Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Memory Buffer Bounds ErrorCWE-119 × clear
Firefox CRITICAL 9.8
CVE-2017-5471

Memory safety bugs were reported in Firefox 53. Some of these bugs showed evidence of memory corruption and we presume that with enough effort that s…

Fix: 54.0+
Fix from $2,300 2018-06-11
Debian Linux HIGH 7.5
CVE-2017-5444EPSS 7%

A buffer overflow vulnerability while parsing "application/http-index-format" format content when the header contains improperly formatted data. This…

Fix: 45.9.0 / 53.0+
Fix from $1,950 2018-06-11
Enterprise Linux Desktop CRITICAL 9.8
CVE-2017-5459

A buffer overflow in WebGL triggerable by web content, resulting in a potentially exploitable crash. This vulnerability affects Thunderbird < 52.1, F…

Fix: 45.9.0 / 52.1.0+
Fix from $2,300 2018-06-11
Enterprise Linux Desktop CRITICAL 9.8
CVE-2017-5429

Memory safety bugs were reported in Firefox 52, Firefox ESR 45.8, Firefox ESR 52, and Thunderbird 52. Some of these bugs showed evidence of memory co…

Fix: 45.9.0 / 52.1.0+
Fix from $2,300 2018-06-11
Enterprise Linux Desktop CRITICAL 9.8
CVE-2017-5430

Memory safety bugs were reported in Firefox 52, Firefox ESR 52, and Thunderbird 52. Some of these bugs showed evidence of memory corruption and we pr…

Fix: 52.1.0 / 53.0+
Fix from $2,300 2018-06-11
Enterprise Linux Desktop CRITICAL 9.8
CVE-2017-5400

JIT-spray targeting asm.js combined with a heap spray allows for a bypass of ASLR and DEP protections leading to potential memory corruption attacks.…

Fix: 45.8.0 / 52.0+
Fix from $2,300 2018-06-11
Firefox HIGH 7.5
CVE-2017-5406

A segmentation fault can occur in the Skia graphics library during some canvas operations due to issues with mask/clip intersection and empty masks. …

Fix: 52.0+
Fix from $1,950 2018-06-11
Debian Linux CRITICAL 9.8
CVE-2017-5410

Memory corruption resulting in a potentially exploitable crash during garbage collection of JavaScript due errors in how incremental sweeping is mana…

Fix: 45.8.0 / 52.0+
Fix from $2,300 2018-06-11
Firefox HIGH 7.5
CVE-2017-5412

A buffer overflow read during SVG filter color value operations, resulting in data exposure. This vulnerability affects Firefox < 52 and Thunderbird …

Fix: 52.0+
Fix from $1,950 2018-06-11
Firefox CRITICAL 9.8
CVE-2017-5413

A segmentation fault can occur during some bidirectional layout operations. This vulnerability affects Firefox < 52 and Thunderbird < 52.

Fix: 52.0+
Fix from $2,300 2018-06-11
Firefox CRITICAL 9.8
CVE-2017-5392

Weak proxy objects have weak references on multiple threads when they should only have them on one, resulting in incorrect memory usage and corruptio…

Fix: 51.0+
Fix from $2,300 2018-06-11
Debian Linux CRITICAL 9.8
CVE-2017-5398

Memory safety bugs were reported in Thunderbird 45.7. Some of these bugs showed evidence of memory corruption and we presume that with enough effort …

Fix: 45.8.0 / 52.0+
Fix from $2,300 2018-06-11
Firefox CRITICAL 9.8
CVE-2017-5399

Memory safety bugs were reported in Firefox 51. Some of these bugs showed evidence of memory corruption and we presume that with enough effort that s…

Fix: 52.0+
Fix from $2,300 2018-06-11
Enterprise Linux Server HIGH 7.5
CVE-2016-9897

Memory corruption resulting in a potentially exploitable crash during WebGL functions using a vector constructor with a varying array within libGLES.…

Fix: 45.6 / 45.6.0+
Fix from $1,950 2018-06-11
Firefox CRITICAL 9.8
CVE-2017-5373

Memory safety bugs were reported in Firefox 50.1 and Firefox ESR 45.6. Some of these bugs showed evidence of memory corruption and we presume that wi…

