Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Memory Buffer Bounds ErrorCWE-119 × clear
Openjpeg HIGH 10.0
CVE-2012-3358EPSS 8%

Multiple heap-based buffer overflows in the j2k_read_sot function in j2k.c in OpenJPEG 1.5 allow remote attackers to cause a denial of service (appli…

Mitigation only
Fix from $1,950 2012-07-18
Openjpeg MEDIUM 6.8
CVE-2009-5030

The tcd_free_encode function in tcd.c in OpenJPEG 1.3 through 1.5 allows remote attackers to cause a denial of service (memory corruption) and possib…

Patch available
Fix from $1,600 2012-07-18
Firefox HIGH 9.3
CVE-2012-1953

The ElementAnimations::EnsureStyleRuleFor function in Mozilla Firefox 4.x through 13.0, Firefox ESR 10.x before 10.0.6, Thunderbird 5.0 through 13.0,…

Fix: after 2.10
Fix from $1,950 2012-07-18
Xnview MEDIUM 6.8
CVE-2012-0276EPSS 8%

Multiple heap-based buffer overflows in XnView before 1.99 allow remote attackers to cause a denial of service (application crash) and possibly execu…

Fix: after 1.98.8
Fix from $1,600 2012-07-17
Xnview MEDIUM 6.8
CVE-2012-0277EPSS 8%

Heap-based buffer overflow in XnView before 1.99 allows remote attackers to cause a denial of service (application crash) and possibly execute arbitr…

Fix: after 1.98.8
Fix from $1,600 2012-07-17
Xnview MEDIUM 6.8
CVE-2012-0282EPSS 7%

Heap-based buffer overflow in XnView before 1.99 allows remote attackers to cause a denial of service (application crash) and possibly execute arbitr…

Fix: after 1.98.8
Fix from $1,600 2012-07-17
File MEDIUM 6.5
CVE-2012-1571

file before 5.11 and libmagic allow remote attackers to cause a denial of service (crash) via a crafted Composite Document File (CDF) file that trigg…

Fix: after 5.10
Fix from $1,600 2012-07-17
Libexif MEDIUM 6.4
CVE-2012-2812

The exif_entry_get_value function in exif-entry.c in the EXIF Tag Parsing Library (aka libexif) before 0.6.21 allows remote attackers to cause a deni…

Fix: after 0.6.20
Fix from $1,600 2012-07-13
Libexif MEDIUM 6.4
CVE-2012-2813

The exif_convert_utf16_to_utf8 function in exif-entry.c in the EXIF Tag Parsing Library (aka libexif) before 0.6.21 allows remote attackers to cause …

Fix: after 0.6.20
Fix from $1,600 2012-07-13
Libexif HIGH 7.5
CVE-2012-2814EPSS 8%

Buffer overflow in the exif_entry_format_value function in exif-entry.c in the EXIF Tag Parsing Library (aka libexif) 0.6.20 allows remote attackers …

Mitigation only
Fix from $1,950 2012-07-13
Libexif MEDIUM 6.4
CVE-2012-2836EPSS 6%

The exif_data_load_data function in exif-data.c in the EXIF Tag Parsing Library (aka libexif) before 0.6.21 allows remote attackers to cause a denial…

Fix: after 0.6.20
Fix from $1,600 2012-07-13
Vlc Media Player MEDIUM 6.8
CVE-2012-3377

Heap-based buffer overflow in the Ogg_DecodePacket function in the OGG demuxer (modules/demux/ogg.c) in VideoLAN VLC media player before 2.0.2 allows…

Fix: after 2.0.1
Fix from $1,600 2012-07-12
Lattice Diamond Programmer MEDIUM 6.8
CVE-2012-2614

Buffer overflow in programmer.exe in Lattice Diamond Programmer 1.4.2 allows user-assisted remote attackers to cause a denial of service (application…

No fix yet
Fix from $1,600 2012-07-12
Libzip HIGH 7.5
CVE-2012-1162

Heap-based buffer overflow in the _zip_readcdir function in zip_open.c in libzip 0.10 allows remote attackers to cause a denial of service (applicati…

No fix yet
Fix from $1,950 2012-07-12
Winamp MEDIUM 6.8
CVE-2012-3889

The in_mod plugin in Winamp before 5.63 allows remote attackers to cause a denial of service (memory corruption) or possibly have unspecified other i…

Fix: after 5.623
Fix from $1,600 2012-07-11
Winamp MEDIUM 6.8
CVE-2012-3890

The in_mod plugin in Winamp before 5.63 allows remote attackers to cause a denial of service (heap memory corruption) or possibly have unspecified ot…

