Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Memory Buffer Bounds ErrorCWE-119 × clear
Mate 9 Firmware HIGH 7.8
CVE-2017-2716

The camerafs driver in Mate 9 Versions earlier than MHA-AL00BC00B173 has buffer overflow vulnerability. An attacker tricks a user into installing a m…

Mitigation only
Fix from $1,950 2017-11-22
P10 Firmware HIGH 8.4
CVE-2017-2724

Bastet in P10 Plus and P10 smart phones with software earlier than VKY-AL00C00B123 versions, earlier than VTR-AL00C00B123 versions have a buffer over…

Mitigation only
Fix from $1,950 2017-11-22
P10 Firmware HIGH 7.8
CVE-2017-2725

Bastet in P10 Plus and P10 smart phones with software earlier than VKY-AL00C00B123 versions, earlier than VTR-AL00C00B123 versions have a buffer over…

Mitigation only
Fix from $1,950 2017-11-22
P10 Firmware HIGH 8.4
CVE-2017-2726

Bastet in P10 Plus and P10 smart phones with software earlier than VKY-AL00C00B123 versions, earlier than VTR-AL00C00B123 versions have a buffer over…

Mitigation only
Fix from $1,950 2017-11-22
Honor 5a Firmware HIGH 7.8
CVE-2017-2729

The boot loaders in Honor 5A smart phones with software Versions earlier than CAM-TL00C01B193,Versions earlier than CAM-TL00HC00B193,Versions earlier…

Mitigation only
Fix from $1,950 2017-11-22
Y6ii Firmware HIGH 7.8
CVE-2017-2696

The emerg_data driver in CAM-L21C10B130 and earlier versions, CAM-L21C185B141 and earlier versions has a buffer overflow vulnerability. An attacker w…

Mitigation only
Fix from $1,950 2017-11-22
Gt3 Firmware HIGH 7.8
CVE-2017-2697

The goldeneye driver in NMO-L31C432B120 and earlier versions,NEM-L21C432B100 and earlier versions,NEM-L51C432B120 and earlier versions,KNT-AL10C746B1…

Mitigation only
Fix from $1,950 2017-11-22
P8 Firmware HIGH 7.8
CVE-2017-2698

The ddr_devfreq driver in versions earlier than GRA-UL00C00B197 has buffer overflow vulnerability. An attacker with the root privilege of the Android…

Mitigation only
Fix from $1,950 2017-11-22
Manageability Engine Firmware HIGH 7.8
CVE-2017-5705

Multiple buffer overflows in kernel in Intel Manageability Engine Firmware 11.0/11.5/11.6/11.7/11.10/11.20 allow attacker with local access to the sy…

Mitigation only
Fix from $1,950 2017-11-21
Server Platform Services Firmware HIGH 7.8
CVE-2017-5706

Multiple buffer overflows in kernel in Intel Server Platform Services Firmware 4.0 allow attacker with local access to the system to execute arbitrar…

Patch available
Fix from $1,950 2017-11-21
Trusted Execution Engine Firmware HIGH 7.8
CVE-2017-5707

Multiple buffer overflows in kernel in Intel Trusted Execution Engine Firmware 3.0 allow attacker with local access to the system to execute arbitrar…

Mitigation only
Fix from $1,950 2017-11-21
Manageability Engine Firmware HIGH 7.8
CVE-2017-5711

Multiple buffer overflows in Active Management Technology (AMT) in Intel Manageability Engine Firmware 8.x/9.x/10.x/11.0/11.5/11.6/11.7/11.10/11.20 a…

Fix: after 10.0.55.3000
Fix from $1,950 2017-11-21
Manageability Engine Firmware HIGH 7.2
CVE-2017-5712

Buffer overflow in Active Management Technology (AMT) in Intel Manageability Engine Firmware 8.x/9.x/10.x/11.0/11.5/11.6/11.7/11.10/11.20 allows atta…

Fix: after 10.0.55.3000
Fix from $1,950 2017-11-21
Vdv 23 Firmware HIGH 7.5
CVE-2017-16902EPSS 8%

