All vulnerabilities
218 / 218
Sort
7.8
CVE-2021-3156AST KEV
Sudo before 1.9.5p2 contains an off-by-one error that can result in a heap-based buffer overflo…
2021-01-01KEV
EPSS92.3%
pct 99
9.8
CVE-2003-0466DEB
Off-by-one error in the fb_realpath() function, as derived from the realpath function in BSD, m…
2003-01-01Pre-auth
EPSS90.8%
pct 99
4.6
CVE-2014-7187DEB
Off-by-one error in the read_token_word function in parse.y in GNU Bash through 4.3 bash43-026 …
2014-01-01
EPSS89.9%
pct 99
8.1
CVE-2021-23017DEB
A security issue in nginx resolver was identified, which might allow an attacker who is able to…
2021-01-01Pre-auth
EPSS73.2%
pct 98
4.3
CVE-2009-1217CVE
Off-by-one error in the GpFont::SetData function in gdiplus.dll in Microsoft GDI+ on Windows XP…
2009-01-01
EPSS56.4%
pct 98
7.8
CVE-2023-44444AST
GIMP PSP File Parsing Off-By-One Remote Code Execution Vulnerability. This vulnerability allows…
2023-01-01
EPSS51.8%
pct 97
4.0
CVE-2013-7108DEB
Multiple off-by-one errors in Nagios Core 3.5.1, 4.0.2, and earlier, and Icinga before 1.8.5, 1…
2013-01-01
EPSS48.6%
pct 97
6.8
CVE-2007-5135DEB
Off-by-one error in the SSL_get_shared_ciphers function in OpenSSL 0.9.7 up to 0.9.7l, and 0.9.…
2007-01-01
EPSS47.5%
pct 97
6.8
CVE-2014-9029DEB
Multiple off-by-one errors in the (1) jpc_dec_cp_setfromcox and (2) jpc_dec_cp_setfromrgn funct…
2014-01-01
EPSS32.6%
pct 96
9.8
CVE-2003-0356DEB
Multiple off-by-one vulnerabilities in Ethereal 0.9.11 and earlier allow remote attackers to ca…
2003-01-01Pre-auth
EPSS28.4%
pct 96
9.8
CVE-2022-34970CVE
Crow before 1.0+4 has a heap-based buffer overflow via the function qs_parse in query_string.h.…
2022-01-01Pre-auth
EPSS24.0%
pct 95
9.8
CVE-2004-0005DEB
Multiple buffer overflows in Gaim 0.75 allow remote attackers to cause a denial of service and …
2004-01-01Pre-auth
EPSS22.3%
pct 95
6.9
CVE-2014-5119DEB
Off-by-one error in the __gconv_translit_find function in gconv_trans.c in GNU C Library (aka g…
2014-01-01
EPSS21.5%
pct 95
5.1
CVE-2014-6270DEB
Off-by-one error in the snmpHandleUdp function in snmp_core.cc in Squid 2.x and 3.x, when an SN…
2014-01-01
EPSS18.2%
pct 95
5.3
CVE-2016-5180DEB
Heap-based buffer overflow in the ares_create_query function in c-ares 1.x before 1.12.0 allows…
2016-01-01Pre-auth
EPSS18.2%
pct 95
9.8
CVE-2003-0252DEB
Off-by-one error in the xlog function of mountd in the Linux NFS utils package (nfs-utils) befo…
2003-01-01Pre-auth
EPSS16.1%
pct 94
9.8
CVE-2001-1496DEB
Off-by-one buffer overflow in Basic Authentication in Acme Labs thttpd 1.95 through 2.20 allows…
2001-01-01Pre-auth
EPSS13.9%
pct 94
5.0
CVE-2007-2052DEB
Off-by-one error in the PyLocale_strxfrm function in Modules/_localemodule.c for Python 2.4 and…
2007-01-01
EPSS13.7%
pct 94
9.8
CVE-2002-1816CVE
Off-by-one buffer overflow in the sock_gets function in sockhelp.c for ATPhttpd 0.4b and earlie…
2002-01-01Pre-auth
EPSS11.5%
pct 93
7.5
CVE-2002-1745CVE
Off-by-one error in the CodeBrws.asp sample script in Microsoft IIS 5.0 allows remote attackers…
