Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Memory Buffer Bounds ErrorCWE-119 × clear
Bro HIGH 7.5
CVE-2015-1522

analyzer/protocol/dnp3/DNP3.cc in Bro before 2.3.2 does not reject certain non-zero values of a packet length, which allows remote attackers to cause…

Fix: after 2.3.1
Fix from $1,950 2017-04-24
Debian Linux HIGH 7.5
CVE-2017-8073

WeeChat before 1.7.1 allows a remote crash by sending a filename via DCC to the IRC plugin. This occurs in the irc_ctcp_dcc_filename_without_quotes f…

Fix: 1.7.1+
Fix from $1,950 2017-04-23
Linux Kernel HIGH 7.8
CVE-2017-8061

drivers/media/usb/dvb-usb/dvb-usb-firmware.c in the Linux kernel 4.9.x and 4.10.x before 4.10.7 interacts incorrectly with the CONFIG_VMAP_STACK opti…

Patch available
Fix from $1,950 2017-04-23
Linux Kernel HIGH 7.8
CVE-2017-8062

drivers/media/usb/dvb-usb/dw2102.c in the Linux kernel 4.9.x and 4.10.x before 4.10.4 interacts incorrectly with the CONFIG_VMAP_STACK option, which …

Fix: 4.9.16 / 4.10.4+
Fix from $1,950 2017-04-23
Linux Kernel HIGH 7.8
CVE-2017-8063

drivers/media/usb/dvb-usb/cxusb.c in the Linux kernel 4.9.x and 4.10.x before 4.10.12 interacts incorrectly with the CONFIG_VMAP_STACK option, which …

Fix: 4.9.24 / 4.10.12+
Fix from $1,950 2017-04-23
Linux Kernel HIGH 7.8
CVE-2017-8064

drivers/media/usb/dvb-usb-v2/dvb_usb_core.c in the Linux kernel 4.9.x and 4.10.x before 4.10.12 interacts incorrectly with the CONFIG_VMAP_STACK opti…

Fix: 4.9.24 / 4.10.12+
Fix from $1,950 2017-04-23
Linux Kernel HIGH 7.8
CVE-2017-8065

crypto/ccm.c in the Linux kernel 4.9.x and 4.10.x through 4.10.12 interacts incorrectly with the CONFIG_VMAP_STACK option, which allows local users t…

Patch available
Fix from $1,950 2017-04-23
Linux Kernel HIGH 7.8
CVE-2017-8066

drivers/net/can/usb/gs_usb.c in the Linux kernel 4.9.x and 4.10.x before 4.10.2 interacts incorrectly with the CONFIG_VMAP_STACK option, which allows…

Patch available
Fix from $1,950 2017-04-23
Linux Kernel HIGH 7.8
CVE-2017-8068

drivers/net/usb/pegasus.c in the Linux kernel 4.9.x before 4.9.11 interacts incorrectly with the CONFIG_VMAP_STACK option, which allows local users t…

Patch available
Fix from $1,950 2017-04-23
Linux Kernel HIGH 7.8
CVE-2017-8069

drivers/net/usb/rtl8150.c in the Linux kernel 4.9.x before 4.9.11 interacts incorrectly with the CONFIG_VMAP_STACK option, which allows local users t…

Patch available
Fix from $1,950 2017-04-23
Linux Kernel HIGH 7.8
CVE-2017-8070

drivers/net/usb/catc.c in the Linux kernel 4.9.x before 4.9.11 interacts incorrectly with the CONFIG_VMAP_STACK option, which allows local users to c…

Patch available
Fix from $1,950 2017-04-23
Unrtf HIGH 7.5
CVE-2016-10091

Multiple stack-based buffer overflows in unrtf 0.21.9 allow remote attackers to cause a denial-of-service by writing a negative integer to the (1) cm…

Patch available
Fix from $1,950 2017-04-21
Dap 3662 Firmware CRITICAL 9.8
CVE-2016-1558EPSS 9%

Buffer overflow in D-Link DAP-2310 2.06 and earlier, DAP-2330 1.06 and earlier, DAP-2360 2.06 and earlier, DAP-2553 H/W ver. B1 3.05 and earlier, DAP…

Patch available
Fix from $2,300 2017-04-21
Unified Communications Manager HIGH 7.5
CVE-2017-3808

A vulnerability in the Session Initiation Protocol (SIP) UDP throttling process of Cisco Unified Communications Manager (Cisco Unified CM) could allo…

