Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Memory Buffer Bounds ErrorCWE-119 × clear
Imagemagick HIGH 7.8
CVE-2014-9821

Heap-based buffer overflow in ImageMagick allows remote attackers to have unspecified impact via a crafted xpm file.

Fix: 6.9.4-0+
Fix from $1,950 2017-03-30
Imagemagick HIGH 7.8
CVE-2014-9822

Heap-based buffer overflow in ImageMagick allows remote attackers to have unspecified impact via a crafted quantum file.

Fix: 6.9.4-0+
Fix from $1,950 2017-03-30
Imagemagick HIGH 7.8
CVE-2014-9823

Heap-based buffer overflow in ImageMagick allows remote attackers to have unspecified impact via a crafted palm file, a different vulnerability than …

Fix: 6.9.4-0+
Fix from $1,950 2017-03-30
Imagemagick HIGH 7.8
CVE-2014-9824

Heap-based buffer overflow in ImageMagick allows remote attackers to have unspecified impact via a crafted psd file, a different vulnerability than C…

Fix: 6.9.4-0+
Fix from $1,950 2017-03-30
Imagemagick HIGH 7.8
CVE-2014-9825

Heap-based buffer overflow in ImageMagick allows remote attackers to have unspecified impact via a crafted psd file, a different vulnerability than C…

Fix: 6.9.4-0+
Fix from $1,950 2017-03-30
Diskboss HIGH 7.8
CVE-2017-7310EPSS 54%

A buffer overflow vulnerability in Import Command in SyncBreeze before 10.6, DiskSorter before 10.6, DiskBoss before 8.9, DiskPulse before 10.6, Disk…

No fix yet
Fix from $1,950 2017-03-29
Vlc CRITICAL 9.8
CVE-2014-6440

VideoLAN VLC media player before 2.1.5 allows remote attackers to execute arbitrary code or cause a denial of service.

Fix: after 2.1.4
Fix from $2,300 2017-03-28
Ev 07s Gps Tracker Firmware MEDIUM 5.3
CVE-2017-5238

Due to a lack of bounds checking, several input configuration fields for the Eview EV-07S GPS Tracker will overflow data stored in one variable to an…

Mitigation only
Fix from $1,600 2017-03-27
Imagemagick MEDIUM 5.5
CVE-2017-7275

The ReadPCXImage function in coders/pcx.c in ImageMagick 7.0.4.9 allows remote attackers to cause a denial of service (attempted large memory allocat…

Patch available
Fix from $1,600 2017-03-27
Freeradius HIGH 8.1
CVE-2015-8764

Off-by-one error in the EAP-PWD module in FreeRADIUS 3.0 through 3.0.8, which triggers a buffer overflow.

Patch available
Fix from $1,950 2017-03-27
Ntp HIGH 7.8
CVE-2017-6452

Stack-based buffer overflow in the Windows installer for NTP before 4.2.8p10 and 4.3.x before 4.3.94 allows local users to have unspecified impact vi…

Patch available
Fix from $1,950 2017-03-27
Ntp HIGH 8.8
CVE-2017-6458EPSS 7%

Multiple buffer overflows in the ctl_put* functions in NTP before 4.2.8p10 and 4.3.x before 4.3.94 allow remote authenticated users to have unspecifi…

Fix: 4.2.8 / 4.3.94+
Fix from $1,950 2017-03-27
Ntp MEDIUM 5.5
CVE-2017-6459

The Windows installer for NTP before 4.2.8p10 and 4.3.x before 4.3.94 allows local users to have unspecified impact via vectors related to an argumen…

Mitigation only
Fix from $1,600 2017-03-27
Ntp HIGH 8.8
CVE-2017-6460

Stack-based buffer overflow in the reslist function in ntpq in NTP before 4.2.8p10 and 4.3.x before 4.3.94 allows remote servers have unspecified imp…

Patch available
Fix from $1,950 2017-03-27
Ntp HIGH 7.8
CVE-2017-6462

Buffer overflow in the legacy Datum Programmable Time Server (DPTS) refclock driver in NTP before 4.2.8p10 and 4.3.x before 4.3.94 allows local users…

Patch available
Fix from $1,950 2017-03-27
Putty CRITICAL 9.8
CVE-2017-6542EPSS 22%

