Top technology
Linux 13140
Google 12536
Microsoft 12379
Oracle 6843
Apple 6692
Adobe 6387
Ibm 6336
Cisco 5759
Debian 3919
Mozilla 2895
Apache 2864
Redhat 2592
HIGH 8.8
CVE-2015-2360 KEVEPSS 15%
win32k.sys in the kernel-mode drivers in Microsoft Windows Server 2003 SP2 and R2 SP2, Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows…
Windows 7
Patch available
HIGH 7.2
CVE-2015-1768
win32k.sys in the kernel-mode drivers in Microsoft Windows Server 2003 SP2 and R2 SP2 allows local users to gain privileges or cause a denial of serv…
Windows 2003 Server
Mitigation only
HIGH 7.2
CVE-2015-1727
Buffer overflow in the kernel-mode drivers in Microsoft Windows Server 2003 SP2 and R2 SP2, Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Wi…
Windows 7
Patch available
HIGH 7.2
CVE-2015-1725
Buffer overflow in the kernel-mode drivers in Microsoft Windows Server 2003 SP2 and R2 SP2, Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Wi…
Windows 7
Patch available
HIGH 7.5
CVE-2015-3329EPSS 38%
Multiple stack-based buffer overflows in the phar_set_inode function in phar_internal.h in PHP before 5.4.40, 5.5.x before 5.5.24, and 5.6.x before 5…
Enterprise Linux Desktop
after 5.4.39
HIGH 7.5
CVE-2015-3307EPSS 8%
The phar_parse_metadata function in ext/phar/phar.c in PHP before 5.4.40, 5.5.x before 5.5.24, and 5.6.x before 5.6.8 allows remote attackers to caus…
Enterprise Linux Desktop
after 5.4.39
MEDIUM 5.8
CVE-2015-2783EPSS 11%
ext/phar/phar.c in PHP before 5.4.40, 5.5.x before 5.5.24, and 5.6.x before 5.6.8 allows remote attackers to obtain sensitive information from proces…
PHP
after 5.4.39
HIGH 7.5
CVE-2015-3905EPSS 7%
Buffer overflow in the set_cs_start function in t1disasm.c in t1utils before 1.39 allows remote attackers to cause a denial of service (crash) and po…
Ubuntu Linux
Patch available
HIGH 8.5
CVE-2015-4004EPSS 8%
The OZWPAN driver in the Linux kernel through 4.0.5 relies on an untrusted length field during packet parsing, which allows remote attackers to obtai…
Ubuntu Linux
4.3+
HIGH 9.0
CVE-2015-4002EPSS 8%
drivers/staging/ozwpan/ozusbsvc1.c in the OZWPAN driver in the Linux kernel through 4.0.5 does not ensure that certain length values are sufficiently…
Linux Kernel
3.4.109 / 3.10.81+
MEDIUM 6.8
CVE-2015-1000
Stack-based buffer overflow in the OpenForIPCamTest method in the RTSPVIDEO.rtspvideoCtrl.1 (aka SStreamVideo) ActiveX control in Moxa SoftCMS before…
Softcms
after 1.2
HIGH 7.5
CVE-2015-2282
Stack-based buffer overflow in the LZC decompression implementation (CsObjectInt::CsDecomprLZC function in vpa106cslzc.cpp) in SAP MaxDB 7.5 and 7.6,…
Gui
No fix yet
MEDIUM 5.0
CVE-2015-2278
The LZH decompression implementation (CsObjectInt::BuildHufTree function in vpa108csulzh.cpp) in SAP MaxDB 7.5 and 7.6, Netweaver Application Server …
Gui
No fix yet
HIGH 10.0
CVE-2015-4060
Heap-based buffer overflow in the TermProxy (WLTermProxyService.exe) service in Wavelink ConnectPro allows remote attackers to execute arbitrary code…
Connectpro
Mitigation only
HIGH 10.0
CVE-2015-4059
Heap-based buffer overflow in the License Server (LicenseServer.exe) in Wavelink Terminal Emulation (TE) allows remote attackers to execute arbitrary…
