7.1

CVSS3.1

CVE-2025-47400 - Buffer Over-read in Computer Vision

Cryptographic issue while copying data to a destination buffer without validating its size.

πŸ“… Published: April 6, 2026, 3:33 p.m. πŸ”„ Last Modified: April 9, 2026, 8:28 a.m.

8.8

CVSS3.1

CVE-2025-47392 - Integer Overflow or Wraparound in GPS

Memory corruption when decoding corrupted satellite data files with invalid signature offsets.

πŸ“… Published: April 6, 2026, 3:33 p.m. πŸ”„ Last Modified: April 9, 2026, 8:28 a.m.

7.8

CVSS3.1

CVE-2025-47391 - Stack-based Buffer Overflow in Camera Driver

Memory corruption while processing a frame request from user.

πŸ“… Published: April 6, 2026, 3:33 p.m. πŸ”„ Last Modified: April 9, 2026, 8:28 a.m.

7.8

CVSS3.1

CVE-2025-47390 - Buffer Over-read in Camera

Memory corruption while preprocessing IOCTL request in JPEG driver.

πŸ“… Published: April 6, 2026, 3:33 p.m. πŸ”„ Last Modified: April 9, 2026, 8:29 a.m.

7.8

CVSS3.1

CVE-2025-47389 - Buffer Copy Without Checking Size of Input in Automotive Platform

Memory corruption when buffer copy operation fails due to integer overflow during attestation report generation.

πŸ“… Published: April 6, 2026, 3:33 p.m. πŸ”„ Last Modified: April 9, 2026, 8:29 a.m.

6.5

CVSS3.1

CVE-2025-47374 - Use After Free in Camera Driver

Memory Corruption when accessing freed memory due to concurrent fence deregistration and signal handling.

πŸ“… Published: April 6, 2026, 3:33 p.m. πŸ”„ Last Modified: April 9, 2026, 8:29 a.m.

8.5

CVSS4.0

CVE-2024-14032 - Twitch Studio LauncherHelper XPC Missing Authorization to Root File Write

Twitch Studio version 0.114.8 and prior contain a privilege escalation vulnerability in its privileged helper tool that allows local attackers to execute arbitrary code as root by exploiting an unprotected XPC service. Attackers can invoke the installFromPath:toPath:withReply: method to overwrite s…

πŸ“… Published: April 6, 2026, 3:33 p.m. πŸ”„ Last Modified: April 14, 2026, 2:01 a.m.

8.4

CVSS4.0

CVE-2026-34589 - OpenEXR: DWA Lossy Decoder Heap Out-of-Bounds Write

OpenEXR provides the specification and reference implementation of the EXR file format, an image storage format for the motion picture industry. From 3.2.0 to before 3.2.7, 3.3.9, and 3.4.9, the DWA lossy decoder constructs temporary per-component block pointers using signed 32-bit arithmetic. For …

πŸ“… Published: April 6, 2026, 3:33 p.m. πŸ”„ Last Modified: April 8, 2026, 7:50 p.m.

8.6

CVSS4.0

CVE-2026-34588 - OpenEXR has a signed 32-bit Overflow in PIZ Decoder Leads to OOB Read/Write

OpenEXR provides the specification and reference implementation of the EXR file format, an image storage format for the motion picture industry. From 3.1.0 to before 3.2.7, 3.3.9, and 3.4.9, internal_exr_undo_piz() advances the working wavelet pointer with signed 32-bit arithmetic. Because nx, ny, …

πŸ“… Published: April 6, 2026, 3:31 p.m. πŸ”„ Last Modified: April 8, 2026, 7:50 p.m.

7.9

CVSS4.0

CVE-2026-34444 - Lupa has a Sandbox escape and RCE due to incomplete attribute_filter enforcement in getattr / setat…

Lupa integrates the runtimes of Lua or LuaJIT2 into CPython. In 2.6 and earlier, attribute_filter is not consistently applied when attributes are accessed through built-in functions like getattr and setattr. This allows an attacker to bypass the intended restrictions and eventually achieve arbitrar…

πŸ“… Published: April 6, 2026, 3:30 p.m. πŸ”„ Last Modified: April 7, 2026, 1:20 p.m.
Total resulsts: 344963
Page 247 of 34,497
Β« previous page Β» next page
Filters