Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Memory Buffer Bounds ErrorCWE-119 × clear
HIGH 7.5 CVE-2017-9469EPSS 6% In Irssi before 1.0.3, when receiving certain incorrectly quoted DCC files, it tries to find the terminating quote one byte before the allocated memo… Debian Linux after 1.0.2 Fix from $1,9502017-06-07 MEDIUM 6.5 CVE-2016-3077 The VersionMapper.fromKernelVersionString method in oVirt Engine allows remote authenticated users to cause a denial of service (process crash) for a… Ovirt Engine Mitigation only Fix from $1,6002017-06-06 HIGH 7.8 CVE-2014-9923 In NAS in all Android releases from CAF using the Linux kernel, a Buffer Copy without Checking Size of Input vulnerability could potentially exist. Android Patch available Fix from $1,9502017-06-06 HIGH 7.8 CVE-2014-9925 In HDR in all Android releases from CAF using the Linux kernel, a Buffer Copy without Checking Size of Input vulnerability could potentially exist. Android Patch available Fix from $1,9502017-06-06 HIGH 7.8 CVE-2014-9927 In UIM in all Android releases from CAF using the Linux kernel, a Buffer Copy without Checking Size of Input vulnerability could potentially exist. Android Patch available Fix from $1,9502017-06-06 HIGH 7.8 CVE-2014-9928 In GERAN in all Android releases from CAF using the Linux kernel, a Buffer Copy without Checking Size of Input vulnerability could potentially exist. Android Patch available Fix from $1,9502017-06-06 HIGH 7.8 CVE-2014-9929 In WCDMA in all Android releases from CAF using the Linux kernel, a Use of Out-of-range Pointer Offset vulnerability could potentially exist. Android Patch available Fix from $1,9502017-06-06 CRITICAL 9.8 CVE-2017-9430EPSS 11% Stack-based buffer overflow in dnstracer through 1.9 allows attackers to cause a denial of service (application crash) or possibly have unspecified o… Dnstracer after 1.9 Fix from $2,3002017-06-05 CRITICAL 9.8 CVE-2017-9433 Document Liberation Project libmwaw before 2017-04-08 has an out-of-bounds write caused by a heap-based buffer overflow related to the MsWrd1Parser::… Libmwaw after 0.3.11 Fix from $2,3002017-06-05 HIGH 7.5 CVE-2017-9372 PJSIP, as used in Asterisk Open Source 13.x before 13.15.1 and 14.x before 14.4.1, Certified Asterisk 13.13 before 13.13-cert4, and other products, a… Open Source Mitigation only Fix from $1,9502017-06-02 HIGH 7.5 CVE-2017-9348 In Wireshark 2.2.0 to 2.2.6, the DOF dissector could read past the end of a buffer. This was addressed in epan/dissectors/packet-dof.c by validating … Wireshark after 2.2.6 Fix from $1,9502017-06-02 HIGH 7.5 CVE-2017-9351 In Wireshark 2.2.0 to 2.2.6 and 2.0.0 to 2.0.12, the DHCP dissector could read past the end of a buffer. This was addressed in epan/dissectors/packet… Wireshark after 2.2.6 Fix from $1,9502017-06-02 HIGH 7.8 CVE-2017-9300 plugins\codec\libflac_plugin.dll in VideoLAN VLC media player 2.2.4 allows remote attackers to cause a denial of service (heap corruption and applica… Vlc Media Player after 2.2.4 Fix from $1,9502017-05-29 HIGH 8.8 CVE-2016-10377 In Open vSwitch (OvS) 2.5.0, a malformed IP packet can cause the switch to read past the end of the packet buffer due to an unsigned integer underflo… Openvswitch Patch available Fix from $1,9502017-05-29 MEDIUM 5.5 CVE-2017-8535EPSS 17% The Microsoft Malware Protection Engine running on Microsoft Forefront and Microsoft Defender on Microsoft Windows Server 2008 SP2 and R2 SP1, Window… Windows Defender Patch