Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Memory Buffer Bounds ErrorCWE-119 × clear
Debian Linux HIGH 7.5
CVE-2017-9469EPSS 6%

In Irssi before 1.0.3, when receiving certain incorrectly quoted DCC files, it tries to find the terminating quote one byte before the allocated memo…

Fix: after 1.0.2
Fix from $1,950 2017-06-07
Ovirt Engine MEDIUM 6.5
CVE-2016-3077

The VersionMapper.fromKernelVersionString method in oVirt Engine allows remote authenticated users to cause a denial of service (process crash) for a…

Mitigation only
Fix from $1,600 2017-06-06
Android HIGH 7.8
CVE-2014-9923

In NAS in all Android releases from CAF using the Linux kernel, a Buffer Copy without Checking Size of Input vulnerability could potentially exist.

Patch available
Fix from $1,950 2017-06-06
Android HIGH 7.8
CVE-2014-9925

In HDR in all Android releases from CAF using the Linux kernel, a Buffer Copy without Checking Size of Input vulnerability could potentially exist.

Patch available
Fix from $1,950 2017-06-06
Android HIGH 7.8
CVE-2014-9927

In UIM in all Android releases from CAF using the Linux kernel, a Buffer Copy without Checking Size of Input vulnerability could potentially exist.

Patch available
Fix from $1,950 2017-06-06
Android HIGH 7.8
CVE-2014-9928

In GERAN in all Android releases from CAF using the Linux kernel, a Buffer Copy without Checking Size of Input vulnerability could potentially exist.

Patch available
Fix from $1,950 2017-06-06
Android HIGH 7.8
CVE-2014-9929

In WCDMA in all Android releases from CAF using the Linux kernel, a Use of Out-of-range Pointer Offset vulnerability could potentially exist.

Patch available
Fix from $1,950 2017-06-06
Dnstracer CRITICAL 9.8
CVE-2017-9430EPSS 11%

Stack-based buffer overflow in dnstracer through 1.9 allows attackers to cause a denial of service (application crash) or possibly have unspecified o…

Fix: after 1.9
Fix from $2,300 2017-06-05
Libmwaw CRITICAL 9.8
CVE-2017-9433

Document Liberation Project libmwaw before 2017-04-08 has an out-of-bounds write caused by a heap-based buffer overflow related to the MsWrd1Parser::…

Fix: after 0.3.11
Fix from $2,300 2017-06-05
Open Source HIGH 7.5
CVE-2017-9372

PJSIP, as used in Asterisk Open Source 13.x before 13.15.1 and 14.x before 14.4.1, Certified Asterisk 13.13 before 13.13-cert4, and other products, a…

Mitigation only
Fix from $1,950 2017-06-02
Wireshark HIGH 7.5
CVE-2017-9348

In Wireshark 2.2.0 to 2.2.6, the DOF dissector could read past the end of a buffer. This was addressed in epan/dissectors/packet-dof.c by validating …

Fix: after 2.2.6
Fix from $1,950 2017-06-02
Wireshark HIGH 7.5
CVE-2017-9351

In Wireshark 2.2.0 to 2.2.6 and 2.0.0 to 2.0.12, the DHCP dissector could read past the end of a buffer. This was addressed in epan/dissectors/packet…

Fix: after 2.2.6
Fix from $1,950 2017-06-02
Vlc Media Player HIGH 7.8
CVE-2017-9300

plugins\codec\libflac_plugin.dll in VideoLAN VLC media player 2.2.4 allows remote attackers to cause a denial of service (heap corruption and applica…

Fix: after 2.2.4
Fix from $1,950 2017-05-29
Openvswitch HIGH 8.8
CVE-2016-10377

In Open vSwitch (OvS) 2.5.0, a malformed IP packet can cause the switch to read past the end of the packet buffer due to an unsigned integer underflo…

Patch available
Fix from $1,950 2017-05-29
Windows Defender MEDIUM 5.5
CVE-2017-8535EPSS 17%

The Microsoft Malware Protection Engine running on Microsoft Forefront and Microsoft Defender on Microsoft Windows Server 2008 SP2 and R2 SP1, Window…

Patch available
Fix from $1,600 2017-05-26
Windows Defender MEDIUM 5.5
CVE-2017-8536EPSS 17%

