Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Memory Buffer Bounds ErrorCWE-119 × clear
Stdu Viewer HIGH 7.8
CVE-2017-14289

STDU Viewer 1.6.375 allows attackers to execute arbitrary code or cause a denial of service via a crafted .jb2 file, related to a "User Mode Write AV…

Mitigation only
Fix from $1,950 2017-09-11
Stdu Viewer HIGH 7.8
CVE-2017-14290

STDU Viewer 1.6.375 allows attackers to execute arbitrary code or cause a denial of service via a crafted .jb2 file, related to "Heap Corruption star…

Mitigation only
Fix from $1,950 2017-09-11
Stdu Viewer HIGH 7.8
CVE-2017-14291

STDU Viewer 1.6.375 allows attackers to execute arbitrary code or cause a denial of service via a crafted .jb2 file, related to a "User Mode Write AV…

Mitigation only
Fix from $1,950 2017-09-11
Windriver HIGH 7.8
CVE-2017-14153

This vulnerability allows local attackers to escalate privileges on Jungo WinDriver 12.4.0 and earlier. An attacker must first obtain the ability to …

Fix: after 12.5.1
Fix from $1,950 2017-09-11
Bento4 HIGH 7.8
CVE-2017-14257

In the SDK in Bento4 1.5.0-616, AP4_AtomSampleTable::GetSample in Core/Ap4AtomSampleTable.cpp contains a Read Memory Access Violation vulnerability. …

No fix yet
Fix from $1,950 2017-09-11
Bento4 HIGH 7.8
CVE-2017-14258

In the SDK in Bento4 1.5.0-616, SetItemCount in Core/Ap4StscAtom.h file contains a Write Memory Access Violation vulnerability. It is possible to exp…

No fix yet
Fix from $1,950 2017-09-11
Bento4 HIGH 7.8
CVE-2017-14259

In the SDK in Bento4 1.5.0-616, the AP4_StscAtom class in Ap4StscAtom.cpp contains a Write Memory Access Violation vulnerability. It is possible to e…

No fix yet
Fix from $1,950 2017-09-11
Bento4 HIGH 7.8
CVE-2017-14260

In the SDK in Bento4 1.5.0-616, the AP4_StssAtom class in Ap4StssAtom.cpp contains a Write Memory Access Violation vulnerability. It is possible to e…

No fix yet
Fix from $1,950 2017-09-11
Bento4 HIGH 7.8
CVE-2017-14261

In the SDK in Bento4 1.5.0-616, the AP4_StszAtom class in Ap4StszAtom.cpp file contains a Read Memory Access Violation vulnerability. It is possible …

No fix yet
Fix from $1,950 2017-09-11
Libraw CRITICAL 9.8
CVE-2017-14265

A Stack-based Buffer Overflow was discovered in xtrans_interpolate in internal/dcraw_common.cpp in LibRaw before 0.18.3. It could allow a remote deni…

Fix: after 0.18.2
Fix from $2,300 2017-09-11
Imagemagick HIGH 8.8
CVE-2017-14224

A heap-based buffer overflow in WritePCXImage in coders/pcx.c in ImageMagick 7.0.6-8 Q16 allows remote attackers to cause a denial of service or code…

Patch available
Fix from $1,950 2017-09-09
Android HIGH 7.8
CVE-2017-0757

A remote code execution vulnerability in the Android media framework (libavc). Product: Android. Versions: 6.0, 6.0.1, 7.0, 7.1.1, 7.1.2. Android ID:…

Patch available
Fix from $1,950 2017-09-08
Android HIGH 7.8
CVE-2017-0758

A remote code execution vulnerability in the Android media framework (libhevc). Product: Android. Versions: 5.0.2, 5.1.1, 6.0, 6.0.1, 7.0, 7.1.1, 7.1…

Patch available
Fix from $1,950 2017-09-08
Android HIGH 7.8
CVE-2017-0761

A remote code execution vulnerability in the Android media framework (libavc). Product: Android. Versions: 6.0, 6.0.1, 7.0, 7.1.1, 7.1.2, 8.0. Androi…

Patch available
Fix from $1,950 2017-09-08
Unified Communications Manager HIGH 7.5
CVE-2017-6791

A vulnerability in the Trust Verification Service (TVS) of Cisco Unified Communications Manager could allow an unauthenticated, remote attacker to ca…

Mitigation only
Fix from $1,950 2017-09-07
Mp3gain MEDIUM 5.5
CVE-2017-12911

The "apetag.c" file in MP3Gain 1.5.2.r2 has a vulnerability which results in a stack memory corruption when opening a crafted MP3 file.

