Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Memory Buffer Bounds ErrorCWE-119 × clear
Proset\/wireless Software And Drivers MEDIUM 5.5
CVE-2016-8104

Buffer overflow in Intel PROSet/Wireless Software and Drivers in versions before 19.20.3 allows a local user to crash iframewrk.exe causing a potenti…

Fix: after 19.20.0
Fix from $1,600 2016-12-08
Bluez HIGH 7.5
CVE-2016-9917

In BlueZ 5.42, a buffer overflow was observed in "read_n" function in "tools/hcidump.c" source file. This issue can be triggered by processing a corr…

No fix yet
Fix from $1,950 2016-12-08
Bluez MEDIUM 5.3
CVE-2016-9804

In BlueZ 5.42, a buffer overflow was observed in "commands_dump" function in "tools/parser/csr.c" source file. The issue exists because "commands" ar…

No fix yet
Fix from $1,600 2016-12-03
Bluez MEDIUM 5.3
CVE-2016-9803

In BlueZ 5.42, an out-of-bounds read was observed in "le_meta_ev_dump" function in "tools/parser/hci.c" source file. This issue exists because 'subev…

No fix yet
Fix from $1,600 2016-12-03
Bluez MEDIUM 5.3
CVE-2016-9802

In BlueZ 5.42, a buffer over-read was identified in "l2cap_packet" function in "monitor/packet.c" source file. This issue can be triggered by process…

No fix yet
Fix from $1,600 2016-12-03
Bluez MEDIUM 5.3
CVE-2016-9801

In BlueZ 5.42, a buffer overflow was observed in "set_ext_ctrl" function in "tools/parser/l2cap.c" source file when processing corrupted dump file.

No fix yet
Fix from $1,600 2016-12-03
Bluez MEDIUM 5.3
CVE-2016-9800

In BlueZ 5.42, a buffer overflow was observed in "pin_code_reply_dump" function in "tools/parser/hci.c" source file. The issue exists because "pin" a…

No fix yet
Fix from $1,600 2016-12-03
Bluez MEDIUM 5.3
CVE-2016-9799

In BlueZ 5.42, a buffer overflow was observed in "pklg_read_hci" function in "btsnoop.c" source file. This issue can be triggered by processing a cor…

No fix yet
Fix from $1,600 2016-12-03
Bluez MEDIUM 5.3
CVE-2016-9797

In BlueZ 5.42, a buffer over-read was observed in "l2cap_dump" function in "tools/parser/l2cap.c" source file. This issue can be triggered by process…

No fix yet
Fix from $1,600 2016-12-03
Tivoli Monitoring HIGH 7.8
CVE-2016-2946

Stack-based buffer overflow in the ax Shared Libraries in the Agent in IBM Tivoli Monitoring (ITM) 6.2.2 before FP9, 6.2.3 before FP5, and 6.3.0 befo…

Patch available
Fix from $1,950 2016-12-01
Libdwarf CRITICAL 9.1
CVE-2016-9480

libdwarf 2016-10-21 allows context-dependent attackers to obtain sensitive information or cause a denial of service by using the "malformed dwarf fil…

Patch available
Fix from $2,300 2016-11-29
Linux Kernel HIGH 7.8
CVE-2016-9083

drivers/vfio/pci/vfio_pci.c in the Linux kernel through 4.8.11 allows local users to bypass integer overflow checks, and cause a denial of service (m…

Fix: 3.10.107 / 3.12.70+
Fix from $1,950 2016-11-28
Linux Kernel MEDIUM 6.8
CVE-2016-8633

drivers/firewire/net.c in the Linux kernel before 4.8.7, in certain unusual hardware configurations, allows remote attackers to execute arbitrary cod…

Fix: after 4.8.6
Fix from $1,600 2016-11-28
Linux Kernel HIGH 7.8
CVE-2016-8632

The tipc_msg_build function in net/tipc/msg.c in the Linux kernel through 4.8.11 does not validate the relationship between the minimum fragment leng…

Fix: 3.2.85 / 3.16.40+
Fix from $1,950 2016-11-28
Android HIGH 7.8
CVE-2016-6701

A remote code execution vulnerability in libskia in Android 7.0 before 2016-11-01 could enable an attacker using a specially crafted file to cause me…

Fix: after 7.0
Fix from $1,950 2016-11-25
Libtiff CRITICAL 9.8
CVE-2016-9540

tools/tiffcp.c in libtiff 4.0.6 has an out-of-bounds write on tiled images with odd tile width versus image width. Reported as MSVR 35103, aka "cpStr…

Patch available
Fix from $2,300 2016-11-22
Libtiff CRITICAL 9.8
CVE-2016-9539

tools/tiffcrop.c in libtiff 4.0.6 has an out-of-bounds read in readContigTilesIntoBuffer(). Reported as MSVR 35092.

