Skip to main content

CWE archive

CWE-823 CVEs

Programmatic archive

100 CVEs tagged with CWE-8236 Critical, 57 High, 35 Medium, 2 Low, 0 Unrated.

CVE-2026-49745

Published Jul 24, 2026

Kernel software installed and running inside a Guest VM may post improper commands to the GPU Firmware to trigger a write of data outside the Guest's virtualised GPU memory. So…

CVSS 7.8 · High
evidence mentions
1
Buzz score
11.9

CVE-2026-49744

Published Jul 24, 2026

Kernel software installed and running inside a Guest VM may post improper commands to the GPU Firmware to trigger a write of data outside the Guest's virtualised GPU memory. Ou…

CVSS 7.8 · High
evidence mentions
1
Buzz score
11.9

CVE-2026-21734

Published Jun 26, 2026

A web page that contains unusual GPU shader code is loaded into the GPU compiler process and can trigger a write out-of-bounds write crash in the GPU shader compiler library. On c…

CVSS 7.7 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2026-12290

Published Jun 16, 2026

Memory safety bug fixed in Firefox 152. This vulnerability was fixed in Firefox 152, Firefox ESR 140.12, Firefox ESR 115.37, Thunderbird 152, and Thunderbird 140.12.

CVSS 8.1 · High
evidence mentions
30
Buzz score
44.5
Vendor/product tagsBeta · best-effort

CVE-2026-46244

Published Jun 3, 2026

In the Linux kernel, the following vulnerability has been resolved: netfilter: nft_inner: Fix IPv6 inner_thoff desync In nft_inner_parse_l2l3(), when processing inner IPv6 packe…

CVSS 9.1 · Critical
evidence mentions
14
Buzz score
47.1
Vendor/product tagsBeta · best-effort

CVE-2026-34193

Published Jun 1, 2026

Kernel software installed and running inside a Guest/Host VM may post improper commands to the GPU Firmware to trigger a write of data outside the intended GPU memory. A logic…

CVSS 4.3 · Medium
evidence mentions
1
Buzz score
11.9

CVE-2026-28764

Published May 21, 2026

MediaArea MediaInfoLib LXF element parsing heap-based buffer overflow vulnerability

CVSS 7.8 · High
evidence mentions
3
Buzz score
25.4
Vendor/product tagsBeta · best-effort

CVE-2026-41907

Published Apr 24, 2026

uuid is for the creation of RFC9562 (formerly RFC4122) UUIDs. Prior to 14.0.0, v3, v5, and v6 accept external output buffers but do not reject out-of-range writes (small buf or la…

CVSS 8.1 · High
evidence mentions
2
Buzz score
21.0
Vendor/product tagsBeta · best-effort

CVE-2025-33215

Published Mar 24, 2026

NVIDIA SNAP-4 Container contains a vulnerability in the VIRTIO-BLK component where a malicious guest VM may cause use of out-of-range pointer offset by sending crafted messages. A…

CVSS 6.8 · Medium

CVE-2026-4693

Published Mar 24, 2026

Incorrect boundary conditions in the Audio/Video: Playback component. This vulnerability was fixed in Firefox 149, Firefox ESR 115.34, Firefox ESR 140.9, Thunderbird 149, and Thun…

CVSS 7.5 · High
evidence mentions
34
Buzz score
44.5
Vendor/product tagsBeta · best-effort

CVE-2026-21732

Published Mar 20, 2026

A web page that contains unusual GPU shader code is loaded into the GPU compiler process and can trigger a write out-of-bounds write crash in the GPU shader compiler library. On c…

CVSS 9.6 · Critical
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2026-32829

Published Mar 20, 2026

lz4_flex is a pure Rust implementation of LZ4 compression/decompression. In versions 0.11.5 and below, and 0.12.0, decompressing invalid LZ4 data can leak sensitive information f…

CVSS 8.2 · High
evidence mentions
10
Buzz score
38.5
Vendor/product tagsBeta · best-effort

CVE-2025-54152

Published Feb 11, 2026

A use of out-of-range pointer offset vulnerability has been reported to affect Qsync Central. If a remote attacker gains a user account, they can then exploit the vulnerability to…

CVSS 1.3 · Low
Vendor/product tagsBeta · best-effort

CVE-2026-23764

Published Jan 22, 2026

VB-Audio Voicemeeter, Voicemeeter Banana, and Voicemeeter Potato (versions ending in 1.1.1.9, 2.1.1.9, and 3.1.1.9 and earlier, respectively), as well as VB-Audio Matrix and Matri…

CVSS 6.8 · Medium
evidence mentions
5
Buzz score
30.9

CVE-2026-21487

Published Jan 6, 2026

iccDEV provides a set of libraries and tools for working with ICC color management profiles. Versions 2.3.1.1 and below have an Out-of-bounds Read, Use of Out-of-range Pointer Off…

CVSS 6.1 · Medium
evidence mentions
3
Buzz score
18.9
Vendor/product tagsBeta · best-effort

CVE-2017-20211

Published Nov 12, 2025

UCanCode E-XD++ Visualization Enterprise Suite contains an untrusted pointer dereference vulnerability via the TKDRAWCAD.TKDrawCADCtrl.1 ActiveX control. This is because it expose…

CVSS 8.6 · High

CVE-2025-11232

Published Oct 29, 2025

To trigger the issue, three configuration parameters must have specific settings: "hostname-char-set" must be left at the default setting, which is "[^A-Za-z0-9.-]"; "hostname-cha…

CVSS 7.5 · High
evidence mentions
2
Buzz score
21.0

CVE-2025-25180

Published Jul 14, 2025

Software installed and run as a non-privileged user may conduct improper GPU system calls to subvert GPU HW to write to arbitrary physical memory pages. Under certain circumstanc…

CVSS 7.8 · High

CVE-2025-46806

Published Jun 2, 2025

A Use of Out-of-range Pointer Offset vulnerability in sslh leads to denial of service on some architectures.This issue affects sslh before 2.2.4.

CVSS 6.9 · Medium

CVE-2024-47893

Published May 17, 2025

Kernel software installed and running inside a Guest VM may exploit memory shared with the GPU Firmware to read and/or write data outside the Guest's virtualised GPU memory.

CVSS 6.5 · Medium
Showing 1-25 of 100 CVEsPage 1 of 4