Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Memory Buffer Bounds ErrorCWE-119 × clear
Safari MEDIUM 6.8
CVE-2014-4415

WebKit, as used in Apple iOS before 8 and Apple TV before 7, allows remote attackers to execute arbitrary code or cause a denial of service (memory c…

Fix: after 7.1.2
Fix from $1,600 2014-09-18
Tvos MEDIUM 5.8
CVE-2014-4378

CoreGraphics in Apple iOS before 8 and Apple TV before 7 allows remote attackers to obtain sensitive information or cause a denial of service (out-of…

Fix: after 10.9.4
Fix from $1,600 2014-09-18
Tvos HIGH 7.1
CVE-2014-4379

An unspecified IOHIDFamily function in Apple iOS before 8 and Apple TV before 7 lacks proper bounds checking to prevent reading of kernel pointers, w…

Fix: after 10.9.4
Fix from $1,950 2014-09-18
Tvos HIGH 9.3
CVE-2014-4380

The IOHIDFamily kernel extension in Apple iOS before 8 and Apple TV before 7 lacks proper bounds checking on write operations, which allows attackers…

Fix: after 10.0.2
Fix from $1,950 2014-09-18
Mac Os X HIGH 9.3
CVE-2014-4381

Libnotify in Apple iOS before 8 and Apple TV before 7 lacks proper bounds checking on write operations, which allows attackers to execute arbitrary c…

Fix: after 10.9.4
Fix from $1,950 2014-09-18
Tvos MEDIUM 6.9
CVE-2014-4408

The rt_setgate function in the kernel in Apple iOS before 8 and Apple TV before 7 allows local users to gain privileges or cause a denial of service …

Fix: after 10.9.5
Fix from $1,600 2014-09-18
Acrobat Reader HIGH 10.0
CVE-2014-0561EPSS 10%

Heap-based buffer overflow in Adobe Reader and Acrobat 10.x before 10.1.12 and 11.x before 11.0.09 on Windows and OS X allows attackers to execute ar…

Patch available
Fix from $1,950 2014-09-17
Acrobat HIGH 7.8
CVE-2014-0563

Adobe Reader and Acrobat 10.x before 10.1.12 and 11.x before 11.0.09 on Windows and OS X allow attackers to cause a denial of service (memory corrupt…

Patch available
Fix from $1,950 2014-09-17
Acrobat HIGH 10.0
CVE-2014-0565EPSS 5%

Adobe Reader and Acrobat 10.x before 10.1.12 and 11.x before 11.0.09 on Windows and OS X allow attackers to execute arbitrary code or cause a denial …

Patch available
Fix from $1,950 2014-09-17
Acrobat HIGH 10.0
CVE-2014-0566EPSS 6%

Adobe Reader and Acrobat 10.x before 10.1.12 and 11.x before 11.0.09 on Windows and OS X allow attackers to execute arbitrary code or cause a denial …

Fix: 10.1.15 / 11.0.12+
Fix from $1,950 2014-09-17
Acrobat HIGH 10.0
CVE-2014-0567EPSS 10%

Heap-based buffer overflow in Adobe Reader and Acrobat 10.x before 10.1.12 and 11.x before 11.0.09 on Windows and OS X allows attackers to execute ar…

Patch available
Fix from $1,950 2014-09-17
Embarcadero C\+\+builder Xe6 MEDIUM 6.8
CVE-2014-0993EPSS 6%

Buffer overflow in the Vcl.Graphics.TPicture.Bitmap implementation in the Visual Component Library (VCL) in Embarcadero Delphi XE6 20.0.15596.9843 an…

Patch available
Fix from $1,600 2014-09-15
Squid MEDIUM 6.8
CVE-2014-6270EPSS 23%

Off-by-one error in the snmpHandleUdp function in snmp_core.cc in Squid 2.x and 3.x, when an SNMP port is configured, allows remote attackers to caus…

Patch available
Fix from $1,600 2014-09-12
Adobe Air HIGH 10.0
CVE-2014-0559EPSS 13%

Heap-based buffer overflow in Adobe Flash Player before 13.0.0.244 and 14.x and 15.x before 15.0.0.152 on Windows and OS X and before 11.2.202.406 on…

Fix: after 14.0.0.179
Fix from $1,950 2014-09-10
Adobe Air HIGH 10.0
CVE-2014-0552EPSS 6%

Adobe Flash Player before 13.0.0.244 and 14.x and 15.x before 15.0.0.152 on Windows and OS X and before 11.2.202.406 on Linux, Adobe AIR before 15.0.…

Fix: after 14.0.0.179
Fix from $1,950 2014-09-10
Adobe Air HIGH 10.0
CVE-2014-0555EPSS 6%

