Vulnerability index

Browse CVEs

460 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Out-of-bounds WriteCWE-787 × clear
Debian Linux HIGH 7.8
CVE-2020-26664

A vulnerability in EbmlTypeDispatcher::send in VideoLAN VLC media player 3.0.11 allows attackers to trigger a heap-based buffer overflow via a crafte…

Fix: 3.0.12+
Fix from $1,950 2021-01-08
Debian Linux HIGH 7.5
CVE-2020-35965

decode_frame in libavcodec/exr.c in FFmpeg 4.3.1 has an out-of-bounds write because of errors in calculations of when to perform memset zero operatio…

Fix: 4.4+
Fix from $1,950 2021-01-04
Debian Linux MEDIUM 6.1
CVE-2020-35738

WavPack 5.3.0 has an out-of-bounds write in WavpackPackSamples in pack_utils.c because of an integer overflow in a malloc argument. NOTE: some third-…

Patch available
Fix from $1,600 2020-12-28
Debian Linux HIGH 7.5
CVE-2020-29363

An issue was discovered in p11-kit 0.23.6 through 0.23.21. A heap-based buffer overflow has been discovered in the RPC protocol used by p11-kit serve…

Fix: 0.23.22+
Fix from $1,950 2020-12-16
Debian Linux HIGH 7.5
CVE-2020-8285EPSS 10%

curl 7.21.0 to and including 7.73.0 is vulnerable to uncontrolled recursion due to a stack overflow issue in FTP wildcard match parsing.

Fix: 7.74.0+
Fix from $1,950 2020-12-14
Debian Linux MEDIUM 5.5
CVE-2020-16587

A heap-based buffer overflow vulnerability exists in Academy Software Foundation OpenEXR 2.3.0 in chunkOffsetReconstruction in ImfMultiPartInputFile.…

Patch available
Fix from $1,600 2020-12-09
Debian Linux MEDIUM 5.5
CVE-2020-16589

A head-based buffer overflow exists in Academy Software Foundation OpenEXR 2.3.0 in writeTileData in ImfTiledOutputFile.cpp that can cause a denial o…

Patch available
Fix from $1,600 2020-12-09
Debian Linux MEDIUM 6.0
CVE-2020-27821

A flaw was found in the memory management API of QEMU during the initialization of a memory region cache. This issue could lead to an out-of-bounds w…

Fix: 5.2.0+
Fix from $1,600 2020-12-08
Debian Linux HIGH 7.8
CVE-2020-29394

A buffer overflow in the dlt_filter_load function in dlt_common.c from dlt-daemon through 2.18.5 (GENIVI Diagnostic Log and Trace) allows arbitrary c…

Fix: after 2.18.5
Fix from $1,950 2020-11-30
Debian Linux MEDIUM 5.5
CVE-2020-28928

In musl libc through 1.2.1, wcsnrtombs mishandles particular combinations of destination buffer size and source character limit, as demonstrated by a…

Fix: after 1.2.1
Fix from $1,600 2020-11-24
Debian Linux MEDIUM 5.7
CVE-2020-0569

Out of bounds write in Intel(R) PROSet/Wireless WiFi products on Windows 10 may allow an authenticated user to potentially enable denial of service v…

Fix: 21.70+
Fix from $1,600 2020-11-23
Debian Linux HIGH 7.8
CVE-2019-14563

Integer truncation in EDK II may allow an authenticated user to potentially enable escalation of privilege via local access.

Mitigation only
Fix from $1,950 2020-11-23
Debian Linux HIGH 7.8
CVE-2020-20740

PDFResurrect before 0.20 lack of header validation checks causes heap-buffer-overflow in pdf_get_version().

Fix: 0.20+
Fix from $1,950 2020-11-20
Debian Linux HIGH 7.8
CVE-2020-19667

Stack-based buffer overflow and unconditional jump in ReadXPMImage in coders/xpm.c in ImageMagick 7.0.10-7.

No fix yet
Fix from $1,950 2020-11-20
Debian Linux HIGH 7.1
CVE-2017-18926

raptor_xml_writer_start_element_common in raptor_xml_writer.c in Raptor RDF Syntax Library 2.0.15 miscalculates the maximum nspace declarations for t…

Patch available
Fix from $1,950 2020-11-06
Debian Linux MEDIUM 5.5
CVE-2020-26571

The gemsafe GPK smart card software driver in OpenSC before 0.21.0-rc1 has a stack-based buffer overflow in sc_pkcs15emu_gemsafeGPK_init.

