Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Memory Buffer Bounds ErrorCWE-119 × clear
Android HIGH 7.5
CVE-2017-9696

In android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, buffer over-read is possible in camer…

Patch available
Fix from $1,950 2017-11-16
Android HIGH 7.8
CVE-2017-9719

In android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, in the kernel driver MDSS, a buffer o…

Patch available
Fix from $1,950 2017-11-16
Android HIGH 7.8
CVE-2017-9721

In android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, in the boot loader, a buffer overflow…

Patch available
Fix from $1,950 2017-11-16
Tegra X1 Firmware HIGH 7.8
CVE-2017-0866

An elevation of privilege vulnerability in the Direct rendering infrastructure of the NVIDIA Tegra X1 where an unchecked input from userspace is pass…

Mitigation only
Fix from $1,950 2017-11-16
Android HIGH 7.8
CVE-2017-11017

In android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, while flashing a specially crafted UB…

Patch available
Fix from $1,950 2017-11-16
Android HIGH 7.8
CVE-2017-11018

In android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, array access out of bounds may occur …

Patch available
Fix from $1,950 2017-11-16
Android HIGH 7.8
CVE-2017-11029

In android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, camera application triggers "user-mem…

Patch available
Fix from $1,950 2017-11-16
Procmail CRITICAL 9.8
CVE-2017-16844EPSS 13%

Heap-based buffer overflow in the loadbuf function in formisc.c in formail in procmail 3.22 allows remote attackers to cause a denial of service (app…

Mitigation only
Fix from $2,300 2017-11-16
Debian Linux CRITICAL 9.1
CVE-2017-8807

vbf_stp_error in bin/varnishd/cache/cache_fetch.c in Varnish HTTP Cache 4.1.x before 4.1.9 and 5.x before 5.2.1 allows remote attackers to obtain sen…

Fix: 4.1.9 / 5.2.1+
Fix from $2,300 2017-11-16
Binutils HIGH 7.8
CVE-2017-16826

The coff_slurp_line_table function in coffcode.h in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29.1, all…

Patch available
Fix from $1,950 2017-11-15
Binutils HIGH 7.8
CVE-2017-16827

The aout_get_external_symbols function in aoutx.h in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29.1, al…

Patch available
Fix from $1,950 2017-11-15
Office HIGH 8.8
CVE-2017-11854EPSS 8%

Microsoft Word 2007 Service Pack 3, Microsoft Word 2010 Service Pack 2, Microsoft Office 2010 Service Pack 2, and Microsoft Office Compatibility Pack…

Patch available
Fix from $1,950 2017-11-15
Chakracore HIGH 7.5
CVE-2017-11858EPSS 8%

ChakraCore and Internet Explorer in Microsoft Windows 7 SP1, Windows Server 2008 and R2 SP1, Windows 8.1 and Windows RT 8.1, Windows Server 2012 and …

Patch available
Fix from $1,950 2017-11-15
Chakracore HIGH 7.5
CVE-2017-11861EPSS 64%

Microsoft Edge in Windows 10 1607, 1703, 1709, Windows Server 2016 and Windows Server, version 1709 allows an attacker to gain the same user rights a…

Patch available
Fix from $1,950 2017-11-15
Chakracore HIGH 7.5
CVE-2017-11862EPSS 8%

ChakraCore and Microsoft Edge in Windows 10 1709 and Windows Server, version 1709 allows an attacker to gain the same user rights as the current user…

Patch available
Fix from $1,950 2017-11-15
Chakracore HIGH 7.5
CVE-2017-11866EPSS 8%

ChakraCore and Microsoft Edge in Windows 10 Gold, 1511, 1607, 1703, 1709, Windows Server 2016 and Windows Server, version 1709 allows an attacker to …

Patch available
Fix from $1,950 2017-11-15
Chakracore HIGH 7.5
CVE-2017-11870EPSS 60%

ChakraCore and Microsoft Edge in Windows 10 1703, 1709, and Windows Server, version 1709 allows an attacker to gain the same user rights as the curre…

