Vulnerability index

Browse CVEs

8,456 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Out-of-bounds ReadCWE-125 × clear
Binutils MEDIUM 5.5
CVE-2017-9044

The print_symbol_for_build_attribute function in readelf.c in GNU Binutils 2017-04-12 allows remote attackers to cause a denial of service (invalid r…

Patch available
Fix from $1,600 2017-05-18
Binutils MEDIUM 5.5
CVE-2017-9038

GNU Binutils 2.28 allows remote attackers to cause a denial of service (heap-based buffer over-read and application crash) via a crafted ELF file, re…

Patch available
Fix from $1,600 2017-05-18
Binutils MEDIUM 5.5
CVE-2017-9041

GNU Binutils 2.28 allows remote attackers to cause a denial of service (heap-based buffer over-read and application crash) via a crafted ELF file, re…

Patch available
Fix from $1,600 2017-05-18
Sourcefire Snort HIGH 7.5
CVE-2017-6658

Cisco Sourcefire Snort 3.0 before build 233 has a Buffer Overread related to use of a decoder array. The size was off by one making it possible to re…

Mitigation only
Fix from $1,950 2017-05-16
Ghostscript MEDIUM 5.5
CVE-2017-8908

The mark_line_tr function in gxscanc.c in Artifex Ghostscript 9.21 allows remote attackers to cause a denial of service (out-of-bounds read) via a cr…

Patch available
Fix from $1,600 2017-05-12
Libxml2 CRITICAL 9.1
CVE-2017-8872

The htmlParseTryOrFinish function in HTMLparser.c in libxml2 2.9.4 allows attackers to cause a denial of service (buffer over-read) or information di…

Mitigation only
Fix from $2,300 2017-05-10
Long Range Zip MEDIUM 5.5
CVE-2017-8845

The lzo1x_decompress function in lzo1x_d.ch in LZO 2.08, as used in lrzip 0.631, allows remote attackers to cause a denial of service (invalid memory…

Patch available
Fix from $1,600 2017-05-08
Linux Kernel MEDIUM 6.4
CVE-2017-8831

The saa7164_bus_get function in drivers/media/pci/saa7164/saa7164-bus.c in the Linux kernel through 4.11.5 allows local users to cause a denial of se…

Fix: after 4.11.5
Fix from $1,600 2017-05-08
Podofo HIGH 8.8
CVE-2017-8787

The PoDoFo::PdfXRefStreamParserObject::ReadXRefStreamEntry function in base/PdfXRefStreamParserObject.cpp:224 in PoDoFo 0.9.5 allows remote attackers…

Mitigation only
Fix from $1,950 2017-05-05
Foxit Reader HIGH 8.8
CVE-2017-8453

Foxit Reader before 8.2.1 and PhantomPDF before 8.2.1 have an out-of-bounds read that allows remote attackers to obtain sensitive information or poss…

Fix: after 8.2.0.2192
Fix from $1,950 2017-05-03
Foxit Reader HIGH 8.8
CVE-2017-8454

Foxit Reader before 8.2.1 and PhantomPDF before 8.2.1 have an out-of-bounds read that allows remote attackers to obtain sensitive information or poss…

Fix: after 8.2.0.2192
Fix from $1,950 2017-05-03
Foxit Reader HIGH 7.8
CVE-2017-8455

Foxit Reader before 8.2.1 and PhantomPDF before 8.2.1 have an out-of-bounds read that allows remote attackers to obtain sensitive information or poss…

Fix: after 8.2.0.2192
Fix from $1,950 2017-05-03
Debian Linux HIGH 7.5
CVE-2017-7483

Rxvt 2.7.10 is vulnerable to a denial of service attack by passing the value -2^31 inside a terminal escape code, which results in a non-invertible i…

Patch available
Fix from $1,950 2017-05-02
Swftools MEDIUM 6.5
CVE-2017-8401

In SWFTools 0.9.2, an out-of-bounds read of heap data can occur in the function png_load() in lib/png.c:724. This issue can be triggered by a malform…