Fix: 45.7.0 / 51.0+
Fix from $2,300 2018-06-11
Firefox CRITICAL 9.8
CVE-2017-5374

Memory safety bugs were reported in Firefox 50.1. Some of these bugs showed evidence of memory corruption and we presume that with enough effort that…

Fix: 51.0+
Fix from $2,300 2018-06-11
Enterprise Linux Desktop CRITICAL 9.8
CVE-2017-5375EPSS 34%

JIT code allocation can allow for a bypass of ASLR and DEP protections leading to potential memory corruption attacks. This vulnerability affects Thu…

Fix: 45.7.0 / 51.0.1+
Fix from $2,300 2018-06-11
Firefox CRITICAL 9.8
CVE-2017-5377

A memory corruption vulnerability in Skia that can occur when using transforms to make gradients, resulting in a potentially exploitable crash. This …

Fix: 51.0+
Fix from $2,300 2018-06-11
Firefox HIGH 7.5
CVE-2016-9066EPSS 12%

A buffer overflow resulting in a potentially exploitable crash due to memory allocation issues when handling large amounts of incoming data. This vul…

Fix: 45.5.0 / 50.0+
Fix from $1,950 2018-06-11
Firefox CRITICAL 9.8
CVE-2016-9080

Memory safety bugs were reported in Firefox 50.0.2. Some of these bugs showed evidence of memory corruption and we presume that with enough effort th…

Fix: 50.1+
Fix from $2,300 2018-06-11
Debian Linux CRITICAL 9.8
CVE-2016-9893

Memory safety bugs were reported in Thunderbird 45.5. Some of these bugs showed evidence of memory corruption and we presume that with enough effort …

Fix: 45.6.0 / 50.1+
Fix from $2,300 2018-06-11
Firefox HIGH 7.5
CVE-2016-9894EPSS 5%

A buffer overflow in SkiaGl caused when a GrGLBuffer is truncated during allocation. Later writers will overflow the buffer, resulting in a potential…

Fix: 50.1+
Fix from $1,950 2018-06-11
Firefox CRITICAL 9.8
CVE-2016-5289

Memory safety bugs were reported in Firefox 49. Some of these bugs showed evidence of memory corruption and we presume that with enough effort that s…

Fix: 50.0+
Fix from $2,300 2018-06-11
Firefox CRITICAL 9.8
CVE-2016-5290

Memory safety bugs were reported in Firefox 49 and Firefox ESR 45.4. Some of these bugs showed evidence of memory corruption and we presume that with…

Fix: 45.5.0 / 50.0+
Fix from $2,300 2018-06-11
Firefox HIGH 7.5
CVE-2016-5296

A heap-buffer-overflow in Cairo when processing SVG content caused by compiler optimization, resulting in a potentially exploitable crash. This vulne…

Fix: 45.5.0 / 50.0+
Fix from $1,950 2018-06-11
Md4c HIGH 7.8
CVE-2018-12112

md_build_attribute in md4c.c in md4c 0.2.6 allows remote attackers to cause a denial of service (Segmentation fault and application crash) or possibl…

No fix yet
Fix from $1,950 2018-06-11
Safari HIGH 8.8
CVE-2018-4233EPSS 53%

An issue was discovered in certain Apple products. iOS before 11.4 is affected. Safari before 11.1.1 is affected. iCloud before 7.5 on Windows is aff…

Fix: 4.3.1 / 7.5+
Fix from $1,950 2018-06-08
Mac Os X HIGH 7.8
CVE-2018-4234

An issue was discovered in certain Apple products. macOS before 10.13.5 is affected. The issue involves the "IOHIDFamily" component. It allows attack…

Fix: 10.13.5+
Fix from $1,950 2018-06-08
Mac Os X HIGH 7.8
CVE-2018-4236

An issue was discovered in certain Apple products. macOS before 10.13.5 is affected. The issue involves the "IOGraphics" component. It allows attacke…

Fix: 10.13.5+
Fix from $1,950 2018-06-08
Apple Tv HIGH 7.8
CVE-2018-4241EPSS 8%

An issue was discovered in certain Apple products. iOS before 11.4 is affected. macOS before 10.13.5 is affected. tvOS before 11.4 is affected. watch…

Fix: 4.3.1 / 10.13.5+
Fix from $1,950 2018-06-08