CVE & Exploit Intelligence Database

Updated 6h ago

Search and track vulnerabilities with real-time exploit intelligence. Cross-reference CVEs against public exploits from ExploitDB, Metasploit, GitHub, and Nuclei — with CVSS and EPSS scoring, CISA KEV monitoring, and AI-powered exploit analysis.

338,223 CVEs tracked 53,271 with exploits 4,730 exploited in wild 1,542 CISA KEV 3,929 Nuclei templates 37,826 vendors 42,547 researchers
1,560 results Clear all
CVE-2019-19048 7.5 HIGH 1 Writeup EPSS 0.01
Linux Kernel <5.3.9 - Memory Corruption
A memory leak in the crypto_reportstat() function in drivers/virt/vboxguest/vboxguest_utils.c in the Linux kernel before 5.3.9 allows attackers to cause a denial of service (memory consumption) by triggering copy_form_user() failures, aka CID-e0b0cb938864.
CWE-401 Nov 18, 2019
CVE-2019-19047 5.5 MEDIUM 1 Writeup EPSS 0.00
Linux Kernel <5.3.11 - DoS
A memory leak in the mlx5_fw_fatal_reporter_dump() function in drivers/net/ethernet/mellanox/mlx5/core/health.c in the Linux kernel before 5.3.11 allows attackers to cause a denial of service (memory consumption) by triggering mlx5_crdump_collect() failures, aka CID-c7ed6d0183d5.
CWE-401 Nov 18, 2019
CVE-2019-19046 6.5 MEDIUM 1 Writeup EPSS 0.01
Linux kernel <5.3.11 - Memory Corruption
A memory leak in the __ipmi_bmc_register() function in drivers/char/ipmi/ipmi_msghandler.c in the Linux kernel through 5.3.11 allows attackers to cause a denial of service (memory consumption) by triggering ida_simple_get() failure, aka CID-4aa7afb0ee20. NOTE: third parties dispute the relevance of this because an attacker cannot realistically control this failure at probe time
CWE-401 Nov 18, 2019
CVE-2019-19045 4.4 MEDIUM 1 Writeup EPSS 0.00
Linux Kernel <5.3.11 - Memory Corruption
A memory leak in the mlx5_fpga_conn_create_cq() function in drivers/net/ethernet/mellanox/mlx5/core/fpga/conn.c in the Linux kernel before 5.3.11 allows attackers to cause a denial of service (memory consumption) by triggering mlx5_vector2eqn() failures, aka CID-c8c2a057fdc7.
CWE-401 Nov 18, 2019
CVE-2019-19044 7.5 HIGH 1 Writeup EPSS 0.02
Linux Kernel <5.3.11 - DoS
Two memory leaks in the v3d_submit_cl_ioctl() function in drivers/gpu/drm/v3d/v3d_gem.c in the Linux kernel before 5.3.11 allow attackers to cause a denial of service (memory consumption) by triggering kcalloc() or v3d_job_init() failures, aka CID-29cd13cfd762.
CWE-401 Nov 18, 2019
CVE-2019-19043 5.5 MEDIUM 1 Writeup EPSS 0.00
Linux kernel <5.3.11 - DoS
A memory leak in the i40e_setup_macvlans() function in drivers/net/ethernet/intel/i40e/i40e_main.c in the Linux kernel through 5.3.11 allows attackers to cause a denial of service (memory consumption) by triggering i40e_setup_channel() failures, aka CID-27d461333459.
CWE-401 Nov 18, 2019
CVE-2019-14818 7.5 HIGH EPSS 0.01
Dpdk Data Plane Development Kit < 16.11.10 - Memory Leak
A flaw was found in all dpdk version 17.x.x before 17.11.8, 16.x.x before 16.11.10, 18.x.x before 18.11.4 and 19.x.x before 19.08.1 where a malicious master, or a container with access to vhost_user socket, can send specially crafted VRING_SET_NUM messages, resulting in a memory leak including file descriptors. This flaw could lead to a denial of service condition.
CWE-401 Nov 14, 2019
CVE-2019-5293 6.5 MEDIUM EPSS 0.00
Huawei - Memory Corruption
Some Huawei products have a memory leak vulnerability when handling some messages. A remote attacker with operation privilege could exploit the vulnerability by sending specific messages continuously. Successful exploit may cause some service to be abnormal.
CWE-401 Nov 13, 2019
CVE-2019-18813 7.5 HIGH EPSS 0.01
Linux Kernel <5.3.9 - DoS
A memory leak in the dwc3_pci_probe() function in drivers/usb/dwc3/dwc3-pci.c in the Linux kernel through 5.3.9 allows attackers to cause a denial of service (memory consumption) by triggering platform_device_add_properties() failures, aka CID-9bbfceea12a8.
CWE-401 Nov 07, 2019
