Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Memory Buffer Bounds ErrorCWE-119 × clear
Chrome MEDIUM 6.3
CVE-2016-1628

pi.c in OpenJPEG, as used in PDFium in Google Chrome before 48.0.2564.109, does not validate a certain precision value, which allows remote attackers…

Fix: after 48.0.2564.103
Fix from $1,600 2016-02-21
Encryption Management Server HIGH 7.5
CVE-2015-8149

The LDAP service in Symantec Encryption Management Server (SEMS) 3.3.2 before MP12 allows remote attackers to cause a denial of service (heap memory …

Fix: after 3.3.2
Fix from $1,950 2016-02-18
Ubuntu Linux HIGH 7.8
CVE-2016-0795

LibreOffice before 5.0.5 allows remote attackers to cause a denial of service (memory corruption) or possibly have unspecified other impact via a cra…

Fix: after 5.0.4
Fix from $1,950 2016-02-18
Ubuntu Linux HIGH 7.8
CVE-2016-0794

The lwp filter in LibreOffice before 5.0.4 allows remote attackers to cause a denial of service (memory corruption) or possibly have unspecified othe…

Fix: after 5.0.3
Fix from $1,950 2016-02-18
Debian Linux HIGH 8.1
CVE-2015-7547EPSS 87%

Multiple stack-based buffer overflows in the (1) send_dg and (2) send_vc functions in the libresolv library in the GNU C Library (aka glibc or libc6)…

Patch available
Fix from $1,950 2016-02-18
PostgreSQL HIGH 7.5
CVE-2016-0773EPSS 7%

PostgreSQL before 9.1.20, 9.2.x before 9.2.15, 9.3.x before 9.3.11, 9.4.x before 9.4.6, and 9.5.x before 9.5.1 allows remote attackers to cause a den…

Fix: after 9.1.19
Fix from $1,950 2016-02-17
Chrome HIGH 8.8
CVE-2016-1624

Integer underflow in the ProcessCommandsInternal function in dec/decode.c in Brotli, as used in Google Chrome before 48.0.2564.109, allows remote att…

Fix: after 48.0.2564.103
Fix from $1,950 2016-02-14
Debian Linux HIGH 8.1
CVE-2016-1526

The TtfUtil:LocaLookup function in TtfUtil.cpp in Libgraphite in Graphite 2 1.2.4, as used in Mozilla Firefox before 43.0 and Firefox ESR 38.x before…

Fix: after 38.5.1
Fix from $1,950 2016-02-13
Fedora HIGH 8.8
CVE-2016-1522EPSS 8%

Code.cpp in Libgraphite in Graphite 2 1.2.4, as used in Mozilla Firefox before 43.0 and Firefox ESR 38.x before 38.6.1, does not consider recursive l…

Fix: after 38.5.1
Fix from $1,950 2016-02-13
Debian Linux HIGH 8.8
CVE-2016-1521

The directrun function in directmachine.cpp in Libgraphite in Graphite 2 1.2.4, as used in Mozilla Firefox before 43.0 and Firefox ESR 38.x before 38…

Fix: after 42.0
Fix from $1,950 2016-02-13
Debian Linux MEDIUM 6.5
CVE-2016-2073

The htmlParseNameComplex function in HTMLparser.c in libxml2 allows attackers to cause a denial of service (out-of-bounds read) via a crafted XML doc…

Fix: 2.9.4+
Fix from $1,600 2016-02-12
Ubuntu Linux HIGH 8.8
CVE-2016-2330

libavcodec/gif.c in FFmpeg before 2.8.6 does not properly calculate a buffer size, which allows remote attackers to cause a denial of service (out-of…

Fix: after 2.8.5
Fix from $1,950 2016-02-12
Leap HIGH 8.8
CVE-2016-2329

libavcodec/tiff.c in FFmpeg before 2.8.6 does not properly validate RowsPerStrip values and YCbCr chrominance subsampling factors, which allows remot…

Fix: after 2.8.5
Fix from $1,950 2016-02-12
Ffmpeg HIGH 8.8
CVE-2016-2328

libswscale/swscale_unscaled.c in FFmpeg before 2.8.6 does not validate certain height values, which allows remote attackers to cause a denial of serv…

Fix: after 2.8.5
Fix from $1,950 2016-02-12
Ffmpeg HIGH 8.8
CVE-2016-2327

libavcodec/pngenc.c in FFmpeg before 2.8.5 uses incorrect line sizes in certain row calculations, which allows remote attackers to cause a denial of …

