because serialization is mishandled. The fixed versions are 3.2.18,…

Fix: 3.2.18 / 4.0.10+
Fix from $2,300 2023-02-28
Debian Linux CRITICAL 9.8
CVE-2022-48337

GNU Emacs through 28.2 allows attackers to execute commands via shell metacharacters in the name of a source-code file, because lib-src/etags.c uses …

Fix: after 28.2
Fix from $2,300 2023-02-20
Debian Linux CRITICAL 9.1
CVE-2023-25725EPSS 5%

HAProxy before 2.7.3 may allow a bypass of access control because HTTP/1 headers are inadvertently lost in some situations, aka "request smuggling." …

Fix: 2.0.31 / 2.2.29+
Fix from $2,300 2023-02-14
Debian Linux CRITICAL 9.8
CVE-2022-4338

An integer underflow in Organization Specific TLV was found in various versions of OpenvSwitch.

Fix: 2.13.10 / 2.14.8+
Fix from $2,300 2023-01-10
Debian Linux CRITICAL 9.8
CVE-2022-4337

An out-of-bounds read in Organization Specific TLV was found in various versions of OpenvSwitch.

Fix: 2.13.10 / 2.14.8+
Fix from $2,300 2023-01-10
Debian Linux CRITICAL 9.8
CVE-2022-41794

A heap based buffer overflow vulnerability exists in the PSD thumbnail resource parsing code of OpenImageIO 2.3.19.0. A specially-crafted PSD file ca…

No fix yet
Fix from $2,300 2022-12-22
Debian Linux CRITICAL 9.8
CVE-2022-41837

An out-of-bounds write vulnerability exists in the OpenImageIO::add_exif_item_to_spec functionality of OpenImageIO Project OpenImageIO v2.4.4.2. Spec…

No fix yet
Fix from $2,300 2022-12-22
Debian Linux CRITICAL 9.8
CVE-2022-41838

A code execution vulnerability exists in the DDS scanline parsing functionality of OpenImageIO Project OpenImageIO v2.4.4.2. A specially-crafted .dds…

No fix yet
Fix from $2,300 2022-12-22
Debian Linux CRITICAL 9.8
CVE-2022-41639

A heap based buffer overflow vulnerability exists in tile decoding code of TIFF image parser in OpenImageIO master-branch-9aeece7a and v2.3.19.0. A s…

No fix yet
Fix from $2,300 2022-12-22
Debian Linux CRITICAL 9.1
CVE-2022-41649

A heap out of bounds read vulnerability exists in the handling of IPTC data while parsing TIFF images in OpenImageIO v2.3.19.0. A specially-crafted T…

No fix yet
Fix from $2,300 2022-12-22
Debian Linux CRITICAL 9.8
CVE-2022-47629

Libksba before 1.6.3 is prone to an integer overflow vulnerability in the CRL signature parser.

Fix: 1.6.3+
Fix from $2,300 2022-12-20
Debian Linux CRITICAL 9.8
CVE-2022-23537

PJSIP is a free and open source multimedia communication library written in C language implementing standard based protocols such as SIP, SDP, RTP, S…

Fix: 2.13.1+
Fix from $2,300 2022-12-20
Debian Linux CRITICAL 9.8
CVE-2022-23484

xrdp is an open source project which provides a graphical login to remote machines using Microsoft Remote Desktop Protocol (RDP). xrdp < v0.9.21 cont…

Fix: 0.9.21+
Fix from $2,300 2022-12-09
Debian Linux CRITICAL 9.1
CVE-2022-23493

xrdp is an open source project which provides a graphical login to remote machines using Microsoft Remote Desktop Protocol (RDP). xrdp < v0.9.21 cont…

Fix: 0.9.21+
Fix from $2,300 2022-12-09
Debian Linux CRITICAL 9.1
CVE-2022-23481

xrdp is an open source project which provides a graphical login to remote machines using Microsoft Remote Desktop Protocol (RDP). xrdp < v0.9.21 cont…

Fix: 0.9.21+
Fix from $2,300 2022-12-09