Vulnerability index

Browse CVEs

411 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Out-of-bounds ReadCWE-125 × clear
Debian Linux CRITICAL 9.1
CVE-2022-23493

xrdp is an open source project which provides a graphical login to remote machines using Microsoft Remote Desktop Protocol (RDP). xrdp < v0.9.21 cont…

Fix: 0.9.21+
Fix from $2,300 2022-12-09
Debian Linux CRITICAL 9.1
CVE-2022-23481

xrdp is an open source project which provides a graphical login to remote machines using Microsoft Remote Desktop Protocol (RDP). xrdp < v0.9.21 cont…

Fix: 0.9.21+
Fix from $2,300 2022-12-09
Debian Linux CRITICAL 9.1
CVE-2022-23482

xrdp is an open source project which provides a graphical login to remote machines using Microsoft Remote Desktop Protocol (RDP). xrdp < v0.9.21 cont…

Fix: 0.9.21+
Fix from $2,300 2022-12-09
Debian Linux CRITICAL 9.1
CVE-2022-23483

xrdp is an open source project which provides a graphical login to remote machines using Microsoft Remote Desktop Protocol (RDP). xrdp < v0.9.21 cont…

Fix: 0.9.21+
Fix from $2,300 2022-12-09
Debian Linux MEDIUM 6.5
CVE-2022-3599

LibTIFF 4.4.0 has an out-of-bounds read in writeSingleSection in tools/tiffcrop.c:7345, allowing attackers to cause a denial-of-service via a crafted…

Fix: after 4.4.0
Fix from $1,600 2022-10-21
Debian Linux MEDIUM 6.1
CVE-2022-32166

In ovs versions v0.90.0 through v2.5.0 are vulnerable to heap buffer over-read in flow.c. An unsafe comparison of “minimasks” function could lead acc…

Fix: after 2.5.0
Fix from $1,600 2022-09-28
Debian Linux CRITICAL 9.1
CVE-2022-37032

An out-of-bounds read in the BGP daemon of FRRouting FRR before 8.4 may lead to a segmentation fault and denial of service. This occurs in bgp_capabi…

Fix: 8.4+
Fix from $2,300 2022-09-19
Debian Linux MEDIUM 5.5
CVE-2022-38851

Certain The MPlayer Project products are vulnerable to Out-of-bounds Read via function read_meta_record() of mplayer/libmpdemux/asfheader.c. This aff…

No fix yet
Fix from $1,600 2022-09-15
Debian Linux MEDIUM 5.5
CVE-2020-35531

In LibRaw, an out-of-bounds read vulnerability exists within the get_huffman_diff() function (libraw\src\x3f\x3f_utils_patched.cpp) when reading data…

Patch available
Fix from $1,600 2022-09-01
Debian Linux MEDIUM 5.5
CVE-2020-35532

In LibRaw, an out-of-bounds read vulnerability exists within the "simple_decode_row()" function (libraw\src\x3f\x3f_utils_patched.cpp) which can be t…

Patch available
Fix from $1,600 2022-09-01
Debian Linux MEDIUM 5.5
CVE-2020-35533

In LibRaw, an out-of-bounds read vulnerability exists within the "LibRaw::adobe_copy_pixel()" function (libraw\src\decoders\dng.cpp) when reading dat…

Patch available
Fix from $1,600 2022-09-01
Debian Linux MEDIUM 5.5
CVE-2022-2953

LibTIFF 4.4.0 has an out-of-bounds read in extractImageSection in tools/tiffcrop.c:6905, allowing attackers to cause a denial-of-service via a crafte…

Fix: after 4.4.0
Fix from $1,600 2022-08-29
Debian Linux HIGH 8.1
CVE-2022-2469

GNU SASL libgsasl server-side read-out-of-bounds with malicious authenticated GSS-API client

Fix: 2.0.1+
Fix from $1,950 2022-07-19
Debian Linux CRITICAL 9.1
CVE-2022-35409

An issue was discovered in Mbed TLS before 2.28.1 and 3.x before 3.2.0. In some configurations, an unauthenticated attacker can send an invalid Clien…

Fix: 2.28.1 / 3.2.0+
Fix from $2,300 2022-07-15
Debian Linux HIGH 7.8
CVE-2022-1720

Buffer Over-read in function grab_file_name in GitHub repository vim/vim prior to 8.2.4956. This vulnerability is capable of crashing the software, m…

Fix: 8.2.4956 / 11.7+
Fix from $1,950 2022-06-20
Debian Linux HIGH 7.8
CVE-2022-2126

Out-of-bounds Read in GitHub repository vim/vim prior to 8.2.

