Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Memory Buffer Bounds ErrorCWE-119 × clear
Stdu Viewer HIGH 7.8
CVE-2017-14690

STDU Viewer 1.6.375 allows attackers to execute arbitrary code or cause a denial of service via a crafted .jb2 file, related to "Data from Faulting A…

Mitigation only
Fix from $1,950 2017-09-22
Stdu Viewer HIGH 7.8
CVE-2017-14691

STDU Viewer 1.6.375 allows attackers to cause a denial of service or possibly have unspecified other impact via a crafted .jb2 file, related to "Data…

Mitigation only
Fix from $1,950 2017-09-22
Stdu Viewer HIGH 7.8
CVE-2017-14692

STDU Viewer 1.6.375 allows attackers to execute arbitrary code or cause a denial of service via a crafted .jb2 file, related to a "User Mode Write AV…

Mitigation only
Fix from $1,950 2017-09-22
Irfanview HIGH 7.8
CVE-2017-14693

IrfanView 4.44 - 32bit allows attackers to cause a denial of service or possibly have unspecified other impact via a crafted .djvu file, related to "…

Mitigation only
Fix from $1,950 2017-09-22
Sam2p CRITICAL 9.8
CVE-2017-14637

In sam2p 0.49.3, there is an invalid read of size 2 in the parse_rgb function in in_xpm.cpp. However, this can also cause a write to an illegal addre…

No fix yet
Fix from $2,300 2017-09-22
Mupdf HIGH 7.8
CVE-2017-14685

Artifex MuPDF 1.11 allows attackers to cause a denial of service or possibly have unspecified other impact via a crafted .xps file, related to "Data …

No fix yet
Fix from $1,950 2017-09-22
Mupdf HIGH 7.8
CVE-2017-14686

Artifex MuPDF 1.11 allows attackers to execute arbitrary code or cause a denial of service via a crafted .xps file, related to a "User Mode Write AV …

No fix yet
Fix from $1,950 2017-09-22
Mupdf HIGH 7.8
CVE-2017-14687

Artifex MuPDF 1.11 allows attackers to cause a denial of service or possibly have unspecified other impact via a crafted .xps file, related to "Data …

No fix yet
Fix from $1,950 2017-09-22
Imagemagick HIGH 8.8
CVE-2017-14682

GetNextToken in MagickCore/token.c in ImageMagick 7.0.6 allows remote attackers to cause a denial of service (heap-based buffer overflow and applicat…

Patch available
Fix from $1,950 2017-09-21
Android HIGH 7.8
CVE-2017-10997

In all Qualcomm products with Android releases from CAF using the Linux kernel, using a debugfs node, a write to a PCIe register can cause corruption…

Fix: after 8.0
Fix from $1,950 2017-09-21
Android HIGH 7.8
CVE-2017-10998

In all Qualcomm products with Android releases from CAF using the Linux kernel, in audio_aio_ion_lookup_vaddr, the buffer length, which is user input…

Fix: after 8.0
Fix from $1,950 2017-09-21
Android HIGH 7.8
CVE-2017-10999

In all Qualcomm products with Android releases from CAF using the Linux kernel, concurrent calls into ioctl RMNET_IOCTL_ADD_MUX_CHANNEL in ipa wan dr…

Fix: after 8.0
Fix from $1,950 2017-09-21
Android HIGH 7.8
CVE-2017-11000

In all Qualcomm products with Android releases from CAF using the Linux kernel, in an ISP Camera kernel driver function, an incorrect bounds check ma…

Fix: after 8.0
Fix from $1,950 2017-09-21
Android HIGH 7.0
CVE-2017-8280

In all Qualcomm products with Android releases from CAF using the Linux kernel, during the wlan calibration data store and retrieve operation, there …

Fix: after 8.0
Fix from $1,950 2017-09-21
Android HIGH 7.8
CVE-2017-9677

In all Qualcomm products with Android releases from CAF using the Linux kernel, in function msm_compr_ioctl_shared, variable "ddp->params_length" cou…

Fix: after 8.0
Fix from $1,950 2017-09-21
Debian Linux HIGH 8.8
CVE-2017-14160

The bark_noise_hybridmp function in psy.c in Xiph.Org libvorbis 1.3.5 allows remote attackers to cause a denial of service (out-of-bounds access and …

Mitigation only
Fix from $1,950 2017-09-21
Sam2p CRITICAL 9.8
CVE-2017-14628

In sam2p 0.49.3, a heap-based buffer overflow exists in the pcxLoadImage24 function of the file in_pcx.cpp.

