Vulnerability index

Browse CVEs

116 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Out-of-bounds WriteCWE-787 × clear
MEDIUM 5.4 CVE-2026-12528 A flaw was found in 389 Directory Server in the __aclp__normalize_acltxt() function of aclparse.c. A malformed ACI (Access Control Instruction) strin… Directory Server Patch available Fix from $1,6002026-06-17 HIGH 7.8 CVE-2026-50264 An out-of-bounds write flaw was found in the X.Org X server and Xwayland in DRIGetBuffers/DRIGetBuffersWithFormat. A client that requests multiple DR… Enterprise Linux 21.1.23 / 24.1.12+ Fix from $1,9502026-06-05 HIGH 7.8 CVE-2026-48864 A flaw was found in libsolv. This heap buffer overflow occurs during the decompression of attacker-controlled compressed data within `.solv` files du… Hardened Images No fix yet Fix from $1,9502026-05-26 MEDIUM 5.5 CVE-2026-40919 A flaw was found in GIMP. This vulnerability, a buffer overflow in the `file-seattle-filmworks` plugin, can be exploited when a user opens a speciall… Enterprise Linux Mitigation only Fix from $1,6002026-04-15 MEDIUM 5.5 CVE-2026-40916 A flaw was found in GIMP. A stack buffer overflow vulnerability in the TIM image loader's 4BPP decoding path allows a local user to cause a Denial of… Enterprise Linux Mitigation only Fix from $1,6002026-04-15 MEDIUM 6.7 CVE-2025-7519 A flaw was found in polkit. When processing an XML policy with 32 or more nested elements in depth, an out-of-bounds write can be triggered. This iss… Openshift Container Platform Patch available Fix from $1,6002025-07-14 HIGH 7.5 CVE-2025-6021 A flaw was found in libxml2's xmlBuildQName function, where integer overflows in buffer size calculations can lead to a stack-based buffer overflow. … Jboss Core Services No fix yet Fix from $1,9502025-06-12 MEDIUM 5.0 CVE-2025-5917 A vulnerability has been identified in the libarchive library. This flaw involves an 'off-by-one' miscalculation when handling prefixes and suffixes … Openshift Container Platform 3.8.0+ Fix from $1,6002025-06-09 HIGH 7.8 CVE-2024-45782 A flaw was found in the HFS filesystem. When reading an HFS volume's name at grub_fs_mount(), the HFS filesystem driver performs a strcpy() using the… Openshift Container Platform after 2.12 Fix from $1,9502025-03-03 HIGH 7.8 CVE-2025-26595 A buffer overflow flaw was found in X.Org and Xwayland. The code in XkbVModMaskText() allocates a fixed-sized buffer on the stack and copies the name… Enterprise Linux 21.1.16 / 24.1.6+ Fix from $1,9502025-02-25 HIGH 7.8 CVE-2025-26596 A heap overflow flaw was found in X.Org and Xwayland. The computation of the length in XkbSizeKeySyms() differs from what is written in XkbWriteKeySy… Enterprise Linux 21.1.16 / 24.1.6+ Fix from $1,9502025-02-25 HIGH 7.8 CVE-2025-26598 An out-of-bounds write flaw was found in X.Org and Xwayland. The function GetBarrierDevice() searches for the pointer device based on its device ID a… Enterprise Linux 21.1.16 / 24.1.6+ Fix from $1,9502025-02-25 MEDIUM 6.7 CVE-2024-45777 A flaw was found in grub2. The calculation of the translation buffer when reading a language .mo file in grub_gettext_getstr_from_position() may over… Openshift after 2.12 Fix from $1,6002025-02-19 HIGH 7.4 CVE-2023-40548 A buffer overflow was found in Shim in the 32-bit system. The overflow happens due to an addition operation involving a user-controlled value parsed … Shim 15.8+ Fix from $1,9502024-01-29 HIGH 7.5 CVE-2023-52356 A segment fault (SEGV) flaw was found in libtiff that could be triggered by