Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Memory Buffer Bounds ErrorCWE-119 × clear
Unrtf HIGH 7.5
CVE-2014-9275

UnRTF allows remote attackers to cause a denial of service (out-of-bounds memory access and crash) and possibly execute arbitrary code via a crafted …

Fix: after 0.21.6
Fix from $1,950 2014-12-09
Fedora HIGH 7.5
CVE-2014-9274EPSS 6%

UnRTF allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code as demonstrated by a file containing the strin…

Fix: after 0.21.6
Fix from $1,950 2014-12-09
Ubuntu Linux HIGH 7.5
CVE-2014-8504EPSS 6%

Stack-based buffer overflow in the srec_scan function in bfd/srec.c in GNU binutils 2.24 and earlier allows remote attackers to cause a denial of ser…

Fix: after 2.24
Fix from $1,950 2014-12-09
Fedora HIGH 7.5
CVE-2014-8503EPSS 6%

Stack-based buffer overflow in the ihex_scan function in bfd/ihex.c in GNU binutils 2.24 and earlier allows remote attackers to cause a denial of ser…

Fix: after 2.24
Fix from $1,950 2014-12-09
Fedora HIGH 7.5
CVE-2014-8502

Heap-based buffer overflow in the pe_print_edata function in bfd/peXXigen.c in GNU binutils 2.24 and earlier allows remote attackers to cause a denia…

Fix: after 2.24
Fix from $1,950 2014-12-09
Ubuntu Linux HIGH 7.5
CVE-2014-8501EPSS 5%

The _bfd_XXi_swap_aouthdr_in function in bfd/peXXigen.c in GNU binutils 2.24 and earlier allows remote attackers to cause a denial of service (out-of…

Fix: after 2.24
Fix from $1,950 2014-12-09
Fedora MEDIUM 5.0
CVE-2014-8484EPSS 5%

The srec_scan function in bfd/srec.c in libdbfd in GNU binutils before 2.25 allows remote attackers to cause a denial of service (out-of-bounds read)…

Fix: after 2.24
Fix from $1,600 2014-12-09
Isoview MEDIUM 6.8
CVE-2014-9267

Heap-based buffer overflow in the PTC IsoView ActiveX control allows remote attackers to execute arbitrary code via a crafted ViewPort property value.

Mitigation only
Fix from $1,600 2014-12-08
Smartviewer MEDIUM 6.8
CVE-2014-9265

Stack-based buffer overflow in the BackupToAvi method in the CNC_Ctrl ActiveX control in Samsung SmartViewer allows remote attackers to execute arbit…

Mitigation only
Fix from $1,600 2014-12-08
3s Pocketnet Tech Video Management Software MEDIUM 6.8
CVE-2014-9263

Multiple buffer overflows in the PocketNetNVRMediaClientAxCtrl.NVRMediaViewer.1 control in 3S Pocketnet Tech VMS allow remote attackers to execute ar…

Mitigation only
Fix from $1,600 2014-12-08
Dvr Ds 7204 Firmware HIGH 7.5
CVE-2014-4880EPSS 70%

Buffer overflow in Hikvision DVR DS-7204 Firmware 2.2.10 build 131009, and other models and versions, allows remote attackers to execute arbitrary co…

No fix yet
Fix from $1,950 2014-12-08
Tcpdump MEDIUM 5.0
CVE-2014-9140EPSS 6%

Buffer overflow in the ppp_hdlc function in print-ppp.c in tcpdump 4.6.2 and earlier allows remote attackers to cause a denial of service (crash) cia…

Fix: after 4.6.2
Fix from $1,600 2014-12-05
Antiword MEDIUM 5.0
CVE-2014-8123

Buffer overflow in the bGetPPS function in wordole.c in Antiword 0.37 allows remote attackers to cause a denial of service (crash) via a crafted docu…

Fix: after 0.37
Fix from $1,600 2014-12-05
Glibc MEDIUM 5.0
CVE-2014-6040EPSS 7%

GNU C Library (aka glibc) before 2.20 allows context-dependent attackers to cause a denial of service (out-of-bounds read and crash) via a multibyte …

Fix: after 2.19
Fix from $1,600 2014-12-05
Debian Linux MEDIUM 5.0
CVE-2014-9116EPSS 10%

The write_one_header function in mutt 1.5.23 does not properly handle newline characters at the beginning of a header, which allows remote attackers …

No fix yet
Fix from $1,600 2014-12-02
Debian Linux MEDIUM 5.0
CVE-2014-9112EPSS 7%

