Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Memory Buffer Bounds ErrorCWE-119 × clear
Debian Linux CRITICAL 9.8
CVE-2018-0487

ARM mbed TLS before 1.3.22, before 2.1.10, and before 2.7.0 allows remote attackers to execute arbitrary code or cause a denial of service (buffer ov…

Fix: 1.3.22 / 2.1.10+
Fix from $2,300 2018-02-13
Sync CRITICAL 9.8
CVE-2018-6892EPSS 93%

An issue was discovered in CloudMe before 1.11.0. An unauthenticated remote attacker that can connect to the "CloudMe Sync" client application listen…

Fix: after 1.10.9
Fix from $2,300 2018-02-11
Stb Vorbis HIGH 8.8
CVE-2018-1000050

Sean Barrett stb_vorbis version 1.12 and earlier contains a Buffer Overflow vulnerability in All vorbis decoding paths. that can result in memory cor…

Fix: after 1.12
Fix from $1,950 2018-02-09
Imagemagick MEDIUM 6.5
CVE-2018-6876

The OLEProperty class in ole/oleprop.cpp in libfpx 1.3.1-10, as used in ImageMagick 7.0.7-22 Q16 and other products, allows remote attackers to cause…

No fix yet
Fix from $1,600 2018-02-09
Nitro Pro HIGH 7.8
CVE-2013-3552

Nitro Pro 7.5.0.29 and earlier and Nitro Reader 2.5.0.45 and earlier allow remote attackers to execute arbitrary code via a crafted PDF file.

Fix: after 7.5.0.22
Fix from $1,950 2018-02-08
Nitro Pro HIGH 7.8
CVE-2013-3553

Nitro Pro 7.5.0.22 and earlier and Nitro Reader 2.5.0.36 and earlier allow remote attackers to execute arbitrary code via a crafted PDF file.

Fix: after 7.5.0.22
Fix from $1,950 2018-02-08
Carrier Routing System HIGH 8.6
CVE-2018-0132

A vulnerability in the forwarding information base (FIB) code of Cisco IOS XR Software could allow an unauthenticated, remote attacker to cause incon…

Mitigation only
Fix from $1,950 2018-02-08
Chrome HIGH 8.8
CVE-2017-5125

Heap buffer overflow in Skia in Google Chrome prior to 62.0.3202.62 allowed a remote attacker to potentially exploit heap corruption via a crafted HT…

Fix: 62.0.3202.62+
Fix from $1,950 2018-02-07
Chrome HIGH 8.8
CVE-2017-5128

Heap buffer overflow in Blink in Google Chrome prior to 62.0.3202.62 allowed a remote attacker to potentially exploit heap corruption via a crafted H…

Fix: 62.0.3202.62+
Fix from $1,950 2018-02-07
Chrome HIGH 8.8
CVE-2017-5132

Inappropriate implementation in V8 in Google Chrome prior to 62.0.3202.62 allowed a remote attacker to potentially exploit heap corruption via a craf…

Fix: 62.0.3202.62+
Fix from $1,950 2018-02-07
Audacity MEDIUM 5.5
CVE-2016-2540

Audacity before 2.1.2 allows remote attackers to cause a denial of service (memory corruption and application crash) via a crafted FORMATCHUNK struct…

Fix: 2.1.2+
Fix from $1,600 2018-02-07
Audacity MEDIUM 5.5
CVE-2016-2541

Audacity before 2.1.2 allows remote attackers to cause a denial of service (memory corruption and application crash) via a crafted MP2 file.

Fix: 2.1.2+
Fix from $1,600 2018-02-07
Foxit Reader HIGH 7.8
CVE-2016-6169EPSS 5%

Heap-based buffer overflow in Foxit Reader and PhantomPDF 7.3.4.311 and earlier on Windows allows remote attackers to cause a denial of service (memo…

Fix: after 7.3.4.311
Fix from $1,950 2018-02-07
Ccn Lite CRITICAL 9.8
CVE-2017-12466

CCN-lite before 2.00 allows context-dependent attackers to have unspecified impact via vectors related to ssl_halen when running ccn-lite-sim, which …

Fix: 2.0.0+
Fix from $2,300 2018-02-07
Ccn Lite CRITICAL 9.8
CVE-2017-12468

Buffer overflow in ccn-lite-ccnb2xml.c in CCN-lite before 2.00 allows context-dependent attackers to have unspecified impact via vectors involving th…

Fix: 2.0.0+
Fix from $2,300 2018-02-07
Ccn Lite CRITICAL 9.8
CVE-2017-12469

Buffer overflow in util/ccnl-common.c in CCN-lite before 2.00 allows context-dependent attackers to have unspecified impact by leveraging incorrect m…