Mitigation only
Fix from $1,600 2017-09-07
Mp3gain MEDIUM 5.5
CVE-2017-12912

The "mpglibDBL/layer3.c" file in MP3Gain 1.5.2.r2 has a vulnerability which results in a read access violation when opening a crafted MP3 file.

Mitigation only
Fix from $1,600 2017-09-07
Libaxl HIGH 8.8
CVE-2015-3450

Heap-based buffer overflow in libaxl 0.6.9 allows attackers to cause a denial of service (memory corruption) or execute arbitrary code via a crafted …

Mitigation only
Fix from $1,950 2017-09-06
Openjpeg HIGH 8.8
CVE-2017-14164EPSS 5%

A size-validation issue was discovered in opj_j2k_write_sot in lib/openjp2/j2k.c in OpenJPEG 2.2.0. The vulnerability causes an out-of-bounds write, …

Fix: 2.3.0+
Fix from $1,950 2017-09-06
Graphicsmagick MEDIUM 6.5
CVE-2017-14165

The ReadSUNImage function in coders/sun.c in GraphicsMagick 1.3.26 has an issue where memory allocation is excessive because it depends only on a len…

Patch available
Fix from $1,600 2017-09-06
Ledger HIGH 7.8
CVE-2017-2807

An exploitable buffer overflow vulnerability exists in the tag parsing functionality of Ledger-CLI 3.1.1. A specially crafted journal file can cause …

Mitigation only
Fix from $1,950 2017-09-05
Perceptive Document Filters HIGH 8.8
CVE-2017-2822

An exploitable code execution vulnerability exists in the image rendering functionality of Lexmark Perceptive Document Filters 11.3.0.2400. A specifi…

Mitigation only
Fix from $1,950 2017-09-05
Debian Linux HIGH 8.8
CVE-2017-14151EPSS 5%

An off-by-one error was discovered in opj_tcd_code_block_enc_allocate_data in lib/openjp2/tcd.c in OpenJPEG 2.2.0. The vulnerability causes an out-of…

Patch available
Fix from $1,950 2017-09-05
Ruby CRITICAL 9.8
CVE-2017-14064EPSS 9%

Ruby through 2.2.7, 2.3.x through 2.3.4, and 2.4.x through 2.4.1 can expose arbitrary memory during a JSON.generate call. The issues lies in using st…

Fix: after 2.2.7
Fix from $2,300 2017-08-31
Vx Search CRITICAL 9.8
CVE-2017-13708EPSS 12%

Buffer overflow in the web server service in VX Search Enterprise 10.0.14 allows remote attackers to execute arbitrary code via a crafted GET request.

No fix yet
Fix from $2,300 2017-08-31
Graphicsmagick MEDIUM 6.5
CVE-2017-14042

A memory allocation failure was discovered in the ReadPNMImage function in coders/pnm.c in GraphicsMagick 1.3.26. The vulnerability causes a big memo…

Patch available
Fix from $1,600 2017-08-30
Webaccess HIGH 8.8
CVE-2017-12704

A heap-based buffer overflow issue was discovered in Advantech WebAccess versions prior to V8.2_20170817. Researchers have identified multiple vulner…

Fix: after 8.2
Fix from $1,950 2017-08-30
Webaccess CRITICAL 9.8
CVE-2017-12706

A stack-based buffer overflow issue was discovered in Advantech WebAccess versions prior to V8.2_20170817. Researchers have identified multiple vulne…

Fix: after 8.2
Fix from $2,300 2017-08-30
Webaccess CRITICAL 9.8
CVE-2017-12708

An Improper Restriction Of Operations Within The Bounds Of A Memory Buffer issue was discovered in Advantech WebAccess versions prior to V8.2_2017081…

Fix: after 8.2
Fix from $2,300 2017-08-30
Openjpeg MEDIUM 6.5
CVE-2016-10504EPSS 8%

Heap-based buffer overflow vulnerability in the opj_mqc_byteout function in mqc.c in OpenJPEG before 2.2.0 allows remote attackers to cause a denial …

Fix: after 2.1.2
Fix from $1,600 2017-08-30