Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Memory Buffer Bounds ErrorCWE-119 × clear
Imagemagick MEDIUM 5.5
CVE-2016-9773

Heap-based buffer overflow in the IsPixelGray function in MagickCore/pixel-accessor.h in ImageMagick 7.0.3.8 allows remote attackers to cause a denia…

Patch available
Fix from $1,600 2017-02-17
Libming MEDIUM 5.5
CVE-2016-9827

The _iprintf function in outputtxt.c in the listswf tool in libming 0.4.7 allows remote attackers to cause a denial of service (buffer over-read) via…

Fix: after 0.4.7
Fix from $1,600 2017-02-17
Libming HIGH 7.8
CVE-2016-9829

Heap-based buffer overflow in the parseSWF_DEFINEFONT function in parser.c in the listswf tool in libming 0.4.7 allows remote attackers to have unspe…

Fix: after 0.4.7
Fix from $1,950 2017-02-17
Libming HIGH 7.8
CVE-2016-9831

Heap-based buffer overflow in the parseSWF_RGBA function in parser.c in the listswf tool in libming 0.4.7 allows remote attackers to have unspecified…

Fix: after 0.4.7
Fix from $1,950 2017-02-17
Debian Linux MEDIUM 5.5
CVE-2017-6009

An issue was discovered in icoutils 0.31.1. A buffer overflow was observed in the "decode_ne_resource_id" function in the "restable.c" source file. T…

No fix yet
Fix from $1,600 2017-02-16
Debian Linux MEDIUM 5.5
CVE-2017-6010

An issue was discovered in icoutils 0.31.1. A buffer overflow was observed in the "extract_icons" function in the "extract.c" source file. This issue…

No fix yet
Fix from $1,600 2017-02-16
Gpu Driver HIGH 8.8
CVE-2017-0308

All versions of NVIDIA Windows GPU Display Driver contain a vulnerability in the kernel mode layer (nvlddmkm.sys) handler for DxgkDdiEscape where unt…

Mitigation only
Fix from $1,950 2017-02-15
Gpu Driver HIGH 7.8
CVE-2017-0313

All versions of NVIDIA Windows GPU Display Driver contain a vulnerability in the kernel mode layer (nvlddmkm.sys) implementation of the SubmitCommand…

No fix yet
Fix from $1,950 2017-02-15
Gpu Driver HIGH 7.8
CVE-2017-0314

All versions of NVIDIA Windows GPU Display Driver contain a vulnerability in the kernel mode layer (nvlddmkm.sys) implementation of the SubmitCommand…

Mitigation only
Fix from $1,950 2017-02-15
Gpu Driver HIGH 7.8
CVE-2017-0324

All versions of NVIDIA Windows GPU Display Driver contain a vulnerability in the kernel mode layer (nvlddmkm.sys) handler for DxgkDdiEscape where the…

Mitigation only
Fix from $1,950 2017-02-15
Imagemagick HIGH 8.8
CVE-2016-8866

The AcquireMagickMemory function in MagickCore/memory.c in ImageMagick 7.0.3.3 before 7.0.3.8 allows remote attackers to have unspecified impact via …

Fix: 6.9.6-6+
Fix from $1,950 2017-02-15
Libav MEDIUM 5.5
CVE-2016-6832

Heap-based buffer overflow in the ff_audio_resample function in resample.c in libav before 11.4 allows remote attackers to cause a denial of service …

Fix: after 11.3
Fix from $1,600 2017-02-15
Debian Linux HIGH 7.8
CVE-2016-8683

The ReadPCXImage function in coders/pcx.c in GraphicsMagick 1.3.25 allows remote attackers to have unspecified impact via a crafted image, which trig…

Patch available
Fix from $1,950 2017-02-15
Debian Linux HIGH 7.8
CVE-2016-8684

The MagickMalloc function in magick/memory.c in GraphicsMagick 1.3.25 allows remote attackers to have unspecified impact via a crafted image, which t…

Patch available
Fix from $1,950 2017-02-15
Libarchive HIGH 7.5
CVE-2016-8687EPSS 5%

Stack-based buffer overflow in the safe_fprintf function in tar/util.c in libarchive 3.2.1 allows remote attackers to cause a denial of service via a…

Patch available
Fix from $1,950 2017-02-15
Debian Linux HIGH 8.8
CVE-2016-8862

The AcquireMagickMemory function in MagickCore/memory.c in ImageMagick before 7.0.3.3 allows remote attackers to have unspecified impact via a crafte…

