Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Memory Buffer Bounds ErrorCWE-119 × clear
Uniformance Process History Database HIGH 7.5
CVE-2016-2280

Buffer overflow in RDISERVER in Honeywell Uniformance Process History Database (PHD) R310, R320, and R321 allows remote attackers to cause a denial o…

Mitigation only
Fix from $1,950 2016-04-21
Ios Xe HIGH 7.5
CVE-2015-6360EPSS 8%

The encryption-processing feature in Cisco libSRTP before 1.5.3 allows remote attackers to cause a denial of service via crafted fields in SRTP packe…

Mitigation only
Fix from $1,950 2016-04-21
Ubuntu Linux MEDIUM 5.5
CVE-2015-7802

gifread.c in gif2png, as used in OptiPNG before 0.7.6, allows remote attackers to cause a denial of service (uninitialized memory read) via a crafted…

Mitigation only
Fix from $1,600 2016-04-20
Enterprise Message Service Appliance Firmware HIGH 8.8
CVE-2016-3628

Buffer overflow in tibemsd in the server in TIBCO Enterprise Message Service (EMS) before 8.3.0 and EMS Appliance before 2.4.0 allows remote authenti…

Fix: after 8.2.2
Fix from $1,950 2016-04-20
Ubuntu Linux CRITICAL 9.8
CVE-2015-8779EPSS 6%

Stack-based buffer overflow in the catopen function in the GNU C Library (aka glibc or libc6) before 2.23 allows context-dependent attackers to cause…

No fix yet
Fix from $2,300 2016-04-19
Fedora CRITICAL 9.8
CVE-2015-8778EPSS 5%

Integer overflow in the GNU C Library (aka glibc or libc6) before 2.23 allows context-dependent attackers to cause a denial of service (application c…

Fix: after 2.22
Fix from $2,300 2016-04-19
Ubuntu Linux HIGH 8.8
CVE-2014-9765

Buffer overflow in the main_get_appheader function in xdelta3-main.h in xdelta3 before 3.0.9 allows remote attackers to execute arbitrary code via a …

Fix: after 3.0.8
Fix from $1,950 2016-04-19
Fedora CRITICAL 9.8
CVE-2014-9761EPSS 5%

Multiple stack-based buffer overflows in the GNU C Library (aka glibc or libc6) before 2.23 allow context-dependent attackers to cause a denial of se…

No fix yet
Fix from $2,300 2016-04-19
Opensuse MEDIUM 6.2
CVE-2016-3186

Buffer overflow in the readextension function in gif2tiff.c in LibTIFF 4.0.6 allows remote attackers to cause a denial of service (application crash)…

Mitigation only
Fix from $1,600 2016-04-19
Ubuntu Linux MEDIUM 5.5
CVE-2016-3941

Buffer overflow in the AStreamPeekStream function in input/stream.c in VideoLAN VLC media player before 2.2.0 allows remote attackers to cause a deni…

Fix: after 2.1.6
Fix from $1,600 2016-04-18
Opensuse HIGH 7.8
CVE-2015-7552EPSS 6%

Heap-based buffer overflow in the gdk_pixbuf_flip function in gdk-pixbuf-scale.c in gdk-pixbuf 2.30.x allows remote attackers to cause a denial of se…

Mitigation only
Fix from $1,950 2016-04-18
Debian Linux HIGH 8.8
CVE-2016-1653

The LoadBuffer implementation in Google V8, as used in Google Chrome before 50.0.2661.75, mishandles data types, which allows remote attackers to cau…

Fix: after 49.0.2623.112
Fix from $1,950 2016-04-18
Android CRITICAL 9.8
CVE-2016-2418

media/libmedia/IOMX.cpp in mediaserver in Android 6.x before 2016-04-01 does not initialize certain metadata buffer pointers, which allows attackers …

Mitigation only
Fix from $2,300 2016-04-18
Dhcpcd CRITICAL 9.8
CVE-2016-1503EPSS 7%

dhcpcd before 6.10.0, as used in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-04-01 and other products, mism…

Fix: after 6.9.4
Fix from $2,300 2016-04-18
Android HIGH 8.4
CVE-2016-0842

The H.264 decoder in libstagefright in Android 6.x before 2016-04-01 mishandles Memory Management Control Operation (MMCO) data, which allows remote …