No fix yet
Fix from $2,300 2017-09-21
Sam2p CRITICAL 9.8
CVE-2017-14631

In sam2p 0.49.3, the pcxLoadRaster function in in_pcx.cpp has an integer signedness error leading to a heap-based buffer overflow.

No fix yet
Fix from $2,300 2017-09-21
Debian Linux CRITICAL 9.8
CVE-2017-14632EPSS 6%

Xiph.Org libvorbis 1.3.5 allows Remote Code Execution upon freeing uninitialized memory in the function vorbis_analysis_headerout() in info.c when vi…

Mitigation only
Fix from $2,300 2017-09-21
Sf302 08pp Firmware MEDIUM 6.5
CVE-2017-6720

A vulnerability in the Secure Shell (SSH) subsystem of Cisco Small Business Managed Switches software could allow an authenticated, remote attacker t…

Fix: 1.4.8.06+
Fix from $1,600 2017-09-21
Perl HIGH 7.5
CVE-2017-12837EPSS 6%

Heap-based buffer overflow in the S_regatom function in regcomp.c in Perl 5 before 5.24.3-RC1 and 5.26.x before 5.26.1-RC1 allows remote attackers to…

Fix: after 5.24.2
Fix from $1,950 2017-09-19
Perl CRITICAL 9.1
CVE-2017-12883EPSS 6%

Buffer overflow in the S_grok_bslash_N function in regcomp.c in Perl 5 before 5.24.3-RC1 and 5.26.x before 5.26.1-RC1 allows remote attackers to disc…

Fix: after 5.24.2
Fix from $2,300 2017-09-19
Ruby HIGH 7.5
CVE-2017-14033EPSS 8%

The decode method in the OpenSSL::ASN1 module in Ruby before 2.2.8, 2.3.x before 2.3.5, and 2.4.x through 2.4.1 allows attackers to cause a denial of…

Patch available
Fix from $1,950 2017-09-19
Cloud Web Security HIGH 7.5
CVE-2015-0689

Cisco Cloud Web Security before 3.0.1.7 allows remote attackers to bypass intended filtering protection mechanisms by leveraging improper handling of…

Fix: after 3.0.1.2
Fix from $1,950 2017-09-19
Stdu Viewer HIGH 7.8
CVE-2017-14561

STDU Viewer 1.6.375 allows attackers to execute arbitrary code or cause a denial of service via a crafted .xps file, related to an "Illegal Instructi…

Mitigation only
Fix from $1,950 2017-09-18
Stdu Viewer HIGH 7.8
CVE-2017-14562

STDU Viewer 1.6.375 allows attackers to cause a denial of service or possibly have unspecified other impact via a crafted .xps file, related to an "E…

Mitigation only
Fix from $1,950 2017-09-18
Stdu Viewer HIGH 7.8
CVE-2017-14563

STDU Viewer 1.6.375 allows attackers to execute arbitrary code or cause a denial of service via a crafted .xps file, related to a "Read Access Violat…

Mitigation only
Fix from $1,950 2017-09-18
Stdu Viewer HIGH 7.8
CVE-2017-14564

STDU Viewer 1.6.375 allows attackers to cause a denial of service or possibly have unspecified other impact via a crafted .xps file, related to "Data…

Mitigation only
Fix from $1,950 2017-09-18
Stdu Viewer HIGH 7.8
CVE-2017-14565

STDU Viewer 1.6.375 allows attackers to cause a denial of service or possibly have unspecified other impact via a crafted .xps file, related to a "Po…

Mitigation only
Fix from $1,950 2017-09-18
Stdu Viewer HIGH 7.8
CVE-2017-14566

STDU Viewer 1.6.375 allows attackers to execute arbitrary code or cause a denial of service via a crafted .xps file, related to a "User Mode Write AV…

Mitigation only
Fix from $1,950 2017-09-18