Vulnerability index

Browse CVEs

87 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Out-of-bounds ReadCWE-125 × clear
Enterprise Linux MEDIUM 6.1
CVE-2026-73434

A flaw was found in GStreamer gst-plugins-good (avidemux). In gst_avi_demux_riff_parse_vprp(), the number of available gst_riff_vprp_video_field_desc…

No fix yet
Fix from $4,000 2026-08-12
Openshift Container Platform HIGH 7.1
CVE-2026-68743

A flaw was found in SSSD. The extract_authtok_v1() function in the PAM responder does not validate the auth_token_length field against the remaining …

No fix yet
Fix from $1,950 2026-08-04
Openshift Container Platform MEDIUM 5.5
CVE-2026-68742

A flaw was found in SSSD. The sss_nss_protocol_parse_addr() function in the NSS responder does not validate the addrlen field against the remaining p…

No fix yet
Fix from $1,600 2026-08-03
Enterprise Linux HIGH 7.1
CVE-2026-66759

A flaw was found in the file-icns plugin in GIMP. When applying a decompressed mask during ICNS image processing, the plugin reads from the mask data…

No fix yet
Fix from $1,950 2026-07-27
Hardened Images MEDIUM 5.3
CVE-2026-59842

A flaw was found in libssh. During server-side GSSAPI key exchange, a client-supplied Curve25519 public key shorter than the expected length is copie…

No fix yet
Fix from $1,600 2026-07-21
Enterprise Linux HIGH 7.5
CVE-2026-58011

A flaw was found in GLib. An out-of-bounds read of only 2 bytes can occur in the g_date_time_get_ymd function in the glib/gdatetime.c file when an in…

Fix: 2.86.5+
Fix from $1,950 2026-06-30
Enterprise Linux MEDIUM 5.3
CVE-2026-12969

An out-of-bounds read vulnerability exists in dnsmasq's find_soa() function in src/rfc1035.c. When parsing NS section records, extract_name() is call…

Fix: 2.93+
Fix from $1,600 2026-06-23
Enterprise Linux MEDIUM 5.6
CVE-2026-1764

A flaw was found in GNOME localsearch (previously known as tracker-miners) MP3 Extractor. When processing specially crafted MP3 files containing ID3v…

No fix yet
Fix from $1,600 2026-06-16
Directory Server MEDIUM 6.5
CVE-2026-11786

A flaw was found in 389 Directory Server. The LDIF parser reads past the end of a heap buffer when processing attribute types with trailing semicolon…

Mitigation only
Fix from $1,600 2026-06-09
Enterprise Linux MEDIUM 5.5
CVE-2026-50262

An out-of-bounds read flaw was found in the X.Org X server and Xwayland in __glXDisp_ChangeDrawableAttributes(). A wrong size validation check can re…

Fix: 21.1.23 / 24.1.12+
Fix from $1,600 2026-06-05
Build Of Keycloak MEDIUM 5.3
CVE-2026-9803

A flaw was found in Keycloak's ClientRegistrationAuth component. A remote unauthenticated attacker can exploit this vulnerability by sending a specia…

Mitigation only
Fix from $1,600 2026-05-28
Enterprise Linux CRITICAL 9.1
CVE-2026-34000

A flaw was found in the X.Org X server. This out-of-bounds read vulnerability in the XKB geometry processing, specifically within the `CheckSetGeom()…

Mitigation only
Fix from $2,300 2026-05-05
Enterprise Linux HIGH 7.1
CVE-2026-40917

A flaw was found in GIMP. This vulnerability, a heap buffer over-read in the `icns_slurp()` function, occurs when processing specially crafted ICNS i…

Mitigation only
Fix from $1,950 2026-04-15
Enterprise Linux HIGH 7.1
CVE-2026-5673

A flaw was found in libtheora. This heap-based out-of-bounds read vulnerability exists within the AVI (Audio Video Interleave) parser, specifically i…

No fix yet
Fix from $1,950 2026-04-06
Openshift Container Platform MEDIUM 6.1
CVE-2026-4647

A flaw was found in the GNU Binutils BFD library, a widely used component for handling binary files such as object files and executables. The issue o…

