Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Memory Buffer Bounds ErrorCWE-119 × clear
Phantompdf HIGH 8.8
CVE-2018-5674

This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Foxit Reader before 9.1 and PhantomPDF before 9.1…

Fix: after 9.0.1.1049
Fix from $1,950 2018-05-24
Phantompdf HIGH 8.8
CVE-2018-5676

This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Foxit Reader before 9.1 and PhantomPDF before 9.1…

Fix: after 9.0.1.1049
Fix from $1,950 2018-05-24
Phantompdf HIGH 8.8
CVE-2018-5678

This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Foxit Reader before 9.1 and PhantomPDF before 9.1…

Fix: after 9.0.1.1049
Fix from $1,950 2018-05-24
Debian Linux MEDIUM 5.5
CVE-2018-1000199

The Linux Kernel version 3.18 contains a dangerous feature vulnerability in modify_user_hw_breakpoint() that can result in crash and possibly memory …

Patch available
Fix from $1,600 2018-05-24
Ubuntu Linux HIGH 7.5
CVE-2018-1123EPSS 9%

procps-ng before version 3.3.15 is vulnerable to a denial of service in ps via mmap buffer overflow. Inbuilt protection in ps maps a guard page at th…

Fix: 3.3.15+
Fix from $1,950 2018-05-23
Wireshark HIGH 7.5
CVE-2018-11355

In Wireshark 2.6.0, the RTCP dissector could crash. This was addressed in epan/dissectors/packet-rtcp.c by avoiding a buffer overflow for packet stat…

Mitigation only
Fix from $1,950 2018-05-22
Wireshark HIGH 7.5
CVE-2018-11360

In Wireshark 2.6.0, 2.4.0 to 2.4.6, and 2.2.0 to 2.2.14, the GSM A DTAP dissector could crash. This was addressed in epan/dissectors/packet-gsm_a_dta…

Fix: after 2.4.6
Fix from $1,950 2018-05-22
Wireshark HIGH 7.5
CVE-2018-11361

In Wireshark 2.6.0, the IEEE 802.11 protocol dissector could crash. This was addressed in epan/crypt/dot11decrypt.c by avoiding a buffer overflow dur…

Mitigation only
Fix from $1,950 2018-05-22
Radare2 HIGH 7.8
CVE-2018-11378

The wasm_dis() function in libr/asm/arch/wasm/wasm.c in or possibly have unspecified other impact via a crafted WASM file.

Patch available
Fix from $1,950 2018-05-22
Client HIGH 7.8
CVE-2018-7687

The Micro Focus Client for OES before version 2 SP4 IR8a has a vulnerability that could allow a local attacker to elevate privileges via a buffer ove…

Fix: after 2.0
Fix from $1,950 2018-05-21
Indesign HIGH 7.8
CVE-2018-4928

Adobe InDesign versions 13.0 and below have an exploitable Memory corruption vulnerability. Successful exploitation could lead to arbitrary code exec…

Fix: after 13.0
Fix from $1,950 2018-05-19
Glibc CRITICAL 9.8
CVE-2017-18269

An SSE2-optimized memmove implementation for i386 in sysdeps/i386/i686/multiarch/memcpy-sse2-unaligned.S in the GNU C Library (aka glibc or libc6) 2.…

Fix: after 2.27
Fix from $2,300 2018-05-18
Android HIGH 7.8
CVE-2017-15855

In Qualcomm Android for MSM, Firefox OS for MSM, and QRD Android with all Android releases from CAF using the Linux kernel before security patch leve…

Patch available
Fix from $1,950 2018-05-17
Android HIGH 7.8
CVE-2018-3567

In Qualcomm Android for MSM, Firefox OS for MSM, and QRD Android with all Android releases from CAF using the Linux kernel before security patch leve…

