Vulnerability index

Browse CVEs

725 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Glibc MEDIUM 5.6
CVE-2025-5745

The strncmp implementation optimized for the Power10 processor in the GNU C Library version 2.40 and later writes to vector registers v20 to v31 with…

Fix: 2.40-136 / 2.41-57+
Fix from $1,600 2025-06-05
Glibc MEDIUM 5.6
CVE-2025-5702

The strcmp implementation optimized for the Power10 processor in the GNU C Library version 2.39 and later writes to vector registers v20 to v31 witho…

Fix: 2.39-209 / 2.40-139+
Fix from $1,600 2025-06-05
Binutils HIGH 7.8
CVE-2025-5245

A vulnerability classified as critical has been found in GNU Binutils up to 2.44. This affects the function debug_type_samep of the file /binutils/de…

Fix: 2.45+
Fix from $1,950 2025-05-27
Binutils HIGH 7.8
CVE-2025-5244

A vulnerability was found in GNU Binutils up to 2.44. It has been rated as critical. Affected by this issue is the function elf_gc_sweep of the file …

Fix: 2.45+
Fix from $1,950 2025-05-27
Pspp MEDIUM 5.5
CVE-2025-5001

A vulnerability was found in GNU PSPP 82fb509fb2fedd33e7ac0c46ca99e108bb3bdffb. It has been declared as problematic. This vulnerability affects the f…

No fix yet
Fix from $1,600 2025-05-20
Pspp MEDIUM 5.5
CVE-2025-48188

libpspp-core.a in GNU PSPP through 2.0.1 has an incorrect call from fill_buffer (in data/encrypted-file.c) to the Gnulib rijndaelDecrypt function, le…

Fix: after 2.0.1
Fix from $1,600 2025-05-16
Glibc HIGH 7.8
CVE-2025-4802

Untrusted LD_LIBRARY_PATH environment variable vulnerability in the GNU C Library version 2.27 to 2.38 allows attacker controlled loading of dynamica…

Fix: after 2.38
Fix from $1,950 2025-05-16
Pspp CRITICAL 9.8
CVE-2025-47814

libpspp-core.a in GNU PSPP through 2.0.1 allows attackers to cause a heap-based buffer overflow in inflate_read (called indirectly from spv_read_xml_…

Fix: after 2.0.1
Fix from $2,300 2025-05-10
Pspp CRITICAL 9.8
CVE-2025-47815

libpspp-core.a in GNU PSPP through 2.0.1 allows attackers to cause a heap-based buffer overflow in inflate_read (called indirectly from zip_member_re…

Fix: after 2.0.1
Fix from $2,300 2025-05-10
Pspp CRITICAL 9.1
CVE-2025-47816

libpspp-core.a in GNU PSPP through 2.0.1 allows attackers to cause an spvxml-helpers.c spvxml_parse_attributes out-of-bounds read, related to extra c…

Fix: after 2.0.1
Fix from $2,300 2025-05-10
Pspp MEDIUM 5.5
CVE-2025-47229

libpspp-core.a in GNU PSPP through 2.0.1 allows attackers to cause a denial of service (var_set_leave_quiet assertion failure and application exit) v…

Fix: after 2.0.1
Fix from $1,600 2025-05-03
Mailman MEDIUM 5.3
CVE-2025-43921

GNU Mailman 2.1.39, as bundled in cPanel (and WHM), allows unauthenticated attackers to create lists via the /mailman/create endpoint. NOTE: multiple…

Fix: after 2.1.39
Fix from $1,600 2025-04-20
Mailman HIGH 8.1
CVE-2025-43920

GNU Mailman 2.1.39, as bundled in cPanel (and WHM), in certain external archiver configurations, allows unauthenticated attackers to execute arbitrar…

Fix: after 2.1.39
Fix from $1,950 2025-04-20
Mailman HIGH 7.5
CVE-2025-43919

GNU Mailman 2.1.39, as bundled in cPanel (and WHM), allows unauthenticated attackers to read arbitrary files via ../ directory traversal at /mailman/…

