Vulnerability index

Browse CVEs

3,919 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

MEDIUM 6.5 CVE-2022-43240 Libde265 v1.0.8 was discovered to contain a heap-buffer-overflow vulnerability via ff_hevc_put_hevc_qpel_h_2_v_1_sse in sse-motion.cc. This vulnerabi… Debian Linux No fix yet Fix from $1,6002022-11-02 MEDIUM 6.5 CVE-2022-43241 Libde265 v1.0.8 was discovered to contain an unknown crash via ff_hevc_put_hevc_qpel_v_3_8_sse in sse-motion.cc. This vulnerability allows attackers … Debian Linux No fix yet Fix from $1,6002022-11-02 MEDIUM 6.5 CVE-2022-43242 Libde265 v1.0.8 was discovered to contain a heap-buffer-overflow vulnerability via mc_luma<unsigned char> in motion.cc. This vulnerability allows att… Debian Linux No fix yet Fix from $1,6002022-11-02 MEDIUM 6.5 CVE-2022-43243 Libde265 v1.0.8 was discovered to contain a heap-buffer-overflow vulnerability via ff_hevc_put_weighted_pred_avg_8_sse in sse-motion.cc. This vulnera… Debian Linux No fix yet Fix from $1,6002022-11-02 MEDIUM 6.5 CVE-2022-43244 Libde265 v1.0.8 was discovered to contain a heap-buffer-overflow vulnerability via put_qpel_fallback<unsigned short> in fallback-motion.cc. This vuln… Debian Linux No fix yet Fix from $1,6002022-11-02 MEDIUM 6.5 CVE-2022-43235 Libde265 v1.0.8 was discovered to contain a heap-buffer-overflow vulnerability via ff_hevc_put_hevc_epel_pixels_8_sse in sse-motion.cc. This vulnerab… Debian Linux No fix yet Fix from $1,6002022-11-02 MEDIUM 6.5 CVE-2022-43236 Libde265 v1.0.8 was discovered to contain a stack-buffer-overflow vulnerability via put_qpel_fallback<unsigned short> in fallback-motion.cc. This vul… Debian Linux No fix yet Fix from $1,6002022-11-02 MEDIUM 6.5 CVE-2022-43237 Libde265 v1.0.8 was discovered to contain a stack-buffer-overflow vulnerability via void put_epel_hv_fallback<unsigned short> in fallback-motion.cc. … Debian Linux No fix yet Fix from $1,6002022-11-02 MEDIUM 6.5 CVE-2022-43238 Libde265 v1.0.8 was discovered to contain an unknown crash via ff_hevc_put_hevc_qpel_h_3_v_3_sse in sse-motion.cc. This vulnerability allows attacker… Debian Linux No fix yet Fix from $1,6002022-11-02 HIGH 8.1 CVE-2021-37789 stb_image.h 2.27 has a heap-based buffer over in stbi__jpeg_load, leading to Information Disclosure or Denial of Service. Debian Linux No fix yet Fix from $1,9502022-11-02 MEDIUM 5.5 CVE-2022-42324 Oxenstored 32->31 bit integer truncation issues Integers in Ocaml are 63 or 31 bits of signed precision. The Ocaml Xenbus library takes a C uint32_t … Debian Linux Patch available Fix from $1,6002022-11-01 MEDIUM 5.5 CVE-2022-42325 Xenstore: Guests can create arbitrary number of nodes via transactions T[his CNA information record relates to multiple CVEs; the text explains which… Debian Linux Patch available Fix from $1,6002022-11-01 MEDIUM 5.5 CVE-2022-42326 Xenstore: Guests can create arbitrary number of nodes via transactions T[his CNA information record relates to multiple CVEs; the text explains which… Debian Linux Patch available Fix from $1,6002022-11-01 HIGH 8.8 CVE-2022-42309 Xenstore: Guests can crash xenstored Due to a bug in the fix of XSA-115 a malicious guest can cause xenstored to use a wrong pointer during node crea… Debian Linux Patch available Fix from $1,9502022-11-01 HIGH 7.0 CVE-2022-42320 Xenstore: Guests can get access to Xenstore nodes of deleted domains Access rights of Xenstore nodes are per domid. When a domain is gone, there migh… Debian Linux Patch available Fix from $1,9502022-11-01 MEDIUM 6.5 CVE-2022-42312 Xenstore: guests can let run xenstored out of memory T[his CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabi… Debian Linux Patch available Fix from $1,6002022-11-01 MEDIUM 6.5 CVE-2022-42313 Xenstore: guests can let run xenstored out of memory T[his CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabi… Debian Linux Patch available Fix from $1,6002022-11-01 MEDIUM 6.5 CVE-2022-42314 Xenstore: guests can let run xenstored out of memory T[his CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabi… Debian Linux Patch available Fix from $1,6002022-11-01 MEDIUM 6.5 CVE-2022-42315 Xenstore: guests can let run xenstored out of memory T[his CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabi… Debian Linux Patch available Fix from $1,6002022-11-01 MEDIUM 6.5 CVE-2022-42316 Xenstore: guests can let run xenstored out of memory T[his CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabi… Debian Linux Patch available Fix from $1,6002022-11-01 MEDIUM 6.5 CVE-2022-42317 Xenstore: guests can let run xenstored out of memory T[his CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabi… Debian Linux Patch available Fix from $1,6002022-11-01 MEDIUM 6.5 CVE-2022-42318 Xenstore: guests can let run xenstored out of memory T[his CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabi… Debian Linux Patch available Fix from $1,6002022-11-01 MEDIUM 6.5 CVE-2022-42319 Xenstore: Guests can cause Xenstore to not free temporary memory When working on a request of a guest, xenstored might need to allocate quite large a… Debian Linux Patch available Fix from $1,6002022-11-01 MEDIUM 6.5 CVE-2022-42321 Xenstore: Guests can crash xenstored via exhausting the stack Xenstored is using recursion for some Xenstore operations (e.g. for deleting a sub-tree… Debian Linux Patch available Fix from $1,6002022-11-01 MEDIUM 5.5 CVE-2022-42310 Xenstore: Guests can create orphaned Xenstore nodes By creating multiple nodes inside a transaction resulting in an error, a malicious guest can crea… Debian Linux 4.13.0+ Fix from $1,6002022-11-01 MEDIUM 5.5 CVE-2022-42322 Xenstore: Cooperating guests can create arbitrary numbers of nodes T[his CNA information record relates to multiple CVEs; the text explains which asp… Debian Linux Patch available Fix from $1,6002022-11-01 MEDIUM 5.5 CVE-2022-42323 Xenstore: Cooperating guests can create arbitrary numbers of nodes T[his CNA information record relates to multiple CVEs; the text explains which asp… Debian Linux Patch available Fix from $1,6002022-11-01 HIGH 8.8 CVE-2022-39286 Jupyter Core is a package for the core common functionality of Jupyter projects. Jupyter Core prior to version 4.11.2 contains an arbitrary code exec… Debian Linux 4.11.2+ Fix from $1,9502022-10-26 MEDIUM 5.4 CVE-2022-39348 Twisted is an event-based framework for internet applications. Started with version 0.9.4, when the host header does not match a configured host `twi… Debian Linux 22.10.0+ Fix from $1,6002022-10-26 HIGH 7.5 CVE-2022-43680 In libexpat through 2.4.9, there is a use-after free caused by overeager destruction of a shared DTD in XML_ExternalEntityParserCreate in out-of-memo… Debian Linux after 2.4.9 Fix from $1,9502022-10-24