Vulnerability index

Browse CVEs

86 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Classic Buffer OverflowCWE-120 × clear
Debian Linux HIGH 7.8
CVE-2026-25506

MUNGE is an authentication service for creating and validating user credentials. From 0.5 to 0.5.17, local attacker can exploit a buffer overflow vul…

Fix: 0.5.18+
Fix from $1,950 2026-02-10
Yubiserver CRITICAL 9.8
CVE-2015-0843

yubiserver before 0.6 is prone to buffer overflows due to misuse of sprintf.

Mitigation only
Fix from $2,300 2025-06-26
Matplotlib MEDIUM 5.6
CVE-2013-1424

Buffer overflow vulnerability in matplotlib.This issue affects matplotlib: before upstream commit ba4016014cb4fb4927e36ce8ea429fed47dcb787.

Fix: 1.4.2-3.1+
Fix from $1,600 2025-06-26
Debian Linux MEDIUM 6.5
CVE-2025-25474

DCMTK v3.6.9+ DEV was discovered to contain a buffer overflow via the component /dcmimgle/diinpxt.h.

Patch available
Fix from $1,600 2025-02-18
Debian Linux MEDIUM 5.3
CVE-2025-25472

A buffer overflow in DCMTK git master v3.6.9+ DEV allows attackers to cause a Denial of Service (DoS) via a crafted DCM file.

Patch available
Fix from $1,600 2025-02-18
Debian Linux CRITICAL 9.8
CVE-2024-52533

gio/gsocks4aproxy.c in GNOME GLib before 2.82.1 has an off-by-one error and resultant buffer overflow because SOCKS4_CONN_MSG_LEN is not sufficient f…

Fix: 2.82.1+
Fix from $2,300 2024-11-11
Debian Linux HIGH 7.8
CVE-2024-46952

An issue was discovered in pdf/pdf_xref.c in Artifex Ghostscript before 10.04.0. There is a buffer overflow during handling of a PDF XRef stream (rel…

Fix: 10.04.0+
Fix from $1,950 2024-11-10
Debian Linux HIGH 7.8
CVE-2024-49996

In the Linux kernel, the following vulnerability has been resolved: cifs: Fix buffer overflow when parsing NFS reparse points ReparseDataLength is …

Fix: 5.4.287 / 5.10.231+
Fix from $1,950 2024-10-21
Debian Linux CRITICAL 9.8
CVE-2023-41361

An issue was discovered in FRRouting FRR 9.0. bgpd/bgp_open.c does not check for an overly large length of the rcv software version.

Fix: after 9.0
Fix from $2,300 2023-08-29
Debian Linux MEDIUM 6.5
CVE-2020-35357

A buffer overflow can occur when calculating the quantile value using the Statistics Library of GSL (GNU Scientific Library), versions 2.5 and 2.6. P…

Patch available
Fix from $1,600 2023-08-22
Debian Linux MEDIUM 6.5
CVE-2023-3618

A flaw was found in libtiff. A specially crafted tiff file can lead to a segmentation fault due to a buffer overflow in the Fax3Encode function in li…

Fix: 4.5.1+
Fix from $1,600 2023-07-12
Debian Linux CRITICAL 9.8
CVE-2022-23480

xrdp is an open source project which provides a graphical login to remote machines using Microsoft Remote Desktop Protocol (RDP). xrdp < v0.9.21 cont…

Fix: 0.9.21+
Fix from $2,300 2022-12-09
Debian Linux CRITICAL 9.8
CVE-2022-23479

xrdp is an open source project which provides a graphical login to remote machines using Microsoft Remote Desktop Protocol (RDP). xrdp < v0.9.21 cont…

Fix: 0.9.21+
Fix from $2,300 2022-12-09
Debian Linux CRITICAL 9.8
CVE-2022-23468

xrdp is an open source project which provides a graphical login to remote machines using Microsoft Remote Desktop Protocol (RDP). xrdp < v0.9.21 cont…

Fix: 0.9.21+
Fix from $2,300 2022-12-09
Debian Linux CRITICAL 9.8
CVE-2022-23477

xrdp is an open source project which provides a graphical login to remote machines using Microsoft Remote Desktop Protocol (RDP). xrdp < v0.9.21 cont…

