Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Memory Buffer Bounds ErrorCWE-119 × clear
Android CRITICAL 9.8
CVE-2014-9973

In all Qualcomm products with Android releases from CAF using the Linux kernel, validation of a buffer length was missing in a PlayReady DRM routine.

Mitigation only
Fix from $2,300 2017-08-18
Android CRITICAL 9.8
CVE-2014-9974

In all Qualcomm products with Android releases from CAF using the Linux kernel, validation of buffer lengths was missing in Keymaster.

Mitigation only
Fix from $2,300 2017-08-18
Android CRITICAL 9.8
CVE-2014-9976

In all Qualcomm products with Android releases from CAF using the Linux kernel, a buffer overflow vulnerability exists in 1x call processing.

Mitigation only
Fix from $2,300 2017-08-18
Android CRITICAL 9.8
CVE-2014-9977

In all Qualcomm products with Android releases from CAF using the Linux kernel, a buffer overflow vulnerability exists in PlayReady DRM.

No fix yet
Fix from $2,300 2017-08-18
Android CRITICAL 9.8
CVE-2014-9978

In all Qualcomm products with Android releases from CAF using the Linux kernel, a buffer overflow vulnerability exists in a QTEE service.

Mitigation only
Fix from $2,300 2017-08-18
Android CRITICAL 9.8
CVE-2014-9979

In all Qualcomm products with Android releases from CAF using the Linux kernel, a variable is uninitialized in a TrustZone system call potentially le…

Mitigation only
Fix from $2,300 2017-08-18
Android CRITICAL 9.8
CVE-2014-9980

In all Qualcomm products with Android releases from CAF using the Linux kernel, a Sample App failed to check a length potentially leading to unauthor…

No fix yet
Fix from $2,300 2017-08-18
Android CRITICAL 9.8
CVE-2014-9981

In all Qualcomm products with Android releases from CAF using the Linux kernel, an overflow check in the USB interface was insufficient during boot.

No fix yet
Fix from $2,300 2017-08-18
Android HIGH 7.0
CVE-2015-0576

In all Qualcomm products with Android releases from CAF using the Linux kernel, a buffer overflow vulnerability exists in HSDPA.

Patch available
Fix from $1,950 2017-08-18
Librest HIGH 7.5
CVE-2015-2675

The OAuth implementation in librest before 0.7.93 incorrectly truncates the pointer returned by the rest_proxy_call_get_url function, which allows re…

Patch available
Fix from $1,950 2017-08-18
Clustered Data Ontap HIGH 8.8
CVE-2017-12420

Heap-based buffer overflow in the SMB implementation in NetApp Clustered Data ONTAP before 8.3.2P8 and 9.0 before P2 allows remote authenticated user…

Fix: after 9.0
Fix from $1,950 2017-08-18
Musl CRITICAL 9.8
CVE-2015-1817

Stack-based buffer overflow in the inet_pton function in network/inet_pton.c in musl libc 0.9.15 through 1.0.4, and 1.1.0 through 1.1.7 allows attack…

Patch available
Fix from $2,300 2017-08-18
Unrar CRITICAL 9.8
CVE-2017-12942

libunrar.a in UnRAR before 5.5.7 has a buffer overflow in the Unpack::LongLZ function.

Fix: after 5.5.6
Fix from $2,300 2017-08-18
Augeas CRITICAL 9.8
CVE-2017-7555EPSS 5%

Augeas versions up to and including 1.8.0 are vulnerable to heap-based buffer overflow due to improper handling of escaped strings. Attacker could se…

Fix: after 1.8.0
Fix from $2,300 2017-08-17
Android HIGH 7.8
CVE-2017-8243

A buffer overflow can occur in all Qualcomm products with Android for MSM, Firefox OS for MSM, or QRD Android when processing a firmware image file.

