CWE-129 · 610 kayıt
Improper Validation of Array Index
Bu sınıftaki CVE’ler
610 kayıt
| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
66Bu hafta | CVE-2022-48503Silahlaştırılmış | The issue was addressed with improved bounds checks.apple · safari · CWE-129 | Yüksek8,8 | KEV | %3,2 | 14 Ağu 2023 |
43Planlayın | CVE-2023-0755İstismar yok | The affected products are vulnerable to an improper validation of array index, which could allow an attacker to crash the server and remotege · digital industrial gateway server · CWE-129 | Kritik9,8 | — | %11,8 | 23 Şub 2023 |
41Planlayın | CVE-2021-35592İstismar yok | Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General).oracle · mysql cluster · CWE-129 | Orta6,3 | — | %52,5 | 20 Eki 2021 |
41Planlayın | CVE-2016-9053İstismar yok | An exploitable out-of-bounds indexing vulnerability exists within the RW fabric message particle type of Aerospike Database Server 3.10.0.3.aerospike · database server · CWE-129 | Kritik9,8 | — | %7,2 | 21 Şub 2017 |
41Planlayın | CVE-2015-8366İstismar yok | Array index error in smal_decode_segment function in LibRaw before 0.17.1 allows context-dependent attackers to cause memory errors and posslibraw · libraw · CWE-129 | Kritik9,8 | — | %5,1 | 14 Oca 2020 |
40Planlayın | CVE-2021-35598İstismar yok | Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General).oracle · mysql cluster · CWE-129 | Orta6,3 | — | %51,1 | 20 Eki 2021 |
40Planlayın | CVE-2021-35594İstismar yok | Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General).oracle · mysql cluster · CWE-129 | Orta6,3 | — | %51,1 | 20 Eki 2021 |
40Planlayın | CVE-2020-35636İstismar yok | A code execution vulnerability exists in the Nef polygon-parsing functionality of CGAL libcgal CGAL-5.1.1 in Nef_S2/SNC_io_parser.h SNC_io_pcgal · computational geometry algorithms library · CWE-129 | Kritik9,8 | — | %3,3 | 4 Mar 2021 |
40Planlayın | CVE-2019-17212İstismar yok | Buffer overflows were discovered in the CoAP library in Arm Mbed OS 5.14.0.mbed · mbed · CWE-129 | Kritik9,8 | — | %3,1 | 5 Kas 2019 |
40Planlayın | CVE-2020-28601İstismar yok | A code execution vulnerability exists in the Nef polygon-parsing functionality of CGAL libcgal CGAL-5.1.1.cgal · computational geometry algorithms library · CWE-129 | Kritik9,8 | — | %2,9 | 4 Mar 2021 |
40Planlayın | CVE-2020-35628İstismar yok | A code execution vulnerability exists in the Nef polygon-parsing functionality of CGAL libcgal CGAL-5.1.1.cgal · computational geometry algorithms library · CWE-129 | Kritik9,8 | — | %2,9 | 4 Mar 2021 |
40Planlayın | CVE-2020-28636İstismar yok | A code execution vulnerability exists in the Nef polygon-parsing functionality of CGAL libcgal CGAL-5.1.1.cgal · computational geometry algorithms library · CWE-129 | Kritik9,8 | — | %2,9 | 4 Mar 2021 |
40Planlayın | CVE-2020-27483İstismar yok | Garmin Forerunner 235 before 8.20 is affected by: Array index error.garmin · forerunner 235 firmware · CWE-129 | Kritik9,9 | — | %2,1 | 16 Kas 2020 |
40Planlayın | CVE-2019-15784İstismar yok | Secure Reliable Transport (SRT) through 1.3.4 has a CSndUList array overflow if there are many SRT connections.srtalliance · secure reliable transport · CWE-129 | Kritik9,8 | — | %2,0 | 29 Ağu 2019 |
40Planlayın | CVE-2020-27485İstismar yok | Garmin Forerunner 235 before 8.20 is affected by: Array index error.garmin · forerunner 235 firmware · CWE-129 | Kritik9,9 | — | %1,7 | 16 Kas 2020 |
40Planlayın | CVE-2020-12022İstismar yok | Advantech WebAccess Node, Version 8.4.4 and prior, Version 9.0.0.advantech · webaccess · CWE-129 | Kritik9,8 | — | %1,7 | 8 May 2020 |
