Vulnerability index

Browse CVEs

460 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Out-of-bounds WriteCWE-787 × clear
Debian Linux HIGH 7.8
CVE-2026-25506

MUNGE is an authentication service for creating and validating user credentials. From 0.5 to 0.5.17, local attacker can exploit a buffer overflow vul…

Fix: 0.5.18+
Fix from $1,950 2026-02-10
Debian Linux CRITICAL 9.8
CVE-2025-62799

Fast DDS is a C++ implementation of the DDS (Data Distribution Service) standard of the OMG (Object Management Group ). Prior to versions 3.4.1, 3.3.…

Fix: 2.6.11 / 3.3.1+
Fix from $2,300 2026-02-03
Debian Linux HIGH 7.5
CVE-2025-62602

Fast DDS is a C++ implementation of the DDS (Data Distribution Service) standard of the OMG (Object Management Group ). Prior to versions 3.4.1, 3.3.…

Fix: 2.6.11 / 3.3.1+
Fix from $1,950 2026-02-03
Debian Linux HIGH 7.5
CVE-2026-25061

tcpflow is a TCP/IP packet demultiplexer. In versions up to and including 1.61, wifipcap parses 802.11 management frame elements and performs a lengt…

Fix: after 1.6.1
Fix from $1,950 2026-01-29
Debian Linux CRITICAL 9.8
CVE-2025-68670

xrdp is an open source RDP server. xrdp before v0.10.5 contains an unauthenticated stack-based buffer overflow vulnerability. The issue stems from im…

Fix: 0.10.5+
Fix from $2,300 2026-01-27
Debian Linux HIGH 7.8
CVE-2025-10921

GIMP HDR File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary…

Patch available
Fix from $1,950 2025-10-29
Debian Linux HIGH 7.8
CVE-2025-10922

GIMP DCM File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary…

Patch available
Fix from $1,950 2025-10-29
Debian Linux HIGH 8.8
CVE-2025-3887

GStreamer H265 Codec Parsing Stack-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute a…

Fix: 1.26.1+
Fix from $1,950 2025-05-22
Debian Linux HIGH 8.1
CVE-2025-27363 KEVEPSS 28%

An out of bounds write exists in FreeType versions 2.13.0 and below (newer versions of FreeType are not vulnerable) when attempting to parse font sub…

Fix: after 2.13.0
Fix from $1,950 2025-03-11
Debian Linux HIGH 7.8
CVE-2024-53104 KEV

In the Linux kernel, the following vulnerability has been resolved: media: uvcvideo: Skip parsing frames of type UVC_VS_UNDEFINED in uvc_parse_forma…

Fix: 4.19.324 / 5.4.286+
Fix from $1,950 2024-12-02
Debian Linux HIGH 7.8
CVE-2024-50067

In the Linux kernel, the following vulnerability has been resolved: uprobe: avoid out-of-bounds memory access of fetching args Uprobe needs to fetc…

Fix: 6.1.118 / 6.6.59+
Fix from $1,950 2024-10-28
Debian Linux HIGH 7.8
CVE-2024-47697

In the Linux kernel, the following vulnerability has been resolved: drivers: media: dvb-frontends/rtl2830: fix an out-of-bounds write error Ensure …

Fix: 4.19.323 / 5.4.285+
Fix from $1,950 2024-10-21
Debian Linux HIGH 7.8
CVE-2024-47698

In the Linux kernel, the following vulnerability has been resolved: drivers: media: dvb-frontends/rtl2832: fix an out-of-bounds write error Ensure …

Fix: 4.19.323 / 5.4.285+
Fix from $1,950 2024-10-21
Debian Linux HIGH 8.1
CVE-2024-41311

In Libheif 1.17.6, insufficient checks in ImageOverlay::parse() decoding a heif file containing an overlay image with forged offsets can lead to an o…

Patch available
Fix from $1,950 2024-10-15
Debian Linux HIGH 7.8
CVE-2024-46853

In the Linux kernel, the following vulnerability has been resolved: spi: nxp-fspi: fix the KASAN report out-of-bounds bug Change the memcpy length …