Terminal Emulation
Mitigation only
HIGH 9.3
CVE-2015-3331EPSS 10%
The __driver_rfc4106_decrypt function in arch/x86/crypto/aesni-intel_glue.c in the Linux kernel before 3.19.3 does not properly determine the memory …
Linux Kernel
3.2.69 / 3.4.108+
MEDIUM 6.9
CVE-2015-2666
Stack-based buffer overflow in the get_matching_model_microcode function in arch/x86/kernel/cpu/microcode/intel_early.c in the Linux kernel before 4.…
Linux Kernel
3.10.83 / 3.12.40+
MEDIUM 5.0
CVE-2015-3906
The logcat_dump_text function in wiretap/logcat.c in the Android Logcat file parser in Wireshark 1.12.x before 1.12.5 does not properly handle a lack…
Wireshark
Mitigation only
MEDIUM 5.0
CVE-2015-3815
The detect_version function in wiretap/logcat.c in the Android Logcat file parser in Wireshark 1.12.x before 1.12.5 does not check the length of the …
Wireshark
Mitigation only
HIGH 7.5
CVE-2015-0986
Multiple stack-based buffer overflows in Moxa VPort ActiveX SDK Plus before 2.8 allow remote attackers to insert assembly-code lines via vectors invo…
Vport Activex Sdk Plus
after 2.7
HIGH 7.5
CVE-2015-4092
Buffer overflow in the XComms process in SAP Afaria 7.00.6620.2 SP5 allows remote attackers to cause a denial of service (crash) or possibly execute …
Afaria
Mitigation only
HIGH 7.5
CVE-2014-8146EPSS 24%
The resolveImplicitLevels function in common/ubidi.c in the Unicode Bidirectional Algorithm implementation in ICU4C in International Components for U…
Itunes
55.1+
MEDIUM 6.8
CVE-2015-2946
Stack-based buffer overflow in the Open CAD Format Council SXF common library before 3.30 allows remote attackers to execute arbitrary code via a cra…
Sxf Common Library
after 3.21
HIGH 10.0
CVE-2015-2110EPSS 11%
Buffer overflow in HP LoadRunner 11.52 allows remote attackers to execute arbitrary code via unspecified vectors.
Loadrunner
Patch available
HIGH 7.5
CVE-2015-0120
Buffer overflow in the FastBackMount process in IBM Tivoli Storage Manager FastBack 6.1 before 6.1.11.1 has unspecified impact and remote attack vect…
Tivoli Storage Manager Fastback
Patch available
HIGH 10.0
CVE-2015-1896EPSS 32%
Stack-based buffer overflow in the FastBackMount process in IBM Tivoli Storage Manager FastBack 6.1 before 6.1.11.1 allows remote attackers to execut…
Tivoli Storage Manager Fastback
Patch available
HIGH 10.0
CVE-2015-3036EPSS 28%
Stack-based buffer overflow in the run_init_sbus function in the KCodes NetUSB module for the Linux kernel, as used in certain NETGEAR products, TP-L…
Netusb
Mitigation only
HIGH 10.0
CVE-2015-1903EPSS 8%
Stack-based buffer overflow in IBM Domino 8.5 before 8.5.3 FP6 IF7 and 9.0 before 9.0.1 FP3 IF3 allows remote attackers to execute arbitrary code via…
Domino
Patch available
HIGH 10.0
CVE-2015-1902EPSS 8%
Stack-based buffer overflow in IBM Domino 8.5 before 8.5.3 FP6 IF7 and 9.0 before 9.0.1 FP3 IF3 allows remote attackers to execute arbitrary code via…
Domino
Patch available
HIGH 7.5
CVE-2015-1257
platform/graphics/filters/FEColorMatrix.cpp in the SVG implementation in Blink, as used in Google Chrome before 43.0.2357.65, does not properly handl…
Debian Linux
after 42.0.2311.152