available Fix from $1,6002017-05-26 MEDIUM 5.5 CVE-2017-8536EPSS 17% The Microsoft Malware Protection Engine running on Microsoft Forefront and Microsoft Defender on Microsoft Windows Server 2008 SP2 and R2 SP1, Window… Windows Defender Patch available Fix from $1,6002017-05-26 MEDIUM 5.5 CVE-2017-8537EPSS 17% The Microsoft Malware Protection Engine running on Microsoft Forefront and Microsoft Defender on Microsoft Windows Server 2008 SP2 and R2 SP1, Window… Windows Defender Patch available Fix from $1,6002017-05-26 HIGH 7.8 CVE-2017-8538EPSS 50% The Microsoft Malware Protection Engine running on Microsoft Forefront and Microsoft Defender on Microsoft Windows Server 2008 SP2 and R2 SP1, Window… Forefront Security after 1.1.13704.0 Fix from $1,9502017-05-26 MEDIUM 5.5 CVE-2017-8539EPSS 6% The Microsoft Malware Protection Engine running on Microsoft Forefront and Microsoft Defender on Microsoft Windows Server 2008 SP2 and R2 SP1, Window… Forefront Security after 1.1.13704.0 Fix from $1,6002017-05-26 HIGH 7.8 CVE-2017-8541EPSS 48% The Microsoft Malware Protection Engine running on Microsoft Forefront and Microsoft Defender on Microsoft Windows Server 2008 SP2 and R2 SP1, Window… Forefront Security after 1.1.13704.0 Fix from $1,9502017-05-26 MEDIUM 5.5 CVE-2017-8542EPSS 6% The Microsoft Malware Protection Engine running on Microsoft Forefront and Microsoft Defender on Microsoft Windows Server 2008 SP2 and R2 SP1, Window… Forefront Security after 1.1.13704.0 Fix from $1,6002017-05-26 CRITICAL 9.8 CVE-2016-10375 Yodl before 3.07.01 has a Buffer Over-read in the queue_push function in queue/queuepush.c. Yodl after 3.06.00 Fix from $2,3002017-05-26 HIGH 7.8 CVE-2017-2798 An exploitable heap corruption vulnerability exists in the GetIndexArray functionality of Antenna House DMC HTMLFilter as used by MarkLogic 8.0-6. A … Marklogic No fix yet Fix from $1,9502017-05-24 HIGH 7.8 CVE-2017-2799 An exploitable heap corruption vulnerability exists in the AddSst functionality of Antenna House DMC HTMLFilter as used by MarkLogic 8.0-6. A special… Marklogic No fix yet Fix from $1,9502017-05-24 HIGH 7.8 CVE-2017-2817 A stack buffer overflow vulnerability exists in the ISO parsing functionality of Power Software Ltd PowerISO 6.8. A specially crafted ISO file can ca… Poweriso No fix yet Fix from $1,9502017-05-24 HIGH 7.8 CVE-2017-2819 An exploitable heap-based buffer overflow exists in the Hangul Word Processor component (version 9.6.1.4350) of Hancom Thinkfree Office NEO 9.6.1.490… Hangul Word Processor No fix yet Fix from $1,9502017-05-24 HIGH 7.8 CVE-2017-8311EPSS 9% Potential heap based buffer overflow in ParseJSS in VideoLAN VLC before 2.2.5 due to skipping NULL terminator in an input string allows attackers to … Vlc Media Player after 2.2.4 Fix from $1,9502017-05-23 HIGH 7.8 CVE-2017-2783 An exploitable heap corruption vulnerability exists in the FillRowFormat functionality of Antenna House DMC HTMLFilter that is shipped with MarkLogic… Marklogic No fix yet Fix from $1,9502017-05-23 HIGH 7.8 CVE-2017-2793 An exploitable heap corruption vulnerability exists in the UnCompressUnicode functionality of Antenna House DMC HTMLFilter used by MarkLogic 8.0-6. A… Marklogic No fix yet Fix from $1,9502017-05-23 HIGH 7.8 CVE-2017-2794 An exploitable stack-based buffer overflow vulnerability exists in the DHFSummary functionality of AntennaHouse DMC HTMLFilter as used by MarkLogic 8… Marklogic No fix yet Fix from $1,9502017-05-23