Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Memory Buffer Bounds ErrorCWE-119 × clear
Imagemagick MEDIUM 5.5
CVE-2017-6502

An issue was discovered in ImageMagick 6.9.7. A specially crafted webp file could lead to a file-descriptor leak in libmagickcore (thus, a DoS).

Patch available
Fix from $1,600 2017-03-06
Fedora HIGH 7.5
CVE-2016-7970

Buffer overflow in the calc_coeff function in libass/ass_blur.c in libass before 0.13.4 allows remote attackers to cause a denial of service via unsp…

Fix: after 0.13.3
Fix from $1,950 2017-03-03
Imagemagick HIGH 7.8
CVE-2016-10063

Buffer overflow in coders/tiff.c in ImageMagick before 6.9.5-1 allows remote attackers to cause a denial of service (application crash) or have other…

Fix: after 6.9.5-0
Fix from $1,950 2017-03-02
Imagemagick HIGH 7.8
CVE-2016-10064

Buffer overflow in coders/tiff.c in ImageMagick before 6.9.5-1 allows remote attackers to cause a denial of service (application crash) or have other…

Fix: after 6.9.5-0
Fix from $1,950 2017-03-02
Imagemagick HIGH 7.5
CVE-2016-10067

magick/memory.c in ImageMagick before 6.9.4-5 allows remote attackers to cause a denial of service (application crash) via vectors involving "too man…

Fix: after 6.9.4-4
Fix from $1,950 2017-03-02
Radare2 HIGH 7.8
CVE-2017-6319

The dex_parse_debug_item function in libr/bin/p/bin_dex.c in radare2 1.2.1 allows remote attackers to cause a denial of service (buffer overflow and …

Patch available
Fix from $1,950 2017-03-02
Podofo HIGH 7.8
CVE-2017-5886

Heap-based buffer overflow in the PoDoFo::PdfTokenizer::GetNextToken function in PdfTokenizer.cpp in PoDoFo 0.9.4 allows remote attackers to have uns…

Mitigation only
Fix from $1,950 2017-03-01
Debian Linux MEDIUM 5.5
CVE-2017-5974

Heap-based buffer overflow in the __zzip_get32 function in fetch.c in zziplib 0.13.62, 0.13.61, 0.13.60, 0.13.59, 0.13.58, 0.13.57, 0.13.56 allows re…

No fix yet
Fix from $1,600 2017-03-01
Libtiff HIGH 7.8
CVE-2016-10092

Heap-based buffer overflow in the readContigStripsIntoBuffer function in tif_unix.c in LibTIFF 4.0.7, 3.9.3, 3.9.4, 3.9.5, 3.9.6, 3.9.7, 4.0.0alpha4,…

Patch available
Fix from $1,950 2017-03-01
Libtiff HIGH 7.8
CVE-2016-10093

Integer overflow in tools/tiffcp.c in LibTIFF 4.0.7, 3.9.3, 3.9.4, 3.9.5, 3.9.6, 3.9.7, 4.0.0alpha4, 4.0.0alpha5, 4.0.0alpha6, 4.0.0beta7, 4.0.0, 4.0…

Patch available
Fix from $1,950 2017-03-01
Libtiff MEDIUM 5.5
CVE-2016-10095

Stack-based buffer overflow in the _TIFFVGetField function in tif_dir.c in LibTIFF 4.0.0alpha4, 4.0.0alpha5, 4.0.0alpha6, 4.0.0beta7, 4.0.0, 4.0.1, 4…

No fix yet
Fix from $1,600 2017-03-01
Libav MEDIUM 5.5
CVE-2016-9823

libavcodec/x86/mpegvideo.c in libav 11.8 allows remote attackers to cause a denial of service (crash) via a crafted file.

No fix yet
Fix from $1,600 2017-03-01
Leap HIGH 7.5
CVE-2016-10207

The Xvnc server in TigerVNC allows remote attackers to cause a denial of service (invalid memory access and crash) by terminating a TLS handshake ear…

Patch available
Fix from $1,950 2017-02-28
Tigervnc CRITICAL 9.8
CVE-2017-5581

Buffer overflow in the ModifiablePixelBuffer::fillRect function in TigerVNC before 1.7.1 allows remote servers to execute arbitrary code via an RRE m…

Fix: after 1.7
Fix from $2,300 2017-02-28
Argus HIGH 7.8
CVE-2016-8715

An exploitable heap corruption vulnerability exists in the loadTrailer functionality of Iceni Argus version 6.6.05. A specially crafted PDF file can …

