Vulnerability index

Browse CVEs

1,897 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Fedora MEDIUM 5.5
CVE-2022-0562

Null source pointer passed as an argument to memcpy() function within TIFFReadDirectory() in tif_dirread.c in libtiff versions from 4.0 to 4.3.0 coul…

Fix: after 4.3.0
Fix from $1,600 2022-02-11
Fedora HIGH 7.8
CVE-2022-0554

Use of Out-of-range Pointer Offset in GitHub repository vim/vim prior to 8.2.

Fix: 8.2.4327 / 13.0+
Fix from $1,950 2022-02-10
Fedora HIGH 7.5
CVE-2022-21986

.NET Denial of Service Vulnerability

Fix: 5.0.14 / 6.0.2+
Fix from $1,950 2022-02-09
Fedora HIGH 7.8
CVE-2022-0523

Use After Free in GitHub repository radareorg/radare2 prior to 5.6.2.

Fix: 5.6.2+
Fix from $1,950 2022-02-08
Fedora HIGH 7.1
CVE-2022-0522

Access of Memory Location Before Start of Buffer in NPM radare2.js prior to 5.6.2.

Fix: 5.6.2+
Fix from $1,950 2022-02-08
Fedora HIGH 7.8
CVE-2022-0520

Use After Free in NPM radare2.js prior to 5.6.2.

Fix: 5.6.2+
Fix from $1,950 2022-02-08
Fedora HIGH 7.1
CVE-2022-0518

Heap-based Buffer Overflow in GitHub repository radareorg/radare2 prior to 5.6.2.

Fix: 5.6.2+
Fix from $1,950 2022-02-08
Fedora HIGH 7.1
CVE-2022-0519

Buffer Access with Incorrect Length Value in GitHub repository radareorg/radare2 prior to 5.6.2.

Fix: 5.6.2+
Fix from $1,950 2022-02-08
Fedora HIGH 7.1
CVE-2022-0521

Access of Memory Location After End of Buffer in GitHub repository radareorg/radare2 prior to 5.6.2.

Fix: 5.6.2+
Fix from $1,950 2022-02-08
Fedora HIGH 7.8
CVE-2022-23613

xrdp is an open source remote desktop protocol (RDP) server. In affected versions an integer underflow leading to a heap overflow in the sesman serve…

Patch available
Fix from $1,950 2022-02-07
Fedora HIGH 7.8
CVE-2022-23946

A stack-based buffer overflow vulnerability exists in the Gerber Viewer gerber and excellon GCodeNumber parsing functionality of KiCad EDA 6.0.1 and …

No fix yet
Fix from $1,950 2022-02-04
Fedora HIGH 7.8
CVE-2022-23947

A stack-based buffer overflow vulnerability exists in the Gerber Viewer gerber and excellon DCodeNumber parsing functionality of KiCad EDA 6.0.1 and …

Mitigation only
Fix from $1,950 2022-02-04
Fedora HIGH 8.6
CVE-2021-40401

A use-after-free vulnerability exists in the RS-274X aperture definition tokenization functionality of Gerbv 2.7.0 and dev (commit b5f1eacd) and Gerb…

No fix yet
Fix from $1,950 2022-02-04
Fedora MEDIUM 6.3
CVE-2021-40403

An information disclosure vulnerability exists in the pick-and-place rotation parsing functionality of Gerbv 2.7.0 and dev (commit b5f1eacd), and Ger…

No fix yet
Fix from $1,600 2022-02-04
Fedora HIGH 7.8
CVE-2022-0443

Use After Free in GitHub repository vim/vim prior to 8.2.

Fix: 8.2.4281+
Fix from $1,950 2022-02-02
Fedora HIGH 7.8
CVE-2022-0417

Heap-based Buffer Overflow GitHub repository vim/vim prior to 8.2.

Fix: 8.2.4245+
Fix from $1,950 2022-02-01
Fedora MEDIUM 5.5
CVE-2022-0419

NULL Pointer Dereference in GitHub repository radareorg/radare2 prior to 5.6.0.

Fix: 5.6.0+
Fix from $1,600 2022-02-01
Fedora HIGH 7.8
CVE-2022-0408

Stack-based Buffer Overflow in GitHub repository vim/vim prior to 8.2.

Fix: 8.2.4247+
Fix from $1,950 2022-01-30
Fedora HIGH 7.8
CVE-2022-0413

Use After Free in GitHub repository vim/vim prior to 8.2.

Fix: 8.2.4253+
Fix from $1,950 2022-01-30
Fedora MEDIUM 6.1
CVE-2022-23598

laminas-form is a package for validating and displaying simple and complex forms. When rendering validation error messages via the `formElementErrors…

Fix: 2.17.1 / 3.0.2+
Fix from $1,600 2022-01-28
Fedora HIGH 7.1
CVE-2022-0393

Out-of-bounds Read in GitHub repository vim/vim prior to 8.2.

Fix: 8.2.4233+
Fix from $1,950 2022-01-28
Fedora CRITICAL 9.1
CVE-2022-23959

In Varnish Cache before 6.6.2 and 7.x before 7.0.2, Varnish Cache 6.0 LTS before 6.0.10, and and Varnish Enterprise (Cache Plus) 4.1.x before 4.1.11r…

Fix: 4.1.11r6 / 6.0.9r4+
Fix from $2,300 2022-01-26
Fedora MEDIUM 5.5
CVE-2022-23034

A PV guest could DoS Xen while unmapping a grant To address XSA-380, reference counting was introduced for grant mappings for the case where a PV gue…

Fix: 4.13.0+
Fix from $1,600 2022-01-25
Fedora HIGH 7.8
CVE-2022-23033

arm: guest_physmap_remove_page not removing the p2m mappings The functions to remove one or more entries from a guest p2m pagetable on Arm (p2m_remov…

Patch available
Fix from $1,950 2022-01-25
Fedora HIGH 7.8
CVE-2021-45342

A buffer overflow vulnerability in CDataList of the jwwlib component of LibreCAD 2.2.0-rc3 and older allows an attacker to achieve Remote Code Execut…

Fix: after 2.1.3
Fix from $1,950 2022-01-25
Fedora MEDIUM 5.5
CVE-2021-45343

In LibreCAD 2.2.0, a NULL pointer dereference in the HATCH handling of libdxfrw allows an attacker to crash the application using a crafted DXF docum…

Patch available
Fix from $1,600 2022-01-25
Fedora HIGH 8.8
CVE-2021-45341EPSS 7%

A buffer overflow vulnerability in CDataMoji of the jwwlib component of LibreCAD 2.2.0-rc3 and older allows an attacker to achieve Remote Code Execut…

Fix: 2.2.0+
Fix from $1,950 2022-01-25
Fedora CRITICAL 9.8
CVE-2022-23303

The implementations of SAE in hostapd before 2.10 and wpa_supplicant before 2.10 are vulnerable to side channel attacks as a result of cache access p…

Fix: 2.10+
Fix from $2,300 2022-01-17
Fedora CRITICAL 9.8
CVE-2022-23304

The implementations of EAP-pwd in hostapd before 2.10 and wpa_supplicant before 2.10 are vulnerable to side-channel attacks as a result of cache acce…

Fix: 2.10+
Fix from $2,300 2022-01-17
Fedora HIGH 7.5
CVE-2022-23094

Libreswan 4.2 through 4.5 allows remote attackers to cause a denial of service (NULL pointer dereference and daemon crash) via a crafted IKEv1 packet…

Fix: 4.6+
Fix from $1,950 2022-01-15