Vulnerability index

Browse CVEs

8,456 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Out-of-bounds ReadCWE-125 × clear
Enterprise Linux Desktop HIGH 7.5
CVE-2018-12827EPSS 32%

Adobe Flash Player 30.0.0.134 and earlier have an out-of-bounds read vulnerability. Successful exploitation could lead to information disclosure.

Fix: after 30.0.0.154
Fix from $1,950 2018-08-29
Enterprise Linux Desktop MEDIUM 5.9
CVE-2018-12824EPSS 11%

Adobe Flash Player 30.0.0.134 and earlier have an out-of-bounds read vulnerability. Successful exploitation could lead to information disclosure.

Fix: after 30.0.0.154
Fix from $1,600 2018-08-29
Debian Linux MEDIUM 5.5
CVE-2018-16062

dwarf_getaranges in dwarf_getaranges.c in libdw in elfutils before 2018-08-18 allows remote attackers to cause a denial of service (heap-based buffer…

Fix: 0.174+
Fix from $1,600 2018-08-29
Debian Linux HIGH 7.5
CVE-2018-15501

In ng_pkt in transports/smart_pkt.c in libgit2 before 0.26.6 and 0.27.x before 0.27.4, a remote attacker can send a crafted smart-protocol "ng" packe…

Fix: 0.26.6 / 0.27.4+
Fix from $1,950 2018-08-18
Linux Kernel HIGH 7.8
CVE-2018-15471

An issue was discovered in xenvif_set_hash_mapping in drivers/net/xen-netback/hash.c in the Linux kernel through 4.18.1, as used in Xen through 4.11.…

Fix: 4.9.133 / 4.14.76+
Fix from $1,950 2018-08-17
Jboss Core Services MEDIUM 6.5
CVE-2016-9598

libxml2, as used in Red Hat JBoss Core Services, allows context-dependent attackers to cause a denial of service (out-of-bounds read and application …

Fix: 2.9.4+
Fix from $1,600 2018-08-16
Telepresence Video Communication Server HIGH 7.5
CVE-2018-0409

A vulnerability in the XCP Router service of the Cisco Unified Communications Manager IM & Presence Service (CUCM IM&P) and the Cisco TelePresence Vi…

Mitigation only
Fix from $1,950 2018-08-15
Excel Viewer MEDIUM 5.5
CVE-2018-8378EPSS 8%

An information disclosure vulnerability exists when Microsoft Office software reads out of bound memory due to an uninitialized variable, which could…

Patch available
Fix from $1,600 2018-08-15
Horizon Client MEDIUM 6.5
CVE-2018-6970

VMware Horizon 6 (6.x.x before 6.2.7), Horizon 7 (7.x.x before 7.5.1), and Horizon Client (4.x.x and prior before 4.8.1) contain an out-of-bounds rea…

Fix: 4.8.1 / 6.2.7+
Fix from $1,600 2018-08-13
Cncsoft HIGH 8.1
CVE-2018-10598

CNCSoft Version 1.00.83 and prior with ScreenEditor Version 1.00.54 has two out-of-bounds read vulnerabilities could cause the software to crash due …

Fix: after 1.00.83
Fix from $1,950 2018-08-13
Ubuntu Linux CRITICAL 9.1
CVE-2018-14938

An issue was discovered in wifipcap/wifipcap.cpp in TCPFLOW through 1.5.0-alpha. There is an integer overflow in the function handle_prism during cap…

Fix: after 1.4.5
Fix from $2,300 2018-08-05
PHP HIGH 7.5
CVE-2018-14883EPSS 9%

An issue was discovered in PHP before 5.6.37, 7.0.x before 7.0.31, 7.1.x before 7.1.20, and 7.2.x before 7.2.8. An Integer Overflow leads to a heap-b…

Fix: 5.6.37 / 7.0.31+
Fix from $1,950 2018-08-03
PHP MEDIUM 5.5
CVE-2018-14851

exif_process_IFD_in_MAKERNOTE in ext/exif/exif.c in PHP before 5.6.37, 7.0.x before 7.0.31, 7.1.x before 7.1.20, and 7.2.x before 7.2.8 allows remote…

Fix: 7.0.31 / 7.1.20+
Fix from $1,600 2018-08-02
PHP HIGH 7.5
CVE-2017-9118

PHP 7.1.5 has an Out of bounds access in php_pcre_replace_impl via a crafted preg_replace call.

