Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Memory Buffer Bounds ErrorCWE-119 × clear
Fedora MEDIUM 6.8
CVE-2015-1860EPSS 9%

Multiple buffer overflows in gui/image/qgifhandler.cpp in the QtBase module in Qt before 4.8.7 and 5.x before 5.4.2 allow remote attackers to cause a…

Fix: after 4.8.6
Fix from $1,600 2015-05-12
Fedora MEDIUM 6.8
CVE-2015-1859EPSS 7%

Multiple buffer overflows in plugins/imageformats/ico/qicohandler.cpp in the QtBase module in Qt before 4.8.7 and 5.x before 5.4.2 allow remote attac…

Fix: after 4.8.6
Fix from $1,600 2015-05-12
Fedora MEDIUM 6.8
CVE-2015-1858EPSS 7%

Multiple buffer overflows in gui/image/qbmphandler.cpp in the QtBase module in Qt before 4.8.7 and 5.x before 5.4.2 allow remote attackers to cause a…

Fix: after 4.8.6
Fix from $1,600 2015-05-12
Enterprise Reader MEDIUM 5.0
CVE-2015-3633

Foxit Reader, Enterprise Reader, and PhantomPDF before 7.1.5 allow remote attackers to cause a denial of service (memory corruption and crash) via ve…

Fix: after 7.1.3.320
Fix from $1,600 2015-05-01
Ubuntu Linux MEDIUM 5.8
CVE-2015-1863EPSS 5%

Heap-based buffer overflow in wpa_supplicant 1.0 through 2.4 allows remote attackers to cause a denial of service (crash), read memory, or possibly e…

No fix yet
Fix from $1,600 2015-04-28
Fedora HIGH 7.5
CVE-2015-3145EPSS 37%

The sanitize_cookie_path function in cURL and libcurl 7.31.0 through 7.41.0 does not properly calculate an index, which allows remote attackers to ca…

Fix: after 7.5.3.1
Fix from $1,950 2015-04-24
Curl HIGH 9.0
CVE-2015-3144EPSS 11%

The fix_hostname function in cURL and libcurl 7.37.0 through 7.41.0 does not properly calculate an index, which allows remote attackers to cause a de…

Fix: after 3.0.22
Fix from $1,950 2015-04-24
Tvmobili MEDIUM 5.0
CVE-2012-5451

Multiple stack-based buffer overflows in HttpUtils.dll in TVMOBiLi before 2.1.0.3974 allow remote attackers to cause a denial of service (tvMobiliSer…

Fix: after 2.1.0.3880
Fix from $1,600 2015-04-24
Debian Linux MEDIUM 5.0
CVE-2015-1246

Blink, as used in Google Chrome before 42.0.2311.90, allows remote attackers to cause a denial of service (out-of-bounds read) via unspecified vector…

Fix: after 42.0.2311.60
Fix from $1,600 2015-04-19
Debian Linux MEDIUM 5.0
CVE-2015-1240

gpu/blink/webgraphicscontext3d_impl.cc in the WebGL implementation in Google Chrome before 42.0.2311.90 allows remote attackers to cause a denial of …

Fix: after 42.0.2311.60
Fix from $1,600 2015-04-19
Chrome HIGH 7.5
CVE-2015-1238

Skia, as used in Google Chrome before 42.0.2311.90, allows remote attackers to cause a denial of service (out-of-bounds write) or possibly have unspe…

Fix: after 42.0.2311.60
Fix from $1,950 2015-04-19
Networker HIGH 7.2
CVE-2015-0530

Buffer overflow in an unspecified function in nsr_render_log in EMC NetWorker before 8.0.4.3, 8.1.x before 8.1.2.6, and 8.2.x before 8.2.1.2 allows l…

Fix: after 8.0.4.3
Fix from $1,950 2015-04-17
Debian Linux MEDIUM 6.5
CVE-2015-1821

Heap-based buffer overflow in chrony before 1.31.1 allows remote authenticated users to cause a denial of service (chronyd crash) or possibly execute…

Fix: after 1.31
Fix from $1,600 2015-04-16
Tivoli Storage Manager Fastback HIGH 7.2
CVE-2015-1898

Stack-based buffer overflow in the FastBackMount process in IBM Tivoli Storage Manager FastBack 6.1 before 6.1.11.1 allows local users to gain privil…

Patch available
Fix from $1,950 2015-04-15
Tivoli Storage Manager Fastback HIGH 7.2
CVE-2015-1897

Stack-based buffer overflow in the FastBackMount process in IBM Tivoli Storage Manager FastBack 6.1 before 6.1.11.1 allows local users to gain privil…

Patch available
Fix from $1,950 2015-04-15
Lhaplus MEDIUM 6.8
CVE-2015-0907

Buffer overflow in Lhaplus before 1.70 allows remote attackers to execute arbitrary code via a crafted archive.