Patch available
Fix from $1,950 2017-08-16
Iphone Os CRITICAL 9.8
CVE-2017-8248

A buffer overflow may occur in the processing of a downlink NAS message in Qualcomm Telephony as used in Apple iPhone 5 and later, iPad 4th generatio…

Fix: after 10.3.2
Fix from $2,300 2017-08-16
Monitouch V Sft HIGH 8.8
CVE-2017-9659EPSS 5%

A Stack-Based Buffer Overflow issue was discovered in Fuji Electric Monitouch V-SFT versions prior to Version 5.4.43.0. The stack-based buffer overfl…

Fix: after 5.4.42.0
Fix from $1,950 2017-08-14
Monitouch V Sft HIGH 8.8
CVE-2017-9660EPSS 5%

A Heap-Based Buffer Overflow was discovered in Fuji Electric Monitouch V-SFT versions prior to Version 5.4.43.0. A heap-based buffer overflow vulnera…

Fix: after 5.4.42.0
Fix from $1,950 2017-08-14
Fedora HIGH 7.5
CVE-2015-1783

The prefix variable in the get_or_define_ns function in Lasso before commit 6d854cef4211cdcdbc7446c978f23ab859847cdd allows remote attackers to cause…

Fix: after 2.4.0
Fix from $1,950 2017-08-11
Digital Editions HIGH 7.5
CVE-2017-11276EPSS 6%

Adobe Digital Editions 4.5.4 and earlier has an exploitable memory corruption vulnerability. Successful exploitation could lead to arbitrary code exe…

Fix: after 4.5.5
Fix from $1,950 2017-08-11
Digital Editions HIGH 7.5
CVE-2017-11277EPSS 6%

Adobe Digital Editions 4.5.4 and earlier has an exploitable memory corruption vulnerability. Successful exploitation could lead to arbitrary code exe…

Fix: after 4.5.5
Fix from $1,950 2017-08-11
Digital Editions HIGH 7.5
CVE-2017-11278EPSS 6%

Adobe Digital Editions 4.5.4 and earlier has an exploitable memory corruption vulnerability. Successful exploitation could lead to arbitrary code exe…

Fix: after 4.5.5
Fix from $1,950 2017-08-11
Digital Editions HIGH 7.5
CVE-2017-11280EPSS 6%

Adobe Digital Editions 4.5.4 and earlier has an exploitable memory corruption vulnerability. Successful exploitation could lead to arbitrary code exe…

Fix: after 4.5.5
Fix from $1,950 2017-08-11
Acrobat HIGH 8.8
CVE-2017-3016EPSS 8%

Adobe Acrobat Reader 2017.009.20058 and earlier, 2017.008.30051 and earlier, 2015.006.30306 and earlier, and 11.0.20 and earlier has an exploitable m…

Fix: 11.0.21 / 15.006.30355+
Fix from $1,950 2017-08-11
Digital Editions HIGH 7.5
CVE-2017-3091EPSS 8%

Adobe Digital Editions 4.5.4 and earlier versions 4.5.4 and earlier have an exploitable memory corruption vulnerability. Successful exploitation coul…

Fix: after 4.5.5
Fix from $1,950 2017-08-11
Acrobat HIGH 8.8
CVE-2017-3116EPSS 8%

Adobe Acrobat Reader 2017.009.20058 and earlier, 2017.008.30051 and earlier, 2015.006.30306 and earlier, and 11.0.20 and earlier has an exploitable m…

Fix: 11.0.21 / 15.006.30355+
Fix from $1,950 2017-08-11
Acrobat HIGH 8.8
CVE-2017-3117EPSS 19%

Adobe Acrobat Reader 2017.009.20058 and earlier, 2017.008.30051 and earlier, 2015.006.30306 and earlier, and 11.0.20 and earlier has an exploitable h…

Fix: 11.0.21 / 15.006.30355+
Fix from $1,950 2017-08-11
Acrobat HIGH 8.8
CVE-2017-3119EPSS 7%

Adobe Acrobat Reader 2017.009.20058 and earlier, 2017.008.30051 and earlier, 2015.006.30306 and earlier, and 11.0.20 and earlier has an exploitable m…

Fix: 11.0.21 / 15.006.30355+
Fix from $1,950 2017-08-11
Acrobat HIGH 8.8
CVE-2017-3121EPSS 8%

Adobe Acrobat Reader 2017.009.20058 and earlier, 2017.008.30051 and earlier, 2015.006.30306 and earlier, and 11.0.20 and earlier has an exploitable m…

Fix: 11.0.21 / 15.006.30355+
Fix from $1,950 2017-08-11
Acrobat MEDIUM 6.5
CVE-2017-3122EPSS 7%

Adobe Acrobat Reader 2017.009.20058 and earlier, 2017.008.30051 and earlier, 2015.006.30306 and earlier, and 11.0.20 and earlier has an exploitable m…

Fix: 11.0.21 / 15.006.30355+
Fix from $1,600 2017-08-11