Vulnerability index

Browse CVEs

86 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Classic Buffer OverflowCWE-120 × clear
Debian Linux CRITICAL 9.8
CVE-2020-9760

An issue was discovered in WeeChat before 2.7.1 (0.3.4 to 2.7 are affected). When a new IRC message 005 is received with longer nick prefixes, a buff…

Fix: 2.7.1+
Fix from $2,300 2020-03-23
Debian Linux MEDIUM 5.6
CVE-2020-8608

In libslirp 4.1.0, as used in QEMU 4.2.0, tcp_subr.c misuses snprintf return values, leading to a buffer overflow in later code.

Patch available
Fix from $1,600 2020-02-06
Debian Linux HIGH 8.8
CVE-2020-5208

It's been found that multiple functions in ipmitool before 1.8.19 neglect proper checking of the data received from a remote LAN party, which may lea…

Patch available
Fix from $1,950 2020-02-05
Debian Linux CRITICAL 9.8
CVE-2020-8597EPSS 20%

eap.c in pppd in ppp 2.4.2 through 2.4.8 has an rhostname buffer overflow in the eap_request and eap_response functions.

Fix: 03.04.10+
Fix from $2,300 2020-02-03
Debian Linux CRITICAL 9.8
CVE-2015-8011EPSS 5%

Buffer overflow in the lldp_decode function in daemon/protocols/lldp.c in lldpd before 0.8.0 allows remote attackers to cause a denial of service (da…

Fix: 0.8.0+
Fix from $2,300 2020-01-28
Debian Linux HIGH 7.5
CVE-2013-4357

The eglibc package before 2.14 incorrectly handled the getaddrinfo() function. An attacker could use this issue to cause a denial of service.

Fix: 2.14+
Fix from $1,950 2019-12-31
Debian Linux CRITICAL 9.8
CVE-2014-6310

Buffer overflow in CHICKEN 4.9.0 and 4.9.0.1 may allow remote attackers to execute arbitrary code via the 'select' function.

Patch available
Fix from $2,300 2019-11-22
Debian Linux CRITICAL 9.8
CVE-2013-7088

ClamAV before 0.97.7 has buffer overflow in the libclamav component

Fix: 0.97.7+
Fix from $2,300 2019-11-15
Debian Linux HIGH 7.8
CVE-2011-1145

The SQLDriverConnect() function in unixODBC before 2.2.14p2 have a possible buffer overflow condition when specifying a large value for SAVEFILE para…

Fix: after 2.2.14
Fix from $1,950 2019-11-14
Debian Linux HIGH 7.8
CVE-2019-18397

A buffer overflow in the fribidi_get_par_embedding_levels_ex() function in lib/fribidi-bidi.c of GNU FriBidi through 1.0.7 allows an attacker to caus…

Fix: after 1.0.7
Fix from $1,950 2019-11-13
Debian Linux HIGH 8.8
CVE-2010-3844

An unchecked sscanf() call in ettercap before 0.7.5 allows an insecure temporary settings file to overflow a static-sized buffer on the stack.

Patch available
Fix from $1,950 2019-11-12
Overkill CRITICAL 9.8
CVE-2009-5041

overkill has buffer overflow via long player names that can corrupt data on the server machine

Fix: 0.16-14.1+
Fix from $2,300 2019-10-31
Debian Linux MEDIUM 6.5
CVE-2019-17402

Exiv2 0.27.2 allows attackers to trigger a crash in Exiv2::getULong in types.cpp when called from Exiv2::Internal::CiffDirectory::readDirectory in cr…

Mitigation only
Fix from $1,600 2019-10-09
Debian Linux HIGH 7.5
CVE-2019-15166

lmp_print_data_link_subobjs() in print-lmp.c in tcpdump before 4.9.3 lacks certain bounds checks.

Fix: 4.9.3 / 10.15.2+
Fix from $1,950 2019-10-03
Debian Linux HIGH 8.8
CVE-2018-15688

A buffer overflow vulnerability in the dhcp6 client of systemd allows a malicious dhcp6 server to overwrite heap memory in systemd-networkd. Affected…

Patch available
Fix from $1,950 2018-10-26
Debian Linux CRITICAL 9.8
CVE-2018-12584EPSS 25%

The ConnectionBase::preparseNewBytes function in resip/stack/ConnectionBase.cxx in reSIProcate through 1.10.2 allows remote attackers to cause a deni…

Fix: after 1.10.2
Fix from $2,300 2018-07-16
Debian Linux CRITICAL 9.8
CVE-2018-1000517EPSS 33%

BusyBox project BusyBox wget version prior to commit 8e2174e9bd836e53c8b9c6e00d1bc6e2a718686e contains a Buffer Overflow vulnerability in Busybox wge…

Fix: 1.29.0+
Fix from $2,300 2018-06-26
Debian Linux CRITICAL 9.8
CVE-2018-6789 KEVEPSS 82%

An issue was discovered in the base64d function in the SMTP listener in Exim before 4.90.1. By sending a handcrafted message, a buffer overflow may h…

Fix: 4.90.1+
Fix from $2,300 2018-02-08
Debian Linux HIGH 8.8
CVE-2017-12601

OpenCV (Open Source Computer Vision Library) through 3.3 has a buffer overflow in the cv::BmpDecoder::readData function in modules/imgcodecs/src/grfm…

Fix: after 3.3.0
Fix from $1,950 2017-08-07
Debian Linux HIGH 8.8
CVE-2016-8714

An exploitable buffer overflow vulnerability exists in the LoadEncoding functionality of the R programming language version 3.3.0. A specially crafte…

No fix yet
Fix from $1,950 2017-03-10
Debian Linux CRITICAL 9.8
CVE-2016-4303EPSS 7%

The parse_string function in cjson.c in the cJSON library mishandles UTF8/16 strings, which allows remote attackers to cause a denial of service (cra…

Fix: 3.0.12 / 3.1.3+
Fix from $2,300 2016-09-26
Debian Linux MEDIUM 6.8
CVE-2010-2527EPSS 6%

Multiple buffer overflows in demo programs in FreeType before 2.4.0 allow remote attackers to cause a denial of service (application crash) or possib…

Fix: 2.4.0+
Fix from $1,600 2010-08-19
Debian Linux HIGH 7.2
CVE-2004-0455

Buffer overflow in cgi.c in www-sql before 0.5.7 allows local users to execute arbitrary code via a web page that is processed by www-sql.

Fix: 0.5.7+
Fix from $1,950 2004-12-06
Debian Linux HIGH 7.2
CVE-2002-0062

Buffer overflow in ncurses 5.0, and the ncurses4 compatibility package as used in Red Hat Linux, allows local users to gain privileges, related to "r…

Fix: 5.0+
Fix from $1,950 2002-03-08
Debian Linux HIGH 8.4
CVE-1999-0038

Buffer overflow in xlock program allows local users to execute commands as root.

Mitigation only
Fix from $1,950 1997-04-26
Debian Linux HIGH 10.0
CVE-1999-0046EPSS 52%

Buffer overflow of rlogin program using TERM environmental variable.

Mitigation only
Fix from $1,950 1997-02-06