Mitigation only
Fix from $1,950 2017-04-20
iOS HIGH 8.6
CVE-2017-3860

Multiple vulnerabilities in the EnergyWise module of Cisco IOS (12.2 and 15.0 through 15.6) and Cisco IOS XE (3.2 through 3.18) could allow an unauth…

No fix yet
Fix from $1,950 2017-04-20
iOS HIGH 8.6
CVE-2017-3861

Multiple vulnerabilities in the EnergyWise module of Cisco IOS (12.2 and 15.0 through 15.6) and Cisco IOS XE (3.2 through 3.18) could allow an unauth…

Mitigation only
Fix from $1,950 2017-04-20
iOS HIGH 8.6
CVE-2017-3862

Multiple vulnerabilities in the EnergyWise module of Cisco IOS (12.2 and 15.0 through 15.6) and Cisco IOS XE (3.2 through 3.18) could allow an unauth…

Mitigation only
Fix from $1,950 2017-04-20
iOS HIGH 8.6
CVE-2017-3863

Multiple vulnerabilities in the EnergyWise module of Cisco IOS (12.2 and 15.0 through 15.6) and Cisco IOS XE (3.2 through 3.18) could allow an unauth…

Mitigation only
Fix from $1,950 2017-04-20
Total Security HIGH 7.5
CVE-2015-8285EPSS 5%

The webssx.sys driver in QuickHeal 16.00 allows remote attackers to cause a denial of service.

No fix yet
Fix from $1,950 2017-04-20
Imagemagick MEDIUM 6.5
CVE-2015-8957

Buffer overflow in ImageMagick before 6.9.0-4 Beta allows remote attackers to cause a denial of service (application crash) via a crafted SUN file.

Fix: after 6.9.0-3
Fix from $1,600 2017-04-20
Hancom Office 2014 HIGH 7.8
CVE-2016-4293

Multiple heap-based buffer overflows in the (1) CBookBase::SetDefTableStyle and (2) CBookBase::SetDefPivotStyle functions in Hancom Office 2014 VP al…

No fix yet
Fix from $1,950 2017-04-20
Iphone Os HIGH 7.8
CVE-2016-4650

Heap-based buffer overflow in IOHIDFamily in Apple iOS before 9.3.2, OS X before 10.11.5, and tvOS before 9.2.1 allows attackers to execute arbitrary…

Fix: 9.2.1 / 9.3.2+
Fix from $1,950 2017-04-20
Dmitry Deepmagic Information Gathering Tool MEDIUM 6.6
CVE-2017-7938

Stack-based buffer overflow in DMitry (Deepmagic Information Gathering Tool) version 1.3a (Unix) allows attackers to cause a denial of service (appli…

Patch available
Fix from $1,600 2017-04-20
Libcroco HIGH 7.8
CVE-2017-7961

The cr_tknzr_parse_rgb function in cr-tknzr.c in libcroco 0.6.11 and 0.6.12 has an "outside the range of representable values of type long" undefined…

Patch available
Fix from $1,950 2017-04-19
Cognos Business Intelligence HIGH 7.5
CVE-2016-3036

IBM Cognos TM1 10.1 and 10.2 is vulnerable to a denial of service, caused by a stack-based buffer overflow when parsing packets. A remote attacker co…

Patch available
Fix from $1,950 2017-04-17
Osip HIGH 7.5
CVE-2017-7853

In libosip2 in GNU oSIP 4.1.0 and 5.0.0, a malformed SIP message can lead to a heap buffer overflow in the msg_osip_body_parse() function defined in …

Patch available
Fix from $1,950 2017-04-13
Mac Os X HIGH 7.8
CVE-2010-1816

Buffer overflow in ImageIO in Apple Mac OS X 10.6 through 10.6.3 and Mac OS X Server 10.6 through 10.6.3 allows remote attackers to execute arbitrary…

Mitigation only
Fix from $1,950 2017-04-13
Osip CRITICAL 9.8
CVE-2016-10324

In libosip2 in GNU oSIP 4.1.0, a malformed SIP message can lead to a heap buffer overflow in the osip_clrncpy() function defined in osipparser2/osip_…

Patch available
Fix from $2,300 2017-04-13
Osip HIGH 7.5
CVE-2016-10325

In libosip2 in GNU oSIP 4.1.0, a malformed SIP message can lead to a heap buffer overflow in the _osip_message_to_str() function defined in osipparse…

Patch available
Fix from $1,950 2017-04-13
Osip HIGH 7.5
CVE-2016-10326

In libosip2 in GNU oSIP 4.1.0, a malformed SIP message can lead to a heap buffer overflow in the osip_body_to_str() function defined in osipparser2/o…

Patch available
Fix from $1,950 2017-04-13