Vulnerability index

Browse CVEs

3,919 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Debian Linux MEDIUM 5.9
CVE-2022-43594

Multiple denial of service vulnerabilities exist in the image output closing functionality of OpenImageIO Project OpenImageIO v2.4.4.2. Specially cra…

No fix yet
Fix from $1,600 2022-12-22
Debian Linux MEDIUM 5.9
CVE-2022-43595

Multiple denial of service vulnerabilities exist in the image output closing functionality of OpenImageIO Project OpenImageIO v2.4.4.2. Specially cra…

No fix yet
Fix from $1,600 2022-12-22
Debian Linux MEDIUM 5.9
CVE-2022-43596

An information disclosure vulnerability exists in the IFFOutput channel interleaving functionality of OpenImageIO Project OpenImageIO v2.4.4.2. A spe…

No fix yet
Fix from $1,600 2022-12-22
Debian Linux MEDIUM 5.9
CVE-2022-43603

A denial of service vulnerability exists in the ZfileOutput::close() functionality of OpenImageIO Project OpenImageIO v2.4.4.2. A specially crafted I…

No fix yet
Fix from $1,600 2022-12-22
Debian Linux CRITICAL 9.8
CVE-2022-41794

A heap based buffer overflow vulnerability exists in the PSD thumbnail resource parsing code of OpenImageIO 2.3.19.0. A specially-crafted PSD file ca…

No fix yet
Fix from $2,300 2022-12-22
Debian Linux CRITICAL 9.8
CVE-2022-41837

An out-of-bounds write vulnerability exists in the OpenImageIO::add_exif_item_to_spec functionality of OpenImageIO Project OpenImageIO v2.4.4.2. Spec…

No fix yet
Fix from $2,300 2022-12-22
Debian Linux CRITICAL 9.8
CVE-2022-41838

A code execution vulnerability exists in the DDS scanline parsing functionality of OpenImageIO Project OpenImageIO v2.4.4.2. A specially-crafted .dds…

No fix yet
Fix from $2,300 2022-12-22
Debian Linux HIGH 8.1
CVE-2022-41981

A stack-based buffer overflow vulnerability exists in the TGA file format parser of OpenImageIO v2.3.19.0. A specially-crafted targa file can lead to…

No fix yet
Fix from $1,950 2022-12-22
Debian Linux HIGH 7.5
CVE-2022-41988

An information disclosure vulnerability exists in the OpenImageIO::decode_iptc_iim() functionality of OpenImageIO Project OpenImageIO v2.3.19.0. A sp…

No fix yet
Fix from $1,950 2022-12-22
Debian Linux CRITICAL 9.8
CVE-2022-41639

A heap based buffer overflow vulnerability exists in tile decoding code of TIFF image parser in OpenImageIO master-branch-9aeece7a and v2.3.19.0. A s…

No fix yet
Fix from $2,300 2022-12-22
Debian Linux CRITICAL 9.1
CVE-2022-41649

A heap out of bounds read vulnerability exists in the handling of IPTC data while parsing TIFF images in OpenImageIO v2.3.19.0. A specially-crafted T…

No fix yet
Fix from $2,300 2022-12-22
Debian Linux MEDIUM 5.3
CVE-2022-36354

A heap out-of-bounds read vulnerability exists in the RLA format parser of OpenImageIO master-branch-9aeece7a and v2.3.19.0. More specifically, in th…

No fix yet
Fix from $1,600 2022-12-22
Debian Linux CRITICAL 9.8
CVE-2022-47629

Libksba before 1.6.3 is prone to an integer overflow vulnerability in the CRL signature parser.