Fix: 6.9.4-0 / 7.0.3-3+
Fix from $1,950 2017-02-15
Fedora CRITICAL 9.8
CVE-2013-7459EPSS 10%

Heap-based buffer overflow in the ALGnew function in block_templace.c in Python Cryptography Toolkit (aka pycrypto) allows remote attackers to execut…

Fix: after 2.6.1
Fix from $2,300 2017-02-15
Debian Linux HIGH 7.5
CVE-2015-8979

Stack-based buffer overflow in the parsePresentationContext function in storescp in DICOM dcmtk-3.6.0 and earlier allows remote attackers to cause a …

Fix: after 3.6.0
Fix from $1,950 2017-02-15
Digital Editions CRITICAL 9.8
CVE-2017-2973EPSS 9%

Adobe Digital Editions versions 4.5.3 and earlier have an exploitable heap overflow vulnerability. Successful exploitation could lead to arbitrary co…

Fix: after 4.5.3
Fix from $2,300 2017-02-15
Nport 5100 Series Firmware HIGH 7.3
CVE-2016-9363

An issue was discovered in Moxa NPort 5110 versions prior to 2.6, NPort 5130/5150 Series versions prior to 3.6, NPort 5200 Series versions prior to 2…

Fix: after 3.10
Fix from $1,950 2017-02-13
S7 Softplc CRITICAL 9.8
CVE-2016-8364

An issue was discovered in IBHsoftec S7-SoftPLC prior to 4.12b. Object memory can read a network packet that is larger than the space that is availab…

Fix: after 4.12
Fix from $2,300 2017-02-13
Plc Winproladder Firmware HIGH 8.0
CVE-2016-8377EPSS 9%

An issue was discovered in Fatek Automation PLC WinProladder Version 3.11 Build 14701. A stack-based buffer overflow vulnerability exists when the so…

No fix yet
Fix from $1,950 2017-02-13
Automation Fv Designer HIGH 8.8
CVE-2016-5796

An issue was discovered in Fatek Automation PM Designer V3 Version 2.1.2.2, and Automation FV Designer Version 1.2.8.0. Sending additional valid pack…

Mitigation only
Fix from $1,950 2017-02-13
Automation Fv Designer HIGH 7.5
CVE-2016-5798

An issue was discovered in Fatek Automation PM Designer V3 Version 2.1.2.2, and Automation FV Designer Version 1.2.8.0. By sending additional valid p…

Mitigation only
Fix from $1,950 2017-02-13
Ispsoft HIGH 7.8
CVE-2016-5805

An issue was discovered in Delta Electronics WPLSoft, Versions prior to V2.42.11, ISPSoft, Versions prior to 3.02.11, and PMSoft, Versions prior to2.…

Mitigation only
Fix from $1,950 2017-02-13
Connexium Firmware CRITICAL 10.0
CVE-2016-8352

An issue was discovered in Schneider Electric ConneXium firewalls TCSEFEC23F3F20 all versions, TCSEFEC23F3F21 all versions, TCSEFEC23FCF20 all versio…

Mitigation only
Fix from $2,300 2017-02-13
Adaptive Security Appliance Software HIGH 8.8
CVE-2017-3807EPSS 15%

A vulnerability in Common Internet Filesystem (CIFS) code in the Clientless SSL VPN functionality of Cisco ASA Software, Major Releases 9.0-9.6, coul…

No fix yet
Fix from $1,950 2017-02-09
Ffmpeg CRITICAL 9.8
CVE-2016-10190EPSS 8%

Heap-based buffer overflow in libavformat/http.c in FFmpeg before 2.8.10, 3.0.x before 3.0.5, 3.1.x before 3.1.6, and 3.2.x before 3.2.2 allows remot…

Fix: after 2.8.9
Fix from $2,300 2017-02-09
Ffmpeg CRITICAL 9.8
CVE-2016-10191EPSS 7%

Heap-based buffer overflow in libavformat/rtmppkt.c in FFmpeg before 2.8.10, 3.0.x before 3.0.5, 3.1.x before 3.1.6, and 3.2.x before 3.2.2 allows re…

Fix: after 2.8.9
Fix from $2,300 2017-02-09
Ffmpeg CRITICAL 9.8
CVE-2016-10192EPSS 6%

Heap-based buffer overflow in ffserver.c in FFmpeg before 2.8.10, 3.0.x before 3.0.5, 3.1.x before 3.1.6, and 3.2.x before 3.2.2 allows remote attack…

Fix: after 2.8.9
Fix from $2,300 2017-02-09