Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Memory Buffer Bounds ErrorCWE-119 × clear
Windows 7 HIGH 8.8
CVE-2015-2360 KEVEPSS 15%

win32k.sys in the kernel-mode drivers in Microsoft Windows Server 2003 SP2 and R2 SP2, Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows…

Patch available
Fix from $1,950 2015-06-10
Windows 2003 Server HIGH 7.2
CVE-2015-1768

win32k.sys in the kernel-mode drivers in Microsoft Windows Server 2003 SP2 and R2 SP2 allows local users to gain privileges or cause a denial of serv…

Mitigation only
Fix from $1,950 2015-06-10
Windows 7 HIGH 7.2
CVE-2015-1727

Buffer overflow in the kernel-mode drivers in Microsoft Windows Server 2003 SP2 and R2 SP2, Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Wi…

Patch available
Fix from $1,950 2015-06-10
Windows 7 HIGH 7.2
CVE-2015-1725

Buffer overflow in the kernel-mode drivers in Microsoft Windows Server 2003 SP2 and R2 SP2, Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Wi…

Patch available
Fix from $1,950 2015-06-10
Enterprise Linux Desktop HIGH 7.5
CVE-2015-3329EPSS 38%

Multiple stack-based buffer overflows in the phar_set_inode function in phar_internal.h in PHP before 5.4.40, 5.5.x before 5.5.24, and 5.6.x before 5…

Fix: after 5.4.39
Fix from $1,950 2015-06-09
Enterprise Linux Desktop HIGH 7.5
CVE-2015-3307EPSS 8%

The phar_parse_metadata function in ext/phar/phar.c in PHP before 5.4.40, 5.5.x before 5.5.24, and 5.6.x before 5.6.8 allows remote attackers to caus…

Fix: after 5.4.39
Fix from $1,950 2015-06-09
PHP MEDIUM 5.8
CVE-2015-2783EPSS 11%

ext/phar/phar.c in PHP before 5.4.40, 5.5.x before 5.5.24, and 5.6.x before 5.6.8 allows remote attackers to obtain sensitive information from proces…

Fix: after 5.4.39
Fix from $1,600 2015-06-09
Ubuntu Linux HIGH 7.5
CVE-2015-3905EPSS 7%

Buffer overflow in the set_cs_start function in t1disasm.c in t1utils before 1.39 allows remote attackers to cause a denial of service (crash) and po…

Patch available
Fix from $1,950 2015-06-08
Ubuntu Linux HIGH 8.5
CVE-2015-4004EPSS 8%

The OZWPAN driver in the Linux kernel through 4.0.5 relies on an untrusted length field during packet parsing, which allows remote attackers to obtai…

Fix: 4.3+
Fix from $1,950 2015-06-07
Linux Kernel HIGH 9.0
CVE-2015-4002EPSS 8%

drivers/staging/ozwpan/ozusbsvc1.c in the OZWPAN driver in the Linux kernel through 4.0.5 does not ensure that certain length values are sufficiently…

Fix: 3.4.109 / 3.10.81+
Fix from $1,950 2015-06-07
Softcms MEDIUM 6.8
CVE-2015-1000

Stack-based buffer overflow in the OpenForIPCamTest method in the RTSPVIDEO.rtspvideoCtrl.1 (aka SStreamVideo) ActiveX control in Moxa SoftCMS before…

Fix: after 1.2
Fix from $1,600 2015-06-05
Gui HIGH 7.5
CVE-2015-2282

Stack-based buffer overflow in the LZC decompression implementation (CsObjectInt::CsDecomprLZC function in vpa106cslzc.cpp) in SAP MaxDB 7.5 and 7.6,…

No fix yet
Fix from $1,950 2015-06-02
Gui MEDIUM 5.0
CVE-2015-2278

The LZH decompression implementation (CsObjectInt::BuildHufTree function in vpa108csulzh.cpp) in SAP MaxDB 7.5 and 7.6, Netweaver Application Server …

No fix yet
Fix from $1,600 2015-06-02
Connectpro HIGH 10.0
CVE-2015-4060

Heap-based buffer overflow in the TermProxy (WLTermProxyService.exe) service in Wavelink ConnectPro allows remote attackers to execute arbitrary code…

Mitigation only
Fix from $1,950 2015-05-29
Terminal Emulation HIGH 10.0
CVE-2015-4059

Heap-based buffer overflow in the License Server (LicenseServer.exe) in Wavelink Terminal Emulation (TE) allows remote attackers to execute arbitrary…