Mitigation only
Fix from $1,950 2016-04-18
Android CRITICAL 9.8
CVE-2016-0841

media/libmedia/mediametadataretriever.cpp in mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-04-…

Mitigation only
Fix from $2,300 2016-04-18
Android HIGH 8.4
CVE-2016-0840

Multiple stack-based buffer underflows in decoder/ih264d_parse_cavlc.c in mediaserver in Android 6.x before 2016-04-01 allow remote attackers to exec…

Mitigation only
Fix from $1,950 2016-04-18
Android CRITICAL 9.8
CVE-2016-0839

post_proc/volume_listener.c in mediaserver in Android 6.x before 2016-04-01 mishandles deleted effect context, which allows remote attackers to execu…

Mitigation only
Fix from $2,300 2016-04-18
Android CRITICAL 9.8
CVE-2016-0837

MPEG4Extractor.cpp in libstagefright in mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-04-01 al…

Mitigation only
Fix from $2,300 2016-04-18
Android CRITICAL 9.8
CVE-2016-0838

Sonivox in mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-04-01 does not check for a negative n…

Mitigation only
Fix from $2,300 2016-04-18
Android HIGH 7.8
CVE-2016-0836

Stack-based buffer overflow in decoder/impeg2d_vld.c in mediaserver in Android 6.x before 2016-04-01 allows remote attackers to execute arbitrary cod…

Mitigation only
Fix from $1,950 2016-04-18
Android CRITICAL 9.8
CVE-2016-0835

decoder/impeg2d_dec_hdr.c in mediaserver in Android 6.x before 2016-04-01 allows remote attackers to execute arbitrary code or cause a denial of serv…

Mitigation only
Fix from $2,300 2016-04-18
Unified Computing System Platform Emulator HIGH 8.4
CVE-2016-1340

Heap-based buffer overflow in Cisco Unified Computing System (UCS) Platform Emulator 2.5(2)TS4, 3.0(2c)A, and 3.0(2c)TS9 allows local users to gain p…

Mitigation only
Fix from $1,950 2016-04-16
Fedora HIGH 7.5
CVE-2016-2146

The am_read_post_data function in mod_auth_mellon before 0.11.1 does not limit the amount of data read, which allows remote attackers to cause a deni…

Fix: after 0.11.0
Fix from $1,950 2016-04-15
Enterprise Linux Desktop CRITICAL 9.8
CVE-2010-5325EPSS 5%

Heap-based buffer overflow in the unhtmlify function in foomatic-rip in foomatic-filters before 4.0.6 allows remote attackers to cause a denial of se…

Fix: after 4.0.5
Fix from $2,300 2016-04-15
S2350ei Firmware HIGH 7.5
CVE-2015-8676

Memory leak in Huawei S5300EI, S5300SI, S5310HI, S6300EI/ S2350EI, and S5300LI Campus series switches with software V200R001C00 before V200R001SPH018…

Mitigation only
Fix from $1,950 2016-04-14
Xen HIGH 7.5
CVE-2015-8554

Buffer overflow in hw/pt-msi.c in Xen 4.6.x and earlier, when using the qemu-xen-traditional (aka qemu-dm) device model, allows local x86 HVM guest a…

Fix: after 4.6.1
Fix from $1,950 2016-04-14
Subversion HIGH 7.6
CVE-2015-5343EPSS 9%

Integer overflow in util.c in mod_dav_svn in Apache Subversion 1.7.x, 1.8.x before 1.8.15, and 1.9.x before 1.9.3 allows remote authenticated users t…

Fix: 1.8.15 / 1.9.3+
Fix from $1,950 2016-04-14
Debian Linux MEDIUM 5.5
CVE-2015-8683

The putcontig8bitCIELab function in tif_getimage.c in LibTIFF 4.0.6 allows remote attackers to cause a denial of service (out-of-bounds read) via a p…

Mitigation only
Fix from $1,600 2016-04-13
Libtiff MEDIUM 5.5
CVE-2015-8665

tif_getimage.c in LibTIFF 4.0.6 allows remote attackers to cause a denial of service (out-of-bounds read) via the SamplesPerPixel tag in a TIFF image.

Mitigation only
Fix from $1,600 2016-04-13