39İzleyin | CVE-2024-24563İstismar yok | Vyper array negative index vulnerabilityvyperlang · vyper · CWE-129 | Kritik9,8 | — | %1,5 | 7 Şub 2024 |
39İzleyin | CVE-2021-47548İstismar yok | ethernet: hisilicon: hns: hns_dsaf_misc: fix a possible array overflow in hns_dsaf_ge_srst_by_port()linux · linux kernel · CWE-129 | Kritik9,8 | — | %1,4 | 24 May 2024 |
39İzleyin | CVE-2014-10048İstismar yok | In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile and Snapdragon Wear MDM9206, MDM9607, MDM9650, MSqualcomm · mdm9206 firmware · CWE-129 | Kritik9,8 | — | %1,2 | 18 Nis 2018 |
39İzleyin | CVE-2016-10454İstismar yok | In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile SD 425, SD 430, SD 450, and SD 625, in a QTEE APIqualcomm · sd 425 firmware · CWE-129 | Kritik9,8 | — | %1,2 | 18 Nis 2018 |
39İzleyin | CVE-2014-9989İstismar yok | In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile and Snapdragon Wear MDM9206, MDM9607, MDM9615, MDqualcomm · mdm9206 firmware · CWE-129 | Kritik9,8 | — | %1,2 | 18 Nis 2018 |
39İzleyin | CVE-2014-9990İstismar yok | In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile and Snapdragon Wear MDM9206, MDM9607, MDM9615, MDqualcomm · mdm9206 firmware · CWE-129 | Kritik9,8 | — | %1,2 | 18 Nis 2018 |
39İzleyin | CVE-2022-26100İstismar yok | SAPCAR - version 7.22, does not contain sufficient input validation on the SAPCAR archive.sap · sapcar · CWE-129 | Kritik9,8 | — | %1,2 | 10 Mar 2022 |
39İzleyin | CVE-2023-28004İstismar yok | A CWE-129: Improper validation of an array index vulnerability exists where a specially crafted Ethernet request could result in denial oschneider-electric · powerlogic hdpm6000 firmware · CWE-129 | Kritik9,8 | — | %1,1 | 18 Nis 2023 |
39İzleyin | CVE-2024-31581İstismar yok | FFmpeg version n6.1 was discovered to contain an improper validation of array index vulnerability in libavcodec/cbs_h266_syntax_template.c.ffmpeg · ffmpeg · CWE-129 | Kritik9,8 | — | %1,1 | 17 Nis 2024 |
- CVE-2022-4850366Bu hafta
The issue was addressed with improved bounds checks.
YüksekCVSS 8,8KEVSilahlaştırılmışEPSS %3apple · safari14 Ağu 2023
- CVE-2023-075543Planlayın
The affected products are vulnerable to an improper validation of array index, which could allow an attacker to crash the server and remote
KritikCVSS 9,8İstismar yokEPSS %12ge · digital industrial gateway server23 Şub 2023
- CVE-2021-3559241Planlayın
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General).
OrtaCVSS 6,3İstismar yokEPSS %52oracle · mysql cluster20 Eki 2021
- CVE-2016-905341Planlayın
An exploitable out-of-bounds indexing vulnerability exists within the RW fabric message particle type of Aerospike Database Server 3.10.0.3.
KritikCVSS 9,8İstismar yokEPSS %7aerospike · database server21 Şub 2017
- CVE-2015-836641Planlayın
Array index error in smal_decode_segment function in LibRaw before 0.17.1 allows context-dependent attackers to cause memory errors and poss
KritikCVSS 9,8İstismar yokEPSS %5libraw · libraw14 Oca 2020
- CVE-2021-3559840Planlayın
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General).
OrtaCVSS 6,3İstismar yokEPSS %51oracle · mysql cluster20 Eki 2021
- CVE-2021-3559440Planlayın
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General).
OrtaCVSS 6,3İstismar yokEPSS %51oracle · mysql cluster20 Eki 2021
- CVE-2020-3563640Planlayın
A code execution vulnerability exists in the Nef polygon-parsing functionality of CGAL libcgal CGAL-5.1.1 in Nef_S2/SNC_io_parser.h SNC_io_p
KritikCVSS 9,8İstismar yokEPSS %3cgal · computational geometry algorithms library4 Mar 2021
- CVE-2019-1721240Planlayın
Buffer overflows were discovered in the CoAP library in Arm Mbed OS 5.14.0.
