Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Memory Buffer Bounds ErrorCWE-119 × clear
Point To Point Protocol HIGH 7.5
CVE-2014-3158

Integer overflow in the getword function in options.c in pppd in Paul's PPP Package (ppp) before 2.4.7 allows attackers to "access privileged options…

Fix: after 2.4.6
Fix from $1,950 2014-11-15
Ruby MEDIUM 5.0
CVE-2014-4975

Off-by-one error in the encodes function in pack.c in Ruby 1.9.3 and earlier, and 2.x through 2.1.2, when using certain format string specifiers, all…

Fix: after 1.9.3
Fix from $1,600 2014-11-15
N750 Wireless Router Firmware HIGH 10.0
CVE-2014-1635EPSS 67%

Buffer overflow in login.cgi in MiniHttpd in Belkin N750 Router with firmware before F9K1103_WW_1.10.17m allows remote attackers to execute arbitrary…

Fix: after 1.10.16n
Fix from $1,950 2014-11-12
Flash Player HIGH 10.0
CVE-2014-0582EPSS 11%

Heap-based buffer overflow in Adobe Flash Player before 13.0.0.252 and 14.x and 15.x before 15.0.0.223 on Windows and OS X and before 11.2.202.418 on…

Fix: 11.2.202.418 / 13.0.0.252+
Fix from $1,950 2014-11-11
Flash Player HIGH 7.5
CVE-2014-0583EPSS 7%

Heap-based buffer overflow in Adobe Flash Player before 13.0.0.252 and 14.x and 15.x before 15.0.0.223 on Windows and OS X and before 11.2.202.418 on…

Fix: 11.2.202.418 / 13.0.0.252+
Fix from $1,950 2014-11-11
Flash Player HIGH 10.0
CVE-2014-0589EPSS 9%

Heap-based buffer overflow in Adobe Flash Player before 13.0.0.252 and 14.x and 15.x before 15.0.0.223 on Windows and OS X and before 11.2.202.418 on…

Fix: 11.2.202.418 / 13.0.0.252+
Fix from $1,950 2014-11-11
Windows 7 HIGH 8.8
CVE-2014-6332 KEVEPSS 95%

OleAut32.dll in OLE in Microsoft Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.…

Patch available
Fix from $1,950 2014-11-11
Linux Kernel HIGH 7.8
CVE-2014-8369

The kvm_iommu_map_pages function in virt/kvm/iommu.c in the Linux kernel through 3.17.2 miscalculates the number of pages during the handling of a ma…

Fix: after 3.17.2
Fix from $1,950 2014-11-10
Ubuntu Linux HIGH 7.5
CVE-2014-8547

libavcodec/gifdec.c in FFmpeg before 2.4.2 does not properly compute image heights, which allows remote attackers to cause a denial of service (out-o…

Fix: after 2.4.1
Fix from $1,950 2014-11-05
Ubuntu Linux HIGH 7.5
CVE-2014-8548

Off-by-one error in libavcodec/smc.c in FFmpeg before 2.4.2 allows remote attackers to cause a denial of service (out-of-bounds access) or possibly h…

Fix: after 2.4.1
Fix from $1,950 2014-11-05
Ubuntu Linux HIGH 7.5
CVE-2014-8541

libavcodec/mjpegdec.c in FFmpeg before 2.4.2 considers only dimension differences, and not bits-per-pixel differences, when determining whether an im…

Fix: after 2.4.1
Fix from $1,950 2014-11-05
Ubuntu Linux HIGH 7.5
CVE-2014-8542

libavcodec/utils.c in FFmpeg before 2.4.2 omits a certain codec ID during enforcement of alignment, which allows remote attackers to cause a denial o…

Fix: after 2.4.1
Fix from $1,950 2014-11-05
Qemu HIGH 7.5
CVE-2013-4542

The virtio_scsi_load_request function in hw/scsi/scsi-bus.c in QEMU before 1.7.2 might allow remote attackers to execute arbitrary code via a crafted…

Fix: after 1.7.1
Fix from $1,950 2014-11-04
Qemu HIGH 7.5
CVE-2014-0182EPSS 5%

Heap-based buffer overflow in the virtio_load function in hw/virtio/virtio.c in QEMU before 1.7.2 might allow remote attackers to execute arbitrary c…

Fix: after 1.7.1
Fix from $1,950 2014-11-04
Qemu MEDIUM 6.8
CVE-2014-3461

hw/usb/bus.c in QEMU 1.6.2 allows remote attackers to execute arbitrary code via crafted savevm data, which triggers a heap-based buffer overflow, re…

