Vulnerability index

Browse CVEs

27 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Stack-based Buffer OverflowCWE-121 × clear
Debian Linux CRITICAL 9.8
CVE-2025-68670

xrdp is an open source RDP server. xrdp before v0.10.5 contains an unauthenticated stack-based buffer overflow vulnerability. The issue stems from im…

Fix: 0.10.5+
Fix from $2,300 2026-01-27
Debian Linux HIGH 8.8
CVE-2025-3887

GStreamer H265 Codec Parsing Stack-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute a…

Fix: 1.26.1+
Fix from $1,950 2025-05-22
Debian Linux HIGH 8.1
CVE-2024-33599

nscd: Stack-based buffer overflow in netgroup cache If the Name Service Cache Daemon's (nscd) fixed size cache is exhausted by client requests then …

Fix: 2.40+
Fix from $1,950 2024-05-06
Debian Linux MEDIUM 5.5
CVE-2024-1151

A vulnerability was reported in the Open vSwitch sub-component in the Linux Kernel. The flaw occurs when a recursive operation of code push recursive…

Fix: after 6.7.8
Fix from $1,600 2024-02-11
Debian Linux CRITICAL 9.8
CVE-2022-23122

This vulnerability allows remote attackers to execute arbitrary code on affected installations of Netatalk. Authentication is not required to exploit…

Fix: 3.1.13+
Fix from $2,300 2023-03-28
Debian Linux CRITICAL 9.8
CVE-2022-23125

This vulnerability allows remote attackers to execute arbitrary code on affected installations of Netatalk. Authentication is not required to exploit…

Fix: 3.1.13+
Fix from $2,300 2023-03-28
Debian Linux CRITICAL 9.8
CVE-2022-0194

This vulnerability allows remote attackers to execute arbitrary code on affected installations of Netatalk. Authentication is not required to exploit…

Fix: 3.1.13+
Fix from $2,300 2023-03-28
Debian Linux MEDIUM 6.0
CVE-2023-0330

A vulnerability in the lsi53c895a device affects the latest version of qemu. A DMA-MMIO reentrancy problem may lead to memory corruption bugs like st…

Fix: 7.2.3+
Fix from $1,600 2023-03-06
Debian Linux HIGH 7.8
CVE-2023-0770

Stack-based Buffer Overflow in GitHub repository gpac/gpac prior to 2.2.

Fix: 2.2.0+
Fix from $1,950 2023-02-09
Debian Linux HIGH 8.1
CVE-2022-41981

A stack-based buffer overflow vulnerability exists in the TGA file format parser of OpenImageIO v2.3.19.0. A specially-crafted targa file can lead to…

No fix yet
Fix from $1,950 2022-12-22
Debian Linux HIGH 7.5
CVE-2022-40149

Those using Jettison to parse untrusted XML or JSON data may be vulnerable to Denial of Service attacks (DOS). If the parser is running on user suppl…

Fix: after 1.4.0
Fix from $1,950 2022-09-16
Debian Linux MEDIUM 6.5
CVE-2022-38749

Using snakeYAML to parse untrusted YAML files may be vulnerable to Denial of Service attacks (DOS). If the parser is running on user supplied input, …

Fix: 1.31+
Fix from $1,600 2022-09-05
Debian Linux MEDIUM 6.5
CVE-2022-38751

Using snakeYAML to parse untrusted YAML files may be vulnerable to Denial of Service attacks (DOS). If the parser is running on user supplied input, …

Fix: 1.31+
Fix from $1,600 2022-09-05
Debian Linux MEDIUM 5.5
CVE-2022-38750

Using snakeYAML to parse untrusted YAML files may be vulnerable to Denial of Service attacks (DOS). If the parser is running on user supplied input, …

Fix: 1.31+
Fix from $1,600 2022-09-05
Debian Linux HIGH 7.8
CVE-2021-42529

XMP Toolkit SDK version 2021.07 (and earlier) is affected by a stack-based buffer overflow vulnerability potentially resulting in arbitrary code exec…

Fix: after 2021.07
Fix from $1,950 2022-05-02
Debian Linux HIGH 7.8
CVE-2021-42530

XMP Toolkit SDK version 2021.07 (and earlier) is affected by a stack-based buffer overflow vulnerability potentially resulting in arbitrary code exec…

Fix: after 2021.07
Fix from $1,950 2022-05-02
Debian Linux HIGH 7.8
CVE-2021-42531

XMP Toolkit SDK version 2021.07 (and earlier) is affected by a stack-based buffer overflow vulnerability potentially resulting in arbitrary code exec…

Fix: after 2021.07
Fix from $1,950 2022-05-02
Debian Linux HIGH 7.8
CVE-2021-42532

XMP Toolkit SDK version 2021.07 (and earlier) is affected by a stack-based buffer overflow vulnerability potentially resulting in arbitrary code exec…

Fix: after 2021.07
Fix from $1,950 2022-05-02
Debian Linux HIGH 7.5
CVE-2022-24764

PJSIP is a free and open source multimedia communication library written in C. Versions 2.12 and prior contain a stack buffer overflow vulnerability …

Fix: after 2.12
Fix from $1,950 2022-03-22
Debian Linux CRITICAL 9.8
CVE-2021-43299

Stack overflow in PJSUA API when calling pjsua_player_create. An attacker-controlled 'filename' argument may cause a buffer overflow since it is copi…

Fix: after 2.11.1
Fix from $2,300 2022-02-16
Debian Linux CRITICAL 9.8
CVE-2021-43300

Stack overflow in PJSUA API when calling pjsua_recorder_create. An attacker-controlled 'filename' argument may cause a buffer overflow since it is co…

Fix: after 2.11.1
Fix from $2,300 2022-02-16
Debian Linux CRITICAL 9.8
CVE-2021-43301

Stack overflow in PJSUA API when calling pjsua_playlist_create. An attacker-controlled 'file_names' argument may cause a buffer overflow since it is …

Fix: after 2.11.1
Fix from $2,300 2022-02-16
Debian Linux HIGH 7.8
CVE-2021-39847EPSS 5%

XMP Toolkit SDK version 2020.1 (and earlier) is affected by a stack-based buffer overflow vulnerability potentially resulting in arbitrary code execu…

Fix: after 2020.1
Fix from $1,950 2021-09-01
Debian Linux HIGH 7.8
CVE-2019-0053

Insufficient validation of environment variables in the telnet client supplied in Junos OS can lead to stack-based buffer overflows, which can be exp…

No fix yet
Fix from $1,950 2019-07-11
Debian Linux HIGH 8.8
CVE-2018-17937

gpsd versions 2.90 to 3.17 and microjson versions 1.0 to 1.3, an open source project, allow a stack-based buffer overflow, which may allow remote att…

Fix: after 3.17
Fix from $1,950 2019-03-13
Debian Linux MEDIUM 5.5
CVE-2018-1071

zsh through version 5.4.2 is vulnerable to a stack-based buffer overflow in the exec.c:hashcmd() function. A local attacker could exploit this to cau…

Fix: after 5.4.2
Fix from $1,600 2018-03-09
Debian Linux HIGH 8.8
CVE-2017-13089EPSS 80%

The http.c:skip_short_body() function is called in some circumstances, such as when processing redirects. When the response is sent chunked in wget b…

Fix: after 1.19.1
Fix from $1,950 2017-10-27