Vulnerability index

Browse CVEs

460 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Out-of-bounds WriteCWE-787 × clear
Debian Linux HIGH 7.8
CVE-2021-32493

A flaw was found in djvulibre-3.5.28 and earlier. A heap buffer overflow in function DJVU::GBitmap::decode() via crafted djvu file may lead to applic…

Fix: after 3.5.28
Fix from $1,950 2021-06-24
Debian Linux CRITICAL 9.8
CVE-2021-33833

ConnMan (aka Connection Manager) 1.30 through 1.39 has a stack-based buffer overflow in uncompress in dnsproxy.c via NAME, RDATA, or RDLENGTH (for A …

Fix: after 1.39
Fix from $2,300 2021-06-09
Debian Linux HIGH 8.2
CVE-2021-3546

An out-of-bounds write vulnerability was found in the virtio vhost-user GPU device (vhost-user-gpu) of QEMU in versions up to and including 6.0. The …

Fix: after 6.0.0
Fix from $1,950 2021-06-02
Debian Linux HIGH 8.8
CVE-2020-22035

A heap-based Buffer Overflow vulnerability exists in FFmpeg 4.2 in get_block_row at libavfilter/vf_bm3d.c, which might lead to memory corruption and …

No fix yet
Fix from $1,950 2021-06-01
Debian Linux HIGH 8.8
CVE-2020-22036

A heap-based Buffer Overflow vulnerability exists in FFmpeg 4.2 in filter_intra at libavfilter/vf_bwdif.c, which might lead to memory corruption and …

No fix yet
Fix from $1,950 2021-06-01
Debian Linux HIGH 8.8
CVE-2020-22017

A heap-based Buffer Overflow vulnerability exists in FFmpeg 4.2 at ff_fill_rectangle in libavfilter/drawutils.c, which might lead to memory corruptio…

No fix yet
Fix from $1,950 2021-05-27
Debian Linux HIGH 8.8
CVE-2020-22022

A heap-based Buffer Overflow vulnerability exists in FFmpeg 4.2 in filter_frame at libavfilter/vf_fieldorder.c, which might lead to memory corruption…

No fix yet
Fix from $1,950 2021-05-27
Debian Linux HIGH 8.8
CVE-2020-22023

A heap-based Buffer Overflow vulnerabililty exists in FFmpeg 4.2 in filter_frame at libavfilter/vf_bitplanenoise.c, which might lead to memory corrup…

Mitigation only
Fix from $1,950 2021-05-27
Debian Linux HIGH 8.8
CVE-2020-22025

A heap-based Buffer Overflow vulnerability exists in gaussian_blur at libavfilter/vf_edgedetect.c, which might lead to memory corruption and other po…

No fix yet
Fix from $1,950 2021-05-27
Debian Linux HIGH 8.8
CVE-2020-22027

A heap-based Buffer Overflow vulnerability exits in FFmpeg 4.2 in deflate16 at libavfilter/vf_neighbor.c, which might lead to memory corruption and o…

No fix yet
Fix from $1,950 2021-05-27
Debian Linux HIGH 8.8
CVE-2020-22032

A heap-based Buffer Overflow vulnerability exists FFmpeg 4.2 at libavfilter/vf_edgedetect.c in gaussian_blur, which might lead to memory corruption a…

No fix yet
Fix from $1,950 2021-05-27
Debian Linux HIGH 8.8
CVE-2020-22034

A heap-based Buffer Overflow vulnerability exists FFmpeg 4.2 at libavfilter/vf_floodfill.c, which might lead to memory corruption and other potential…

No fix yet
Fix from $1,950 2021-05-27
Debian Linux MEDIUM 6.5
CVE-2020-22033

A heap-based Buffer Overflow Vulnerability exists FFmpeg 4.2 at libavfilter/vf_vmafmotion.c in convolution_y_8bit, which could let a remote malicious…

No fix yet
Fix from $1,600 2021-05-27
Debian Linux HIGH 8.8
CVE-2020-22016

A heap-based Buffer Overflow vulnerability in FFmpeg 4.2 at libavcodec/get_bits.h when writing .mov files, which might lead to memory corruption and …

