Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Memory Buffer Bounds ErrorCWE-119 × clear
Tvos HIGH 7.2
CVE-2014-1287

USB Host in Apple iOS before 7.1 and Apple TV before 6.1 allows physically proximate attackers to execute arbitrary code or cause a denial of service…

Fix: after 7.0.6
Fix from $1,950 2014-03-14
Iphone Os MEDIUM 6.8
CVE-2014-1289

WebKit, as used in Apple iOS before 7.1 and Apple TV before 6.1, allows remote attackers to execute arbitrary code or cause a denial of service (memo…

Fix: after 7.0.6
Fix from $1,600 2014-03-14
Iphone Os MEDIUM 6.8
CVE-2014-1290

WebKit, as used in Apple iOS before 7.1 and Apple TV before 6.1, allows remote attackers to execute arbitrary code or cause a denial of service (memo…

Fix: after 7.0.6
Fix from $1,600 2014-03-14
Tvos MEDIUM 6.8
CVE-2014-1291

WebKit, as used in Apple iOS before 7.1 and Apple TV before 6.1, allows remote attackers to execute arbitrary code or cause a denial of service (memo…

Fix: after 7.0.6
Fix from $1,600 2014-03-14
Iphone Os MEDIUM 6.8
CVE-2014-1292

WebKit, as used in Apple iOS before 7.1 and Apple TV before 6.1, allows remote attackers to execute arbitrary code or cause a denial of service (memo…

Fix: after 7.0.6
Fix from $1,600 2014-03-14
Tvos MEDIUM 6.8
CVE-2014-1293

WebKit, as used in Apple iOS before 7.1 and Apple TV before 6.1, allows remote attackers to execute arbitrary code or cause a denial of service (memo…

Fix: after 7.0.6
Fix from $1,600 2014-03-14
Tvos MEDIUM 6.8
CVE-2014-1294

WebKit, as used in Apple iOS before 7.1 and Apple TV before 6.1, allows remote attackers to execute arbitrary code or cause a denial of service (memo…

Fix: after 7.0.6
Fix from $1,600 2014-03-14
Clearscada MEDIUM 6.8
CVE-2014-0779

The PLC driver in ServerMain.exe in the Kepware KepServerEX 4 component in Schneider Electric StruxureWare SCADA Expert ClearSCADA 2010 R2 build 71.4…

Mitigation only
Fix from $1,600 2014-03-14
Centum Cs 3000 HIGH 9.3
CVE-2014-0781EPSS 25%

Heap-based buffer overflow in BKCLogSvr.exe in Yokogawa CENTUM CS 3000 R3.09.50 and earlier allows remote attackers to execute arbitrary code via cra…

No fix yet
Fix from $1,950 2014-03-14
Centum Cs 3000 HIGH 9.0
CVE-2014-0783EPSS 68%

Stack-based buffer overflow in BKHOdeq.exe in Yokogawa CENTUM CS 3000 R3.09.50 and earlier allows remote attackers to execute arbitrary code via a cr…

No fix yet
Fix from $1,950 2014-03-14
Centum Cs 3000 HIGH 8.3
CVE-2014-0784EPSS 36%

Stack-based buffer overflow in BKBCopyD.exe in Yokogawa CENTUM CS 3000 R3.09.50 and earlier allows remote attackers to execute arbitrary code via a c…

No fix yet
Fix from $1,950 2014-03-14
Freetype HIGH 7.5
CVE-2014-2240EPSS 7%

Stack-based buffer overflow in the cf2_hintmap_build function in cff/cf2hints.c in FreeType before 2.5.3 allows remote attackers to cause a denial of…

Fix: after 2.5.2
Fix from $1,950 2014-03-12
Ubuntu Linux MEDIUM 6.9
CVE-2014-0004

Stack-based buffer overflow in udisks before 1.0.5 and 2.x before 2.1.3 allows local users to cause a denial of service (crash) and possibly execute …

Fix: after 1.0.4
Fix from $1,600 2014-03-11
Chasys Draw Ies HIGH 9.3
CVE-2013-3928EPSS 37%

Stack-based buffer overflow in the ReadFile function in flt_BMP.dll in Chasys Draw IES before 4.11.02 allows remote attackers to execute arbitrary co…

Fix: after 4.10.01
Fix from $1,950 2014-03-11
Wireshark HIGH 9.3
CVE-2014-2299EPSS 47%

Buffer overflow in the mpeg_read function in wiretap/mpeg.c in the MPEG parser in Wireshark 1.8.x before 1.8.13 and 1.10.x before 1.10.6 allows remot…

No fix yet
Fix from $1,950 2014-03-11
Linux Kernel MEDIUM 6.1
CVE-2014-2309

The ip6_route_add function in net/ipv6/route.c in the Linux kernel through 3.13.6 does not properly count the addition of routes, which allows remote…

