Vulnerability index

Browse CVEs

3,919 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Debian Linux HIGH 7.8
CVE-2024-39496

In the Linux kernel, the following vulnerability has been resolved: btrfs: zoned: fix use-after-free due to race with dev replace While loading a z…

Fix: 6.1.95 / 6.6.35+
Fix from $1,950 2024-07-12
Debian Linux CRITICAL 9.1
CVE-2024-37371

In MIT Kerberos 5 (aka krb5) before 1.21.3, an attacker can cause invalid memory reads during GSS message token handling by sending message tokens wi…

Fix: 1.21.3+
Fix from $2,300 2024-06-28
Debian Linux HIGH 7.8
CVE-2024-38588

In the Linux kernel, the following vulnerability has been resolved: ftrace: Fix possible use-after-free issue in ftrace_location() KASAN reports a …

Fix: 5.4.286 / 5.10.227+
Fix from $1,950 2024-06-19
Debian Linux MEDIUM 6.7
CVE-2024-35235

OpenPrinting CUPS is an open source printing system for Linux and other Unix-like operating systems. In versions 2.4.8 and earlier, when starting the…

Fix: after 2.4.8
Fix from $1,600 2024-06-11
Debian Linux HIGH 7.8
CVE-2024-36971 KEV

In the Linux kernel, the following vulnerability has been resolved: net: fix __dst_negative_advice() race __dst_negative_advice() does not enforce …

Fix: 4.19.316 / 5.4.278+
Fix from $1,950 2024-06-10
Debian Linux MEDIUM 6.1
CVE-2024-37383 KEVEPSS 73%

Roundcube Webmail before 1.5.7 and 1.6.x before 1.6.7 allows XSS via SVG animate attributes.

Fix: 1.5.7 / 1.6.7+
Fix from $1,600 2024-06-07
Debian Linux MEDIUM 6.1
CVE-2024-37384

Roundcube Webmail before 1.5.7 and 1.6.x before 1.6.7 allows XSS via list columns from user preferences.

Fix: 1.5.7 / 1.6.7+
Fix from $1,600 2024-06-07
Debian Linux CRITICAL 9.1
CVE-2024-5197

There exists interger overflows in libvpx in versions prior to 1.14.1. Calling vpx_img_alloc() with a large value of the d_w, d_h, or align parameter…

Fix: 1.14.1+
Fix from $2,300 2024-06-03
Debian Linux CRITICAL 9.3
CVE-2024-36913

In the Linux kernel, the following vulnerability has been resolved: Drivers: hv: vmbus: Leak pages if set_memory_encrypted() fails In CoCo VMs it i…

Fix: 6.1.143 / 6.6.31+
Fix from $2,300 2024-05-30
Debian Linux HIGH 7.8
CVE-2024-4453

GStreamer EXIF Metadata Parsing Integer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary…

Patch available
Fix from $1,950 2024-05-22
Debian Linux HIGH 7.8
CVE-2021-47489

In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: Fix even more out of bound writes from debugfs CVE-2021-42327 was f…

Fix: 5.10.236 / 5.14.16+
Fix from $1,950 2024-05-22
Debian Linux HIGH 7.8
CVE-2023-52812

In the Linux kernel, the following vulnerability has been resolved: drm/amd: check num of link levels when update pcie param In SR-IOV environment,…

Fix: 6.1.119 / 6.5.13+
Fix from $1,950 2024-05-21
Debian Linux HIGH 7.8
CVE-2023-52757

In the Linux kernel, the following vulnerability has been resolved: smb: client: fix potential deadlock when releasing mids All release_mid() calle…

Fix: 5.10.237 / 5.15.181+
Fix from $1,950 2024-05-21
Debian Linux HIGH 7.8
CVE-2023-52752

In the Linux kernel, the following vulnerability has been resolved: smb: client: fix use-after-free bug in cifs_debug_data_proc_show() Skip SMB ses…

Fix: 5.10.237 / 5.15.181+
Fix from $1,950 2024-05-21
Debian Linux HIGH 7.8
CVE-2021-47247

In the Linux kernel, the following vulnerability has been resolved: net/mlx5e: Fix use-after-free of encap entry in neigh update handler Function m…

Fix: 5.10.237 / 5.12.13+
Fix from $1,950 2024-05-21
Debian Linux HIGH 7.8
CVE-2024-35866