On the Vonage VDV-23 115 3.2.11-0.9.40 home router, sending a long string of characters in the loginPassword and/or loginUsername field to goform/log…

No fix yet
Fix from $1,950 2017-11-20
Libming MEDIUM 5.5
CVE-2017-16898

The printMP3Headers function in util/listmp3.c in libming v0.4.8 or earlier is vulnerable to a global buffer overflow, which may allow attackers to c…

Fix: after 0.4.8
Fix from $1,600 2017-11-20
Exiv2 MEDIUM 5.5
CVE-2017-1000127

Exiv2 0.26 contains a heap buffer overflow in tiff parser

Mitigation only
Fix from $1,600 2017-11-17
Htslib CRITICAL 9.8
CVE-2017-1000206

samtools htslib library version 1.4.0 and earlier is vulnerable to buffer overflow in the CRAM rANS codec resulting in potential arbitrary code execu…

Fix: after 1.4.0
Fix from $2,300 2017-11-17
Workstation HIGH 8.8
CVE-2017-4934

VMware Workstation (12.x before 12.5.8) and Fusion (8.x before 8.5.9) contain a heap buffer-overflow vulnerability in VMNAT device. This issue may al…

Patch available
Fix from $1,950 2017-11-17
Upx HIGH 7.8
CVE-2017-16869

p_mach.cpp in UPX 3.94 allows remote attackers to cause a denial of service (invalid memory access and application crash) or possibly have unspecifie…

Mitigation only
Fix from $1,950 2017-11-17
Debian Linux CRITICAL 9.8
CVE-2017-16872

An issue was discovered in Teluu pjproject (pjlib and pjlib-util) in PJSIP before 2.7.1. Parsing the numeric header fields in a SIP message (like cse…

Fix: 2.7.1+
Fix from $2,300 2017-11-17
Tcmu Runner HIGH 7.5
CVE-2017-1000198

tcmu-runner daemon version 0.9.0 to 1.2.0 is vulnerable to invalid memory references in the handler_glfs.so handler resulting in denial of service

Patch available
Fix from $1,950 2017-11-17
Swftools MEDIUM 5.5
CVE-2017-1000174

In SWFTools, an address access exception was found in swfdump swf_GetBits().

Mitigation only
Fix from $1,600 2017-11-17
Swftools MEDIUM 5.5
CVE-2017-1000176

In SWFTools, a memcpy buffer overflow was found in swfc.

Mitigation only
Fix from $1,600 2017-11-17
Swftools MEDIUM 5.5
CVE-2017-1000185

In SWFTools, a memcpy buffer overflow was found in gif2swf.

Mitigation only
Fix from $1,600 2017-11-17
Swftools MEDIUM 5.5
CVE-2017-1000186

In SWFTools, a stack overflow was found in pdf2swf.

No fix yet
Fix from $1,600 2017-11-17
Swftools HIGH 7.8
CVE-2017-1000187

In SWFTools, an address access exception was found in pdf2swf. FoFiTrueType::writeTTF()

Mitigation only
Fix from $1,950 2017-11-17
Picotcp CRITICAL 9.8
CVE-2017-1000210

picoTCP (versions 1.7.0 - 1.5.0) is vulnerable to stack buffer overflow resulting in code execution or denial of service attack

Patch available
Fix from $2,300 2017-11-17
Lightftp CRITICAL 9.8
CVE-2017-1000218

LightFTP version 1.1 is vulnerable to a buffer overflow in the "writelogentry" function resulting a denial of services or a remote code execution.

No fix yet
Fix from $2,300 2017-11-17
Android HIGH 7.8
CVE-2017-0842

An elevation of privilege vulnerability in the Android system (bluetooth). Product: Android. Versions: 6.0, 6.0.1, 7.0, 7.1.1, 7.1.2, 8.0. Android ID…

Patch available
Fix from $1,950 2017-11-16
Android HIGH 7.8
CVE-2017-11085

In android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, an integer overflow leading to a buff…

Patch available
Fix from $1,950 2017-11-16