Fix: after 1.59
Fix from $1,600 2015-04-15
Enterprise Linux Desktop Supplementary HIGH 10.0
CVE-2015-0348EPSS 9%

Buffer overflow in Adobe Flash Player before 13.0.0.281 and 14.x through 17.x before 17.0.0.169 on Windows and OS X and before 11.2.202.457 on Linux …

Fix: after 13.0.0.264
Fix from $1,950 2015-04-14
Das Watchdog HIGH 7.2
CVE-2015-2831

Buffer overflow in das_watchdog 0.9.0 allows local users to execute arbitrary code with root privileges via a large string in the XAUTHORITY environm…

Patch available
Fix from $1,950 2015-04-14
Debian Linux HIGH 10.0
CVE-2015-2788

Multiple stack-based buffer overflows in the ib_fill_isqlda function in dbdimp.c in DBD-Firebird before 1.19 allow remote attackers to have unspecifi…

Fix: after 1.18
Fix from $1,950 2015-04-14
Opensuse HIGH 10.0
CVE-2014-9488

The is_utf8_well_formed function in GNU less before 475 allows remote attackers to have unspecified impact via malformed UTF-8 characters, which trig…

Fix: after 471
Fix from $1,950 2015-04-14
Ubuntu Linux HIGH 10.0
CVE-2015-2806EPSS 8%

Stack-based buffer overflow in asn1_der_decoding in libtasn1 before 4.4 allows remote attackers to have unspecified impact via unknown vectors.

Fix: after 4.3
Fix from $1,950 2015-04-10
Mac Os X HIGH 7.2
CVE-2015-1144

Buffer overflow in the UniformTypeIdentifiers component in Apple OS X before 10.10.3 allows local users to gain privileges via a crafted Uniform Type…

Fix: after 10.10.2
Fix from $1,950 2015-04-10
Mac Os X HIGH 7.2
CVE-2015-1140

Buffer overflow in IOHIDFamily in Apple OS X before 10.10.3 allows local users to gain privileges via unspecified vectors.

Fix: 10.10.3+
Fix from $1,950 2015-04-10
Mac Os X MEDIUM 5.4
CVE-2015-1100

The kernel in Apple iOS before 8.3, Apple OS X before 10.10.3, and Apple TV before 7.2 allows attackers to cause a denial of service (out-of-bounds m…

Fix: after 10.10.2
Fix from $1,600 2015-04-10
Iphone Os HIGH 7.3
CVE-2015-1098

iWork in Apple iOS before 8.3 and Apple OS X before 10.10.3 allows remote attackers to execute arbitrary code or cause a denial of service (memory co…

Fix: 8.3 / 10.10.3+
Fix from $1,950 2015-04-10
Debian Linux HIGH 7.5
CVE-2015-2782EPSS 6%

Buffer overflow in Open-source ARJ archiver 3.10.22 allows remote attackers to cause a denial of service (crash) or possibly execute arbitrary code v…

Mitigation only
Fix from $1,950 2015-04-08
Ubuntu Linux MEDIUM 6.4
CVE-2015-1473

The ADDW macro in stdio-common/vfscanf.c in the GNU C Library (aka glibc or libc6) before 2.21 does not properly consider data-type size during a ris…

Fix: after 2.20
Fix from $1,600 2015-04-08
Ubuntu Linux HIGH 7.5
CVE-2015-1472

The ADDW macro in stdio-common/vfscanf.c in the GNU C Library (aka glibc or libc6) before 2.21 does not properly consider data-type size during memor…

Fix: after 2.20
Fix from $1,950 2015-04-08
Domino HIGH 10.0
CVE-2015-0134

Buffer overflow in the SSLv2 implementation in IBM Domino 8.5.x before 8.5.1 FP5 IF3, 8.5.2 before FP4 IF3, 8.5.3 before FP6 IF6, 9.0 before IF7, and…

Patch available
Fix from $1,950 2015-04-06
Editor HIGH 7.5
CVE-2015-0903

Buffer overflow in Saitoh Kikaku Maruo Editor 8.51 and earlier allows remote attackers to execute arbitrary code via a crafted .hmbook file.

Fix: after 8.51
Fix from $1,950 2015-04-03