Mitigation only
Fix from $1,600 2014-11-04
Qemu HIGH 7.5
CVE-2013-4149EPSS 5%

Buffer overflow in virtio_net_load function in net/virtio-net.c in QEMU 1.3.0 through 1.7.x before 1.7.2 might allow remote attackers to execute arbi…

Patch available
Fix from $1,950 2014-11-04
Qemu HIGH 7.5
CVE-2013-4150

The virtio_net_load function in hw/net/virtio-net.c in QEMU 1.5.0 through 1.7.x before 1.7.2 allows remote attackers to cause a denial of service or …

Patch available
Fix from $1,950 2014-11-04
Qemu HIGH 7.5
CVE-2013-4526

Buffer overflow in hw/ide/ahci.c in QEMU before 1.7.2 allows remote attackers to cause a denial of service and possibly execute arbitrary code via ve…

Fix: after 1.7.1
Fix from $1,950 2014-11-04
Qemu HIGH 7.5
CVE-2013-4527EPSS 5%

Buffer overflow in hw/timer/hpet.c in QEMU before 1.7.2 might allow remote attackers to execute arbitrary code via vectors related to the number of t…

Fix: after 1.7.1
Fix from $1,950 2014-11-04
Qemu HIGH 7.5
CVE-2013-4529

Buffer overflow in hw/pci/pcie_aer.c in QEMU before 1.7.2 allows remote attackers to cause a denial of service and possibly execute arbitrary code vi…

Fix: after 1.7.1
Fix from $1,950 2014-11-04
Qemu HIGH 7.5
CVE-2013-4530EPSS 5%

Buffer overflow in hw/ssi/pl022.c in QEMU before 1.7.2 allows remote attackers to cause a denial of service or possibly execute arbitrary code via cr…

Fix: after 1.7.1
Fix from $1,950 2014-11-04
Qemu HIGH 7.5
CVE-2013-4531

Buffer overflow in target-arm/machine.c in QEMU before 1.7.2 allows remote attackers to cause a denial of service and possibly execute arbitrary code…

Fix: after 1.7.1
Fix from $1,950 2014-11-04
Qemu HIGH 7.5
CVE-2013-4533

Buffer overflow in the pxa2xx_ssp_load function in hw/arm/pxa2xx.c in QEMU before 1.7.2 allows remote attackers to cause a denial of service or possi…

Fix: after 1.7.1
Fix from $1,950 2014-11-04
Qemu HIGH 7.5
CVE-2013-4534

Buffer overflow in hw/intc/openpic.c in QEMU before 1.7.2 allows remote attackers to cause a denial of service or possibly execute arbitrary code via…

Fix: after 1.7.1
Fix from $1,950 2014-11-04
Qemu HIGH 7.5
CVE-2013-4538

Multiple buffer overflows in the ssd0323_load function in hw/display/ssd0323.c in QEMU before 1.7.2 allow remote attackers to cause a denial of servi…

Fix: after 1.7.1
Fix from $1,950 2014-11-04
Qemu HIGH 7.5
CVE-2013-4539

Multiple buffer overflows in the tsc210x_load function in hw/input/tsc210x.c in QEMU before 1.7.2 might allow remote attackers to execute arbitrary c…

Fix: after 1.7.1
Fix from $1,950 2014-11-04
Qemu HIGH 7.5
CVE-2013-4540

Buffer overflow in scoop_gpio_handler_update in QEMU before 1.7.2 might allow remote attackers to execute arbitrary code via a large (1) prev_level, …

Fix: after 1.7.1
Fix from $1,950 2014-11-04
Qemu HIGH 7.5
CVE-2013-4541

The usb_device_post_load function in hw/usb/bus.c in QEMU before 1.7.2 might allow remote attackers to execute arbitrary code via a crafted savevm im…

Fix: after 1.7.1
Fix from $1,950 2014-11-04
Ffmpeg MEDIUM 6.8
CVE-2014-5272

libavcodec/iff.c in FFMpeg before 1.1.14, 1.2.x before 1.2.8, 2.2.x before 2.2.7, and 2.3.x before 2.3.2 allows remote attackers to have unspecified …

Fix: after 1.1.13
Fix from $1,600 2014-11-03
Ffmpeg HIGH 7.5
CVE-2014-5271

Heap-based buffer overflow in the encode_slice function in libavcodec/proresenc_kostya.c in FFMpeg before 1.1.14, 1.2.x before 1.2.8, 2.x before 2.2.…

Fix: after 10.4
Fix from $1,950 2014-11-03