Fix: after 0.9.2
Fix from $1,600 2017-05-01
Binutils HIGH 7.5
CVE-2017-8393

The Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.28, is vulnerable to a global buffer over-read error because …

Patch available
Fix from $1,950 2017-05-01
Mad Libmad MEDIUM 5.5
CVE-2017-8374

The mad_bit_skip function in bit.c in Underbit MAD libmad 0.15.1b allows remote attackers to cause a denial of service (heap-based buffer over-read a…

No fix yet
Fix from $1,600 2017-05-01
Debian Linux MEDIUM 6.5
CVE-2017-8362

The flac_buffer_copy function in flac.c in libsndfile 1.0.28 allows remote attackers to cause a denial of service (invalid read and application crash…

Patch available
Fix from $1,600 2017-04-30
Debian Linux MEDIUM 6.5
CVE-2017-8363

The flac_buffer_copy function in flac.c in libsndfile 1.0.28 allows remote attackers to cause a denial of service (heap-based buffer over-read and ap…

Patch available
Fix from $1,600 2017-04-30
Debian Linux MEDIUM 6.5
CVE-2017-8365

The i2les_array function in pcm.c in libsndfile 1.0.28 allows remote attackers to cause a denial of service (buffer over-read and application crash) …

Patch available
Fix from $1,600 2017-04-30
Yara HIGH 7.5
CVE-2017-8294

libyara/re.c in the regex component in YARA 3.5.0 allows remote attackers to cause a denial of service (out-of-bounds read and application crash) via…

Patch available
Fix from $1,950 2017-04-27
Chrome HIGH 8.8
CVE-2017-5030 KEVEPSS 42%

Incorrect handling of complex species in V8 in Google Chrome prior to 57.0.2987.98 for Linux, Windows, and Mac and 57.0.2987.108 for Android allowed …

Fix: 57.0.2987.98 / 57.0.2987.108+
Fix from $1,950 2017-04-24
Ios Xe MEDIUM 6.3
CVE-2017-6615

A vulnerability in the Simple Network Management Protocol (SNMP) subsystem of Cisco IOS XE 3.16 could allow an authenticated, remote attacker to caus…

Mitigation only
Fix from $1,600 2017-04-20
Imagemagick MEDIUM 6.5
CVE-2016-7518

The ReadSUNImage function in coders/sun.c in ImageMagick allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted SUN …

Fix: 6.9.4-0+
Fix from $1,600 2017-04-20
Imagemagick MEDIUM 6.5
CVE-2016-7520

Heap-based buffer overflow in coders/hdr.c in ImageMagick allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted HDR…

Fix: 6.9.4-0+
Fix from $1,600 2017-04-20
Imagemagick MEDIUM 6.5
CVE-2016-7521

Heap-based buffer overflow in coders/psd.c in ImageMagick allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted PSD…

Fix: 6.9.4-0+
Fix from $1,600 2017-04-20
Imagemagick MEDIUM 6.5
CVE-2016-7525

Heap-based buffer overflow in coders/psd.c in ImageMagick allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted PSD…

Fix: 6.9.4-0+
Fix from $1,600 2017-04-20
Imagemagick MEDIUM 6.5
CVE-2016-7527

coders/wpg.c in ImageMagick allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted file.

Fix: 6.9.4-0+
Fix from $1,600 2017-04-20
Imagemagick MEDIUM 6.5
CVE-2016-7532

coders/psd.c in ImageMagick allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted PSD file.

Fix: 6.9.4-0+
Fix from $1,600 2017-04-20
Imagemagick MEDIUM 6.5
CVE-2016-7534

The generic decoder in ImageMagick allows remote attackers to cause a denial of service (out-of-bounds access) via a crafted file.

Fix: 6.9.4-0+
Fix from $1,600 2017-04-20
Imagemagick MEDIUM 6.5
CVE-2015-8958

coders/sun.c in ImageMagick before 6.9.0-4 Beta allows remote attackers to cause a denial of service (out-of-bounds read and application crash) via a…

Fix: after 6.9.0-3
Fix from $1,600 2017-04-20