Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Memory Buffer Bounds ErrorCWE-119 × clear
Junos CRITICAL 9.8
CVE-2018-0007

An unauthenticated network-based attacker able to send a maliciously crafted LLDP packet to the local segment, through a local segment broadcast, may…

Mitigation only
Fix from $2,300 2018-01-10
Android HIGH 7.8
CVE-2017-11080

In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, while processing a user supplied spar…

Patch available
Fix from $1,950 2018-01-10
Android HIGH 7.8
CVE-2017-11081

In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, there is a potential buffer overflow …

Patch available
Fix from $1,950 2018-01-10
Android HIGH 7.8
CVE-2017-14873

In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, in the pp_pgc_get_config() graphics d…

Patch available
Fix from $1,950 2018-01-10
Android HIGH 8.8
CVE-2017-14879

In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, by calling an IPA ioctl and searching…

Patch available
Fix from $1,950 2018-01-10
Android HIGH 7.8
CVE-2017-15848

In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, in the fastrpc kernel driver, a buffe…

Patch available
Fix from $1,950 2018-01-10
Android HIGH 7.8
CVE-2017-9689

In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, a specially-crafted HDMI CEC message …

Patch available
Fix from $1,950 2018-01-10
Junos MEDIUM 5.9
CVE-2018-0002

On SRX Series and MX Series devices with a Service PIC with any ALG enabled, a crafted TCP/IP response packet processed through the device results in…

Patch available
Fix from $1,600 2018-01-10
Handy Password CRITICAL 9.8
CVE-2017-17946

A buffer overflow in Handy Password 4.9.3 allows remote attackers to execute arbitrary code via a long "Title name" field in "mail box" data that is …

Mitigation only
Fix from $2,300 2018-01-10
Android HIGH 7.8
CVE-2017-11069

In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, manipulation of SafeSwitch Image data…

Patch available
Fix from $1,950 2018-01-10
1766 L32bxba Firmware CRITICAL 10.0
CVE-2017-16740EPSS 7%

A Buffer Overflow issue was discovered in Rockwell Automation Allen-Bradley MicroLogix 1400 Controllers, Series B and C Versions 21.002 and earlier. …

Fix: after 21.002
Fix from $2,300 2018-01-09
Driver \& Support Assistant MEDIUM 6.0
CVE-2018-3610

SEMA driver in Intel Driver and Support Assistant before version 3.1.1 allows a local attacker the ability to read and writing to Memory Status regis…

Fix: 3.1.1+
Fix from $1,600 2018-01-09
Chrome HIGH 8.8
CVE-2015-1290

The Google V8 engine, as used in Google Chrome before 44.0.2403.89 and QtWebEngineCore in Qt before 5.5.1, allows remote attackers to cause a denial …

Fix: 5.5.1 / 44.0.2403.89+
Fix from $1,950 2018-01-09
Barcode Activex Control HIGH 8.8
CVE-2018-5221

Multiple buffer overflows in BarCodeWiz BarCode before 6.7 ActiveX control (BarcodeWiz.DLL) allow remote attackers to execute arbitrary code via a lo…

Fix: 6.7+
Fix from $1,950 2018-01-09
Teamspeak3 MEDIUM 6.5
CVE-2014-7221EPSS 11%

TeamSpeak Client 3.0.14 and earlier allows remote authenticated users to cause a denial of service (buffer overflow and application crash) by connect…

Fix: after 3.0.14
Fix from $1,600 2018-01-08
Debian Linux CRITICAL 9.8
CVE-2018-5208

In Irssi before 1.0.6, a calculation error in the completion code could cause a heap buffer overflow when completing certain strings.

Fix: 1.0.6+
Fix from $2,300 2018-01-06
Xen MEDIUM 6.5
CVE-2018-5244

In Xen 4.10, new infrastructure was introduced as part of an overhaul to how MSR emulation happens for guests. Unfortunately, one tracking structure …

Mitigation only
Fix from $1,600 2018-01-05
Webaccess CRITICAL 9.8
CVE-2017-16724

A Stack-based Buffer Overflow issue was discovered in Advantech WebAccess versions prior to 8.3. There are multiple instances of a vulnerability that…

Fix: 8.3+
Fix from $2,300 2018-01-05
Webex Business Suite HIGH 7.8
CVE-2018-0103

A Buffer Overflow vulnerability in Cisco WebEx Network Recording Player for Advanced Recording Format (ARF) files could allow a local attacker to exe…

Mitigation only
Fix from $1,950 2018-01-04
Miniupnpd HIGH 7.8
CVE-2017-1000494

Uninitialized stack variable vulnerability in NameValueParserEndElt (upnpreplyparse.c) in miniupnpd < 2.0 allows an attacker to cause Denial of Servi…

Fix: 2.0+
Fix from $1,950 2018-01-03
Gravity CRITICAL 9.8
CVE-2017-1000437

Creolabs Gravity 1.0 contains a stack based buffer overflow in the operator_string_add function, resulting in remote code execution.

No fix yet
Fix from $2,300 2018-01-02
Rust Base64 CRITICAL 9.8
CVE-2017-1000430

rust-base64 version <= 0.5.1 is vulnerable to a buffer overflow when calculating the size of a buffer to use when encoding base64 using the 'encode_c…

Fix: after 0.5.1
Fix from $2,300 2018-01-02
Wildmidi HIGH 7.8
CVE-2017-1000418

The WildMidi_Open function in WildMIDI since commit d8a466829c67cacbb1700beded25c448d99514e5 allows remote attackers to cause a denial of service (he…

Fix: after 0.4.1
Fix from $1,950 2018-01-02
Debian Linux HIGH 8.8
CVE-2017-1000456

freedesktop.org libpoppler 0.60.1 fails to validate boundaries in TextPool::addWord, leading to overflow in subsequent calculations.

Patch available
Fix from $1,950 2018-01-02
Debian Linux MEDIUM 6.5
CVE-2017-17760

OpenCV 3.3.1 has a Buffer Overflow in the cv::PxMDecoder::readData function in grfmt_pxm.cpp, because an incorrect size value is used.

Patch available
Fix from $1,600 2017-12-29
Nettransport Download Manager CRITICAL 9.8
CVE-2017-17968EPSS 40%

A buffer overflow vulnerability in NetTransport.exe in NetTransport Download Manager 2.96L and earlier could allow remote HTTP servers to execute arb…

Fix: after 2.96l
Fix from $2,300 2017-12-29
Allmediaserver CRITICAL 9.8
CVE-2017-17932EPSS 54%

A buffer overflow vulnerability exists in MediaServer.exe in ALLPlayer ALLMediaServer 0.95 and earlier that could allow remote attackers to execute a…

Fix: after 0.95
Fix from $2,300 2017-12-28
Network Security Services HIGH 7.8
CVE-2017-11695

Heap-based buffer overflow in the alloc_segs function in lib/dbm/src/hash.c in Mozilla Network Security Services (NSS) allows context-dependent attac…

No fix yet
Fix from $1,950 2017-12-27
Network Security Services HIGH 7.8
CVE-2017-11696

Heap-based buffer overflow in the __hash_open function in lib/dbm/src/hash.c in Mozilla Network Security Services (NSS) allows context-dependent atta…

No fix yet
Fix from $1,950 2017-12-27
Network Security Services HIGH 7.8
CVE-2017-11697

The __hash_open function in hash.c:229 in Mozilla Network Security Services (NSS) allows context-dependent attackers to cause a denial of service (fl…

No fix yet
Fix from $1,950 2017-12-27