Fix: after 2.1.39
Fix from $1,950 2025-04-20
Binutils MEDIUM 5.5
CVE-2025-3198

A vulnerability has been found in GNU Binutils 2.43/2.44 and classified as problematic. Affected by this vulnerability is the function display_info o…

No fix yet
Fix from $1,600 2025-04-04
Grub2 MEDIUM 6.4
CVE-2025-0684

A flaw was found in grub2. When performing a symlink lookup from a reiserfs filesystem, grub's reiserfs fs module uses user-controlled parameters fro…

Fix: after 2.12
Fix from $1,600 2025-03-03
Grub2 MEDIUM 6.4
CVE-2025-0685

A flaw was found in grub2. When reading data from a jfs filesystem, grub's jfs filesystem module uses user-controlled parameters from the filesystem …

Fix: after 2.12
Fix from $1,600 2025-03-03
Grub2 MEDIUM 6.4
CVE-2025-0686

A flaw was found in grub2. When performing a symlink lookup from a romfs filesystem, grub's romfs filesystem module uses user-controlled parameters f…

Fix: after 2.12
Fix from $1,600 2025-03-03
Grub2 HIGH 7.8
CVE-2025-0689

When reading data from disk, the grub's UDF filesystem module utilizes the user controlled data length metadata to allocate its internal buffers. In …

Fix: after 2.12
Fix from $1,950 2025-03-03
Grub2 HIGH 7.8
CVE-2025-1125

When reading data from a hfs filesystem, grub's hfs filesystem module uses user-controlled parameters from the filesystem metadata to calculate the i…

Fix: after 2.12
Fix from $1,950 2025-03-03
Grub2 MEDIUM 6.7
CVE-2024-45780

A flaw was found in grub2. When reading tar files, grub2 allocates an internal buffer for the file name. However, it fails to properly verify the all…

Fix: after 2.12
Fix from $1,600 2025-03-03
Grub2 MEDIUM 6.0
CVE-2024-45779

An integer overflow flaw was found in the BFS file system driver in grub2. When reading a file with an indirect extent map, grub2 fails to validate t…

Fix: after 2.12
Fix from $1,600 2025-03-03
Binutils MEDIUM 5.0
CVE-2025-1182

A vulnerability, which was classified as critical, was found in GNU Binutils 2.43. Affected is the function bfd_elf_reloc_symbol_deleted_p of the fil…

No fix yet
Fix from $1,600 2025-02-11
Binutils HIGH 7.5
CVE-2025-1179

A vulnerability was found in GNU Binutils 2.43. It has been rated as critical. Affected by this issue is the function bfd_putl64 of the file bfd/libb…

No fix yet
Fix from $1,950 2025-02-11
Binutils MEDIUM 5.6
CVE-2025-1178

A vulnerability was found in GNU Binutils 2.43. It has been declared as problematic. Affected by this vulnerability is the function bfd_putl64 of the…

No fix yet
Fix from $1,600 2025-02-11
Binutils MEDIUM 5.0
CVE-2025-1176

A vulnerability was found in GNU Binutils 2.43 and classified as critical. This issue affects the function _bfd_elf_gc_mark_rsec of the file elflink.…

Patch available
Fix from $1,600 2025-02-11
Binutils MEDIUM 5.9
CVE-2025-1153

A vulnerability classified as problematic was found in GNU Binutils 2.43/2.44. Affected by this vulnerability is the function bfd_set_format of the f…

Patch available
Fix from $1,600 2025-02-10
Binutils MEDIUM 5.3
CVE-2025-1147

A vulnerability has been found in GNU Binutils 2.43 and classified as problematic. Affected by this vulnerability is the function __sanitizer::intern…

No fix yet
Fix from $1,600 2025-02-10
Binutils HIGH 7.5
CVE-2025-0840

A vulnerability, which was classified as problematic, was found in GNU Binutils up to 2.43. This affects the function disassemble_bytes of the file b…

Fix: 2.44+
Fix from $1,950 2025-01-29
Grub2 HIGH 8.8
CVE-2024-56737

GNU GRUB (aka GRUB2) through 2.12 has a heap-based buffer overflow in fs/hfs.c via crafted sblock data in an HFS filesystem.

Fix: after 2.12
Fix from $1,950 2024-12-29