Fix: 2.0.0+
Fix from $2,300 2018-02-07
Ccn Lite CRITICAL 9.8
CVE-2017-12471

The cnb_parse_lev function in CCN-lite before 2.00 allows context-dependent attackers to have unspecified impact by leveraging failure to check for o…

Fix: 2.0.0+
Fix from $2,300 2018-02-07
Openvms HIGH 7.8
CVE-2017-17482

An issue was discovered in OpenVMS through V8.4-2L2 on Alpha and through V8.4-2L1 on IA64, and VAX/VMS 4.0 and later. A malformed DCL command table m…

Fix: after 8.4-2l1
Fix from $1,950 2018-02-07
Debian Linux HIGH 8.8
CVE-2018-6799

The AcquireCacheNexus function in magick/pixel_cache.c in GraphicsMagick before 1.3.28 allows remote attackers to cause a denial of service (heap ove…

Fix: 1.3.28+
Fix from $1,950 2018-02-07
Mini Httpd CRITICAL 9.8
CVE-2017-17663

The htpasswd implementation of mini_httpd before v1.28 and of thttpd before v2.28 is affected by a buffer overflow that can be exploited remotely to …

Fix: 1.28 / 2.28+
Fix from $2,300 2018-02-06
Syncbreeze HIGH 8.8
CVE-2017-17996EPSS 5%

A buffer overflow vulnerability in "Add command" functionality exists in Flexense SyncBreeze Enterprise <= 10.3.14. The vulnerability can be triggere…

Fix: after 10.3.14
Fix from $1,950 2018-02-06
Wing HIGH 7.5
CVE-2018-5788

An issue was discovered in Extreme Networks ExtremeWireless WiNG 5.x before 5.8.6.9 and 5.9.x before 5.9.1.3. There is a Remote, Unauthenticated Deni…

Fix: 5.8.6.9 / 5.9.1.3+
Fix from $1,950 2018-02-05
Wing MEDIUM 5.3
CVE-2018-5790

An issue was discovered in Extreme Networks ExtremeWireless WiNG 5.x before 5.8.6.9 and 5.9.x before 5.9.1.3. There is Remote, Unauthenticated "Globa…

Fix: 5.8.6.9 / 5.9.1.3+
Fix from $1,600 2018-02-05
Wing HIGH 7.2
CVE-2018-5796

An issue was discovered in Extreme Networks ExtremeWireless WiNG 5.x before 5.8.6.9 and 5.9.x before 5.9.1.3. There is a Hidden Root Shell by enterin…

Fix: 5.8.6.9 / 5.9.1.3+
Fix from $1,950 2018-02-05
Syncbreeze CRITICAL 9.8
CVE-2018-6537

A buffer overflow vulnerability in the control protocol of Flexense SyncBreeze Enterprise v10.4.18 allows remote attackers to execute arbitrary code …

No fix yet
Fix from $2,300 2018-02-02
Kkcald CRITICAL 9.8
CVE-2018-0510

Buffer overflow in epg search result viewer (kkcald) 0.7.19 and earlier allows remote attackers to perform unintended operations or execute DoS (deni…

Fix: after 0.7.19
Fix from $2,300 2018-02-01
Glibc HIGH 7.0
CVE-2017-1000409

A buffer overflow in glibc 2.5 (released on September 29, 2006) and can be triggered through the LD_LIBRARY_PATH environment variable. Please note th…

No fix yet
Fix from $1,950 2018-02-01
Linux Kernel MEDIUM 5.9
CVE-2017-16913

The "stub_recv_cmd_submit()" function (drivers/usb/usbip/stub_rx.c) in the Linux Kernel before version 4.14.8, 4.9.71, and 4.4.114 when handling CMD_…

Fix: 4.1.49 / 4.4.107+
Fix from $1,600 2018-01-31
Asuswrt CRITICAL 9.6
CVE-2017-15655

Multiple buffer overflow vulnerabilities exist in the HTTPd server in Asus asuswrt version <=3.0.0.4.376.X. All have been fixed in version 3.0.0.4.37…

Fix: 3.0.0.4.378+
Fix from $2,300 2018-01-31
System Shield CRITICAL 9.8
CVE-2018-5701EPSS 18%

In Iolo System Shield AntiVirus and AntiSpyware 5.0.0.136, the amp.sys driver file contains an Arbitrary Write vulnerability due to not validating in…

No fix yet
Fix from $2,300 2018-01-31