Mitigation only
Fix from $1,950 2015-05-29
Linux Kernel HIGH 9.3
CVE-2015-3331EPSS 10%

The __driver_rfc4106_decrypt function in arch/x86/crypto/aesni-intel_glue.c in the Linux kernel before 3.19.3 does not properly determine the memory …

Fix: 3.2.69 / 3.4.108+
Fix from $1,950 2015-05-27
Linux Kernel MEDIUM 6.9
CVE-2015-2666

Stack-based buffer overflow in the get_matching_model_microcode function in arch/x86/kernel/cpu/microcode/intel_early.c in the Linux kernel before 4.…

Fix: 3.10.83 / 3.12.40+
Fix from $1,600 2015-05-27
Wireshark MEDIUM 5.0
CVE-2015-3906

The logcat_dump_text function in wiretap/logcat.c in the Android Logcat file parser in Wireshark 1.12.x before 1.12.5 does not properly handle a lack…

Mitigation only
Fix from $1,600 2015-05-26
Wireshark MEDIUM 5.0
CVE-2015-3815

The detect_version function in wiretap/logcat.c in the Android Logcat file parser in Wireshark 1.12.x before 1.12.5 does not check the length of the …

Mitigation only
Fix from $1,600 2015-05-26
Vport Activex Sdk Plus HIGH 7.5
CVE-2015-0986

Multiple stack-based buffer overflows in Moxa VPort ActiveX SDK Plus before 2.8 allow remote attackers to insert assembly-code lines via vectors invo…

Fix: after 2.7
Fix from $1,950 2015-05-26
Afaria HIGH 7.5
CVE-2015-4092

Buffer overflow in the XComms process in SAP Afaria 7.00.6620.2 SP5 allows remote attackers to cause a denial of service (crash) or possibly execute …

Mitigation only
Fix from $1,950 2015-05-26
Itunes HIGH 7.5
CVE-2014-8146EPSS 24%

The resolveImplicitLevels function in common/ubidi.c in the Unicode Bidirectional Algorithm implementation in ICU4C in International Components for U…

Fix: 55.1+
Fix from $1,950 2015-05-25
Sxf Common Library MEDIUM 6.8
CVE-2015-2946

Stack-based buffer overflow in the Open CAD Format Council SXF common library before 3.30 allows remote attackers to execute arbitrary code via a cra…

Fix: after 3.21
Fix from $1,600 2015-05-25
Loadrunner HIGH 10.0
CVE-2015-2110EPSS 11%

Buffer overflow in HP LoadRunner 11.52 allows remote attackers to execute arbitrary code via unspecified vectors.

Patch available
Fix from $1,950 2015-05-25
Tivoli Storage Manager Fastback HIGH 7.5
CVE-2015-0120

Buffer overflow in the FastBackMount process in IBM Tivoli Storage Manager FastBack 6.1 before 6.1.11.1 has unspecified impact and remote attack vect…

Patch available
Fix from $1,950 2015-05-25
Tivoli Storage Manager Fastback HIGH 10.0
CVE-2015-1896EPSS 32%

Stack-based buffer overflow in the FastBackMount process in IBM Tivoli Storage Manager FastBack 6.1 before 6.1.11.1 allows remote attackers to execut…

Patch available
Fix from $1,950 2015-05-25
Netusb HIGH 10.0
CVE-2015-3036EPSS 28%

Stack-based buffer overflow in the run_init_sbus function in the KCodes NetUSB module for the Linux kernel, as used in certain NETGEAR products, TP-L…

Mitigation only
Fix from $1,950 2015-05-21
Domino HIGH 10.0
CVE-2015-1903EPSS 8%

Stack-based buffer overflow in IBM Domino 8.5 before 8.5.3 FP6 IF7 and 9.0 before 9.0.1 FP3 IF3 allows remote attackers to execute arbitrary code via…

Patch available
Fix from $1,950 2015-05-20
Domino HIGH 10.0
CVE-2015-1902EPSS 8%

Stack-based buffer overflow in IBM Domino 8.5 before 8.5.3 FP6 IF7 and 9.0 before 9.0.1 FP3 IF3 allows remote attackers to execute arbitrary code via…

Patch available
Fix from $1,950 2015-05-20
Debian Linux HIGH 7.5
CVE-2015-1257

platform/graphics/filters/FEColorMatrix.cpp in the SVG implementation in Blink, as used in Google Chrome before 43.0.2357.65, does not properly handl…

Fix: after 42.0.2311.152
Fix from $1,950 2015-05-20