Fix: 8.2.5123 / 11.7+
Fix from $1,950 2022-06-19
Debian Linux HIGH 7.8
CVE-2022-2124

Buffer Over-read in GitHub repository vim/vim prior to 8.2.

Fix: 8.2.5120 / 11.7+
Fix from $1,950 2022-06-19
Debian Linux HIGH 7.5
CVE-2022-31001

Sofia-SIP is an open-source Session Initiation Protocol (SIP) User-Agent library. Prior to version 1.13.8, an attacker can send a message with evil s…

Fix: 1.13.8+
Fix from $1,950 2022-05-31
Debian Linux HIGH 7.5
CVE-2022-31002

Sofia-SIP is an open-source Session Initiation Protocol (SIP) User-Agent library. Prior to version 1.13.8, an attacker can send a message with evil s…

Fix: 1.13.8+
Fix from $1,950 2022-05-31
Debian Linux HIGH 8.1
CVE-2018-25033

ADMesh through 0.98.4 has a heap-based buffer over-read in stl_update_connects_remove_1 (called from stl_remove_degenerate) in connect.c in libadmesh…

Fix: after 0.98.4
Fix from $1,950 2022-05-08
Debian Linux HIGH 7.8
CVE-2022-1441

MP4Box is a component of GPAC-2.0.0, which is a widely-used third-party package on RPM Fusion. When MP4Box tries to parse a MP4 file, it calls the fu…

Patch available
Fix from $1,950 2022-04-25
Debian Linux HIGH 7.1
CVE-2022-29458

ncurses 6.3 before patch 20220416 has an out-of-bounds read and segmentation violation in convert_strings in tinfo/read_entry.c in the terminfo libra…

Fix: 6.3 / 13.0+
Fix from $1,950 2022-04-18
Debian Linux HIGH 8.8
CVE-2020-35629

Multiple code execution vulnerabilities exists in the Nef polygon-parsing functionality of CGAL libcgal CGAL-5.1.1. A specially crafted malformed fil…

No fix yet
Fix from $1,950 2022-04-18
Debian Linux HIGH 8.8
CVE-2020-35630

Multiple code execution vulnerabilities exists in the Nef polygon-parsing functionality of CGAL libcgal CGAL-5.1.1. A specially crafted malformed fil…

No fix yet
Fix from $1,950 2022-04-18
Debian Linux HIGH 8.8
CVE-2020-35631

Multiple code execution vulnerabilities exists in the Nef polygon-parsing functionality of CGAL libcgal CGAL-5.1.1. A specially crafted malformed fil…

No fix yet
Fix from $1,950 2022-04-18
Debian Linux HIGH 8.8
CVE-2020-35632

Multiple code execution vulnerabilities exists in the Nef polygon-parsing functionality of CGAL libcgal CGAL-5.1.1. A specially crafted malformed fil…

No fix yet
Fix from $1,950 2022-04-18
Debian Linux HIGH 8.8
CVE-2020-28615

Multiple code execution vulnerabilities exists in the Nef polygon-parsing functionality of CGAL libcgal CGAL-5.1.1. A specially crafted malformed fil…

No fix yet
Fix from $1,950 2022-04-18
Debian Linux HIGH 8.8
CVE-2020-28616

Multiple code execution vulnerabilities exists in the Nef polygon-parsing functionality of CGAL libcgal CGAL-5.1.1. A specially crafted malformed fil…

No fix yet
Fix from $1,950 2022-04-18
Debian Linux HIGH 8.8
CVE-2020-28617

Multiple code execution vulnerabilities exists in the Nef polygon-parsing functionality of CGAL libcgal CGAL-5.1.1. A specially crafted malformed fil…

No fix yet
Fix from $1,950 2022-04-18
Debian Linux HIGH 8.8
CVE-2020-28618

Multiple code execution vulnerabilities exists in the Nef polygon-parsing functionality of CGAL libcgal CGAL-5.1.1. A specially crafted malformed fil…

No fix yet
Fix from $1,950 2022-04-18