Total
6546 CVE
CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
---|---|---|---|---|---|
CVE-2017-11572 | 1 Fontforge | 1 Fontforge | 2020-01-13 | 6.8 MEDIUM | 7.8 HIGH |
FontForge 20161012 is vulnerable to a heap-based buffer over-read in readcfftopdicts (parsettf.c) resulting in DoS or code execution via a crafted otf file. | |||||
CVE-2020-6622 | 1 Nothings | 1 Stb Truetype.h | 2020-01-10 | 6.8 MEDIUM | 8.8 HIGH |
stb stb_truetype.h through 1.22 has a heap-based buffer over-read in stbtt__buf_peek8. | |||||
CVE-2020-6621 | 1 Nothings | 1 Stb Truetype.h | 2020-01-10 | 6.8 MEDIUM | 8.8 HIGH |
stb stb_truetype.h through 1.22 has a heap-based buffer over-read in ttUSHORT. | |||||
CVE-2020-6620 | 1 Nothings | 1 Stb Truetype.h | 2020-01-10 | 6.8 MEDIUM | 8.8 HIGH |
stb stb_truetype.h through 1.22 has a heap-based buffer over-read in stbtt__buf_get8. | |||||
CVE-2020-6618 | 1 Nothings | 1 Stb Truetype.h | 2020-01-10 | 6.8 MEDIUM | 8.8 HIGH |
stb stb_truetype.h through 1.22 has a heap-based buffer over-read in stbtt__find_table. | |||||
CVE-2019-20005 | 1 Ezxml Project | 1 Ezxml | 2020-01-09 | 4.3 MEDIUM | 6.5 MEDIUM |
An issue was discovered in ezXML 0.8.3 through 0.8.6. The function ezxml_decode, while parsing a crafted XML file, performs incorrect memory handling, leading to a heap-based buffer over-read while running strchr() starting with a pointer after a '\0' character (where the processing of a string was finished). | |||||
CVE-2017-14314 | 2 Debian, Graphicsmagick | 2 Debian Linux, Graphicsmagick | 2020-01-08 | 4.3 MEDIUM | 6.5 MEDIUM |
Off-by-one error in the DrawImage function in magick/render.c in GraphicsMagick 1.3.26 allows remote attackers to cause a denial of service (DrawDashPolygon heap-based buffer over-read and application crash) via a crafted file. | |||||
CVE-2019-2204 | 1 Google | 1 Android | 2020-01-08 | 10.0 HIGH | 9.8 CRITICAL |
In FindSharedFunctionInfo of objects.cc, there is a possible out of bounds read due to a mistake in AST traversal. This could lead to remote code execution in the pacprocessor with no additional execution privileges needed. User interaction is not needed for exploitation. Product: Android Versions: Android-8.1, Android-9 Android ID: A-138442295 | |||||
CVE-2019-20086 | 1 Gopro | 1 Gpmf-parser | 2020-01-08 | 6.8 MEDIUM | 8.8 HIGH |
GoPro GPMF-parser 1.2.3 has a heap-based buffer over-read in GPMF_Next in GPMF_parser.c. | |||||
CVE-2019-20087 | 1 Gopro | 1 Gpmf-parser | 2020-01-08 | 6.8 MEDIUM | 8.8 HIGH |
GoPro GPMF-parser 1.2.3 has a heap-based buffer over-read in GPMF_seekToSamples in GPMF-parse.c for the "matching tags" feature. | |||||
CVE-2019-20219 | 1 Miniupnp Project | 1 Ngiflib | 2020-01-08 | 6.8 MEDIUM | 8.8 HIGH |
ngiflib 0.4 has a heap-based buffer over-read in GifIndexToTrueColor in ngiflib.c. | |||||
CVE-2019-20088 | 1 Gopro | 1 Gpmf-parser | 2020-01-07 | 6.8 MEDIUM | 7.8 HIGH |
GoPro GPMF-parser 1.2.3 has a heap-based buffer over-read in GetPayload in GPMF_mp4reader.c. | |||||
CVE-2019-20089 | 1 Gopro | 1 Gpmf-parser | 2020-01-07 | 6.8 MEDIUM | 7.8 HIGH |
GoPro GPMF-parser 1.2.3 has an heap-based buffer over-read in GPMF_SeekToSamples in GPMF_parse.c for the size calculation. | |||||
CVE-2019-20200 | 1 Ezxml Project | 1 Ezxml | 2020-01-06 | 4.3 MEDIUM | 6.5 MEDIUM |
An issue was discovered in ezXML 0.8.3 through 0.8.6. The function ezxml_decode, while parsing crafted a XML file, performs incorrect memory handling, leading to a heap-based buffer over-read in the "normalize line endings" feature. | |||||
CVE-2018-20451 | 1 Libdoc Project | 1 Libdoc | 2020-01-06 | 4.3 MEDIUM | 6.5 MEDIUM |
The process_file function in reader.c in libdoc through 2017-10-23 has a heap-based buffer over-read that allows attackers to cause a denial of service (application crash) via a crafted file. | |||||
CVE-2019-19977 | 1 Libesmtp Project | 1 Libesmtp | 2020-01-03 | 7.5 HIGH | 9.8 CRITICAL |
libESMTP through 1.0.6 mishandles domain copying into a fixed-size buffer in ntlm_build_type_2 in ntlm/ntlmstruct.c, as demonstrated by a stack-based buffer over-read. | |||||
CVE-2019-19957 | 1 Mz-automation | 1 Libiec61850 | 2020-01-03 | 4.3 MEDIUM | 6.5 MEDIUM |
In libIEC61850 1.4.0, getNumberOfElements in mms/iso_mms/server/mms_access_result.c has an out-of-bounds read vulnerability, related to bufPos and elementLength. | |||||
CVE-2019-19449 | 1 Linux | 1 Linux Kernel | 2020-01-03 | 6.8 MEDIUM | 7.8 HIGH |
In the Linux kernel 5.0.21, mounting a crafted f2fs filesystem image can lead to slab-out-of-bounds read access in f2fs_build_segment_manager in fs/f2fs/segment.c, related to init_min_max_mtime in fs/f2fs/segment.c (because the second argument to get_seg_entry is not validated). | |||||
CVE-2019-20017 | 1 Matio Project | 1 Matio | 2020-01-02 | 4.3 MEDIUM | 6.5 MEDIUM |
A stack-based buffer over-read was discovered in Mat_VarReadNextInfo5 in mat5.c in matio 1.5.17. | |||||
CVE-2015-8783 | 2 Debian, Libtiff | 2 Debian Linux, Libtiff | 2019-12-31 | 4.3 MEDIUM | 6.5 MEDIUM |
tif_luv.c in libtiff allows attackers to cause a denial of service (out-of-bounds reads) via a crafted TIFF image. |