Vulnerability index

Browse CVEs

8,456 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Out-of-bounds ReadCWE-125 × clear
Foxit Reader MEDIUM 6.5
CVE-2018-10480

This vulnerability allows remote attackers to disclose sensitive information on vulnerable installations of Foxit Reader 9.0.0.29935. User interactio…

Fix: after 9.0.1.1049
Fix from $1,600 2018-05-17
Foxit Reader MEDIUM 6.5
CVE-2018-10481

This vulnerability allows remote attackers to disclose sensitive information on vulnerable installations of Foxit Reader 9.0.0.29935. User interactio…

Fix: after 9.0.1.1049
Fix from $1,600 2018-05-17
Foxit Reader MEDIUM 6.5
CVE-2018-10482

This vulnerability allows remote attackers to disclose sensitive information on vulnerable installations of Foxit Reader 9.0.0.29935. User interactio…

Fix: after 9.0.1.1049
Fix from $1,600 2018-05-17
Foxit Reader MEDIUM 6.5
CVE-2018-10485

This vulnerability allows remote attackers to disclose sensitive information on vulnerable installations of Foxit Reader 9.0.0.29935. User interactio…

Fix: after 9.0.1.1049
Fix from $1,600 2018-05-17
Foxit Reader MEDIUM 6.5
CVE-2018-10486

This vulnerability allows remote attackers to disclose sensitive information on vulnerable installations of Foxit Reader 9.0.0.29935. User interactio…

Fix: after 9.0.1.1049
Fix from $1,600 2018-05-17
Foxit Reader MEDIUM 6.5
CVE-2018-10487

This vulnerability allows remote attackers to disclose sensitive information on vulnerable installations of Foxit Reader 9.0.0.29935. User interactio…

Fix: after 9.0.1.1049
Fix from $1,600 2018-05-17
Hdf5 HIGH 8.1
CVE-2018-11205

A out of bounds read was discovered in H5VM_memcpyvv in H5VM.c in the HDF HDF5 1.10.2 library. It could allow a remote denial of service or informati…

No fix yet
Fix from $1,950 2018-05-16
Hdf5 HIGH 8.1
CVE-2018-11206

An out of bounds read was discovered in H5O_fill_new_decode and H5O_fill_old_decode in H5Ofill.c in the HDF HDF5 1.10.2 library. It could allow a rem…

No fix yet
Fix from $1,950 2018-05-16
Tinyxml2 CRITICAL 9.8
CVE-2018-11210

TinyXML2 6.2.0 has a heap-based buffer over-read in the XMLDocument::Parse function in libtinyxml2.so. NOTE: The tinyxml2 developers have determined …

Mitigation only
Fix from $2,300 2018-05-16
Debian Linux MEDIUM 6.5
CVE-2018-10999

An issue was discovered in Exiv2 0.26. The Exiv2::Internal::PngChunk::parseTXTChunk function has a heap-based buffer over-read.

No fix yet
Fix from $1,600 2018-05-12
Edge HIGH 7.5
CVE-2018-8139EPSS 61%

A remote code execution vulnerability exists in the way that the scripting engine handles objects in memory in Microsoft Edge, aka "Scripting Engine …

Fix: after 1.8.3
Fix from $1,950 2018-05-09
Mp3gain HIGH 7.8
CVE-2018-10778

Read access violation in the III_dequantize_sample function in mpglibDBL/layer3.c in mp3gain through 1.5.2-r2 allows remote attackers to cause a deni…

Fix: after 1.5.2
Fix from $1,950 2018-05-07
Ubuntu Linux MEDIUM 6.5
CVE-2018-10779

TIFFWriteScanline in tif_write.c in LibTIFF 3.8.2 has a heap-based buffer over-read, as demonstrated by bmp2tiff.

No fix yet
Fix from $1,600 2018-05-07
Exiv2 MEDIUM 6.5
CVE-2018-10780

Exiv2::Image::byteSwap2 in image.cpp in Exiv2 0.26 has a heap-based buffer over-read.

