Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Memory Buffer Bounds ErrorCWE-119 × clear
Libtiff MEDIUM 6.8
CVE-2012-3401

The t2p_read_tiff_init function in tiff2pdf (tools/tiff2pdf.c) in LibTIFF 4.0.2 and earlier does not properly initialize the T2P context struct point…

Fix: after 4.0.2
Fix from $1,600 2012-08-13
Net I Viewer HIGH 9.3
CVE-2012-4250EPSS 6%

Stack-based buffer overflow in the RequestScreenOptimization function in the XProcessControl.ocx ActiveX control in msls31.dll in Samsung NET-i viewe…

No fix yet
Fix from $1,950 2012-08-13
Chrome HIGH 7.5
CVE-2012-2863

The PDF functionality in Google Chrome before 21.0.1180.75 allows remote attackers to cause a denial of service or possibly have unspecified other im…

Fix: after 21.0.1180.74
Fix from $1,950 2012-08-09
Icedtea Web MEDIUM 6.8
CVE-2012-3422

The getFirstInTableInstance function in the IcedTea-Web plugin before 1.2.1 returns an uninitialized pointer when the instance_to_id_map hash is empt…

Fix: after 1.2
Fix from $1,600 2012-08-07
Icedtea Web HIGH 7.5
CVE-2012-3423EPSS 6%

The IcedTea-Web plugin before 1.2.1 does not properly handle NPVariant NPStrings without NUL terminators, which allows remote attackers to cause a de…

Fix: after 1.2
Fix from $1,950 2012-08-07
Nx Os MEDIUM 5.0
CVE-2012-1357

The igmp_snoop_orib_fill_source_update function in the IGMP process in NX-OS 5.0 and 5.1 on Cisco Nexus 5000 series switches allows remote attackers …

Mitigation only
Fix from $1,600 2012-08-06
Unified Computing System Infrastructure And Unified Computing System Software MEDIUM 5.0
CVE-2012-1339

The Fabric Interconnect component in Cisco Unified Computing System (UCS) 2.0 allows remote attackers to cause a denial of service (process crash) vi…

Mitigation only
Fix from $1,600 2012-08-06
Mds 9000 Nx Os MEDIUM 5.0
CVE-2012-1340

The Fibre Channel over IP (FCIP) implementation in Cisco MDS NX-OS 4.2 and 5.2 on MDS 9000 series switches allows remote attackers to cause a denial …

Mitigation only
Fix from $1,600 2012-08-06
Bitcoin Core MEDIUM 5.0
CVE-2010-5140

wxBitcoin and bitcoind before 0.3.13 do not properly handle bitcoins associated with Bitcoin transactions that have zero confirmations, which allows …

Fix: after 0.3.12
Fix from $1,600 2012-08-06
Chrome HIGH 7.5
CVE-2012-2856

The PDF functionality in Google Chrome before 21.0.1180.57 on Mac OS X and Linux, and before 21.0.1180.60 on Windows and Chrome Frame, allows remote …

Fix: after 21.0.1180.56
Fix from $1,950 2012-08-06
Chrome MEDIUM 6.8
CVE-2012-2858

Buffer overflow in the WebP decoder in Google Chrome before 21.0.1180.57 on Mac OS X and Linux, and before 21.0.1180.60 on Windows and Chrome Frame, …

Fix: after 21.0.1180.56
Fix from $1,600 2012-08-06
Chrome HIGH 7.5
CVE-2012-2859

Google Chrome before 21.0.1180.57 on Linux does not properly handle tabs, which allows remote attackers to execute arbitrary code or cause a denial o…

Fix: after 21.0.1180.56
Fix from $1,950 2012-08-06
Django MEDIUM 5.0
CVE-2012-3444

The get_image_dimensions function in the image-handling functionality in Django before 1.3.2 and 1.4.x before 1.4.1 uses a constant chunk size in all…

Fix: after 1.3
Fix from $1,600 2012-07-31
Simatic S7 400 Cpu Firmware HIGH 7.8
CVE-2012-3017

