Vulnerability index

Browse CVEs

3,919 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Debian Linux CRITICAL 9.8
CVE-2023-40186

FreeRDP is a free implementation of the Remote Desktop Protocol (RDP), released under the Apache license. Affected versions are subject to an Integer…

Fix: 2.11.0+
Fix from $2,300 2023-08-31
Debian Linux CRITICAL 9.8
CVE-2023-40567

FreeRDP is a free implementation of the Remote Desktop Protocol (RDP), released under the Apache license. Affected versions are subject to an Out-Of-…

Fix: 2.11.0+
Fix from $2,300 2023-08-31
Debian Linux CRITICAL 9.8
CVE-2023-40569

FreeRDP is a free implementation of the Remote Desktop Protocol (RDP), released under the Apache license. Affected versions are subject to an Out-Of-…

Fix: 2.11.0+
Fix from $2,300 2023-08-31
Debian Linux CRITICAL 9.1
CVE-2023-40188

FreeRDP is a free implementation of the Remote Desktop Protocol (RDP), released under the Apache license. Affected versions are subject to an Out-Of-…

Fix: 2.11.0+
Fix from $2,300 2023-08-31
Debian Linux CRITICAL 9.1
CVE-2023-40181

FreeRDP is a free implementation of the Remote Desktop Protocol (RDP), released under the Apache license. Affected versions are subject to an Integer…

Fix: 2.11.0+
Fix from $2,300 2023-08-31
Debian Linux CRITICAL 9.1
CVE-2023-39353

FreeRDP is a free implementation of the Remote Desktop Protocol (RDP), released under the Apache license. Affected versions are subject to a missing …

Fix: 2.11.0+
Fix from $2,300 2023-08-31
Debian Linux CRITICAL 9.1
CVE-2023-39356

FreeRDP is a free implementation of the Remote Desktop Protocol (RDP), released under the Apache license. In affected versions a missing offset valid…

Fix: 2.11.0+
Fix from $2,300 2023-08-31
Debian Linux CRITICAL 9.8
CVE-2023-39352

FreeRDP is a free implementation of the Remote Desktop Protocol (RDP), released under the Apache license. Affected versions are subject to an invalid…

Fix: 2.11.0+
Fix from $2,300 2023-08-31
Debian Linux CRITICAL 9.8
CVE-2023-39355

FreeRDP is a free implementation of the Remote Desktop Protocol (RDP), released under the Apache license. Versions of FreeRDP on the 3.x release bran…

Patch available
Fix from $2,300 2023-08-31
Debian Linux HIGH 7.5
CVE-2023-39350

FreeRDP is a free implementation of the Remote Desktop Protocol (RDP), released under the Apache license. This issue affects Clients only. Integer un…

Fix: 2.11.0+
Fix from $1,950 2023-08-31
Debian Linux HIGH 7.5
CVE-2023-39351

FreeRDP is a free implementation of the Remote Desktop Protocol (RDP), released under the Apache license. Affected versions of FreeRDP are subject to…

Fix: 2.11.0+
Fix from $1,950 2023-08-31
Debian Linux HIGH 7.5
CVE-2023-39354

FreeRDP is a free implementation of the Remote Desktop Protocol (RDP), released under the Apache license. Affected versions are subject to an Out-Of-…

Fix: 2.11.0+
Fix from $1,950 2023-08-31
Debian Linux HIGH 7.5
CVE-2023-38802

FRRouting FRR 7.5.1 through 9.0 and Pica8 PICOS 4.3.3.2 allow a remote attacker to cause a denial of service via a crafted BGP update with a corrupte…

Fix: after 9.0
Fix from $1,950 2023-08-29
Debian Linux CRITICAL 9.8
CVE-2023-41361

An issue was discovered in FRRouting FRR 9.0. bgpd/bgp_open.c does not check for an overly large length of the rcv software version.

Fix: after 9.0
Fix from $2,300 2023-08-29
Debian Linux CRITICAL 9.1
CVE-2023-41360

An issue was discovered in FRRouting FRR through 9.0. bgpd/bgp_packet.c can read the initial byte of the ORF header in an ahead-of-stream situation.

