Skip to main content

CWE archive

CWE-131 CVEs

Programmatic archive

206 CVEs tagged with CWE-13133 Critical, 91 High, 67 Medium, 15 Low, 0 Unrated.

CVE-2021-29536

Published May 14, 2021

TensorFlow is an end-to-end open source platform for machine learning. An attacker can cause a heap buffer overflow in `QuantizedReshape` by passing in invalid thresholds for the…

CVSS 2.5 · Low
Vendor/product tagsBeta · best-effort

CVE-2021-29535

Published May 14, 2021

TensorFlow is an end-to-end open source platform for machine learning. An attacker can cause a heap buffer overflow in `QuantizedMul` by passing in invalid thresholds for the quan…

CVSS 2.5 · Low
Vendor/product tagsBeta · best-effort

CVE-2021-29529

Published May 14, 2021

TensorFlow is an end-to-end open source platform for machine learning. An attacker can trigger a heap buffer overflow in `tf.raw_ops.QuantizedResizeBilinear` by manipulating input…

CVSS 2.5 · Low
Vendor/product tagsBeta · best-effort

CVE-2021-29521

Published May 14, 2021

TensorFlow is an end-to-end open source platform for machine learning. Specifying a negative dense shape in `tf.raw_ops.SparseCountSparseOutput` results in a segmentation fault be…

CVSS 2.5 · Low
Vendor/product tagsBeta · best-effort

CVE-2021-0254

Published Apr 22, 2021

A buffer size validation vulnerability in the overlayd service of Juniper Networks Junos OS may allow an unauthenticated remote attacker to send specially crafted packets to the d…

CVSS 9.8 · Critical
evidence mentions
2
Buzz score
17.5
Vendor/product tagsBeta · best-effort

CVE-2021-21782

Published Mar 31, 2021

An out-of-bounds write vulnerability exists in the SGI format buffer size processing functionality of Accusoft ImageGear 19.8. A specially crafted malformed file can lead to memor…

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2021-21776

Published Mar 31, 2021

An out-of-bounds write vulnerability exists in the SGI Format Buffer Size Processing functionality of Accusoft ImageGear 19.8. A specially crafted malformed file can lead to memor…

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2021-21773

Published Mar 31, 2021

An out-of-bounds write vulnerability exists in the TIFF header count-processing functionality of Accusoft ImageGear 19.8. A specially crafted malformed file can lead to memory cor…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2021-27378

Published Feb 18, 2021

An issue was discovered in the rand_core crate before 0.6.2 for Rust. Because read_u32_into and read_u64_into mishandle certain buffer-length checks, a random number generator may…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2020-13585

Published Feb 10, 2021

An out-of-bounds write vulnerability exists in the PSD Header processing functionality of Accusoft ImageGear 19.8. A specially crafted malformed file can lead to code execution. A…

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2020-13546

Published Feb 10, 2021

In SoftMaker Software GmbH SoftMaker Office TextMaker 2021 (revision 1014), a specially crafted document can cause the document parser to miscalculate a length used to allocate a…

CVSS 7.8 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2020-1680

Published Oct 16, 2020

On Juniper Networks MX Series with MS-MIC or MS-MPC card configured with NAT64 configuration, receipt of a malformed IPv6 packet may crash the MS-PIC component on MS-MIC or MS-MPC…

CVSS 5.3 · Medium

CVE-2020-6108

Published Oct 15, 2020

An exploitable code execution vulnerability exists in the fsck_chk_orphan_node functionality of F2fs-Tools F2fs.Fsck 1.13. A specially crafted f2fs filesystem can cause a heap buf…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2020-6106

Published Oct 15, 2020

An exploitable information disclosure vulnerability exists in the init_node_manager functionality of F2fs-Tools F2fs.Fsck 1.12 and 1.13. A specially crafted filesystem can be used…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2020-6116

Published Sep 17, 2020

An arbitrary code execution vulnerability exists in the rendering functionality of Nitro Software, Inc.’s Nitro Pro 13.13.2.242. When drawing the contents of a page using colors f…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2020-6113

Published Sep 17, 2020

An exploitable vulnerability exists in the object stream parsing functionality of Nitro Software, Inc.’s Nitro Pro 13.13.2.242 when updating its cross-reference table. When proces…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2020-15350

Published Jul 7, 2020

RIOT 2020.04 has a buffer overflow in the base64 decoder. The decoding function base64_decode() uses an output buffer estimation function to compute the required buffer capacity a…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort
Showing 151-175 of 206 CVEsPage 7 of 9