Fix: 1.6.3+
Fix from $2,300 2022-12-20
Debian Linux HIGH 7.8
CVE-2022-4515

A flaw was found in Exuberant Ctags in the way it handles the "-o" option. This option specifies the tag filename. A crafted tag filename specified i…

No fix yet
Fix from $1,950 2022-12-20
Debian Linux CRITICAL 9.8
CVE-2022-23537

PJSIP is a free and open source multimedia communication library written in C language implementing standard based protocols such as SIP, SDP, RTP, S…

Fix: 2.13.1+
Fix from $2,300 2022-12-20
Debian Linux HIGH 7.5
CVE-2022-3109

An issue was discovered in the FFmpeg package, where vp3_decode_frame in libavcodec/vp3.c lacks check of the return value of av_malloc() and will cau…

Fix: 5.0.3+
Fix from $1,950 2022-12-16
Debian Linux MEDIUM 6.1
CVE-2022-23527

mod_auth_openidc is an OpenID Certified™ authentication and authorization module for the Apache 2.x HTTP server. Versions prior to 2.4.12.2 are vulne…

Fix: 2.4.12.2+
Fix from $1,600 2022-12-14
Debian Linux HIGH 7.5
CVE-2022-45685

A stack overflow in Jettison before v1.5.2 allows attackers to cause a Denial of Service (DoS) via crafted JSON data.

Fix: 1.5.2+
Fix from $1,950 2022-12-13
Debian Linux HIGH 7.5
CVE-2022-45693

Jettison before v1.5.2 was discovered to contain a stack overflow via the map parameter. This vulnerability allows attackers to cause a Denial of Ser…

Fix: 1.5.2+
Fix from $1,950 2022-12-13
Debian Linux MEDIUM 6.5
CVE-2022-41915

Netty project is an event-driven asynchronous network application framework. Starting in version 4.1.83.Final and prior to 4.1.86.Final, when calling…

Fix: 4.1.86+
Fix from $1,600 2022-12-13
Debian Linux HIGH 7.5
CVE-2022-41881

Netty project is an event-driven asynchronous network application framework. In versions prior to 4.1.86.Final, a StackOverflowError can be raised wh…

Fix: 4.1.86+
Fix from $1,950 2022-12-12
Debian Linux CRITICAL 9.8
CVE-2022-23484

xrdp is an open source project which provides a graphical login to remote machines using Microsoft Remote Desktop Protocol (RDP). xrdp < v0.9.21 cont…

Fix: 0.9.21+
Fix from $2,300 2022-12-09
Debian Linux CRITICAL 9.1
CVE-2022-23493

xrdp is an open source project which provides a graphical login to remote machines using Microsoft Remote Desktop Protocol (RDP). xrdp < v0.9.21 cont…

Fix: 0.9.21+
Fix from $2,300 2022-12-09
Debian Linux CRITICAL 9.1
CVE-2022-23481

xrdp is an open source project which provides a graphical login to remote machines using Microsoft Remote Desktop Protocol (RDP). xrdp < v0.9.21 cont…

Fix: 0.9.21+
Fix from $2,300 2022-12-09
Debian Linux CRITICAL 9.1
CVE-2022-23482

xrdp is an open source project which provides a graphical login to remote machines using Microsoft Remote Desktop Protocol (RDP). xrdp < v0.9.21 cont…

Fix: 0.9.21+
Fix from $2,300 2022-12-09
Debian Linux CRITICAL 9.1
CVE-2022-23483

xrdp is an open source project which provides a graphical login to remote machines using Microsoft Remote Desktop Protocol (RDP). xrdp < v0.9.21 cont…

Fix: 0.9.21+
Fix from $2,300 2022-12-09
Debian Linux CRITICAL 9.8
CVE-2022-23480

xrdp is an open source project which provides a graphical login to remote machines using Microsoft Remote Desktop Protocol (RDP). xrdp < v0.9.21 cont…

Fix: 0.9.21+
Fix from $2,300 2022-12-09
Debian Linux CRITICAL 9.8
CVE-2022-23478

xrdp is an open source project which provides a graphical login to remote machines using Microsoft Remote Desktop Protocol (RDP). xrdp < v0.9.21 cont…

Fix: 0.9.21+
Fix from $2,300 2022-12-09
Debian Linux CRITICAL 9.8
CVE-2022-23479

xrdp is an open source project which provides a graphical login to remote machines using Microsoft Remote Desktop Protocol (RDP). xrdp < v0.9.21 cont…

Fix: 0.9.21+
Fix from $2,300 2022-12-09
Debian Linux CRITICAL 9.8
CVE-2022-23468

xrdp is an open source project which provides a graphical login to remote machines using Microsoft Remote Desktop Protocol (RDP). xrdp < v0.9.21 cont…

Fix: 0.9.21+
Fix from $2,300 2022-12-09