Siemens SIMATIC S7-400 PN CPU devices with firmware 5.x allow remote attackers to cause a denial of service (defect-mode transition and service outag…

Mitigation only
Fix from $1,950 2012-07-31
Nsd MEDIUM 5.0
CVE-2012-2978EPSS 9%

query.c in NSD 3.0.x through 3.0.8, 3.1.x through 3.1.1, and 3.2.x before 3.2.12 allows remote attackers to cause a denial of service (NULL pointer d…

Mitigation only
Fix from $1,600 2012-07-27
Zenworks Configuration Management MEDIUM 6.8
CVE-2011-3174

Buffer overflow in the DoFindReplace function in the ISGrid.Grid2.1 ActiveX control in InstallShield/ISGrid2.dll in AdminStudio in Novell ZENworks Co…

Patch available
Fix from $1,600 2012-07-26
Provisioning Services HIGH 7.5
CVE-2012-4068

Heap-based buffer overflow in the SoapServer service in Citrix Provisioning Services 5.0, 5.1, 5.6, 5.6 SP1, 6.0, and 6.1 allows remote attackers to …

Patch available
Fix from $1,950 2012-07-26
Autorun Killer MEDIUM 6.9
CVE-2012-4054

Buffer overflow in the readfile function in CPE17 Autorun Killer 1.7.1 and earlier allows physically proximate attackers to execute arbitrary code vi…

Fix: after 1.7.1
Fix from $1,600 2012-07-25
Remote Anything HIGH 9.3
CVE-2012-4057EPSS 6%

Buffer overflow in the Player in Remote-Anything 5.60.15 allows remote attackers to execute arbitrary code via a crafted flm file.

No fix yet
Fix from $1,950 2012-07-25
Dhcpcd HIGH 7.5
CVE-2012-2152

Stack-based buffer overflow in the get_packet method in socket.c in dhcpcd 3.2.3 allows remote attackers to cause a denial of service (crash) and pos…

Mitigation only
Fix from $1,950 2012-07-25
Safari HIGH 9.3
CVE-2012-3656

WebKit, as used in Apple Safari before 6.0, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and app…

Fix: after 5.1.7
Fix from $1,950 2012-07-25
Safari HIGH 9.3
CVE-2012-3661

WebKit, as used in Apple Safari before 6.0, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and app…

Fix: after 5.1.7
Fix from $1,950 2012-07-25
Safari HIGH 9.3
CVE-2012-3663

WebKit, as used in Apple Safari before 6.0, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and app…

Fix: after 5.1.7
Fix from $1,950 2012-07-25
Safari HIGH 9.3
CVE-2012-3664

WebKit, as used in Apple Safari before 6.0, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and app…

Fix: after 5.1.7
Fix from $1,950 2012-07-25
Safari HIGH 9.3
CVE-2012-3665

WebKit, as used in Apple Safari before 6.0, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and app…

Fix: after 5.1.7
Fix from $1,950 2012-07-25
Safari HIGH 9.3
CVE-2012-3666

WebKit, as used in Apple Safari before 6.0, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and app…

Fix: after 5.1.7
Fix from $1,950 2012-07-25
Safari HIGH 9.3
CVE-2012-3667

WebKit, as used in Apple Safari before 6.0, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and app…

Fix: after 5.1.7
Fix from $1,950 2012-07-25
Safari HIGH 9.3
CVE-2012-3668

WebKit, as used in Apple Safari before 6.0, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and app…

Fix: after 5.1.7
Fix from $1,950 2012-07-25
Safari HIGH 9.3
CVE-2012-3669

WebKit, as used in Apple Safari before 6.0, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and app…

Fix: after 5.1.7
Fix from $1,950 2012-07-25
Safari HIGH 9.3
CVE-2012-3670

WebKit, as used in Apple Safari before 6.0, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and app…

Fix: after 5.1.7
Fix from $1,950 2012-07-25