Fix: 5.4.285 / 5.10.227+
Fix from $1,950 2024-09-27
Debian Linux HIGH 7.8
CVE-2024-46725

In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: Fix out-of-bounds write warning Check the ring type value to fix th…

Fix: 5.10.226 / 5.15.167+
Fix from $1,950 2024-09-18
Debian Linux HIGH 7.8
CVE-2024-44977

In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: Validate TA binary size Add TA binary size validation to avoid OOB …

Fix: 6.1.107 / 6.6.48+
Fix from $1,950 2024-09-04
Debian Linux HIGH 7.8
CVE-2024-43839

In the Linux kernel, the following vulnerability has been resolved: bna: adjust 'name' buf size of bna_tcb and bna_ccb structures To have enough sp…

Fix: 4.19.320 / 5.4.282+
Fix from $1,950 2024-08-17
Debian Linux HIGH 7.8
CVE-2021-47489

In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: Fix even more out of bound writes from debugfs CVE-2021-42327 was f…

Fix: 5.10.236 / 5.14.16+
Fix from $1,950 2024-05-22
Debian Linux HIGH 7.3
CVE-2024-2961EPSS 88%

The iconv() function in the GNU C Library versions 2.39 and older may overflow the output buffer passed to it by up to 4 bytes when converting string…

Fix: 2.40+
Fix from $1,950 2024-04-17
Debian Linux HIGH 7.5
CVE-2023-52159

A stack-based buffer overflow vulnerability in gross 0.9.3 through 1.x before 1.0.4 allows remote attackers to trigger a denial of service (grossd da…

Fix: 1.0.4+
Fix from $1,950 2024-03-18
Debian Linux MEDIUM 5.5
CVE-2024-1151

A vulnerability was reported in the Open vSwitch sub-component in the Linux Kernel. The flaw occurs when a recursive operation of code push recursive…

Fix: after 6.7.8
Fix from $1,600 2024-02-11
Debian Linux HIGH 7.8
CVE-2023-34319

The fix for XSA-423 added logic to Linux'es netback driver to deal with a frontend splitting a packet in a way such that not all of the headers would…

Fix: 4.10 / 4.14.321+
Fix from $1,950 2023-09-22
Debian Linux CRITICAL 9.8
CVE-2023-40186

FreeRDP is a free implementation of the Remote Desktop Protocol (RDP), released under the Apache license. Affected versions are subject to an Integer…

Fix: 2.11.0+
Fix from $2,300 2023-08-31
Debian Linux CRITICAL 9.8
CVE-2023-40567

FreeRDP is a free implementation of the Remote Desktop Protocol (RDP), released under the Apache license. Affected versions are subject to an Out-Of-…

Fix: 2.11.0+
Fix from $2,300 2023-08-31
Debian Linux CRITICAL 9.8
CVE-2023-40569

FreeRDP is a free implementation of the Remote Desktop Protocol (RDP), released under the Apache license. Affected versions are subject to an Out-Of-…

Fix: 2.11.0+
Fix from $2,300 2023-08-31
Debian Linux CRITICAL 9.8
CVE-2023-39352

FreeRDP is a free implementation of the Remote Desktop Protocol (RDP), released under the Apache license. Affected versions are subject to an invalid…

Fix: 2.11.0+
Fix from $2,300 2023-08-31
Debian Linux CRITICAL 9.8
CVE-2022-48174

There is a stack overflow vulnerability in ash.c:6030 in busybox before 1.35. In the environment of Internet of Vehicles, this vulnerability can be e…

Fix: after 1.36.1
Fix from $2,300 2023-08-22
Debian Linux MEDIUM 6.5
CVE-2020-19189

Buffer Overflow vulnerability in postprocess_terminfo function in tinfo/parse_entry.c:997 in ncurses 6.1 allows remote attackers to cause a denial of…

No fix yet
Fix from $1,600 2023-08-22
Debian Linux HIGH 7.5
CVE-2023-39946

eprosima Fast DDS is a C++ implementation of the Data Distribution Service standard of the Object Management Group. Prior to versions 2.11.1, 2.10.2,…

Fix: 2.6.6 / 2.9.2+
Fix from $1,950 2023-08-11