Fix: after 2.8.4
Fix from $1,950 2016-02-12
Adaptive Security Appliance Software CRITICAL 9.8
CVE-2016-1287EPSS 53%

Buffer overflow in the IKEv1 and IKEv2 implementations in Cisco ASA Software before 8.4(7.30), 8.7 before 8.7(1.18), 9.0 before 9.0(4.38), 9.1 before…

No fix yet
Fix from $2,300 2016-02-11
Bridge Cc CRITICAL 9.8
CVE-2016-0953EPSS 18%

Adobe Photoshop CC 2014 before 15.2.4, Photoshop CC 2015 before 16.1.2, and Bridge CC before 6.2 allow attackers to execute arbitrary code or cause a…

Fix: after 16.1.1
Fix from $2,300 2016-02-10
Bridge Cc CRITICAL 9.8
CVE-2016-0952EPSS 18%

Adobe Photoshop CC 2014 before 15.2.4, Photoshop CC 2015 before 16.1.2, and Bridge CC before 6.2 allow attackers to execute arbitrary code or cause a…

Fix: after 16.1.1
Fix from $2,300 2016-02-10
Bridge Cc CRITICAL 9.8
CVE-2016-0951EPSS 18%

Adobe Photoshop CC 2014 before 15.2.4, Photoshop CC 2015 before 16.1.2, and Bridge CC before 6.2 allow attackers to execute arbitrary code or cause a…

Fix: after 16.1.1
Fix from $2,300 2016-02-10
Edge HIGH 8.8
CVE-2016-0084EPSS 16%

Microsoft Edge allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Micros…

Mitigation only
Fix from $1,950 2016-02-10
Edge HIGH 8.8
CVE-2016-0062EPSS 20%

Microsoft Internet Explorer 11 and Microsoft Edge allow remote attackers to execute arbitrary code or cause a denial of service (memory corruption) v…

Mitigation only
Fix from $1,950 2016-02-10
Edge HIGH 8.8
CVE-2016-0061EPSS 20%

Microsoft Internet Explorer 9 through 11 and Microsoft Edge allow remote attackers to execute arbitrary code or cause a denial of service (memory cor…

Mitigation only
Fix from $1,950 2016-02-10
Edge HIGH 8.8
CVE-2016-0060EPSS 25%

Microsoft Internet Explorer 9 through 11 and Microsoft Edge allow remote attackers to execute arbitrary code or cause a denial of service (memory cor…

Mitigation only
Fix from $1,950 2016-02-10
Windows 10 HIGH 7.8
CVE-2016-0058EPSS 19%

Buffer overflow in the PDF Library in Microsoft Windows 8.1, Windows Server 2012 Gold and R2, and Windows 10 allows remote attackers to execute arbit…

Patch available
Fix from $1,950 2016-02-10
Office HIGH 7.8
CVE-2016-0056EPSS 14%

Microsoft Word 2007 SP3, Office 2010 SP2, Word 2010 SP2, Word 2013 SP1, Word 2013 RT SP1, Word 2016, and Office Compatibility Pack SP3 allow remote a…

Mitigation only
Fix from $1,950 2016-02-10
Office HIGH 7.8
CVE-2016-0055EPSS 14%

Microsoft Office 2007 SP3 allows remote attackers to execute arbitrary code via a crafted Office document, aka "Microsoft Office Memory Corruption Vu…

Mitigation only
Fix from $1,950 2016-02-10
Excel HIGH 7.8
CVE-2016-0054EPSS 14%

Microsoft Excel 2007 SP3, Excel 2010 SP2, Excel 2013 SP1, Excel 2013 RT SP1, Excel 2016, Excel for Mac 2011, Excel 2016 for Mac, Office Compatibility…

Mitigation only
Fix from $1,950 2016-02-10
Office HIGH 7.8
CVE-2016-0053EPSS 17%

Microsoft Word 2007 SP3, Office 2010 SP2, Word 2010 SP2, Word 2013 SP1, Word 2013 RT SP1, Word 2016, Office Compatibility Pack SP3, Word Viewer, Word…

Mitigation only
Fix from $1,950 2016-02-10
Office HIGH 7.8
CVE-2016-0052EPSS 17%

Microsoft Word 2007 SP3, Office 2010 SP2, Word 2010 SP2, Word 2013 SP1, Word 2013 RT SP1, Word 2016, Word for Mac 2011, Word 2016 for Mac, Office Com…

Mitigation only
Fix from $1,950 2016-02-10
Windows 10 HIGH 7.8
CVE-2016-0038EPSS 18%

Windows Journal in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, and …

Patch available
Fix from $1,950 2016-02-10