The Microsoft Malware Protection Engine running on Microsoft Forefront and Microsoft Defender on Microsoft Windows Server 2008 SP2 and R2 SP1, Window…

Patch available
Fix from $1,600 2017-05-26
Windows Defender MEDIUM 5.5
CVE-2017-8537EPSS 17%

The Microsoft Malware Protection Engine running on Microsoft Forefront and Microsoft Defender on Microsoft Windows Server 2008 SP2 and R2 SP1, Window…

Patch available
Fix from $1,600 2017-05-26
Forefront Security HIGH 7.8
CVE-2017-8538EPSS 50%

The Microsoft Malware Protection Engine running on Microsoft Forefront and Microsoft Defender on Microsoft Windows Server 2008 SP2 and R2 SP1, Window…

Fix: after 1.1.13704.0
Fix from $1,950 2017-05-26
Forefront Security MEDIUM 5.5
CVE-2017-8539EPSS 6%

The Microsoft Malware Protection Engine running on Microsoft Forefront and Microsoft Defender on Microsoft Windows Server 2008 SP2 and R2 SP1, Window…

Fix: after 1.1.13704.0
Fix from $1,600 2017-05-26
Forefront Security HIGH 7.8
CVE-2017-8541EPSS 48%

The Microsoft Malware Protection Engine running on Microsoft Forefront and Microsoft Defender on Microsoft Windows Server 2008 SP2 and R2 SP1, Window…

Fix: after 1.1.13704.0
Fix from $1,950 2017-05-26
Forefront Security MEDIUM 5.5
CVE-2017-8542EPSS 6%

The Microsoft Malware Protection Engine running on Microsoft Forefront and Microsoft Defender on Microsoft Windows Server 2008 SP2 and R2 SP1, Window…

Fix: after 1.1.13704.0
Fix from $1,600 2017-05-26
Yodl CRITICAL 9.8
CVE-2016-10375

Yodl before 3.07.01 has a Buffer Over-read in the queue_push function in queue/queuepush.c.

Fix: after 3.06.00
Fix from $2,300 2017-05-26
Marklogic HIGH 7.8
CVE-2017-2798

An exploitable heap corruption vulnerability exists in the GetIndexArray functionality of Antenna House DMC HTMLFilter as used by MarkLogic 8.0-6. A …

No fix yet
Fix from $1,950 2017-05-24
Marklogic HIGH 7.8
CVE-2017-2799

An exploitable heap corruption vulnerability exists in the AddSst functionality of Antenna House DMC HTMLFilter as used by MarkLogic 8.0-6. A special…

No fix yet
Fix from $1,950 2017-05-24
Poweriso HIGH 7.8
CVE-2017-2817

A stack buffer overflow vulnerability exists in the ISO parsing functionality of Power Software Ltd PowerISO 6.8. A specially crafted ISO file can ca…

No fix yet
Fix from $1,950 2017-05-24
Hangul Word Processor HIGH 7.8
CVE-2017-2819

An exploitable heap-based buffer overflow exists in the Hangul Word Processor component (version 9.6.1.4350) of Hancom Thinkfree Office NEO 9.6.1.490…

No fix yet
Fix from $1,950 2017-05-24
Vlc Media Player HIGH 7.8
CVE-2017-8311EPSS 9%

Potential heap based buffer overflow in ParseJSS in VideoLAN VLC before 2.2.5 due to skipping NULL terminator in an input string allows attackers to …

Fix: after 2.2.4
Fix from $1,950 2017-05-23
Marklogic HIGH 7.8
CVE-2017-2783

An exploitable heap corruption vulnerability exists in the FillRowFormat functionality of Antenna House DMC HTMLFilter that is shipped with MarkLogic…

No fix yet
Fix from $1,950 2017-05-23
Marklogic HIGH 7.8
CVE-2017-2793

An exploitable heap corruption vulnerability exists in the UnCompressUnicode functionality of Antenna House DMC HTMLFilter used by MarkLogic 8.0-6. A…

No fix yet
Fix from $1,950 2017-05-23
Marklogic HIGH 7.8
CVE-2017-2794

An exploitable stack-based buffer overflow vulnerability exists in the DHFSummary functionality of AntennaHouse DMC HTMLFilter as used by MarkLogic 8…

No fix yet
Fix from $1,950 2017-05-23