Heap-based buffer overflow in the process_copy_in function in GNU Cpio 2.11 allows remote attackers to cause a denial of service via a large block va…

No fix yet
Fix from $1,600 2014-12-02
Clamav MEDIUM 5.0
CVE-2014-9050

Heap-based buffer overflow in the cli_scanpe function in libclamav/pe.c in ClamAV before 0.98.5 allows remote attackers to cause a denial of service …

Fix: after 0.94.3
Fix from $1,600 2014-12-01
Linux Kernel MEDIUM 6.1
CVE-2014-8884

Stack-based buffer overflow in the ttusbdecfe_dvbs_diseqc_send_master_cmd function in drivers/media/usb/ttusb-dec/ttusbdecfe.c in the Linux kernel be…

Fix: after 3.17.3
Fix from $1,600 2014-11-30
Libflac HIGH 7.5
CVE-2014-9028EPSS 10%

Heap-based buffer overflow in stream_decoder.c in libFLAC before 1.3.1 allows remote attackers to execute arbitrary code via a crafted .flac file.

Fix: after 1.3.0
Fix from $1,950 2014-11-26
Libflac HIGH 7.5
CVE-2014-8962EPSS 10%

Stack-based buffer overflow in stream_decoder.c in libFLAC before 1.3.1 allows remote attackers to execute arbitrary code via a crafted .flac file.

Fix: after 1.3.0
Fix from $1,950 2014-11-26
Flash Player HIGH 8.8
CVE-2014-8439 KEVEPSS 20%

Adobe Flash Player before 13.0.0.258 and 14.x and 15.x before 15.0.0.239 on Windows and OS X and before 11.2.202.424 on Linux, Adobe AIR before 15.0.…

Fix: 15.0.0.302+
Fix from $1,950 2014-11-25
Openh264 HIGH 7.5
CVE-2014-8002

Use-after-free vulnerability in decode_slice.cpp in Cisco OpenH264 1.2.0 and earlier allows remote attackers to execute arbitrary code via an encoded…

Fix: after 1.2.0
Fix from $1,950 2014-11-25
Openh264 HIGH 7.5
CVE-2014-8001

Buffer overflow in decode.cpp in Cisco OpenH264 1.2.0 and earlier allows remote attackers to execute arbitrary code via an encoded media file.

Fix: after 1.2.0
Fix from $1,950 2014-11-25
Office HIGH 9.0
CVE-2014-5314

Buffer overflow in Cybozu Office 9 and 10 before 10.1.0, Mailwise 4 and 5 before 5.1.4, and Dezie 8 before 8.1.1 allows remote authenticated users to…

Fix: after 10.0.2
Fix from $1,950 2014-11-24
Wireshark MEDIUM 5.0
CVE-2014-8713

Stack-based buffer overflow in the build_expert_data function in epan/dissectors/packet-ncp2222.inc in the NCP dissector in Wireshark 1.10.x before 1…

Mitigation only
Fix from $1,600 2014-11-23
Wireshark MEDIUM 5.0
CVE-2014-8710

The decompress_sigcomp_message function in epan/sigcomp-udvm.c in the SigComp UDVM dissector in Wireshark 1.10.x before 1.10.11 allows remote attacke…

Mitigation only
Fix from $1,600 2014-11-23
Webaccess HIGH 7.2
CVE-2014-8388

Stack-based buffer overflow in Advantech WebAccess, formerly BroadWin WebAccess, before 8.0 allows remote attackers to execute arbitrary code via a c…

Fix: after 7.2
Fix from $1,950 2014-11-21
Tcpdump MEDIUM 6.4
CVE-2014-8769EPSS 6%

tcpdump 3.8 through 4.6.2 might allow remote attackers to obtain sensitive information from memory or cause a denial of service (packet loss or segme…

No fix yet
Fix from $1,600 2014-11-20
Chrome HIGH 7.5
CVE-2014-7904

Buffer overflow in Skia, as used in Google Chrome before 39.0.2171.65, allows remote attackers to cause a denial of service or possibly have unspecif…

Fix: after 39.0.2171.45
Fix from $1,950 2014-11-19
Chrome HIGH 7.5
CVE-2014-7903

Buffer overflow in OpenJPEG before r2911 in PDFium, as used in Google Chrome before 39.0.2171.65, allows remote attackers to cause a denial of servic…

Fix: after 39.0.2171.45
Fix from $1,950 2014-11-19