No fix yet
Fix from $1,600 2018-05-07
Ansible Tower MEDIUM 6.5
CVE-2018-10767

There is a stack-based buffer over-read in calling GLib in the function gxps_images_guess_content_type of gxps-images.c in libgxps through 0.3.0 beca…

Fix: after 0.3.0
Fix from $1,600 2018-05-06
Ansible Tower MEDIUM 6.5
CVE-2018-10733

There is a heap-based buffer over-read in the function ft_font_face_hash of gxps-fonts.c in libgxps through 0.3.0. A crafted input will lead to a rem…

Fix: after 0.3.0
Fix from $1,600 2018-05-04
Enterprise Linux HIGH 7.5
CVE-2017-2591

389-ds-base before version 1.3.6 is vulnerable to an improperly NULL terminated array in the uniqueness_entry_to_config() function in the "attribute …

Fix: 1.3.6+
Fix from $1,950 2018-04-30
PHP HIGH 8.8
CVE-2018-10549EPSS 7%

An issue was discovered in PHP before 5.6.36, 7.0.x before 7.0.30, 7.1.x before 7.1.17, and 7.2.x before 7.2.5. exif_read_data in ext/exif/exif.c has…

Fix: 5.6.36 / 7.0.30+
Fix from $1,950 2018-04-29
Ubuntu Linux HIGH 8.8
CVE-2018-10529

An issue was discovered in LibRaw 0.18.9. There is an out-of-bounds read affecting the X3F property table list implementation in libraw_x3f.cpp and l…

Patch available
Fix from $1,950 2018-04-29
Debian Linux HIGH 8.8
CVE-2018-10392

mapping0_forward in mapping0.c in Xiph.Org libvorbis 1.3.6 does not validate the number of channels, which allows remote attackers to cause a denial …

No fix yet
Fix from $1,950 2018-04-26
Debian Linux HIGH 7.5
CVE-2018-10393

bark_noise_hybridmp in psy.c in Xiph.Org libvorbis 1.3.6 has a stack-based buffer over-read.

Mitigation only
Fix from $1,950 2018-04-26
Enterprise Linux Desktop MEDIUM 5.5
CVE-2018-10372

process_cu_tu_index in dwarf.c in GNU Binutils 2.30 allows remote attackers to cause a denial of service (heap-based buffer over-read and application…

No fix yet
Fix from $1,600 2018-04-25
Ar120 S Firmware MEDIUM 5.3
CVE-2017-17252

Huawei AR120-S V200R006C10, V200R007C00, V200R008C20, V200R008C30, AR1200 V200R006C10, V200R006C13, V200R007C00, V200R007C01, V200R007C02, V200R008C2…

Mitigation only
Fix from $1,600 2018-04-24
Ar120 S Firmware HIGH 7.5
CVE-2017-17253

Huawei AR120-S V200R006C10, V200R007C00, V200R008C20, V200R008C30, AR1200 V200R006C10, V200R006C13, V200R007C00, V200R007C01, V200R007C02, V200R008C2…

Mitigation only
Fix from $1,950 2018-04-24
Netwide Assembler HIGH 7.8
CVE-2018-10254

Netwide Assembler (NASM) 2.13 has a stack-based buffer over-read in the disasm function of the disasm/disasm.c file. Remote attackers could leverage …

No fix yet
Fix from $1,950 2018-04-21
Radare2 MEDIUM 5.5
CVE-2018-10186

In radare2 2.5.0, there is a heap-based buffer over-read in the r_hex_bin2str function (libr/util/hex.c). Remote attackers could leverage this vulner…

No fix yet
Fix from $1,600 2018-04-17
Radare2 MEDIUM 5.5
CVE-2018-10187

In radare2 2.5.0, there is a heap-based buffer over-read in the dalvik_op function (libr/anal/p/anal_dalvik.c). Remote attackers could leverage this …

No fix yet
Fix from $1,600 2018-04-17
Debian Linux HIGH 7.5
CVE-2018-6798

An issue was discovered in Perl 5.22 through 5.26. Matching a crafted locale dependent regular expression can cause a heap-based buffer over-read and…

Fix: after 5.26
Fix from $1,950 2018-04-17
Mdm9206 Firmware CRITICAL 9.8
CVE-2018-3594

In Android before security patch level 2018-04-05 on Qualcomm Snapdragon Automobile, Snapdragon Mobile, and Snapdragon Wear MDM9206, MDM9607, MDM9650…

Mitigation only
Fix from $2,300 2018-04-11
Mdm9206 Firmware CRITICAL 9.8
CVE-2017-18130

In Android before security patch level 2018-04-05 on Qualcomm Snapdragon Automobile, Snapdragon Mobile, and Snapdragon Wear MDM9206, MDM9607, MDM9650…

Mitigation only
Fix from $2,300 2018-04-11