Search Results (22447 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-2026-45683 1 Opentelemetry 1 Opentelemetry-ebpf-instrumentation 2026-06-02 3.8 Low
OpenTelemetry eBPF Instrumentation provides eBPF instrumentation based on the OpenTelemetry standard. Prior to version 0.9.0, the Java TLS ioctl probe reads user-controlled ioctl pointers with bpf_probe_read instead of bpf_probe_read_user. An instrumented local process can therefore point OBI at kernel memory and cause that memory to be copied into telemetry. This issue has been patched in version 0.9.0.
CVE-2026-41213 1 Node-oauth 2 Node-oauth2-server, Node-oauth\/oauth2-server 2026-06-02 5.9 Medium
@node-oauth/oauth2-server is a module for implementing an OAuth2 server in Node.js. The token exchange path accepts RFC7636-invalid code_verifier values (including one-character strings) for S256 PKCE flows. Because short/weak verifiers are accepted and failed verifier attempts do not consume the authorization code, an attacker who intercepts an authorization code can brute-force code_verifier guesses online until token issuance succeeds.
CVE-2026-35716 1 Vivotek 1 Fd8136 2026-06-02 N/A
A stack-based buffer overflow in the motion_privacy.cgi binary in VIVOTEK FD8136 firmware FD8136-VVTK-0300a allows authenticated remote attackers to execute arbitrary code as root via an oversized n1 parameter in a POST request to the /cgi-bin/admin/setpm.cgi, /cgi-bin/admin/setmd.cgi, or /cgi-bin/admin/setmd_profile.cgi endpoint (all symlinks to the same binary). The parameter value is copied into a fixed-size 0xa4-byte stack buffer without bounds checking, overwriting the saved link register. The binary is compiled without stack canaries.
CVE-2026-30652 1 Vivotek 1 Fd8136 2026-06-02 N/A
A remote buffer overflow vulnerability exists in the /cgi-bin/dido/setdo.cgi endpoint of the admin interface of Vivotek FD8136 cameras running firmware version FD8136-VVTK-0300a. This flaw allows an authenticated attacker to execute arbitrary code as root on the device.
CVE-2026-45684 1 Opentelemetry 1 Opentelemetry-ebpf-instrumentation 2026-06-02 4.9 Medium
OpenTelemetry eBPF Instrumentation provides eBPF instrumentation based on the OpenTelemetry standard. From version 0.7.0 to before version 0.9.0, OBI's log enricher mishandles writev buffers by reading only the first iovec entry but using the total iov_iter.count as the copy length. When log injection is enabled, a crafted multi-segment writev call can make OBI read and overwrite memory beyond the first segment. This issue has been patched in version 0.9.0.
CVE-2026-29013 1 Libcoap 1 Libcoap 2026-06-02 9.8 Critical
libcoap contains out-of-bounds read vulnerabilities in OSCORE Appendix B.2 CBOR unwrap handling where get_byte_inc() in src/oscore/oscore_cbor.c relies solely on assert() for bounds checking, which is removed in release builds compiled with NDEBUG. Attackers can send crafted CoAP requests with malformed OSCORE options or responses during OSCORE negotiation to trigger out-of-bounds reads during CBOR parsing and potentially cause out-of-bounds reads through integer wraparound in allocation size computation.
CVE-2026-10292 1 Utt 1 Hiper 1200gw 2026-06-02 8.8 High
A vulnerability was detected in UTT HiPER 1200GW up to 2.5.3-170306. This affects the function strcpy of the file /goform/formTaskEdit. The manipulation results in stack-based buffer overflow. The attack may be launched remotely. The exploit is now public and may be used.
CVE-2026-7254 1 Ibm 1 Openbmc 2026-06-02 5.3 Medium
IBM OPENBMC FW1110.00 through FW1110.11 is vulnerable to denial of service attacks by unauthenticated network users.
CVE-2026-43958 1 Redhat 1 Enterprise Linux 2026-06-02 7.8 High
A flaw was found in rrdcached, a component of rrdtool. A local attacker with access to a rrdcached socket can exploit a stack-based buffer overflow by sending an oversized CREATE request. This vulnerability can lead to a denial of service by crashing the daemon or potentially allow for arbitrary code execution, impacting the integrity and confidentiality of data.
CVE-2026-42013 2 Gnu, Redhat 6 Gnutls, Enterprise Linux, Hardened Images and 3 more 2026-06-02 8.2 High
A flaw was found in gnutls. When validating certificates, an oversized Subject Alternative Name (SAN) could cause the validation process to incorrectly fall back to checking the Common Name (CN) field. This could allow a remote attacker to bypass proper certificate validation, potentially leading to spoofing or man-in-the-middle attacks.
CVE-2026-5260 2 Gnu, Redhat 6 Gnutls, Enterprise Linux, Hardened Images and 3 more 2026-06-02 8.2 High
A flaw was found in libgnutls. A remote attacker, by sending an extremely short premaster secret during an RSA key exchange to a server using an RSA key backed by a PKCS#11 token, could trigger a short heap overread. This memory corruption vulnerability could lead to information disclosure.
CVE-2025-59612 1 Qualcomm 63 Cologne, Cologne Firmware, Fastconnect 6700 and 60 more 2026-06-02 6.7 Medium
Memory corruption in windows drivers while sending incorrect trusted application request
CVE-2025-59613 1 Qualcomm 89 Cologne, Cologne Firmware, Fastconnect 6700 and 86 more 2026-06-02 6.7 Medium
Memory Corruption when output buffer size is smaller than input buffer size during data copying operation.
CVE-2026-24085 1 Qualcomm 547 5g Fixed Wireless Access Platform, 5g Fixed Wireless Access Platform Firmware, Apq8098 and 544 more 2026-06-02 7.2 High
Memory Corruption when processing display command line information due to improper initialization of a variable.
CVE-2026-24087 1 Qualcomm 431 Ar8031, Ar8031 Firmware, Ar8035 and 428 more 2026-06-02 7.2 High
Memory corruption while processing fastboot OEM commands.
CVE-2026-24089 1 Qualcomm 439 Ar8031, Ar8031 Firmware, Ar8035 and 436 more 2026-06-02 7.2 High
Memory corruption while processing fastboot commands with invalid input.
CVE-2026-24091 1 Qualcomm 547 5g Fixed Wireless Access Platform, 5g Fixed Wireless Access Platform Firmware, Apq8098 and 544 more 2026-06-02 7.2 High
Memory corruption while processing fastboot commands with improperly formatted input.
CVE-2026-24092 1 Qualcomm 437 Ar8031, Ar8031 Firmware, Ar8035 and 434 more 2026-06-02 7.2 High
Memory Corruption when processing fastboot commands to set display mode.
CVE-2026-25258 1 Qualcomm 43 Cologne, Cologne Firmware, Fastconnect 6900 and 40 more 2026-06-02 7.8 High
Memory corruption while processing IOCTL calls for escape operations.
CVE-2026-25276 1 Qualcomm 115 Cq8750m, Cq8750m Firmware, Fastconnect 6700 and 112 more 2026-06-02 8.8 High
Memory corruption while using Strongbox due to missing bounds check.