5211 | CVE-2014-7216: A Journey Through Yahoo’s Bug Bounty Program |
Buffer Overflow
Memory corruption |
Yahoo! / Verizon Media |
Julien Ahrens (@MrTuxracer) |
Bug Bounty | 2015-09-03 | 2023-06-13 |
4833 | CVE-2017-13253: Buffer overflow in multiple Android DRM services |
Memory corruption
Local Privilege Escalation |
Google |
Tamir Zahavi-Brunner (@tamir_zb) |
Bug Bounty | 2018-03-15 | 2023-06-13 |
4170 | Don’t Follow The Masses: Bug Hunting in JavaScript Engines |
Buffer Overflow
Memory corruption |
Google |
Dimitri Fourny (@dimitrifourny) |
Bug Bounty | 2019-04-29 | 2023-06-13 |
3853 | Filling in the Blanks: Exploiting Null Byte Buffer Overflow for a $40,000 Bounty |
Null byte buffer overflow
Memory corruption |
NA |
Sam Curry (@samwcyo) |
Bug Bounty | 2019-11-01 | 2023-06-13 |
3798 | Google Chrome portal element fuzzing |
RCE
Memory corruption
Buffer Overflow
Use-After-Free |
Google |
Pawel Wylecial (@h0wlu) |
Bug Bounty | 2019-12-06 | 2023-06-13 |
2994 | An iOS zero-click radio proximity exploit odyssey |
iOS
Memory corruption
Buffer Overflow |
Apple |
Ian Beer (@i41nbeer) |
Bug Bounty | 2020-12-01 | 2023-06-13 |
2267 | CVE-2021-2429: A Heap-based Buffer Overflow Bug In The Mysql Innodb Memcached Plugin |
Memory corruption |
Oracle (MySQL) |
- |
Bug Bounty | 2021-09-02 | 2023-06-13 |
1889 | Exploiting: Buffer overflow in Xiongmai DVRs |
Memory corruption
Buffer Overflow |
Xiongmai |
Chris Leech |
Bug Bounty | 2022-01-26 | 2023-06-13 |
1689 | Your NAS is not your NAS ! |
RCE
Memory corruption
Buffer Overflow |
Synology |
Angelboy (@scwuaptx) |
Bug Bounty | 2022-03-28 | 2023-06-13 |
1682 | CVE-2022-27643 - NETGEAR R6700v3 upnpd Buffer Overflow Remote Code Execution Vulnerability |
Memory corruption
RCE |
Netgear |
Relyze (@relyze) |
Bug Bounty | 2022-03-31 | 2023-06-13 |
1493 | CVE-2022-26937: Microsoft Windows Network File System NLM Portmap Stack Buffer Overflow |
Buffer Overflow
Memory corruption |
Microsoft |
Yuki Chen (@guhe120) |
Bug Bounty | 2022-06-08 | 2023-06-13 |
1431 | mysqlnd/pdo password buffer overflow leading to RCE (CVE 2022-31626) |
Buffer Overflow
Memory corruption |
PHP |
Charles Fol (@cfreal_) |
Bug Bounty | 2022-06-25 | 2023-06-13 |
1134 | Your Amiibo’s Haunted |
Memory corruption
Buffer Overflow
DoS |
Flipper Zero |
VVX7 (@VV_X_7) |
Bug Bounty | 2022-09-05 | 2023-06-13 |
1085 | Colorful Vulnerabilities |
Memory corruption
Buffer Overflow |
OpenRazer |
Tal Lossos (@TalLossos) |
Bug Bounty | 2022-09-14 | 2023-06-13 |
939 | Vulnerabilities in Tenda%27s W15Ev2 AC1200 Router |
OS command injection
Buffer Overflow
Memory corruption
Stored XSS
Authorization flaw
Information disclosure |
Tenda |
Olivier Laflamme (@olivier_boschko) |
Bug Bounty | 2022-10-19 | 2023-06-13 |
927 | SHA-3 Buffer Overflow |
Buffer Overflow
Memory corruption
Cryptographic issues |
XKCP
Apple
Python
PHP
PyPy
SHA3 for Ruby |
Nicky Mouha |
Bug Bounty | 2022-10-20 | 2023-06-13 |
912 | Stranger Strings: An exploitable flaw in SQLite |
Memory corruption
Buffer Overflow
DoS |
SQLite |
Andreas Kellas |
Bug Bounty | 2022-10-25 | 2023-06-13 |
879 | CVE−2022-3602: Punycode buffer overflow in OpenSSL |
Memory corruption
DoS |
OpenSSL |
Colm MacCárthaigh (@colmmacc) |
Bug Bounty | 2022-11-01 | 2023-06-13 |
795 | SSD Advisory – NETGEAR R7800 AFPD PreAuth |
Memory corruption
Buffer Overflow |
Netgear |
- |
Bug Bounty | 2022-11-22 | 2023-06-13 |
658 | ENLBufferPwn (CVE-2022-47949) |
Buffer Overflow
Memory corruption
RCE |
Nintendo |
PabloMK7 (@Pablomf6) |
Bug Bounty | 2022-12-22 | 2023-06-13 |
572 | Nothing new under the Sun – Discovering and exploiting a CDE bug chain |
Printer hacking
Local Privilege Escalation
Memory corruption
Buffer Overflow |
Oracle |
Marco Ivaldi / Raptor (@0xdea) |
Bug Bounty | 2023-01-18 | 2023-06-13 |
559 | Dissecting and Exploiting TCP/IP RCE Vulnerability “EvilESP” |
Kernel hacking
Windows
RCE
Memory corruption
Buffer Overflow |
Microsoft (Windows) |
Valentina Palmiotti (@chompie1337) |
Bug Bounty | 2023-01-20 | 2023-06-13 |
424 | ClamAV Critical Patch Review |
RCE
Memory corruption
Buffer Overflow
XXE
Security code review |
ClamAV |
ONEKEY (@onekey_sec) |
Bug Bounty | 2023-02-21 | 2023-06-13 |
341 | A Vulnerability in Implementations of SHA-3, SHAKE, EdDSA, and Other NIST-Approved Algorithms |
Cryptographic issues
Buffer Overflow |
Python
PHP
PyPy
SHA3 for Ruby
Keccak Team |
Nicky Mouha |
Bug Bounty | 2023-03-06 | 2023-06-13 |
209 | Shell in the Ghost: Ghostscript CVE-2023-28879 writeup |
Buffer Overflow
Memory corruption
RCE |
Ghostscript |
sigabrt9 (@sigabrt9) |
Bug Bounty | 2023-04-11 | 2023-06-13 |