Patch available
Fix from $2,300 2016-11-22
Libtiff CRITICAL 9.8
CVE-2016-9537

tools/tiffcrop.c in libtiff 4.0.6 has out-of-bounds write vulnerabilities in buffers. Reported as MSVR 35093, MSVR 35096, and MSVR 35097.

Patch available
Fix from $2,300 2016-11-22
Libtiff CRITICAL 9.8
CVE-2016-9536

tools/tiff2pdf.c in libtiff 4.0.6 has out-of-bounds write vulnerabilities in heap allocated buffers in t2p_process_jpeg_strip(). Reported as MSVR 350…

Patch available
Fix from $2,300 2016-11-22
Libtiff CRITICAL 9.8
CVE-2016-9535

tif_predict.h and tif_predict.c in libtiff 4.0.6 have assertions that can lead to assertion failures in debug mode, or buffer overflows in release mo…

Patch available
Fix from $2,300 2016-11-22
Libtiff CRITICAL 9.8
CVE-2016-9534

tif_write.c in libtiff 4.0.6 has an issue in the error code path of TIFFFlushData1() that didn't reset the tif_rawcc and tif_rawcp members. Reported …

Patch available
Fix from $2,300 2016-11-22
Libtiff CRITICAL 9.8
CVE-2016-9533

tif_pixarlog.c in libtiff 4.0.6 has out-of-bounds write vulnerabilities in heap allocated buffers. Reported as MSVR 35094, aka "PixarLog horizontalDi…

Patch available
Fix from $2,300 2016-11-22
Pan Os CRITICAL 9.8
CVE-2016-9150EPSS 35%

Buffer overflow in the management web interface in Palo Alto Networks PAN-OS before 5.0.20, 5.1.x before 5.1.13, 6.0.x before 6.0.15, 6.1.x before 6.…

Fix: 5.0.20 / 5.1.13+
Fix from $2,300 2016-11-19
Application Policy Infrastructure Controller MEDIUM 6.5
CVE-2016-6457

A vulnerability in the Cisco Nexus 9000 Series Platform Leaf Switches for Application Centric Infrastructure (ACI) could allow an unauthenticated, ad…

Mitigation only
Fix from $1,600 2016-11-19
Hdf5 HIGH 8.6
CVE-2016-4333

The HDF5 1.8.16 library allocating space for the array using a value from the file has an impact within the loop for initializing said array allowing…

No fix yet
Fix from $1,950 2016-11-18
Hdf5 HIGH 8.6
CVE-2016-4330

In the HDF5 1.8.16 library's failure to check if the number of dimensions for an array read from the file is within the bounds of the space allocated…

No fix yet
Fix from $1,950 2016-11-18
Wireshark MEDIUM 5.9
CVE-2016-9374

In Wireshark 2.2.0 to 2.2.1 and 2.0.0 to 2.0.7, the AllJoyn dissector could crash with a buffer over-read, triggered by network traffic or a capture …

Mitigation only
Fix from $1,600 2016-11-17
Little Snitch HIGH 8.4
CVE-2016-8661

Little Snitch version 3.0 through 3.6.1 suffer from a buffer overflow vulnerability that could be locally exploited which could lead to an escalation…

Mitigation only
Fix from $1,950 2016-11-15
Acrobat CRITICAL 9.8
CVE-2016-4095

Adobe Reader and Acrobat before 11.0.18, Acrobat and Acrobat Reader DC Classic before 15.006.30243, and Acrobat and Acrobat Reader DC Continuous befo…

Fix: after 15.017.20053
Fix from $2,300 2016-11-10
Office HIGH 7.8
CVE-2016-7245EPSS 20%

Microsoft Office 2007 SP3, Office 2010 SP2, Office 2013 SP1, Office 2013 RT SP1, and Office 2016 allow remote attackers to execute arbitrary code via…

Mitigation only
Fix from $1,950 2016-11-10