CVE-2019-18812 7.5 HIGH 1 Writeup EPSS 0.01
Linux Kernel <5.3.9 - DoS
A memory leak in the sof_dfsentry_write() function in sound/soc/sof/debug.c in the Linux kernel through 5.3.9 allows attackers to cause a denial of service (memory consumption), aka CID-c0a333d842ef.
CWE-401 Nov 07, 2019
CVE-2019-18811 5.5 MEDIUM 1 Writeup EPSS 0.00
Linux Kernel <5.3.9 - Memory Corruption
A memory leak in the sof_set_get_large_ctrl_data() function in sound/soc/sof/ipc.c in the Linux kernel through 5.3.9 allows attackers to cause a denial of service (memory consumption) by triggering sof_get_ctrl_copy_params() failures, aka CID-45c1380358b1.
CWE-401 Nov 07, 2019
CVE-2019-18810 7.5 HIGH EPSS 0.01
Linux Kernel <5.3.8 - DoS
A memory leak in the komeda_wb_connector_add() function in drivers/gpu/drm/arm/display/komeda/komeda_wb_connector.c in the Linux kernel before 5.3.8 allows attackers to cause a denial of service (memory consumption) by triggering drm_writeback_connector_init() failures, aka CID-a0ecd6fdbf5d.
CWE-401 Nov 07, 2019
CVE-2019-18809 4.6 MEDIUM 1 Writeup EPSS 0.00
Linux Kernel <5.3.9 - DoS
A memory leak in the af9005_identify_state() function in drivers/media/usb/dvb-usb/af9005.c in the Linux kernel through 5.3.9 allows attackers to cause a denial of service (memory consumption), aka CID-2289adbfa559.
CWE-401 Nov 07, 2019
CVE-2019-18808 5.5 MEDIUM 1 Writeup EPSS 0.00
Linux kernel <5.3.9 - DoS
A memory leak in the ccp_run_sha_cmd() function in drivers/crypto/ccp/ccp-ops.c in the Linux kernel through 5.3.9 allows attackers to cause a denial of service (memory consumption), aka CID-128c66429247.
CWE-401 Nov 07, 2019
CVE-2019-18807 7.5 HIGH EPSS 0.01
Linux Kernel <5.3.5 - DoS
Two memory leaks in the sja1105_static_config_upload() function in drivers/net/dsa/sja1105/sja1105_spi.c in the Linux kernel before 5.3.5 allow attackers to cause a denial of service (memory consumption) by triggering static_config_buf_prepare_for_upload() or sja1105_inhibit_tx() failures, aka CID-68501df92d11.
CWE-401 Nov 07, 2019
CVE-2019-18806 5.5 MEDIUM EPSS 0.00
Linux Kernel <5.3.5 - DoS
A memory leak in the ql_alloc_large_buffers() function in drivers/net/ethernet/qlogic/qla3xxx.c in the Linux kernel before 5.3.5 allows local users to cause a denial of service (memory consumption) by triggering pci_dma_mapping_error() failures, aka CID-1acb8f2a7a9f.
CWE-401 Nov 07, 2019
CVE-2019-5023 5.9 MEDIUM EPSS 0.00
PaX <4.9.24-test7 - Memory Corruption
An exploitable vulnerability exists in the grsecurity PaX patch for the function read_kmem, in PaX from version pax-linux-4.9.8-test1 to 4.9.24-test7, grsecurity official from version grsecurity-3.1-4.9.8-201702060653 to grsecurity-3.1-4.9.24-201704252333, grsecurity unofficial from version v4.9.25-unofficialgrsec to v4.9.74-unofficialgrsec. PaX adds a temp buffer to the read_kmem function, which is never freed when an invalid address is supplied. This results in a memory leakage that can lead to a crash of the system. An attacker needs to induce a read to /dev/kmem using an invalid address to exploit this vulnerability.
CWE-772 Oct 31, 2019
CVE-2019-0059 7.5 HIGH EPSS 0.00
Juniper Junos - Memory Leak
A memory leak vulnerability in the of Juniper Networks Junos OS allows an attacker to cause a Denial of Service (DoS) to the device by sending specific commands from a peered BGP host and having those BGP states delivered to the vulnerable device. This issue affects: Juniper Networks Junos OS: 18.1 versions prior to 18.1R2-S4, 18.1R3-S1; 18.1X75 all versions. Versions before 18.1R1 are not affected.
CWE-401 Oct 09, 2019
CVE-2019-17371 6.5 MEDIUM EPSS 0.00
Gif2png - Memory Leak
gif2png 2.5.13 has a memory leak in the writefile function.
CWE-401 Oct 09, 2019
CVE-2019-17340 8.8 HIGH EPSS 0.00
Xen < 4.11.2 - Memory Leak
An issue was discovered in Xen through 4.11.x allowing x86 guest OS users to cause a denial of service or gain privileges because grant-table transfer requests are mishandled.
CWE-401 Oct 08, 2019