No fix yet
Fix from $1,950 2021-05-27
Debian Linux HIGH 8.8
CVE-2020-22029

A heap-based Buffer Overflow vulnerability exists in FFmpeg 4.2 at libavfilter/vf_colorconstancy.c: in slice_get_derivative, which crossfade_samples_…

No fix yet
Fix from $1,950 2021-05-27
Debian Linux HIGH 8.8
CVE-2020-22030

A heap-based Buffer Overflow vulnerability exists in FFmpeg 4.2 at libavfilter/af_afade.c in crossfade_samples_fltp, which might lead to memory corru…

No fix yet
Fix from $1,950 2021-05-27
Debian Linux HIGH 8.8
CVE-2020-22031

A Heap-based Buffer Overflow vulnerability exists in FFmpeg 4.2 at libavfilter/vf_w3fdif.c in filter16_complex_low, which might lead to memory corrup…

No fix yet
Fix from $1,950 2021-05-27
Debian Linux HIGH 8.8
CVE-2021-31439

This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of Synology DiskStation Manager. Authenticat…

Fix: 3.1.13 / 6.2.3-25426-3+
Fix from $1,950 2021-05-21
Debian Linux HIGH 7.5
CVE-2021-20277

A flaw was found in Samba's libldb. Multiple, consecutive leading spaces in an LDAP attribute can lead to an out-of-bounds memory write, leading to a…

Fix: 4.12.13 / 4.13.6+
Fix from $1,950 2021-05-12
Debian Linux MEDIUM 6.1
CVE-2021-3507

A heap buffer overflow was found in the floppy disk emulator of QEMU up to 6.0.0 (including). It could occur in fdctrl_transfer_handler() in hw/block…

Fix: after 6.0.0
Fix from $1,600 2021-05-06
Debian Linux CRITICAL 9.8
CVE-2019-25035

Unbound before 1.9.5 allows an out-of-bounds write in sldns_bget_token_par. NOTE: The vendor disputes that this is a vulnerability. Although the code…

Fix: 1.9.5+
Fix from $2,300 2021-04-27
Debian Linux CRITICAL 9.8
CVE-2019-25042

Unbound before 1.9.5 allows an out-of-bounds write via a compressed name in rdata_copy. NOTE: The vendor disputes that this is a vulnerability. Altho…

Fix: 1.9.5+
Fix from $2,300 2021-04-27
Debian Linux HIGH 7.5
CVE-2021-31598

An issue was discovered in libezxml.a in ezXML 0.8.6. The function ezxml_decode() performs incorrect memory handling while parsing crafted XML files,…

Patch available
Fix from $1,950 2021-04-24
Debian Linux HIGH 7.8
CVE-2021-3498

GStreamer before 1.18.4 might cause heap corruption when parsing certain malformed Matroska files.

Fix: 1.18.4+
Fix from $1,950 2021-04-19
Debian Linux MEDIUM 6.5
CVE-2021-31229

An issue was discovered in libezxml.a in ezXML 0.8.6. The function ezxml_internal_dtd() performs incorrect memory handling while parsing crafted XML …

Patch available
Fix from $1,600 2021-04-15
Debian Linux HIGH 7.8
CVE-2020-35524

A heap-based buffer overflow flaw was found in libtiff in the handling of TIFF images in libtiff's TIFF2PDF tool. A specially crafted TIFF file can l…

Fix: 4.2.0+
Fix from $1,950 2021-03-09
Debian Linux CRITICAL 9.8
CVE-2020-36244

The daemon in GENIVI diagnostic log and trace (DLT), is vulnerable to a heap-based buffer overflow that could allow an attacker to remotely execute a…

Fix: 2.18.6+
Fix from $2,300 2021-02-10
Debian Linux HIGH 8.8
CVE-2021-26675

A stack-based buffer overflow in dnsproxy in ConnMan before 1.39 could be used by network adjacent attackers to execute code.

Fix: 1.39+
Fix from $1,950 2021-02-09
Debian Linux MEDIUM 6.3
CVE-2020-17380

A heap-based buffer overflow was found in QEMU through 5.0.0 in the SDHCI device emulation support. It could occur while doing a multi block SDMA tra…

Fix: after 5.0.0
Fix from $1,600 2021-01-30
Debian Linux MEDIUM 6.8
CVE-2021-0308

In ReadLogicalParts of basicmbr.cc, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of pri…

Mitigation only
Fix from $1,600 2021-01-11