Fix: after 5.623
Fix from $1,600 2012-07-11
Data Access Components CRITICAL 9.8
CVE-2012-1891EPSS 29%

Heap-based buffer overflow in Microsoft Data Access Components (MDAC) 2.8 SP1 and SP2 and Windows Data Access Components (WDAC) 6.0 allows remote att…

Mitigation only
Fix from $2,300 2012-07-10
Pidgin HIGH 7.5
CVE-2012-3374EPSS 6%

Buffer overflow in markup.c in the MXit protocol plugin in libpurple in Pidgin before 2.10.5 allows remote attackers to execute arbitrary code via a …

Fix: after 2.10.4
Fix from $1,950 2012-07-07
Irfanview Plugins HIGH 9.3
CVE-2012-3585EPSS 8%

Heap-based buffer overflow in jpeg_ls.dll in the Jpeg_LS (aka JLS) plugin in the formats plugins in IrfanView PlugIns before 4.34 allows remote attac…

Fix: after 4.33
Fix from $1,950 2012-07-05
Kingview HIGH 10.0
CVE-2012-1830EPSS 8%

Stack-based buffer overflow in WellinTech KingView 6.53 allows remote attackers to execute arbitrary code via a crafted packet to TCP port 555.

Fix: after 6.53
Fix from $1,950 2012-07-05
Kingview HIGH 10.0
CVE-2012-1831EPSS 16%

Heap-based buffer overflow in WellinTech KingView 6.53 allows remote attackers to execute arbitrary code via a crafted packet to TCP port 555.

Fix: after 6.53
Fix from $1,950 2012-07-05
Kingview HIGH 10.0
CVE-2012-1832EPSS 6%

WellinTech KingView 6.53 allows remote attackers to execute arbitrary code or cause a denial of service (out-of-bounds read) via a crafted packet to …

Fix: after 6.53
Fix from $1,950 2012-07-05
Captiva Quickscan Pro HIGH 9.3
CVE-2012-2515EPSS 28%

Multiple stack-based buffer overflows in the KeyHelp.KeyCtrl.1 ActiveX control in KeyHelp.ocx 1.2.312 in KeyWorks KeyHelp Module (aka the HTML Help c…

No fix yet
Fix from $1,950 2012-07-05
Dasabcip MEDIUM 5.0
CVE-2012-3007

Stack-based buffer overflow in slssvc.exe before 58.x in Invensys Wonderware SuiteLink in the Invensys System Platform software suite, as used in InT…

Fix: after 10.0
Fix from $1,600 2012-07-05
Lan Messenger1.2.28 MEDIUM 5.0
CVE-2012-3845

Buffer overflow in LAN Messenger 1.2.28 and earlier allows remote attackers to cause a denial of service (crash) via a long string in an initiation r…

No fix yet
Fix from $1,600 2012-07-03
Aura Application Server 5300 HIGH 10.0
CVE-2011-5096

Stack-based buffer overflow in cstore.exe in the Media Application Server (MAS) in Avaya Aura Application Server 5300 (formerly Nortel Media Applicat…

Mitigation only
Fix from $1,950 2012-07-03
Webex Advanced Recording Format Player HIGH 9.3
CVE-2012-3053

Buffer overflow in the Cisco WebEx Advanced Recording Format (ARF) player T27 L through SP11 EP26, T27 LB through SP21 EP10, T27 LC before SP25 EP11,…

Fix: 27.25.11 / 27.32.2+
Fix from $1,950 2012-06-29
Webex Recording Format Player HIGH 9.3
CVE-2012-3054

Heap-based buffer overflow in the Cisco WebEx Recording Format (WRF) player T27 L through SP11 EP26, T27 LB through SP21 EP10, T27 LC before SP25 EP1…

Fix: 27.25.11 / 27.32.2+
Fix from $1,950 2012-06-29
Webex Recording Format Player HIGH 9.3
CVE-2012-3055

Stack-based buffer overflow in the Cisco WebEx Recording Format (WRF) player T27 L through SP11 EP26, T27 LB through SP21 EP10, T27 LC before SP25 EP…

Fix: 27.25.11 / 27.32.2+
Fix from $1,950 2012-06-29
Webex Recording Format Player HIGH 9.3
CVE-2012-3056

Buffer overflow in the Cisco WebEx Recording Format (WRF) player T27 L through SP11 EP26, T27 LB through SP21 EP10, T27 LC before SP25 EP11, T27 LD b…

Fix: 27.25.11 / 27.32.2+
Fix from $1,950 2012-06-29