Vulnerability index

Browse CVEs

8,456 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Out-of-bounds ReadCWE-125 × clear
Acrobat HIGH 8.8
CVE-2017-16382

An issue was discovered in Adobe Acrobat and Reader: 2017.012.20098 and earlier versions, 2017.011.30066 and earlier versions, 2015.006.30355 and ear…

Fix: after 17.012.20098
Fix from $1,950 2017-12-09
Acrobat HIGH 8.8
CVE-2017-16384

An issue was discovered in Adobe Acrobat and Reader: 2017.012.20098 and earlier versions, 2017.011.30066 and earlier versions, 2015.006.30355 and ear…

Fix: after 17.012.20098
Fix from $1,950 2017-12-09
Enterprise Linux Desktop CRITICAL 9.8
CVE-2017-11213EPSS 5%

An issue was discovered in Adobe Flash Player 27.0.0.183 and earlier versions. This vulnerability occurs as a result of a computation that reads data…

Fix: after 27.0.0.183
Fix from $2,300 2017-12-09
Android CRITICAL 9.8
CVE-2017-13160

A remote code execution vulnerability in the Android system (bluetooth). Product: Android. Versions: 7.0, 7.1.1, 7.1.2, 8.0. Android ID A-37160362.

Mitigation only
Fix from $2,300 2017-12-06
Android MEDIUM 5.3
CVE-2017-14903

In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, while processing the SENDACTIONFRAME …

Patch available
Fix from $1,600 2017-12-05
Android MEDIUM 5.3
CVE-2017-14905

In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, while processing a specially crafted …

Patch available
Fix from $1,600 2017-12-05
Kovri HIGH 7.5
CVE-2017-17066

The (1) i2pd before 2.17 and (2) kovri pre-alpha implementations of the I2P routing protocol do not properly handle Garlic DeliveryTypeTunnel packets…

Fix: after 2.16.0
Fix from $1,950 2017-12-05
Binutils HIGH 7.8
CVE-2017-17125

nm.c and objdump.c in GNU Binutils 2.29.1 mishandle certain global symbols, which allows remote attackers to cause a denial of service (_bfd_elf_get_…

Patch available
Fix from $1,950 2017-12-04
Binutils MEDIUM 5.5
CVE-2017-17080

elf.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29.1, does not validate sizes of core notes, which a…

Mitigation only
Fix from $1,600 2017-11-30
Ffmpeg MEDIUM 6.5
CVE-2017-17081

The gmc_mmx function in libavcodec/x86/mpegvideodsp.c in FFmpeg 2.3 and 3.4 does not properly validate widths and heights, which allows remote attack…

Patch available
Fix from $1,600 2017-11-30
Webex Meetings CRITICAL 9.6
CVE-2017-12369

A "Cisco WebEx Network Recording Player Out-of-Bounds Vulnerability" exists in Cisco WebEx Network Recording Player for Advanced Recording Format (AR…

Mitigation only
Fix from $2,300 2017-11-30
Curl CRITICAL 9.8
CVE-2017-8817EPSS 11%

The FTP wildcard function in curl and libcurl before 7.57.0 allows remote attackers to cause a denial of service (out-of-bounds read and application …

Fix: after 7.56.1
Fix from $2,300 2017-11-29
Max Presence Firmware MEDIUM 6.5
CVE-2017-8200

MAX PRESENCE V100R001C00, TP3106 V100R002C00, TP3206 V100R002C00 have an out-of-bounds read vulnerability in H323 protocol. An attacker logs in to th…

Mitigation only
Fix from $1,600 2017-11-22
Mtk Platform Smart Phone Firmware MEDIUM 6.1
CVE-2017-8182

MTK platform in Huawei smart phones with software of earlier than Nice-AL00C00B160 versions, earlier than Nice-AL10C00B140 versions has a out-of-boun…

Mitigation only
Fix from $1,600 2017-11-22
Max Presence Firmware MEDIUM 6.5
CVE-2017-8199

MAX PRESENCE V100R001C00, TP3106 V100R002C00, TP3206 V100R002C00 have an out-of-bounds read vulnerability in H323 protocol. An attacker logs in to th…

Mitigation only
Fix from $1,600 2017-11-22
Ar120 S Firmware MEDIUM 6.5
CVE-2017-8163

AR120-S with software V200R006C10, V200R007C00, V200R008C20, V200R008C30,AR1200 with software V200R006C10, V200R006C13, V200R007C00, V200R007C01, V20…

Mitigation only
Fix from $1,600 2017-11-22
Debian Linux CRITICAL 9.8
CVE-2017-16840

The VC-2 Video Compression encoder in FFmpeg 3.0 and 3.4 allows remote attackers to cause a denial of service (out-of-bounds read) because of incorre…

Patch available
Fix from $2,300 2017-11-21
Exiv2 MEDIUM 5.5
CVE-2017-1000126

exiv2 0.26 contains a Stack out of bounds read in webp parser

Mitigation only
Fix from $1,600 2017-11-17
Exiv2 MEDIUM 5.5
CVE-2017-1000128

Exiv2 0.26 contains a stack out of bounds read in JPEG2000 parser

Mitigation only
Fix from $1,600 2017-11-17
Workstation HIGH 7.8
CVE-2017-4936

VMware Workstation (12.x before 12.5.8) and Horizon View Client for Windows (4.x before 4.6.1) contain an out-of-bounds read vulnerability in JPEG200…

Patch available
Fix from $1,950 2017-11-17
Workstation HIGH 7.8
CVE-2017-4937

VMware Workstation (12.x before 12.5.8) and Horizon View Client for Windows (4.x before 4.6.1) contain an out-of-bounds read vulnerability in JPEG200…

Patch available
Fix from $1,950 2017-11-17
Gravity CRITICAL 9.8
CVE-2017-1000173

Creolabs Gravity Version: 1.0 Heap Overflow Potential Code Execution. By creating a large loop whiling pushing data to a buffer, we can break out of …

Patch available
Fix from $2,300 2017-11-17
Android CRITICAL 9.1
CVE-2017-0854

An information disclosure vulnerability in the Android media framework (n/a). Product: Android. Versions: 7.0, 7.1.1, 7.1.2, 8.0. Android ID: A-63873…

Patch available
Fix from $2,300 2017-11-16
Android HIGH 7.5
CVE-2017-11089

In android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, a buffer overread is observed in nl80…

Patch available
Fix from $1,950 2017-11-16
Android HIGH 7.5
CVE-2017-11090

In android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, a buffer overread is observed in __wl…

Patch available
Fix from $1,950 2017-11-16
Android HIGH 7.5
CVE-2017-11093

In android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, buffer Over-read in Display due to th…

Patch available
Fix from $1,950 2017-11-16
Android HIGH 7.8
CVE-2017-11035

In android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, possible buffer overflow or informati…

Patch available
Fix from $1,950 2017-11-16
Android HIGH 7.5
CVE-2017-11058

In android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, while processing a specially crafted …

Patch available
Fix from $1,950 2017-11-16
Libbpg HIGH 8.8
CVE-2017-14034

The restore_tqb_pixels function in hevc_filter.c in libavcodec, as used in libbpg 0.9.7 and other products, miscalculates a memcpy destination addres…

No fix yet
Fix from $1,950 2017-11-16
Binutils HIGH 7.8
CVE-2017-16829

The _bfd_elf_parse_gnu_properties function in elf-properties.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binuti…

Patch available
Fix from $1,950 2017-11-15