Vulnerability index

Browse CVEs

460 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Out-of-bounds WriteCWE-787 × clear
Debian Linux MEDIUM 5.5
CVE-2020-21533

fig2dev 3.2.7b contains a stack buffer overflow in the read_textobject function in read.c.

No fix yet
Fix from $1,600 2021-09-16
Debian Linux MEDIUM 5.5
CVE-2020-21529

fig2dev 3.2.7b contains a stack buffer overflow in the bezier_spline function in genepic.c.

No fix yet
Fix from $1,600 2021-09-16
Debian Linux MEDIUM 6.5
CVE-2020-19144

Buffer Overflow in LibTiff v4.0.10 allows attackers to cause a denial of service via the 'in _TIFFmemcpy' funtion in the component 'tif_unix.c'.

Patch available
Fix from $1,600 2021-09-09
Debian Linux MEDIUM 6.5
CVE-2020-19143

Buffer Overflow in LibTiff v4.0.10 allows attackers to cause a denial of service via the "TIFFVGetField" funtion in the component 'libtiff/tif_dir.c'.

Patch available
Fix from $1,600 2021-09-09
Debian Linux HIGH 7.5
CVE-2021-3761

Any CA issuer in the RPKI can trick OctoRPKI prior to 1.3.0 into emitting an invalid VRP "MaxLength" value, causing RTR sessions to terminate. An att…

Fix: 1.3.0+
Fix from $1,950 2021-09-09
Debian Linux HIGH 7.8
CVE-2021-39256

A crafted NTFS image can cause a heap-based buffer overflow in ntfs_inode_lookup_by_name in NTFS-3G < 2021.8.22.

Fix: 2021.8.22+
Fix from $1,950 2021-09-07
Debian Linux HIGH 7.8
CVE-2021-39259

A crafted NTFS image can trigger an out-of-bounds access, caused by an unsanitized attribute length in ntfs_inode_lookup_by_name, in NTFS-3G < 2021.8…

Fix: 2021.8.22+
Fix from $1,950 2021-09-07
Debian Linux HIGH 7.8
CVE-2021-39260

A crafted NTFS image can cause an out-of-bounds access in ntfs_inode_sync_standard_information in NTFS-3G < 2021.8.22.

Fix: 2021.8.22+
Fix from $1,950 2021-09-07
Debian Linux HIGH 7.8
CVE-2021-39261

A crafted NTFS image can cause a heap-based buffer overflow in ntfs_compressed_pwrite in NTFS-3G < 2021.8.22.

Fix: 2021.8.22+
Fix from $1,950 2021-09-07
Debian Linux HIGH 7.8
CVE-2021-39262

A crafted NTFS image can cause an out-of-bounds access in ntfs_decompress in NTFS-3G < 2021.8.22.

Fix: 2021.8.22+
Fix from $1,950 2021-09-07
Debian Linux HIGH 7.8
CVE-2021-39263

A crafted NTFS image can trigger a heap-based buffer overflow, caused by an unsanitized attribute in ntfs_get_attribute_value, in NTFS-3G < 2021.8.22.

Fix: 2021.8.22+
Fix from $1,950 2021-09-07
Debian Linux HIGH 7.8
CVE-2021-33286

In NTFS-3G versions < 2021.8.22, when a specially crafted unicode string is supplied in an NTFS image a heap buffer overflow can occur and allow for …

Fix: 2021.8.22+
Fix from $1,950 2021-09-07
Debian Linux HIGH 7.8
CVE-2021-33287

In NTFS-3G versions < 2021.8.22, when specially crafted NTFS attributes are read in the function ntfs_attr_pread_i, a heap buffer overflow can occur …

Fix: 2021.8.22+
Fix from $1,950 2021-09-07
Debian Linux HIGH 7.8
CVE-2021-35266

In NTFS-3G versions < 2021.8.22, when a specially crafted NTFS inode pathname is supplied in an NTFS image a heap buffer overflow can occur resulting…

Fix: 2021.8.22+
Fix from $1,950 2021-09-07
Debian Linux HIGH 7.8
CVE-2021-35267

NTFS-3G versions < 2021.8.22, a stack buffer overflow can occur when correcting differences in the MFT and MFTMirror allowing for code execution or e…

Fix: 2021.8.22+
Fix from $1,950 2021-09-07
Debian Linux HIGH 7.5
CVE-2020-19131

Buffer Overflow in LibTiff v4.0.10 allows attackers to cause a denial of service via the "invertImage()" function in the component "tiffcrop".