Patch available
Fix from $1,950 2017-11-15
Chakracore HIGH 7.5
CVE-2017-11871EPSS 8%

ChakraCore and Microsoft Edge in Windows 10 1703, 1709, and Windows Server, version 1709 allows an attacker to gain the same user rights as the curre…

Patch available
Fix from $1,950 2017-11-15
Chakracore HIGH 7.5
CVE-2017-11873EPSS 70%

ChakraCore and Microsoft Edge in Windows 10 1511, 1607, 1703, 1709, Windows Server 2016 and Windows Server, version 1709 allows an attacker to gain t…

Patch available
Fix from $1,950 2017-11-15
Excel HIGH 7.8
CVE-2017-11878EPSS 6%

Microsoft Excel 2007 Service Pack 3, Microsoft Excel 2010 Service Pack 2, Microsoft Excel 2013 Service Pack 1, Microsoft Excel 2013 RT Service Pack 1…

Patch available
Fix from $1,950 2017-11-15
Office HIGH 7.8
CVE-2017-11882 KEVEPSS 100%

Microsoft Office 2007 Service Pack 3, Microsoft Office 2010 Service Pack 2, Microsoft Office 2013 Service Pack 1, and Microsoft Office 2016 allow an …

Patch available
Fix from $1,950 2017-11-15
Excel HIGH 7.8
CVE-2017-11884EPSS 9%

Microsoft Excel 2016 Click-to-Run (C2R) allows an attacker to run arbitrary code in the context of the current user by failing to properly handle obj…

Patch available
Fix from $1,950 2017-11-15
Internet Explorer HIGH 7.5
CVE-2017-11827EPSS 8%

Internet Explorer in Microsoft Windows 7 SP1, Windows Server 2008 R2 SP1, Windows 8.1 and Windows RT 8.1, Windows Server 2012 and R2, and Microsoft E…

Patch available
Fix from $1,950 2017-11-15
Chakracore HIGH 7.5
CVE-2017-11836EPSS 8%

ChakraCore, and Microsoft Edge in Microsoft Windows 10 Gold, 1511, 1607, 1703, 1709, Windows Server 2016 and Windows Server, version 1709 allows an a…

Patch available
Fix from $1,950 2017-11-15
Chakracore HIGH 7.5
CVE-2017-11837EPSS 9%

ChakraCore and Internet Explorer in Microsoft Windows 7 SP1, Windows Server 2008 R2 SP1, Windows 8.1 and Windows RT 8.1, Windows Server 2012 R2, and …

Patch available
Fix from $1,950 2017-11-15
Chakracore HIGH 7.5
CVE-2017-11838EPSS 9%

ChakraCore and Internet Explorer in Microsoft Windows 7 SP1, Windows Server 2008 R2 SP1, Windows 8.1 and Windows RT 8.1, Windows Server 2012 R2, and …

Patch available
Fix from $1,950 2017-11-15
Edge HIGH 7.5
CVE-2017-11839EPSS 62%

Microsoft Edge in Windows 10 Gold, 1511, 1607, 1703, 1709, Windows Server 2016 and Windows Server, version 1709 allows an attacker to take control of…

Patch available
Fix from $1,950 2017-11-15
Chakracore HIGH 7.5
CVE-2017-11840EPSS 60%

ChakraCore and Microsoft Edge in Windows 10 Gold, 1511, 1607, 1703, 1709, Windows Server 2016 and Windows Server, version 1709 allows an attacker to …

Patch available
Fix from $1,950 2017-11-15
Chakracore HIGH 7.5
CVE-2017-11841EPSS 60%

ChakraCore and Microsoft Edge in Windows 10 Gold, 1511, 1607, 1703, 1709, Windows Server 2016 and Windows Server, version 1709 allows an attacker to …

Patch available
Fix from $1,950 2017-11-15
Chakracore HIGH 7.5
CVE-2017-11843EPSS 8%

ChakraCore and Internet Explorer in Microsoft Windows 7 SP1, Windows Server 2008 and R2 SP1, Windows 8.1 and Windows RT 8.1, Windows Server 2012 R2, …

Patch available
Fix from $1,950 2017-11-15