Fix: after 9.0
Fix from $2,300 2023-08-29
Debian Linux HIGH 7.5
CVE-2023-41358

An issue was discovered in FRRouting FRR through 9.0. bgpd/bgp_packet.c processes NLRIs if the attribute length is zero.

Fix: after 9.0
Fix from $1,950 2023-08-29
Debian Linux HIGH 8.8
CVE-2020-24165

An issue was discovered in TCG Accelerator in QEMU 4.2.0, allows local attackers to execute arbitrary code, escalate privileges, and cause a denial o…

Mitigation only
Fix from $1,950 2023-08-28
Debian Linux CRITICAL 9.8
CVE-2022-48174

There is a stack overflow vulnerability in ash.c:6030 in busybox before 1.35. In the environment of Internet of Vehicles, this vulnerability can be e…

Fix: after 1.36.1
Fix from $2,300 2023-08-22
Debian Linux MEDIUM 5.5
CVE-2022-48554

File before 5.43 has an stack-based buffer over-read in file_copystr in funcs.c. NOTE: "File" is the name of an Open Source project.

No fix yet
Fix from $1,600 2023-08-22
Debian Linux MEDIUM 6.5
CVE-2022-37050

In Poppler 22.07.0, PDFDoc::savePageAs in PDFDoc.c callows attackers to cause a denial-of-service (application crashes with SIGABRT) by crafting a PD…

Patch available
Fix from $1,600 2023-08-22
Debian Linux MEDIUM 6.5
CVE-2022-37051

An issue was discovered in Poppler 22.07.0. There is a reachable abort which leads to denial of service because the main function in pdfunite.cc lack…

Patch available
Fix from $1,600 2023-08-22
Debian Linux MEDIUM 6.5
CVE-2020-35357

A buffer overflow can occur when calculating the quantile value using the Statistics Library of GSL (GNU Scientific Library), versions 2.5 and 2.6. P…

Patch available
Fix from $1,600 2023-08-22
Debian Linux HIGH 7.5
CVE-2020-23804

Uncontrolled Recursion in pdfinfo, and pdftops in poppler 0.89.0 allows remote attackers to cause a denial of service via crafted input.

Patch available
Fix from $1,950 2023-08-22
Debian Linux MEDIUM 5.9
CVE-2020-22217

Buffer overflow vulnerability in c-ares before 1_16_1 thru 1_17_0 via function ares_parse_soa_reply in ares_parse_soa_reply.c.

Patch available
Fix from $1,600 2023-08-22
Debian Linux MEDIUM 6.5
CVE-2020-19189

Buffer Overflow vulnerability in postprocess_terminfo function in tinfo/parse_entry.c:997 in ncurses 6.1 allows remote attackers to cause a denial of…

No fix yet
Fix from $1,600 2023-08-22
Debian Linux HIGH 7.5
CVE-2023-37369

In Qt before 5.15.15, 6.x before 6.2.9, and 6.3.x through 6.5.x before 6.5.2, there can be an application crash in QXmlStreamReader via a crafted XML…

Fix: 5.15.15 / 6.2.9+
Fix from $1,950 2023-08-20
Debian Linux HIGH 7.5
CVE-2023-39534

eprosima Fast DDS is a C++ implementation of the Data Distribution Service standard of the Object Management Group. Prior to versions 2.10.0, 2.9.2, …

Fix: 2.6.5 / 2.9.2+
Fix from $1,950 2023-08-11
Debian Linux HIGH 7.5
CVE-2023-39945

eprosima Fast DDS is a C++ implementation of the Data Distribution Service standard of the Object Management Group. Prior to versions 2.11.0, 2.10.2,…

Fix: 2.6.5 / 2.9.2+
Fix from $1,950 2023-08-11
Debian Linux HIGH 7.5
CVE-2023-39946

eprosima Fast DDS is a C++ implementation of the Data Distribution Service standard of the Object Management Group. Prior to versions 2.11.1, 2.10.2,…

Fix: 2.6.6 / 2.9.2+
Fix from $1,950 2023-08-11
Debian Linux HIGH 7.5
CVE-2023-39947

eprosima Fast DDS is a C++ implementation of the Data Distribution Service standard of the Object Management Group. Prior to versions 2.11.1, 2.10.2,…

Fix: 2.6.6 / 2.9.2+
Fix from $1,950 2023-08-11