passing a crafted tiff file to the TIFFReadRGBATileExt() API. This flaw a… Enterprise Linux Patch available Fix from $1,9502024-01-25 HIGH 7.5 CVE-2023-52355 An out-of-memory flaw was found in libtiff that could be triggered by passing a crafted tiff file to the TIFFRasterScanlineSize64() API. This flaw al… Enterprise Linux 4.6.0+ Fix from $1,9502024-01-25 HIGH 8.3 CVE-2023-40547 A remote code execution vulnerability was found in Shim. The Shim boot support trusts attacker-controlled values when parsing an HTTP response. This … Shim 15.8+ Fix from $1,9502024-01-25 MEDIUM 5.3 CVE-2023-6693 A stack based buffer overflow was found in the virtio-net device of QEMU. This issue occurs when flushing TX in the virtio_net_flush_tx function if g… Enterprise Linux 8.2.1+ Fix from $1,6002024-01-02 MEDIUM 5.5 CVE-2023-3164 A heap-buffer-overflow vulnerability was found in LibTIFF, in extractImageSection() at tools/tiffcrop.c:7916 and tools/tiffcrop.c:7801. This flaw all… Enterprise Linux 4.6.0+ Fix from $1,6002023-11-02 HIGH 7.8 CVE-2023-5367 A out-of-bounds write flaw was found in the xorg-x11-server. This issue occurs due to an incorrect calculation of a buffer offset when copying data s… Enterprise Linux Patch available Fix from $1,9502023-10-25 HIGH 7.8 CVE-2023-4692 An out-of-bounds write flaw was found in grub2's NTFS filesystem driver. This issue may allow an attacker to present a specially crafted NTFS filesys… Enterprise Linux 2.12+ Fix from $1,9502023-10-25 MEDIUM 5.5 CVE-2023-43785 A vulnerability was found in libX11 due to a boundary condition within the _XkbReadKeySyms() function. This flaw allows a local user to trigger an ou… Enterprise Linux 1.8.7+ Fix from $1,6002023-10-10 MEDIUM 5.5 CVE-2023-4042 A flaw was found in ghostscript. The fix for CVE-2020-16305 in ghostscript was not included in RHSA-2021:1852-06 advisory as it was claimed to be. Th… Codeready Linux Builder No fix yet Fix from $1,6002023-08-23 HIGH 7.8 CVE-2022-28737 There's a possible overflow in handle_image() when shim tries to load and execute crafted EFI executables; The handle_image() function takes into acc… Shim 15.6+ Fix from $1,9502023-07-20 HIGH 7.5 CVE-2023-3138 A vulnerability was found in libX11. The security flaw occurs because the functions in src/InitExt.c in libX11 do not check that the values provided … Enterprise Linux 1.8.6+ Fix from $1,9502023-06-28 HIGH 7.8 CVE-2022-3715 A flaw was found in the bash package, where a heap-buffer overflow can occur in valid parameter_transform. This issue may lead to memory problems. Enterprise Linux 5.1.8+ Fix from $1,9502023-01-05 HIGH 7.1 CVE-2022-3775 When rendering certain unicode sequences, grub2's font code doesn't proper validate if the informed glyph's width and height is constrained within bi… Enterprise Linux after 2.06 Fix from $1,9502022-12-19 HIGH 7.8 CVE-2022-25308 A stack-based buffer overflow flaw was found in the Fribidi package. This flaw allows an attacker to pass a specially crafted file to the Fribidi app… Enterprise Linux 1.0.12+ Fix from $1,9502022-09-06 MEDIUM 5.5 CVE-2022-25309 A heap-based buffer overflow flaw was found in the Fribidi package and affects the fribidi_cap_rtl_to_unicode() function of the fribidi-char-sets-cap… Enterprise Linux 1.0.12+ Fix from $1,6002022-09-06 HIGH 7.8 CVE-2022-0135 An out-of-bounds write issue was found in the VirGL virtual OpenGL renderer (virglrenderer). This flaw allows a malicious guest to create a specially… Enterprise Linux 0.10.0+ Fix from $1,9502022-08-25