The ssh_agent_channel_data function in PuTTY before 0.68 allows remote attackers to have unspecified impact via a large length value in an agent prot…

Fix: after 0.67
Fix from $2,300 2017-03-27
Exfat HIGH 7.8
CVE-2015-8026

Heap-based buffer overflow in the verify_vbr_checksum function in exfatfsck in exfat-utils before 1.2.1 allows remote attackers to cause a denial of …

Fix: after 1.2.0
Fix from $1,950 2017-03-27
Bcm4339 Soc Firmware HIGH 8.1
CVE-2017-6957

Stack-based buffer overflow in the firmware in Broadcom Wi-Fi HardMAC SoC chips, when the firmware supports CCKM Fast and Secure Roaming and the feat…

No fix yet
Fix from $1,950 2017-03-27
Libtiff HIGH 7.8
CVE-2016-10271

tools/tiffcrop.c in LibTIFF 4.0.7 allows remote attackers to cause a denial of service (heap-based buffer over-read and buffer overflow) or possibly …

Patch available
Fix from $1,950 2017-03-24
Libtiff HIGH 7.8
CVE-2016-10272

LibTIFF 4.0.7 allows remote attackers to cause a denial of service (heap-based buffer overflow) or possibly have unspecified other impact via a craft…

Patch available
Fix from $1,950 2017-03-24
Imagemagick MEDIUM 5.5
CVE-2017-5508

Heap-based buffer overflow in the PushQuantumPixel function in ImageMagick before 6.9.7-3 and 7.x before 7.0.4-3 allows remote attackers to cause a d…

Patch available
Fix from $1,600 2017-03-24
Debian Linux CRITICAL 9.8
CVE-2017-5511EPSS 5%

coders/psd.c in ImageMagick allows remote attackers to have unspecified impact by leveraging an improper cast, which triggers a heap-based buffer ove…

Fix: 6.9.7-3 / 7.0.4-3+
Fix from $2,300 2017-03-24
Libgit2 CRITICAL 9.8
CVE-2016-10128

Buffer overflow in the git_pkt_parse_line function in transports/smart_pkt.c in the Git Smart Protocol support in libgit2 before 0.24.6 and 0.25.x be…

Fix: after 0.24.5
Fix from $2,300 2017-03-24
Mujs CRITICAL 9.8
CVE-2016-10133

Heap-based buffer overflow in the js_stackoverflow function in jsrun.c in Artifex Software, Inc. MuJS allows attackers to have unspecified impact by …

Patch available
Fix from $2,300 2017-03-24
Leap CRITICAL 9.8
CVE-2017-5336EPSS 7%

Stack-based buffer overflow in the cdk_pk_get_keyid function in lib/opencdk/pubkey.c in GnuTLS before 3.3.26 and 3.5.x before 3.5.8 allows remote att…

Fix: after 3.3.25
Fix from $2,300 2017-03-24
Leap CRITICAL 9.8
CVE-2017-5337EPSS 6%

Multiple heap-based buffer overflows in the read_attribute function in GnuTLS before 3.3.26 and 3.5.x before 3.5.8 allow remote attackers to have uns…

Fix: after 3.3.25
Fix from $2,300 2017-03-24
Pcre HIGH 7.8
CVE-2017-7245

Stack-based buffer overflow in the pcre32_copy_substring function in pcre_get.c in libpcre1 in PCRE 8.40 allows remote attackers to cause a denial of…

Mitigation only
Fix from $1,950 2017-03-23
Pcre HIGH 7.8
CVE-2017-7246

Stack-based buffer overflow in the pcre32_copy_substring function in pcre_get.c in libpcre1 in PCRE 8.40 allows remote attackers to cause a denial of…

Mitigation only
Fix from $1,950 2017-03-23
Debian Linux MEDIUM 5.5
CVE-2016-9556

The IsPixelGray function in MagickCore/pixel-accessor.h in ImageMagick 7.0.3-8 allows remote attackers to cause a denial of service (out-of-bounds he…

Patch available
Fix from $1,600 2017-03-23
Jasper HIGH 7.8
CVE-2016-8886

The jas_malloc function in libjasper/base/jas_malloc.c in JasPer before 1.900.11 allows remote attackers to have unspecified impact via a crafted fil…

Fix: after 1.900.10
Fix from $1,950 2017-03-23