Patch available
Fix from $1,950 2021-09-07
Debian Linux HIGH 7.8
CVE-2021-33289

In NTFS-3G versions < 2021.8.22, when a specially crafted MFT section is supplied in an NTFS image a heap buffer overflow can occur and allow for cod…

Fix: 2021.8.22+
Fix from $1,950 2021-09-07
Debian Linux HIGH 7.8
CVE-2021-35268

In NTFS-3G versions < 2021.8.22, when a specially crafted NTFS inode is loaded in the function ntfs_inode_real_open, a heap buffer overflow can occur…

Fix: 2021.8.22+
Fix from $1,950 2021-09-07
Debian Linux HIGH 7.8
CVE-2021-35269

NTFS-3G versions < 2021.8.22, when a specially crafted NTFS attribute from the MFT is setup in the function ntfs_attr_setup_flag, a heap buffer overf…

Fix: 2021.8.22+
Fix from $1,950 2021-09-07
Debian Linux HIGH 7.8
CVE-2021-36046

XMP Toolkit version 2020.1 (and earlier) is affected by a memory corruption vulnerability, potentially resulting in arbitrary code execution in the c…

Fix: after 2020.1
Fix from $1,950 2021-09-01
Debian Linux HIGH 7.8
CVE-2021-36050EPSS 5%

XMP Toolkit SDK version 2020.1 (and earlier) is affected by a buffer overflow vulnerability potentially resulting in arbitrary code execution in the …

Fix: after 2020.1
Fix from $1,950 2021-09-01
Debian Linux HIGH 7.8
CVE-2021-36052

XMP Toolkit version 2020.1 (and earlier) is affected by a memory corruption vulnerability, potentially resulting in arbitrary code execution in the c…

Fix: after 2020.1
Fix from $1,950 2021-09-01
Debian Linux HIGH 7.4
CVE-2021-3713

An out-of-bounds write flaw was found in the UAS (USB Attached SCSI) device emulation of QEMU in versions prior to 6.2.0-rc0. The device uses the gue…

Fix: after 6.1.0
Fix from $1,950 2021-08-25
Debian Linux MEDIUM 5.5
CVE-2020-21675

A stack-based buffer overflow in the genptk_text component in genptk.c of fig2dev 3.2.7b allows attackers to cause a denial of service (DOS) via conv…

Patch available
Fix from $1,600 2021-08-10
Debian Linux MEDIUM 5.5
CVE-2020-21676

A stack-based buffer overflow in the genpstrx_text() component in genpstricks.c of fig2dev 3.2.7b allows attackers to cause a denial of service (DOS)…

Patch available
Fix from $1,600 2021-08-10
Debian Linux MEDIUM 5.5
CVE-2020-19609

Artifex MuPDF before 1.18.0 has a heap based buffer over-write in tiff_expand_colormap() function when parsing TIFF files allowing attackers to cause…

Fix: 1.18.0+
Fix from $1,600 2021-07-21
Debian Linux HIGH 7.8
CVE-2019-25051

objstack in GNU Aspell 0.60.8 has a heap-based buffer overflow in acommon::ObjStack::dup_top (called from acommon::StringMap::add and acommon::Config…

Patch available
Fix from $1,950 2021-07-20
Debian Linux MEDIUM 5.5
CVE-2021-3630

An out-of-bounds write vulnerability was found in DjVuLibre in DJVU::DjVuTXT::decode() in DjVuText.cpp via a crafted djvu file which may lead to cras…

Fix: 3.5.28+
Fix from $1,600 2021-06-30
Debian Linux HIGH 7.8
CVE-2021-3500

A flaw was found in djvulibre-3.5.28 and earlier. A Stack overflow in function DJVU::DjVuDocument::get_djvu_file() via crafted djvu file may lead to …

Fix: after 3.5.28
Fix from $1,950 2021-06-24
Debian Linux HIGH 7.8
CVE-2021-32490

A flaw was found in djvulibre-3.5.28 and earlier. An out of bounds write in function DJVU::filter_bv() via crafted djvu file may lead to application …

Fix: after 3.5.28
Fix from $1,950 2021-06-24