CVE-2017-1000101: cURL: URL globbing out of bounds read
https://hackerone.com/reports/255587
4.3
geeknik
null
Multiple buffer over reads in mbox_from_parse
https://hackerone.com/reports/836036
0
catenacyber
$50
ap_find_token() Buffer Overread
https://hackerone.com/reports/241610
6.5
javier_sensepost
$1,500
Heap-buffer-overflow in Perl__byte_dump_string (utf8.c) could lead to memory leak
https://hackerone.com/reports/480778
7.5
tmnt53
$500
При передаче в ID сообщения нулевого байта, происходит вывод какого-то буфера.
https://hackerone.com/reports/255510
7.7
bytehope
$3,500
OOB read in php_strip_tags_ex
https://hackerone.com/reports/778834
6.5
raven42
$500
PHP WDDX Deserialization Heap OOB Read in timelib_meridian()
https://hackerone.com/reports/248659
5.3
xixabangm4
$500
Out of bounds read in libcurl's IMAP FETCH response parser
https://hackerone.com/reports/278231
null
geeknik
null
CVE-2017-11367: Global buffer overflow (READ of size 4) in shoco C library
https://hackerone.com/reports/250581
null
geeknik
null
CVE-2017-13009 The IPv6 mobility parser in tcpdump before 4.9.2 has a buffer over-read in print-mobility.c:mobility_print().
https://hackerone.com/reports/268806
7.3
geeknik
$500
Out of Bounds Memory Read in unserialize()
https://hackerone.com/reports/261336
null
cy1337
$500
A specifically malformed MQTT Subscribe packet crashes MQTT Brokers using the mqtt-packet module for decoding
https://hackerone.com/reports/541354
7.5
lxndr
null
Pre-auth buffer over-read in Dovecot NTLM implementation
https://hackerone.com/reports/866597
null
orange
$550
Out-Of-Bounds Read in timelib_meridian()
https://hackerone.com/reports/283644
5.3
xixabangm4
$500
Out-of-bounds read in iconv.c:_php_iconv_mime_decode() due to integer overflow
https://hackerone.com/reports/593229
8.2
neural_x
$1,500
Invalid Read on exif_process_SOFn
https://hackerone.com/reports/510025
7.5
chamal
$1,500
CVE-2017-13010 The BEEP parser in tcpdump before 4.9.2 has a buffer over-read in print-beep.c:l_strnstart().
https://hackerone.com/reports/268807
7.3
geeknik
$500
heap buffer overflow in phar_detect_phar_fname_ext
https://hackerone.com/reports/475499
9.8
chihuahua
$1,500
Buffer over read from smtp_command_parse_parameters
https://hackerone.com/reports/900548
0
catenacyber
$50
CVE-2017-13038 The PPP parser in tcpdump before 4.9.2 has a buffer over-read in print-ppp.c:handle_mlppp().
https://hackerone.com/reports/268808
7.3
geeknik
$500
GarlicRust - heartbleed style vulnerability in major I2P C++ router implementations
https://hackerone.com/reports/295740
7.7
aerodudrizzt
null
Buffer over-reads in i_stream_zlib_read
https://hackerone.com/reports/832227
0
catenacyber
$50
CVE-2017-13008 The IEEE 802.11 parser in tcpdump before 4.9.2 has a buffer over-read in print-802_11.c:parse_elements().
https://hackerone.com/reports/268805
7.3
geeknik
$500
buffer overread in base64 code of the xmlrpc module
https://hackerone.com/reports/477897
null
hanno
$500
Security check failure or stack buffer overrun (crash)
https://hackerone.com/reports/481335
null
bi7s
$285.34
Heap Buffer Overflow (READ: 4) in phar_parse_pharfile
https://hackerone.com/reports/477344
7.5
cy1337
$1,500
Out of Bounds Memory Read in exif_scan_thumbnail
https://hackerone.com/reports/675578
8.8
sediruoksitsero
$1,500
CVE-2017-12985: The IPv6 parser in tcpdump before 4.9.2 has a buffer over-read in ip6_print()
https://hackerone.com/reports/268803
7.3
geeknik
$500
Out of Bounds Memory Read in exif_process_user_comment
https://hackerone.com/reports/675580
8.8
sediruoksitsero
$1,500
Out of Bounds Memory Read in php_jpg_get16
https://hackerone.com/reports/665330
9.1
sediruoksitsero
$1,500
Heap Buffer Overflow (READ: 1786) in exif_iif_add_value
https://hackerone.com/reports/344035
6.3
cy1337
$500
Buffer out of bound read in miniupnpc xml parser
https://hackerone.com/reports/340012
null
yukichen
null
CVE-2017-12986 The IPv6 routing header parser in tcpdump before 4.9.2 has a buffer over-read in print-rt6.c:rt6_print().
https://hackerone.com/reports/268804
7.3
geeknik
$500
apache access.log leakage via long request on https://rapida.ru/
https://hackerone.com/reports/280912
null
tsug0d
$100
Buffer overread in parse_angle_addr called from message_address_parse_path
https://hackerone.com/reports/836045
0
catenacyber
$50
[bl] Uninitialized memory exposure via negative .consume()
https://hackerone.com/reports/966347
7.7
chalker
null