Vulnerability index

Browse CVEs

3,919 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Debian Linux MEDIUM 6.5
CVE-2022-43240

Libde265 v1.0.8 was discovered to contain a heap-buffer-overflow vulnerability via ff_hevc_put_hevc_qpel_h_2_v_1_sse in sse-motion.cc. This vulnerabi…

No fix yet
Fix from $1,600 2022-11-02
Debian Linux MEDIUM 6.5
CVE-2022-43241

Libde265 v1.0.8 was discovered to contain an unknown crash via ff_hevc_put_hevc_qpel_v_3_8_sse in sse-motion.cc. This vulnerability allows attackers …

No fix yet
Fix from $1,600 2022-11-02
Debian Linux MEDIUM 6.5
CVE-2022-43242

Libde265 v1.0.8 was discovered to contain a heap-buffer-overflow vulnerability via mc_luma<unsigned char> in motion.cc. This vulnerability allows att…

No fix yet
Fix from $1,600 2022-11-02
Debian Linux MEDIUM 6.5
CVE-2022-43243

Libde265 v1.0.8 was discovered to contain a heap-buffer-overflow vulnerability via ff_hevc_put_weighted_pred_avg_8_sse in sse-motion.cc. This vulnera…

No fix yet
Fix from $1,600 2022-11-02
Debian Linux MEDIUM 6.5
CVE-2022-43244

Libde265 v1.0.8 was discovered to contain a heap-buffer-overflow vulnerability via put_qpel_fallback<unsigned short> in fallback-motion.cc. This vuln…

No fix yet
Fix from $1,600 2022-11-02
Debian Linux MEDIUM 6.5
CVE-2022-43235

Libde265 v1.0.8 was discovered to contain a heap-buffer-overflow vulnerability via ff_hevc_put_hevc_epel_pixels_8_sse in sse-motion.cc. This vulnerab…

No fix yet
Fix from $1,600 2022-11-02
Debian Linux MEDIUM 6.5
CVE-2022-43236

Libde265 v1.0.8 was discovered to contain a stack-buffer-overflow vulnerability via put_qpel_fallback<unsigned short> in fallback-motion.cc. This vul…

No fix yet
Fix from $1,600 2022-11-02
Debian Linux MEDIUM 6.5
CVE-2022-43237

Libde265 v1.0.8 was discovered to contain a stack-buffer-overflow vulnerability via void put_epel_hv_fallback<unsigned short> in fallback-motion.cc. …

No fix yet
Fix from $1,600 2022-11-02
Debian Linux MEDIUM 6.5
CVE-2022-43238

Libde265 v1.0.8 was discovered to contain an unknown crash via ff_hevc_put_hevc_qpel_h_3_v_3_sse in sse-motion.cc. This vulnerability allows attacker…

No fix yet
Fix from $1,600 2022-11-02
Debian Linux HIGH 8.1
CVE-2021-37789

stb_image.h 2.27 has a heap-based buffer over in stbi__jpeg_load, leading to Information Disclosure or Denial of Service.

No fix yet
Fix from $1,950 2022-11-02
Debian Linux MEDIUM 5.5
CVE-2022-42324

Oxenstored 32->31 bit integer truncation issues Integers in Ocaml are 63 or 31 bits of signed precision. The Ocaml Xenbus library takes a C uint32_t …

Patch available
Fix from $1,600 2022-11-01
Debian Linux MEDIUM 5.5
CVE-2022-42325

Xenstore: Guests can create arbitrary number of nodes via transactions T[his CNA information record relates to multiple CVEs; the text explains which…

Patch available
Fix from $1,600 2022-11-01
Debian Linux MEDIUM 5.5
CVE-2022-42326

Xenstore: Guests can create arbitrary number of nodes via transactions T[his CNA information record relates to multiple CVEs; the text explains which…