KritikCVSS 9,8İstismar yokEPSS %3mbed · mbed5 Kas 2019
- CVE-2020-2860140Planlayın
A code execution vulnerability exists in the Nef polygon-parsing functionality of CGAL libcgal CGAL-5.1.1.
KritikCVSS 9,8İstismar yokEPSS %3cgal · computational geometry algorithms library4 Mar 2021
- CVE-2020-3562840Planlayın
A code execution vulnerability exists in the Nef polygon-parsing functionality of CGAL libcgal CGAL-5.1.1.
KritikCVSS 9,8İstismar yokEPSS %3cgal · computational geometry algorithms library4 Mar 2021
- CVE-2020-2863640Planlayın
A code execution vulnerability exists in the Nef polygon-parsing functionality of CGAL libcgal CGAL-5.1.1.
KritikCVSS 9,8İstismar yokEPSS %3cgal · computational geometry algorithms library4 Mar 2021
- CVE-2020-2748340Planlayın
Garmin Forerunner 235 before 8.20 is affected by: Array index error.
KritikCVSS 9,9İstismar yokEPSS %2garmin · forerunner 235 firmware16 Kas 2020
- CVE-2019-1578440Planlayın
Secure Reliable Transport (SRT) through 1.3.4 has a CSndUList array overflow if there are many SRT connections.
KritikCVSS 9,8İstismar yokEPSS %2srtalliance · secure reliable transport29 Ağu 2019
- CVE-2020-2748540Planlayın
Garmin Forerunner 235 before 8.20 is affected by: Array index error.
KritikCVSS 9,9İstismar yokEPSS %2garmin · forerunner 235 firmware16 Kas 2020
- CVE-2020-1202240Planlayın
Advantech WebAccess Node, Version 8.4.4 and prior, Version 9.0.0.
KritikCVSS 9,8İstismar yokEPSS %2advantech · webaccess8 May 2020
- CVE-2024-2456339İzleyin
Vyper array negative index vulnerability
KritikCVSS 9,8İstismar yokEPSS %2vyperlang · vyper7 Şub 2024
- CVE-2021-4754839İzleyin
ethernet: hisilicon: hns: hns_dsaf_misc: fix a possible array overflow in hns_dsaf_ge_srst_by_port()
KritikCVSS 9,8İstismar yokEPSS %1linux · linux kernel24 May 2024
- CVE-2014-1004839İzleyin
In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile and Snapdragon Wear MDM9206, MDM9607, MDM9650, MS
KritikCVSS 9,8İstismar yokEPSS %1qualcomm · mdm9206 firmware18 Nis 2018
- CVE-2016-1045439İzleyin
In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile SD 425, SD 430, SD 450, and SD 625, in a QTEE API
KritikCVSS 9,8İstismar yokEPSS %1qualcomm · sd 425 firmware18 Nis 2018
- CVE-2014-998939İzleyin
In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile and Snapdragon Wear MDM9206, MDM9607, MDM9615, MD
KritikCVSS 9,8İstismar yokEPSS %1qualcomm · mdm9206 firmware18 Nis 2018
- CVE-2014-999039İzleyin
In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile and Snapdragon Wear MDM9206, MDM9607, MDM9615, MD
KritikCVSS 9,8İstismar yokEPSS %1qualcomm · mdm9206 firmware18 Nis 2018
- CVE-2022-2610039İzleyin
SAPCAR - version 7.22, does not contain sufficient input validation on the SAPCAR archive.
KritikCVSS 9,8İstismar yokEPSS %1sap · sapcar10 Mar 2022
- CVE-2023-2800439İzleyin
A CWE-129: Improper validation of an array index vulnerability exists where a specially crafted Ethernet request could result in denial o
KritikCVSS 9,8İstismar yokEPSS %1schneider-electric · powerlogic hdpm6000 firmware18 Nis 2023
- CVE-2024-3158139İzleyin
FFmpeg version n6.1 was discovered to contain an improper validation of array index vulnerability in libavcodec/cbs_h266_syntax_template.c.
KritikCVSS 9,8İstismar yokEPSS %1ffmpeg · ffmpeg17 Nis 2024