All CVEs (74)
CVE-2024-42383
CRITICALUse of Out-of-range Pointer Offset vulnerability in Cesanta Mongoose Web Server v7.14 allows to write a NULL byte value beyond the memory space dedicated for the hostname field.
CVE-2023-43553
CRITICALMemory corruption while parsing beacon/probe response frame when AP sends more supported links in MLIE.
CVE-2023-43534
CRITICALMemory corruption while validating the TID to Link Mapping action request frame, when a station connects to an access point.
CVE-2023-24855
CRITICALMemory corruption in Modem while processing security related configuration before AS Security Exchange.
CVE-2023-22388
CRITICALMemory Corruption in Multi-mode Call Processor while processing bit mask API.
CVE-2017-11076
CRITICALOn some hardware revisions where VP9 decoding is hardware-accelerated, the frame size is not programmed correctly into the decoder hardware which can lead to an invalid memory access by the decoder.
CVE-2020-8904
CRITICALAn arbitrary memory overwrite vulnerability in the trusted memory of Asylo exists in versions prior to 0.6.0. As the ecall_restore function fails to validate the range of the output_len pointer, an at...
CVE-2020-6112
HIGHAn exploitable code execution vulnerability exists in the JPEG2000 Stripe Decoding functionality of Nitro Software, Inc.’s Nitro Pro 13.13.2.242 when decoding sub-samples. While initializing tiles wit...
CVE-2022-0685
HIGHUse of Out-of-range Pointer Offset in GitHub repository vim/vim prior to 8.2.4418.
CVE-2022-0614
HIGHUse of Out-of-range Pointer Offset in Homebrew mruby prior to 3.2.
CVE-2022-0554
HIGHUse of Out-of-range Pointer Offset in GitHub repository vim/vim prior to 8.2.
CVE-2025-0467
HIGHKernel software installed and running inside a Guest VM may exploit memory shared with the GPU Firmware to write data outside the Guest's virtualised GPU memory.
CVE-2022-32142
HIGHMultiple CODESYS Products are prone to a out-of bounds read or write access. A low privileged remote attacker may craft a request with invalid offset, which can cause an out-of-bounds read or write ac...
CVE-2021-34595
HIGHA crafted request with invalid offsets may cause an out-of-bounds read or write access in CODESYS V2 Runtime Toolkit 32 Bit full and PLCWinNT prior to versions V2.4.7.56, resulting in a denial-of-serv...
CVE-2020-27009
HIGHA vulnerability has been identified in APOGEE PXC Compact (BACnet) (All versions < V3.5.5), APOGEE PXC Compact (P2 Ethernet) (All versions < V2.8.20), APOGEE PXC Modular (BACnet) (All versions < V3.5....
CVE-2024-52939
HIGHKernel software installed and running inside a Guest VM may post improper commands to the GPU Firmware to trigger a write data outside the Guest's virtualised GPU memory.
CVE-2024-52938
HIGHKernel software installed and running inside a Guest VM may post improper commands to the GPU Firmware to subvert reconstruction activities to trigger a write of data outside the Guest's virtualised G...
CVE-2024-49840
HIGHMemory corruption while Invoking IOCTL calls from user-space to validate FIPS encryption or decryption functionality.
CVE-2024-47900
HIGHSoftware installed and run as a non-privileged user may conduct improper GPU system calls to access OOB kernel memory.
CVE-2024-45573
HIGHMemory corruption may occour while generating test pattern due to negative indexing of display ID.
CVE-2024-45570
HIGHMemory corruption may occur during IO configuration processing when the IO port count is invalid.
CVE-2024-45557
HIGHMemory corruption can occur when TME processes addresses from TZ and MPSS requests without proper validation.
CVE-2024-43060
HIGHMemory corruption during voice activation, when sound model parameters are loaded from HLOS to ADSP.
CVE-2024-33041
HIGHMemory corruption when input parameter validation for number of fences is missing for fence frame IOCTL calls,