Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Memory Buffer Bounds ErrorCWE-119 × clear
Strongswan MEDIUM 5.1
CVE-2013-2054

Buffer overflow in the atodn function in strongSwan 2.0.0 through 4.3.4, when Opportunistic Encryption is enabled and an RSA key is being used, allow…

Mitigation only
Fix from $1,600 2013-07-09
Libreswan MEDIUM 5.1
CVE-2013-2052

Buffer overflow in the atodn function in libreswan 3.0 and 3.1, when Opportunistic Encryption is enabled and an RSA key is being used, allows remote …

Patch available
Fix from $1,600 2013-07-09
Lianja Sql Server HIGH 7.5
CVE-2013-3563EPSS 49%

Stack-based buffer overflow in db_netserver in Lianja SQL Server before 1.0.0RC5.2 allows remote attackers to cause a denial of service (daemon crash…

Fix: after 1.0
Fix from $1,950 2013-07-04
Libtiff HIGH 9.3
CVE-2013-1960EPSS 12%

Heap-based buffer overflow in the t2p_process_jpeg_strip function in tiff2pdf in libtiff 4.0.3 and earlier allows remote attackers to cause a denial …

Fix: after 4.0.3
Fix from $1,950 2013-07-03
Libtiff HIGH 9.3
CVE-2013-1961EPSS 6%

Stack-based buffer overflow in the t2p_write_pdf_page function in tiff2pdf in libtiff before 4.0.3 allows remote attackers to cause a denial of servi…

Fix: after 4.0.3
Fix from $1,950 2013-07-03
Desktop Collaboration Experience MEDIUM 6.6
CVE-2013-3399

Buffer overflow in an unspecified Android API on the Cisco Desktop Collaboration Experience DX650 allows attackers to execute arbitrary code via vect…

Mitigation only
Fix from $1,600 2013-07-02
Editran Communications Platform HIGH 7.5
CVE-2010-5288

Buffer overflow in the lsConnectionCached function in editcp in EDItran Communications Platform 4.1 R7 allows remote attackers to cause a denial of s…

Mitigation only
Fix from $1,950 2013-06-28
Firefox HIGH 8.8
CVE-2013-1690 KEVEPSS 69%

Mozilla Firefox before 22.0, Firefox ESR 17.x before 17.0.7, Thunderbird before 17.0.7, and Thunderbird ESR 17.x before 17.0.7 do not properly handle…

Fix: 17.0.7 / 22.0+
Fix from $1,950 2013-06-26
Tivoli Monitoring MEDIUM 5.0
CVE-2013-2960

Buffer overflow in KDSMAIN in the Basic Services component in IBM Tivoli Monitoring (ITM) 6.2.0 through FP3, 6.2.1 through FP4, 6.2.2 through FP9, an…

Mitigation only
Fix from $1,600 2013-06-21
Ar 1200 HIGH 7.6
CVE-2013-4630

Stack-based buffer overflow on Huawei AR 150, 200, 1200, 2200, and 3200 routers, when SNMPv3 debugging is enabled, allows remote attackers to execute…

No fix yet
Fix from $1,950 2013-06-20
Ar 1200 HIGH 7.8
CVE-2013-4631

Huawei AR 150, 200, 1200, 2200, and 3200 routers, when SNMPv3 is enabled, allow remote attackers to cause a denial of service (device crash) via malf…

Mitigation only
Fix from $1,950 2013-06-20
Utps MEDIUM 6.9
CVE-2012-6568

Buffer overflow in the back-end component in Huawei UTPS 1.0 allows local users to gain privileges via a long IDS_PLUGIN_NAME string in a plug-in con…

No fix yet
Fix from $1,600 2013-06-20
Ar 18 1x HIGH 9.3
CVE-2012-6569

Stack-based buffer overflow in the HTTP module in the (1) Branch Intelligent Management System (BIMS) and (2) web management components on Huawei AR …

Mitigation only
Fix from $1,950 2013-06-20
Ar 18 1x HIGH 10.0
CVE-2012-6570

The HTTP module in the (1) Branch Intelligent Management System (BIMS) and (2) web management components on Huawei AR routers and S2000, S3000, S3500…

Mitigation only
Fix from $1,950 2013-06-20
Endpoint Protection Manager HIGH 7.9
CVE-2013-1612

Buffer overflow in secars.dll in the management console in Symantec Endpoint Protection Manager (SEPM) 12.1.x before 12.1.3, and Symantec Endpoint Pr…

Mitigation only
Fix from $1,950 2013-06-20
Sterling Control Center MEDIUM 6.3
CVE-2013-2968