In the Linux kernel, the following vulnerability has been resolved: smb: client: fix potential UAF in cifs_dump_full_key() Skip sessions that are b…

Fix: 5.15.181 / 6.1.132+
Fix from $1,950 2024-05-19
Debian Linux HIGH 7.8
CVE-2024-35867

In the Linux kernel, the following vulnerability has been resolved: smb: client: fix potential UAF in cifs_stats_proc_show() Skip sessions that are…

Fix: 5.10.237 / 5.15.181+
Fix from $1,950 2024-05-19
Debian Linux MEDIUM 5.5
CVE-2024-35829

In the Linux kernel, the following vulnerability has been resolved: drm/lima: fix a memleak in lima_heap_alloc When lima_vm_map_bo fails, the resou…

Fix: 5.10.214 / 5.15.153+
Fix from $1,600 2024-05-17
Debian Linux MEDIUM 5.5
CVE-2024-35821

In the Linux kernel, the following vulnerability has been resolved: ubifs: Set page uptodate in the correct place Page cache reads are lockless, so…

Fix: 4.19.312 / 5.4.274+
Fix from $1,600 2024-05-17
Debian Linux MEDIUM 5.2
CVE-2024-34397

An issue was discovered in GNOME GLib before 2.78.5, and 2.79.x and 2.80.x before 2.80.1. When a GDBus-based client subscribes to signals from a trus…

Fix: 2.78.5 / 2.80.1+
Fix from $1,600 2024-05-07
Debian Linux HIGH 8.1
CVE-2024-33599

nscd: Stack-based buffer overflow in netgroup cache If the Name Service Cache Daemon's (nscd) fixed size cache is exhausted by client requests then …

Fix: 2.40+
Fix from $1,950 2024-05-06
Debian Linux HIGH 7.4
CVE-2024-33602

nscd: netgroup cache assumes NSS callback uses in-buffer strings The Name Service Cache Daemon's (nscd) netgroup cache can corrupt memory when the N…

Fix: 2.40+
Fix from $1,950 2024-05-06
Debian Linux HIGH 7.3
CVE-2024-33601

nscd: netgroup cache may terminate daemon on memory allocation failure The Name Service Cache Daemon's (nscd) netgroup cache uses xmalloc or xreallo…

Fix: 2.40+
Fix from $1,950 2024-05-06
Debian Linux MEDIUM 5.9
CVE-2024-33600

nscd: Null pointer crashes after notfound response If the Name Service Cache Daemon's (nscd) cache fails to add a not-found netgroup response to the…

Fix: 2.40+
Fix from $1,600 2024-05-06
Debian Linux HIGH 7.5
CVE-2024-34069

Werkzeug is a comprehensive WSGI web application library. The debugger in affected versions of Werkzeug can allow an attacker to execute code on a de…

Fix: 3.0.3+
Fix from $1,950 2024-05-06
Debian Linux MEDIUM 5.3
CVE-2024-34509

dcmdata in DCMTK before 3.6.9 has a segmentation fault via an invalid DIMSE message.

Fix: 3.6.9+
Fix from $1,600 2024-05-05
Debian Linux HIGH 7.8
CVE-2024-26928

In the Linux kernel, the following vulnerability has been resolved: smb: client: fix potential UAF in cifs_debug_files_proc_show() Skip sessions th…

Fix: 5.10.237 / 5.15.180+
Fix from $1,950 2024-04-28
Debian Linux HIGH 7.5
CVE-2024-28130

An incorrect type conversion vulnerability exists in the DVPSSoftcopyVOI_PList::createFromImage functionality of OFFIS DCMTK 3.6.8. A specially craft…

No fix yet
Fix from $1,950 2024-04-23
Debian Linux HIGH 7.3
CVE-2024-2961EPSS 88%

The iconv() function in the GNU C Library versions 2.39 and older may overflow the output buffer passed to it by up to 4 bytes when converting string…

Fix: 2.40+
Fix from $1,950 2024-04-17
Debian Linux HIGH 7.8
CVE-2024-26883

In the Linux kernel, the following vulnerability has been resolved: bpf: Fix stackmap overflow check on 32-bit arches The stackmap code relies on r…

Fix: 4.10 / 4.15+
Fix from $1,950 2024-04-17