Patch available
Fix from $1,600 2022-11-01
Debian Linux HIGH 8.8
CVE-2022-42309

Xenstore: Guests can crash xenstored Due to a bug in the fix of XSA-115 a malicious guest can cause xenstored to use a wrong pointer during node crea…

Patch available
Fix from $1,950 2022-11-01
Debian Linux HIGH 7.0
CVE-2022-42320

Xenstore: Guests can get access to Xenstore nodes of deleted domains Access rights of Xenstore nodes are per domid. When a domain is gone, there migh…

Patch available
Fix from $1,950 2022-11-01
Debian Linux MEDIUM 6.5
CVE-2022-42312

Xenstore: guests can let run xenstored out of memory T[his CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabi…

Patch available
Fix from $1,600 2022-11-01
Debian Linux MEDIUM 6.5
CVE-2022-42313

Xenstore: guests can let run xenstored out of memory T[his CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabi…

Patch available
Fix from $1,600 2022-11-01
Debian Linux MEDIUM 6.5
CVE-2022-42314

Xenstore: guests can let run xenstored out of memory T[his CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabi…

Patch available
Fix from $1,600 2022-11-01
Debian Linux MEDIUM 6.5
CVE-2022-42315

Xenstore: guests can let run xenstored out of memory T[his CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabi…

Patch available
Fix from $1,600 2022-11-01
Debian Linux MEDIUM 6.5
CVE-2022-42316

Xenstore: guests can let run xenstored out of memory T[his CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabi…

Patch available
Fix from $1,600 2022-11-01
Debian Linux MEDIUM 6.5
CVE-2022-42317

Xenstore: guests can let run xenstored out of memory T[his CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabi…

Patch available
Fix from $1,600 2022-11-01
Debian Linux MEDIUM 6.5
CVE-2022-42318

Xenstore: guests can let run xenstored out of memory T[his CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabi…

Patch available
Fix from $1,600 2022-11-01
Debian Linux MEDIUM 6.5
CVE-2022-42319

Xenstore: Guests can cause Xenstore to not free temporary memory When working on a request of a guest, xenstored might need to allocate quite large a…

Patch available
Fix from $1,600 2022-11-01
Debian Linux MEDIUM 6.5
CVE-2022-42321

Xenstore: Guests can crash xenstored via exhausting the stack Xenstored is using recursion for some Xenstore operations (e.g. for deleting a sub-tree…

Patch available
Fix from $1,600 2022-11-01
Debian Linux MEDIUM 5.5
CVE-2022-42310

Xenstore: Guests can create orphaned Xenstore nodes By creating multiple nodes inside a transaction resulting in an error, a malicious guest can crea…

Fix: 4.13.0+
Fix from $1,600 2022-11-01
Debian Linux MEDIUM 5.5
CVE-2022-42322

Xenstore: Cooperating guests can create arbitrary numbers of nodes T[his CNA information record relates to multiple CVEs; the text explains which asp…

Patch available
Fix from $1,600 2022-11-01
Debian Linux MEDIUM 5.5
CVE-2022-42323

Xenstore: Cooperating guests can create arbitrary numbers of nodes T[his CNA information record relates to multiple CVEs; the text explains which asp…

Patch available
Fix from $1,600 2022-11-01
Debian Linux HIGH 8.8
CVE-2022-39286

Jupyter Core is a package for the core common functionality of Jupyter projects. Jupyter Core prior to version 4.11.2 contains an arbitrary code exec…

Fix: 4.11.2+
Fix from $1,950 2022-10-26
Debian Linux MEDIUM 5.4
CVE-2022-39348

Twisted is an event-based framework for internet applications. Started with version 0.9.4, when the host header does not match a configured host `twi…

Fix: 22.10.0+
Fix from $1,600 2022-10-26
Debian Linux HIGH 7.5
CVE-2022-43680

In libexpat through 2.4.9, there is a use-after free caused by overeager destruction of a shared DTD in XML_ExternalEntityParserCreate in out-of-memo…

Fix: after 2.4.9
Fix from $1,950 2022-10-24