An unspecified buffer-read method in IBM Sterling Control Center (SCC) 5.2 before 5.2.0.9, 5.3 before 5.3.0.4, and 5.4 through 5.4.0.1 allows remote …

Mitigation only
Fix from $1,600 2013-06-19
Lotus Quickr For Domino HIGH 9.3
CVE-2013-3026

Buffer overflow in the Lotus Quickr for Domino ActiveX control in qp2.cab in IBM Lotus Quickr 8.1 before FP 8.1.0.32-001a, 8.2 before FP 8.2.0.28-001…

Mitigation only
Fix from $1,950 2013-06-17
Libxt MEDIUM 6.8
CVE-2013-2005

X.org libXt 1.1.3 and earlier does not check the return value of the XGetWindowProperty function, which allows X servers to trigger use of an uniniti…

Fix: after 1.1.3
Fix from $1,600 2013-06-15
Libxv MEDIUM 6.8
CVE-2013-2066

Buffer overflow in X.org libXv 1.0.7 and earlier allows X servers to cause a denial of service (crash) and possibly execute arbitrary code via crafte…

Fix: after 1.0.7
Fix from $1,600 2013-06-15
Libxi MEDIUM 6.8
CVE-2013-1995

X.org libXi 1.7.1 and earlier allows X servers to trigger allocation of insufficient memory and a buffer overflow via vectors related to an unexpecte…

Fix: after 1.7.1
Fix from $1,600 2013-06-15
Libfs MEDIUM 6.8
CVE-2013-1996

X.org libFS 1.0.4 and earlier allows X servers to trigger allocation of insufficient memory and a buffer overflow via vectors related to an unexpecte…

Fix: after 1.0.4
Fix from $1,600 2013-06-15
Libx11 MEDIUM 6.8
CVE-2013-1997

Multiple buffer overflows in X.org libX11 1.5.99.901 (1.6 RC1) and earlier allow X servers to cause a denial of service (crash) and possibly execute …

Fix: after 1.5.99.901
Fix from $1,600 2013-06-15
Libxi MEDIUM 6.8
CVE-2013-1998

Multiple buffer overflows in X.org libXi 1.7.1 and earlier allow X servers to cause a denial of service (crash) and possibly execute arbitrary code v…

Fix: after 1.7.1
Fix from $1,600 2013-06-15
Libxvmc MEDIUM 6.8
CVE-2013-1999

Buffer overflow in X.org libXvMC 1.0.7 and earlier allows X servers to cause a denial of service (crash) and possibly execute arbitrary code via craf…

Fix: after 1.0.7
Fix from $1,600 2013-06-15
Libxxf86dga MEDIUM 6.8
CVE-2013-2000

Multiple buffer overflows in X.org libXxf86dga 1.1.3 and earlier allow X servers to cause a denial of service (crash) and possibly execute arbitrary …

Fix: after 1.1.3
Fix from $1,600 2013-06-15
Libxxf86vm MEDIUM 6.8
CVE-2013-2001

Buffer overflow in X.org libXxf86vm 1.1.2 and earlier allows X servers to cause a denial of service (crash) and possibly execute arbitrary code via c…

Fix: after 1.1.2
Fix from $1,600 2013-06-15
Libx11 MEDIUM 6.8
CVE-2013-2004

The (1) GetDatabase and (2) _XimParseStringFile functions in X.org libX11 1.5.99.901 (1.6 RC1) and earlier do not restrict the recursion depth when p…

Fix: after 1.5.99.901
Fix from $1,600 2013-06-15
Flash Player HIGH 10.0
CVE-2013-3343EPSS 5%

Adobe Flash Player before 10.3.183.90 and 11.x before 11.7.700.224 on Windows, before 10.3.183.90 and 11.x before 11.7.700.225 on Mac OS X, before 10…

Fix: 3.7.0.2090 / 3.7.0.2100+
Fix from $1,950 2013-06-12
Debian Linux MEDIUM 5.0
CVE-2013-4076

Buffer overflow in the dissect_iphc_crtp_fh function in epan/dissectors/packet-ppp.c in the PPP dissector in Wireshark 1.8.x before 1.8.8 allows remo…

Mitigation only
Fix from $1,600 2013-06-09
Debian Linux MEDIUM 5.0
CVE-2013-4077

Array index error in the NBAP dissector in Wireshark 1.8.x before 1.8.8 allows remote attackers to cause a denial of service (application crash) via …

Mitigation only
Fix from $1,600 2013-06-09