Mitigation only
Fix from $1,950 2017-02-28
Ichitaro CRITICAL 9.8
CVE-2017-2789

When copying filedata into a buffer, JustSystems Ichitaro Office 2016 Trial will calculate two values to determine how much data to copy from the doc…

Mitigation only
Fix from $2,300 2017-02-24
Ichitaro CRITICAL 9.8
CVE-2017-2790

When processing a record type of 0x3c from a Workbook stream from an Excel file (.xls), JustSystems Ichitaro Office trusts that the size is greater t…

Mitigation only
Fix from $2,300 2017-02-24
Ichitaro HIGH 7.8
CVE-2017-2791

JustSystems Ichitaro 2016 Trial contains a vulnerability that exists when trying to open a specially crafted PowerPoint file. Due to the application …

Mitigation only
Fix from $1,950 2017-02-24
Libiberty HIGH 7.8
CVE-2016-2226EPSS 7%

Integer overflow in the string_appends function in cplus-dem.c in libiberty allows remote attackers to execute arbitrary code via a crafted executabl…

No fix yet
Fix from $1,950 2017-02-24
Libiberty MEDIUM 5.5
CVE-2016-4491

The d_print_comp function in cp-demangle.c in libiberty allows remote attackers to cause a denial of service (segmentation fault and crash) via a cra…

Patch available
Fix from $1,600 2017-02-24
Tivoli Storage Manager HIGH 7.2
CVE-2016-8998

IBM Tivoli Storage Manager Server 7.1 could allow an authenticated user with TSM administrator privileges to cause a buffer overflow using a speciall…

Patch available
Fix from $1,950 2017-02-24
Debian Linux HIGH 7.8
CVE-2017-6300

An issue was discovered in ytnef before 1.9.1. This is related to a patch described as "3 of 9. Buffer Overflow in version field in lib/tnef-types.h."

Fix: after 1.9
Fix from $1,950 2017-02-24
Debian Linux CRITICAL 9.8
CVE-2016-1245

It was discovered that the zebra daemon in Quagga before 1.0.20161017 suffered from a stack-based buffer overflow when processing IPv6 Neighbor Disco…

Fix: after 1.0.20160315
Fix from $2,300 2017-02-22
Disksavvy Enterprise CRITICAL 9.8
CVE-2017-6187EPSS 33%

Buffer overflow in the built-in web server in DiskSavvy Enterprise 9.4.18 allows remote attackers to execute arbitrary code via a long URI in a GET r…

No fix yet
Fix from $2,300 2017-02-22
Fedora CRITICAL 9.8
CVE-2016-9400

The CClient::ProcessServerPacket method in engine/client/client.cpp in Teeworlds before 0.6.4 allows remote servers to write to arbitrary physical me…

Fix: 0.6.4+
Fix from $2,300 2017-02-22
Gom Player HIGH 7.8
CVE-2017-5881EPSS 8%

GOM Player 2.3.10.5266 allows remote attackers to cause a denial of service (memory corruption) or possibly have unspecified other impact via a craft…

No fix yet
Fix from $1,950 2017-02-21
Safari HIGH 8.8
CVE-2017-2362EPSS 6%

An issue was discovered in certain Apple products. iOS before 10.2.1 is affected. Safari before 10.0.3 is affected. tvOS before 10.1.1 is affected. T…

Fix: after 10.2.0
Fix from $1,950 2017-02-20
Safari HIGH 8.8
CVE-2017-2366

An issue was discovered in certain Apple products. iOS before 10.2.1 is affected. Safari before 10.0.3 is affected. iCloud before 6.1.1 is affected. …

Fix: after 12.5.4
Fix from $1,950 2017-02-20
Safari HIGH 8.8
CVE-2017-2369EPSS 6%

An issue was discovered in certain Apple products. iOS before 10.2.1 is affected. Safari before 10.0.3 is affected. tvOS before 10.1.1 is affected. T…

Fix: 2.16.3 / 10.0.3+
Fix from $1,950 2017-02-20
Iphone Os HIGH 7.8
CVE-2017-2370EPSS 11%

An issue was discovered in certain Apple products. iOS before 10.2.1 is affected. macOS before 10.12.3 is affected. tvOS before 10.1.1 is affected. w…

Fix: 3.1.3 / 10.1.1+
Fix from $1,950 2017-02-20