Fix: 0.9.21+
Fix from $2,300 2022-12-09
Debian Linux HIGH 7.8
CVE-2022-39377

sysstat is a set of system performance tools for the Linux operating system. On 32 bit systems, in versions 9.1.16 and newer but prior to 12.7.1, all…

Fix: 12.6.1+
Fix from $1,950 2022-11-08
Debian Linux HIGH 7.8
CVE-2022-40284

A buffer overflow was discovered in NTFS-3G before 2022.10.3. Crafted metadata in an NTFS image can cause code execution. A local attacker can exploi…

Fix: 2022.10.3+
Fix from $1,950 2022-11-06
Debian Linux HIGH 7.8
CVE-2021-34055

jhead 3.06 is vulnerable to Buffer Overflow via exif.c in function Put16u.

Patch available
Fix from $1,950 2022-11-04
Debian Linux HIGH 8.8
CVE-2022-3550

A vulnerability classified as critical was found in X.org Server. Affected by this vulnerability is the function _GetCountedString of the file xkb/xk…

Fix: 21.1.6+
Fix from $1,950 2022-10-17
Debian Linux MEDIUM 5.5
CVE-2021-4214

A heap overflow flaw was found in libpngs' pngimage.c program. This flaw allows an attacker with local network access to pass a specially crafted PNG…

No fix yet
Fix from $1,600 2022-08-24
Debian Linux CRITICAL 9.8
CVE-2022-31031

PJSIP is a free and open source multimedia communication library written in C language implementing standard based protocols such as SIP, SDP, RTP, S…

Fix: after 2.12.1
Fix from $2,300 2022-06-09
Debian Linux HIGH 7.8
CVE-2022-30784

A crafted NTFS image can cause heap exhaustion in ntfs_get_attribute_value in NTFS-3G through 2021.8.22.

Fix: after 2021.8.22
Fix from $1,950 2022-05-26
Debian Linux HIGH 7.8
CVE-2022-28463

ImageMagick 7.1.0-27 is vulnerable to Buffer Overflow.

Fix: 6.9.12-44 / 7.1.0-29+
Fix from $1,950 2022-05-08
Debian Linux MEDIUM 5.3
CVE-2022-1328

Buffer Overflow in uudecoder in Mutt affecting all versions starting from 0.94.13 before 2.2.3 allows read past end of input line

Fix: 2.2.3+
Fix from $1,600 2022-04-14
Debian Linux HIGH 7.5
CVE-2022-24793

PJSIP is a free and open source multimedia communication library written in C. A buffer overflow vulnerability in versions 2.12 and prior affects app…

Fix: after 2.12
Fix from $1,950 2022-04-06
Debian Linux HIGH 7.5
CVE-2022-24764

PJSIP is a free and open source multimedia communication library written in C. Versions 2.12 and prior contain a stack buffer overflow vulnerability …

Fix: after 2.12
Fix from $1,950 2022-03-22
Debian Linux CRITICAL 9.8
CVE-2022-24754

PJSIP is a free and open source multimedia communication library written in C language. In versions prior to and including 2.12 PJSIP there is a stac…

Fix: after 2.12
Fix from $2,300 2022-03-11
Debian Linux HIGH 7.5
CVE-2022-21716

Twisted is an event-based framework for internet applications, supporting Python 3.6+. Prior to 22.2.0, Twisted SSH client and server implement is ab…

Fix: 22.2.0+
Fix from $1,950 2022-03-03
Debian Linux CRITICAL 9.8
CVE-2021-43303

Buffer overflow in PJSUA API when calling pjsua_call_dump. An attacker-controlled 'buffer' argument may cause a buffer overflow, since supplying an o…

Fix: after 2.11.1
Fix from $2,300 2022-02-16
Perm CRITICAL 9.8
CVE-2021-38172

perM 0.4.0 has a Buffer Overflow related to strncpy. (Debian initially fixed this in 0.4.0-7.)

Patch available
Fix from $2,300 2022-02-05