Fix: after 3.13.6
Fix from $1,600 2014-03-11
Getgo Download Manager HIGH 10.0
CVE-2014-2206EPSS 61%

Stack-based buffer overflow in GetGo Download Manager 4.9.0.1982, 4.8.2.1346, 4.4.5.502, and earlier allows remote attackers to cause a denial of ser…

Fix: after 4.4.5.502
Fix from $1,950 2014-03-05
Chrome HIGH 7.5
CVE-2013-6665

Heap-based buffer overflow in the ResourceProvider::InitializeSoftware function in cc/resources/resource_provider.cc in Google Chrome before 33.0.175…

Fix: after 33.0.1750.144
Fix from $1,950 2014-03-05
Ds 2cd7153 E Firmware HIGH 10.0
CVE-2013-4977EPSS 17%

Buffer overflow in the RTSP Packet Handler in Hikvision DS-2CD7153-E IP camera with firmware 4.1.0 b130111 (Jan 2013), and possibly other devices, al…

Mitigation only
Fix from $1,950 2014-03-03
Avn801 Dvr Firmware HIGH 9.0
CVE-2013-4980EPSS 6%

Buffer overflow in the RTSP Packet Handler in AVTECH AVN801 DVR with firmware 1017-1003-1009-1003 and earlier, and possibly other devices, allows rem…

Fix: after 1017-1003-1009-1003
Fix from $1,950 2014-03-03
Avn801 Dvr Firmware HIGH 9.0
CVE-2013-4981EPSS 6%

Buffer overflow in cgi-bin/user/Config.cgi in AVTECH AVN801 DVR with firmware 1017-1003-1009-1003 and earlier, and possibly other devices, allows rem…

Fix: after 1017-1003-1009-1003
Fix from $1,950 2014-03-03
Mupdf HIGH 7.5
CVE-2014-2013EPSS 15%

Stack-based buffer overflow in the xps_parse_color function in xps/xps-common.c in MuPDF 1.3 and earlier allows remote attackers to execute arbitrary…

Fix: after 1.3
Fix from $1,950 2014-03-03
Zoom Player MEDIUM 6.8
CVE-2013-3259

Stack-based buffer overflow in INMATRIX Zoom Player before 8.7 beta 11 allows remote attackers to execute arbitrary code via a large biClrUsed value …

Fix: after 8.6.1
Fix from $1,600 2014-03-03
Zoom Player MEDIUM 6.8
CVE-2013-3260

Heap-based buffer overflow in INMATRIX Zoom Player before 8.7 beta 11 allows remote attackers to execute arbitrary code via a large biClrUsed value i…

Fix: after 8.6.1
Fix from $1,600 2014-03-03
Ffmpeg MEDIUM 6.8
CVE-2014-2098

libavcodec/wmalosslessdec.c in FFmpeg before 2.1.4 uses an incorrect data-structure size for certain coefficients, which allows remote attackers to c…

Fix: after 2.1.3
Fix from $1,600 2014-03-02
Python HIGH 7.5
CVE-2014-1912EPSS 28%

Buffer overflow in the socket.recvfrom_into function in Modules/socketmodule.c in Python 2.5 before 2.7.7, 3.x before 3.3.4, and 3.4.x before 3.4rc1 …

Fix: after 10.10.4
Fix from $1,950 2014-03-01
Base Sas HIGH 9.3
CVE-2014-2262

Buffer overflow in the client application in Base SAS 9.2 TS2M3, SAS 9.3 TS1M1 and TS1M2, and SAS 9.4 TS1M0 allows user-assisted remote attackers to …

Mitigation only
Fix from $1,950 2014-03-01
Ffmpeg MEDIUM 6.8
CVE-2014-2263

The mpegts_write_pmt function in the MPEG2 transport stream (aka DVB) muxer (libavformat/mpegtsenc.c) in FFmpeg, possibly 2.1 and earlier, allows rem…

Fix: after 2.1
Fix from $1,600 2014-03-01
Icinga MEDIUM 5.0
CVE-2014-1878

Stack-based buffer overflow in the cmd_submitf function in cgi/cmd.c in Nagios Core, possibly 4.0.3rc1 and earlier, and Icinga before 1.8.6, 1.9 befo…

Fix: after 4.0.3
Fix from $1,600 2014-02-28
Linux Kernel HIGH 7.2
CVE-2014-0069

The cifs_iovec_write function in fs/cifs/file.c in the Linux kernel through 3.13.5 does not properly handle uncached write operations that copy fewer…

Fix: 3.2.57 / 3.4.83+
Fix from $1,950 2014-02-28