Fix: 7.4.27 / 8.0.14+
Fix from $1,950 2018-08-02
Enterprise Linux Desktop HIGH 7.8
CVE-2016-9583

An out-of-bounds heap read vulnerability was found in the jpc_pi_nextpcrl() function of jasper before 2.0.6 when processing crafted input.

Fix: 2.0.6+
Fix from $1,950 2018-08-01
Graphics Driver MEDIUM 5.5
CVE-2017-5692

Out-of-bounds read condition in older versions of some Intel Graphics Driver for Windows code branches allows local users to perform a denial of serv…

Mitigation only
Fix from $1,600 2018-08-01
Curl CRITICAL 9.8
CVE-2016-8620

The 'globbing' feature in curl before version 7.51.0 has a flaw that leads to integer overflow and out-of-bounds read via user controlled input.

Fix: 7.51.0+
Fix from $2,300 2018-08-01
Enterprise Linux Desktop HIGH 8.1
CVE-2016-9573

An out-of-bounds read vulnerability was found in OpenJPEG 2.1.2, in the j2k_to_image tool. Converting a specially crafted JPEG2000 file to another fo…

Patch available
Fix from $1,950 2018-08-01
Curl HIGH 7.5
CVE-2016-8621EPSS 5%

The `curl_getdate` function in curl before version 7.51.0 is vulnerable to an out of bounds read if it receives an input with one digit short.

Fix: 7.51.0+
Fix from $1,950 2018-07-31
Foxit Reader MEDIUM 6.5
CVE-2018-14316

This vulnerability allows remote attackers to disclose sensitive information on vulnerable installations of Foxit Reader 9.0.1.5096. User interaction…

Fix: after 9.1.0.5096
Fix from $1,600 2018-07-31
Foxit Reader MEDIUM 6.5
CVE-2018-14289

This vulnerability allows remote attackers to disclose sensitive information on vulnerable installations of Foxit Reader 9.0.1.5096. User interaction…

Fix: after 9.1.0.5096
Fix from $1,600 2018-07-31
Foxit Reader MEDIUM 6.5
CVE-2018-11620

This vulnerability allows remote attackers to disclose sensitive information on vulnerable installations of Foxit Reader 9.0.1.1049. User interaction…

Fix: after 9.1.0.5096
Fix from $1,600 2018-07-31
Foxit Reader MEDIUM 6.5
CVE-2018-11621

This vulnerability allows remote attackers to disclose sensitive information on vulnerable installations of Foxit Reader 9.0.1.1049. User interaction…

Fix: after 9.1.0.5096
Fix from $1,600 2018-07-31
Pbc HIGH 7.5
CVE-2018-14736

An issue was discovered in libpbc.a in cloudwu PBC through 2017-03-02. A buffer over-read can occur in pbc_wmessage_string in wmessage.c for PTYPE_EN…

Fix: after 2017-03-02
Fix from $1,950 2018-07-30
Xenserver CRITICAL 9.9
CVE-2017-2620

Quick emulator (QEMU) before 2.8 built with the Cirrus CLGD 54xx VGA Emulator support is vulnerable to an out-of-bounds access issue. The issue could…

Patch available
Fix from $2,300 2018-07-27
Enterprise Linux Desktop MEDIUM 6.5
CVE-2017-2633

An out-of-bounds memory access issue was found in Quick Emulator (QEMU) before 1.7.2 in the VNC display driver. This flaw could occur while refreshin…

Fix: 1.7.2+
Fix from $1,600 2018-07-27
Ubuntu Linux HIGH 7.8
CVE-2018-1056

An out-of-bounds heap buffer read flaw was found in the way advancecomp before 2.1-2018/02 handled processing of ZIP files. An attacker could potenti…

Fix: 2.1+
Fix from $1,950 2018-07-27
Netpbm HIGH 7.8
CVE-2017-2579

An out-of-bounds read vulnerability was found in netpbm before 10.61. The expandCodeOntoStack() function has an insufficient code value check, so tha…

Mitigation only
Fix from $1,950 2018-07-27
Linux Kernel MEDIUM 5.5
CVE-2018-14610

An issue was discovered in the Linux kernel through 4.17.10. There is out-of-bounds access in write_extent_buffer() when mounting and operating a cra…

Fix: after 4.17.10
Fix from $1,600 2018-07-27
Linux Kernel MEDIUM 5.5
CVE-2017-18344

The timer_create syscall implementation in kernel/time/posix-timers.c in the Linux kernel before 4.14.8 doesn't properly validate the sigevent->sigev…

Fix: 4.14.8+
Fix from $1,600 2018-07-26