Mitigation only
Fix from $1,600 2026-03-23
Hardened Images HIGH 7.5
CVE-2026-4424

A flaw was found in libarchive. This heap out-of-bounds read vulnerability exists in the RAR archive processing logic due to improper validation of t…

Patch available
Fix from $1,950 2026-03-19
Openshift Container Platform HIGH 7.1
CVE-2026-3441

A flaw was found in GNU Binutils. This heap-based buffer overflow vulnerability, specifically an out-of-bounds read in the bfd linker, allows an atta…

Mitigation only
Fix from $1,950 2026-03-16
Openshift Container Platform HIGH 7.1
CVE-2026-3442

A flaw was found in GNU Binutils. This vulnerability, a heap-based buffer overflow, specifically an out-of-bounds read, exists in the bfd linker comp…

No fix yet
Fix from $1,950 2026-03-16
Enterprise Linux MEDIUM 5.3
CVE-2026-2443

A flaw was identified in libsoup, a widely used HTTP library in GNOME-based systems. When processing specially crafted HTTP Range headers, the librar…

Mitigation only
Fix from $1,600 2026-02-13
Openshift Container Platform MEDIUM 5.4
CVE-2025-5318

A flaw was found in the libssh library in versions less than 0.11.2. An out-of-bounds read can be triggered in the sftp_handle function due to an inc…

Fix: 0.11.2+
Fix from $1,600 2025-06-24
Openshift Container Platform MEDIUM 6.6
CVE-2025-5918

A vulnerability has been identified in the libarchive library. This flaw can be triggered when file streams are piped into bsdtar, potentially allowi…

Fix: 3.8.0+
Fix from $1,600 2025-06-09
Codeready Linux Builder MEDIUM 6.5
CVE-2025-2784

A flaw was found in libsoup. The package is vulnerable to a heap buffer over-read when sniffing content via the skip_insight_whitespace() function. L…

No fix yet
Fix from $1,600 2025-04-03
Enterprise Linux MEDIUM 6.8
CVE-2024-6505

A flaw was found in the virtio-net device in QEMU. When enabling the RSS feature on the virtio-net network card, the indirections_table data within R…

Mitigation only
Fix from $1,600 2024-07-05
Shim MEDIUM 5.5
CVE-2023-40549

An out-of-bounds read flaw was found in Shim due to the lack of proper boundary verification during the load of a PE binary. This flaw allows an atta…

Fix: 15.8+
Fix from $1,600 2024-01-29
Shim MEDIUM 5.5
CVE-2023-40550

An out-of-bounds read flaw was found in Shim when it tried to validate the SBAT information. This issue may expose sensitive data during the system's…

Fix: 15.8+
Fix from $1,600 2024-01-29
Shim MEDIUM 5.1
CVE-2023-40551

A flaw was found in the MZ binary format in Shim. An out-of-bounds read may occur, leading to a crash or possible exposure of sensitive data during t…

Fix: 15.8+
Fix from $1,600 2024-01-29
Enterprise Linux Eus HIGH 7.8
CVE-2023-6377

A flaw was found in xorg-server. Querying or changing XKB button actions such as moving from a touchpad to a mouse can result in out-of-bounds memory…

Fix: 21.1.10 / 23.2.3+
Fix from $1,950 2023-12-13
Enterprise Linux MEDIUM 5.5
CVE-2023-43789

A vulnerability was found in libXpm where a vulnerability exists due to a boundary condition, a local user can trigger an out-of-bounds read error an…

Fix: 3.5.17+
Fix from $1,600 2023-10-12
Enterprise Linux MEDIUM 5.5
CVE-2023-43785

A vulnerability was found in libX11 due to a boundary condition within the _XkbReadKeySyms() function. This flaw allows a local user to trigger an ou…

Fix: 1.8.7+
Fix from $1,600 2023-10-10
Enterprise Linux HIGH 7.1
CVE-2023-4156

A heap out-of-bounds read flaw was found in builtin.c in the gawk package. This issue may lead to a crash and could be used to read sensitive informa…

Fix: 5.1.1+
Fix from $1,950 2023-09-25