Adobe Flash Player before 13.0.0.244 and 14.x and 15.x before 15.0.0.152 on Windows and OS X and before 11.2.202.406 on Linux, Adobe AIR before 15.0.…

Fix: after 14.0.0.179
Fix from $1,950 2014-09-10
Flash Player HIGH 10.0
CVE-2014-0556EPSS 84%

Heap-based buffer overflow in Adobe Flash Player before 13.0.0.244 and 14.x and 15.x before 15.0.0.152 on Windows and OS X and before 11.2.202.406 on…

Fix: after 14.0.0.179
Fix from $1,950 2014-09-10
Adobe Air HIGH 10.0
CVE-2014-0549EPSS 6%

Adobe Flash Player before 13.0.0.244 and 14.x and 15.x before 15.0.0.152 on Windows and OS X and before 11.2.202.406 on Linux, Adobe AIR before 15.0.…

Fix: after 14.0.0.179
Fix from $1,950 2014-09-10
Adobe Air HIGH 10.0
CVE-2014-0550EPSS 6%

Adobe Flash Player before 13.0.0.244 and 14.x and 15.x before 15.0.0.152 on Windows and OS X and before 11.2.202.406 on Linux, Adobe AIR before 15.0.…

Fix: after 14.0.0.179
Fix from $1,950 2014-09-10
Adobe Air HIGH 10.0
CVE-2014-0551EPSS 6%

Adobe Flash Player before 13.0.0.244 and 14.x and 15.x before 15.0.0.152 on Windows and OS X and before 11.2.202.406 on Linux, Adobe AIR before 15.0.…

Fix: after 14.0.0.179
Fix from $1,950 2014-09-10
Flash Player HIGH 10.0
CVE-2014-0547EPSS 6%

Adobe Flash Player before 13.0.0.244 and 14.x and 15.x before 15.0.0.152 on Windows and OS X and before 11.2.202.406 on Linux, Adobe AIR before 15.0.…

Fix: after 14.0.0.179
Fix from $1,950 2014-09-10
Ubuntu Linux HIGH 7.5
CVE-2014-3618EPSS 9%

Heap-based buffer overflow in formisc.c in formail in procmail 3.22 allows remote attackers to cause a denial of service (crash) and possibly execute…

No fix yet
Fix from $1,950 2014-09-08
Node.js MEDIUM 5.0
CVE-2014-5256

Node.js 0.8 before 0.8.28 and 0.10 before 0.10.30 does not consider the possibility of recursive processing that triggers V8 garbage collection in co…

Patch available
Fix from $1,600 2014-09-05
Netweaver MEDIUM 6.5
CVE-2014-6252

Buffer overflow in disp+work.exe 7000.52.12.34966 and 7200.117.19.50294 in the Dispatcher in SAP NetWeaver 7.00 and 7.20 allows remote authenticated …

Mitigation only
Fix from $1,600 2014-09-05
Crystal Reports MEDIUM 6.8
CVE-2014-5505

Stack-based buffer overflow in SAP Crystal Reports allows remote attackers to execute arbitrary code via a crafted data source string in an RPT file.

Mitigation only
Fix from $1,600 2014-09-04
Ubuntu Linux MEDIUM 5.0
CVE-2014-5461EPSS 12%

Buffer overflow in the vararg functions in ldo.c in Lua 5.1 through 5.2.x before 5.2.3 allows context-dependent attackers to cause a denial of servic…

Patch available
Fix from $1,600 2014-09-04
Db2 HIGH 8.5
CVE-2014-3094EPSS 5%

Stack-based buffer overflow in IBM DB2 9.7 through FP9a, 9.8 through FP5, 10.1 through FP4, and 10.5 before FP4 on Linux, UNIX, and Windows allows re…

Patch available
Fix from $1,950 2014-09-04
Firefox HIGH 10.0
CVE-2014-1553EPSS 6%

Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 32.0, Firefox ESR 31.x before 31.1, and Thunderbird 31.x before …

Fix: after 31.1.0
Fix from $1,950 2014-09-03
Firefox HIGH 10.0
CVE-2014-1554EPSS 6%

Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 32.0 allow remote attackers to cause a denial of service (memory…

Fix: after 31.1.0
Fix from $1,950 2014-09-03
Firefox HIGH 10.0
CVE-2014-1562EPSS 6%

Unspecified vulnerability in the browser engine in Mozilla Firefox before 32.0, Firefox ESR 24.x before 24.8 and 31.x before 31.1, and Thunderbird 24…

Fix: after 31.1.0
Fix from $1,950 2014-09-03