Patch available
Fix from $1,950 2018-05-17
Android HIGH 7.8
CVE-2018-3568

In Qualcomm Android for MSM, Firefox OS for MSM, and QRD Android with all Android releases from CAF using the Linux kernel before security patch leve…

Patch available
Fix from $1,950 2018-05-17
Android HIGH 7.8
CVE-2018-5827

In Qualcomm Android for MSM, Firefox OS for MSM, and QRD Android with all Android releases from CAF using the Linux kernel before security patch leve…

Patch available
Fix from $1,950 2018-05-17
Fl Switch 3005 Firmware HIGH 8.1
CVE-2018-10728

All Phoenix Contact managed FL SWITCH 3xxx, 4xxx, 48xx products running firmware version 1.0 to 1.33 are prone to buffer overflows (a different vulne…

Fix: after 1.33
Fix from $1,950 2018-05-17
Fl Switch 3005 Firmware CRITICAL 9.0
CVE-2018-10731

All Phoenix Contact managed FL SWITCH 3xxx, 4xxx, 48xx products running firmware version 1.0 to 1.33 are prone to buffer overflows when handling very…

Fix: after 1.33
Fix from $2,300 2018-05-17
Foxit Reader HIGH 8.8
CVE-2018-9974

This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Foxit Reader 9.0.1.1049. User interaction is requ…

Fix: after 9.0.1.1049
Fix from $1,950 2018-05-17
Foxit Reader HIGH 8.8
CVE-2018-9947

This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Foxit Reader 9.0.0.29935. User interaction is req…

Fix: after 9.0.1.1049
Fix from $1,950 2018-05-17
Foxit Reader HIGH 8.8
CVE-2018-9949

This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Foxit Reader 9.0.0.29935. User interaction is req…

Fix: after 9.0.1.1049
Fix from $1,950 2018-05-17
Foxit Reader HIGH 8.8
CVE-2018-10488

This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Foxit Reader 9.0.0.29935. User interaction is req…

Fix: after 9.0.1.1049
Fix from $1,950 2018-05-17
Foxit Reader HIGH 8.8
CVE-2018-10490

This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Foxit Reader 9.0.0.29935. User interaction is req…

Fix: after 9.0.1.1049
Fix from $1,950 2018-05-17
Foxit Reader HIGH 8.8
CVE-2018-10494

This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Foxit Reader 9.0.1.1049. User interaction is requ…

Fix: after 9.0.1.1049
Fix from $1,950 2018-05-17
Libav MEDIUM 6.5
CVE-2018-11224

An issue was discovered in Libav 12.3. A read access violation in the in_table_init16 function in libavcodec/aacsbr.c allows remote attackers to caus…

No fix yet
Fix from $1,600 2018-05-17
Libming HIGH 8.8
CVE-2018-11225

The dcputs function in decompile.c in libming through 0.4.8 mishandles cases where the header indicates a file size greater than the actual size, whi…

Fix: after 0.4.8
Fix from $1,950 2018-05-17
Libming HIGH 8.8
CVE-2018-11226

The getString function in decompile.c in libming through 0.4.8 mishandles cases where the header indicates a file size greater than the actual size, …

Fix: after 0.4.8
Fix from $1,950 2018-05-17
Syscfg MEDIUM 5.5
CVE-2018-3661

Buffer overflow in Intel system Configuration utilities selview.exe and syscfg.exe before version 14 build 11 allows a local user to crash these serv…

Fix: 14.0+
Fix from $1,600 2018-05-15
Libav HIGH 7.5
CVE-2018-11102

An issue was discovered in Libav 12.3. A read access violation in the mov_probe function in libavformat/mov.c allows remote attackers to cause a deni…

Mitigation only
Fix from $1,950 2018-05-15
Libming HIGH 8.8
CVE-2018-11100

The decompileSETTARGET function in decompile.c in libming through 0.4.8 mishandles cases where the header indicates a file size greater than the actu…

Fix: after 0.4.8
Fix from $1,950 2018-05-15