Fix: after 0.20.0
Fix from $1,600 2020-10-06
Debian Linux MEDIUM 5.5
CVE-2020-26519

Artifex MuPDF before 1.18.0 has a heap based buffer over-write when parsing JBIG2 files allowing attackers to cause a denial of service.

Fix: 1.18.0+
Fix from $1,600 2020-10-02
Debian Linux MEDIUM 5.0
CVE-2020-25085

QEMU 5.0.0 has a heap-based Buffer Overflow in flatview_read_continue in exec.c because hw/sd/sdhci.c mishandles a write operation in the SDHC_BLKSIZ…

Patch available
Fix from $1,600 2020-09-25
Debian Linux MEDIUM 5.5
CVE-2020-16304

A buffer overflow vulnerability in image_render_color_thresh() in base/gxicolor.c of Artifex Software GhostScript v9.18 to v9.50 allows a remote atta…

Fix: after 9.52
Fix from $1,600 2020-08-13
Debian Linux MEDIUM 5.5
CVE-2020-16305

A buffer overflow vulnerability in pcx_write_rle() in contrib/japanese/gdev10v.c of Artifex Software GhostScript v9.50 allows a remote attacker to ca…

No fix yet
Fix from $1,600 2020-08-13
Debian Linux MEDIUM 5.5
CVE-2020-16308

A buffer overflow vulnerability in p_print_image() in devices/gdevcdj.c of Artifex Software GhostScript v9.50 allows a remote attacker to cause a den…

Fix: 9.52+
Fix from $1,600 2020-08-13
Debian Linux MEDIUM 5.5
CVE-2020-16309

A buffer overflow vulnerability in lxm5700m_print_page() in devices/gdevlxm.c of Artifex Software GhostScript v9.50 allows a remote attacker to cause…

No fix yet
Fix from $1,600 2020-08-13
Debian Linux MEDIUM 5.5
CVE-2020-17538

A buffer overflow vulnerability in GetNumSameData() in contrib/lips4/gdevlips.c of Artifex Software GhostScript from v9.18 to v9.50 allows a remote a…

Fix: 9.52+
Fix from $1,600 2020-08-13
Debian Linux MEDIUM 5.5
CVE-2020-16292

A buffer overflow vulnerability in mj_raster_cmd() in contrib/japanese/gdevmjc.c of Artifex Software GhostScript v9.50 allows a remote attacker to ca…

Fix: 9.52+
Fix from $1,600 2020-08-13
Debian Linux MEDIUM 5.5
CVE-2020-16296

A buffer overflow vulnerability in GetNumWrongData() in contrib/lips4/gdevlips.c of Artifex Software GhostScript from v9.18 to v9.50 allows a remote …

Fix: 9.52+
Fix from $1,600 2020-08-13
Debian Linux MEDIUM 5.5
CVE-2020-16297

A buffer overflow vulnerability in FloydSteinbergDitheringC() in contrib/gdevbjca.c of Artifex Software GhostScript v9.18 to v9.50 allows a remote at…

Fix: 9.52+
Fix from $1,600 2020-08-13
Debian Linux MEDIUM 5.5
CVE-2020-16300

A buffer overflow vulnerability in tiff12_print_page() in devices/gdevtfnx.c of Artifex Software GhostScript v9.50 allows a remote attacker to cause …

Fix: 9.52+
Fix from $1,600 2020-08-13
Debian Linux MEDIUM 5.5
CVE-2020-16287

A buffer overflow vulnerability in lprn_is_black() in contrib/lips4/gdevlprn.c of Artifex Software GhostScript v9.50 allows a remote attacker to caus…

Fix: 9.52+
Fix from $1,600 2020-08-13
Debian Linux MEDIUM 5.5
CVE-2020-16289

A buffer overflow vulnerability in cif_print_page() in devices/gdevcif.c of Artifex Software GhostScript v9.50 allows a remote attacker to cause a de…

Fix: 9.52+
Fix from $1,600 2020-08-13
Debian Linux MEDIUM 5.5
CVE-2020-16290

A buffer overflow vulnerability in jetp3852_print_page() in devices/gdev3852.c of Artifex Software GhostScript v9.50 allows a remote attacker to caus…

Fix: 9.52+
Fix from $1,600 2020-08-13