2002-01-01Pre-auth
EPSS10.2%
pct 93
9.8
CVE-2001-0609CVE
Format string vulnerability in Infodrom cfingerd 1.4.3 and earlier allows a remote attacker to …
2001-01-01Pre-auth
EPSS9.9%
pct 92
6.8
CVE-2007-6336DEB
Off-by-one error in ClamAV before 0.92 allows remote attackers to execute arbitrary code via a …
2007-01-01
EPSS9.9%
pct 92
6.8
CVE-2015-0469DEB
Unspecified vulnerability in Oracle Java SE 5.0u81, 6u91, 7u76, and 8u40 allows remote attacker…
2015-01-01
EPSS8.6%
pct 92
6.8
CVE-2007-4091DEB
Multiple off-by-one errors in the sender.c in rsync 2.6.9 might allow remote attackers to execu…
2007-01-01
EPSS8.6%
pct 92
6.8
CVE-2010-3454DEB
Multiple off-by-one errors in the WW8DopTypography::ReadFromMem function in oowriter in OpenOff…
2010-01-01
EPSS8.6%
pct 92
7.5
CVE-2006-4574DEB
Off-by-one error in the MIME Multipart dissector in Wireshark (formerly Ethereal) 0.10.1 throug…
2006-01-01Pre-auth
EPSS6.8%
pct 91
6.8
CVE-2011-1554DEB
Off-by-one error in t1lib 5.1.2 and earlier, as used in Xpdf before 3.02pl6, teTeX, and other p…
2011-01-01
EPSS6.6%
pct 91
7.5
CVE-2003-0625DEB
Off-by-one error in certain versions of xfstt allows remote attackers to read potentially sensi…
2003-01-01Pre-auth
EPSS6.3%
pct 90
7.5
CVE-2024-36136ANC
An off-by-one error in WLInfoRailService in Ivanti Avalanche 6.3.1 allows a remote unauthentica…
2024-01-01Pre-auth
EPSS6.3%
pct 90
6.8
CVE-2014-8157DEB
Off-by-one error in the jpc_dec_process_sot function in JasPer 1.900.1 and earlier allows remot…
2014-01-01
EPSS5.8%
pct 90
9.8
CVE-2020-10062CVE
An off-by-one error in the Zephyr project MQTT packet length decoder can result in memory corru…
2020-01-01Pre-auth
EPSS5.8%
pct 90
5.0
CVE-2011-1027CVE
Off-by-one error in the convert_query_hexchar function in html.c in cgit.cgi in cgit before 0.8…
2011-01-01
EPSS5.2%
pct 89
5.8
CVE-2019-18423AST
An issue was discovered in Xen through 4.12.x allowing ARM guest OS users to cause a denial of …
2019-01-01
EPSS5.2%
pct 89
3.7
CVE-2014-8182DEB
An off-by-one error leading to a crash was discovered in openldap 2.4 when processing DNS SRV m…
2014-01-01Pre-auth
EPSS5.2%
pct 89
2.9
CVE-2012-0501DEB
Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 7 U…
2012-01-01
EPSS5.1%
pct 89
5.3
CVE-2016-10160DEB
Off-by-one error in the phar_parse_pharfile function in ext/phar/phar.c in PHP before 5.6.30 an…
2016-01-01Pre-auth
EPSS4.7%
pct 89
4.0
CVE-2018-14682DEB
An issue was discovered in mspack/chmd.c in libmspack before 0.7alpha. There is an off-by-one e…
2018-01-01
EPSS4.4%
pct 88
5.0
CVE-2005-1268DEB
Off-by-one error in the mod_ssl Certificate Revocation List (CRL) verification callback in Apac…
2005-01-01
EPSS4.3%
pct 88
2.9
CVE-2011-1138DEB
Off-by-one error in the dissect_6lowpan_iphc function in packet-6lowpan.c in Wireshark 1.4.0 th…
2011-01-01
EPSS3.8%
pct 87
7.5
CVE-2007-4137DEB
Off-by-one error in the QUtf8Decoder::toUnicode function in Trolltech Qt 3 allows context-depen…
2007-01-01
EPSS3.5%
pct 87
Select a vulnerability on the left to open the preview.