Vulnerability index

Browse CVEs

8,456 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Out-of-bounds ReadCWE-125 × clear
Debian Linux MEDIUM 5.5
CVE-2016-5322

The setByteArray function in tif_dir.c in libtiff 4.0.6 and earlier allows remote attackers to cause a denial of service (out-of-bounds read) via a c…

Fix: after 4.0.6
Fix from $1,600 2017-04-11
Imageworsener MEDIUM 5.5
CVE-2017-7623

The iwmiffr_convert_row32 function in imagew-miff.c in libimageworsener.a in ImageWorsener 1.3.0 allows remote attackers to cause a denial of service…

Mitigation only
Fix from $1,600 2017-04-10
Elfutils MEDIUM 5.5
CVE-2017-7607

The handle_gnu_hash function in readelf.c in elfutils 0.168 allows remote attackers to cause a denial of service (heap-based buffer over-read and app…

Patch available
Fix from $1,600 2017-04-09
Debian Linux MEDIUM 5.5
CVE-2017-7608

The ebl_object_note_type_name function in eblobjnotetypename.c in elfutils 0.168 allows remote attackers to cause a denial of service (heap-based buf…

Patch available
Fix from $1,600 2017-04-09
Debian Linux MEDIUM 5.5
CVE-2017-7610

The check_group function in elflint.c in elfutils 0.168 allows remote attackers to cause a denial of service (heap-based buffer over-read and applica…

Patch available
Fix from $1,600 2017-04-09
Debian Linux MEDIUM 5.5
CVE-2017-7611

The check_symtab_shndx function in elflint.c in elfutils 0.168 allows remote attackers to cause a denial of service (heap-based buffer over-read and …

Patch available
Fix from $1,600 2017-04-09
Debian Linux MEDIUM 5.5
CVE-2017-7612

The check_sysv_hash function in elflint.c in elfutils 0.168 allows remote attackers to cause a denial of service (heap-based buffer over-read and app…

Patch available
Fix from $1,600 2017-04-09
Imageworsener MEDIUM 5.5
CVE-2017-7454

The iwgif_record_pixel function in imagew-gif.c in libimageworsener.a in ImageWorsener 1.3.0 allows remote attackers to cause a denial of service (he…

Patch available
Fix from $1,600 2017-04-06
Imagemagick MEDIUM 6.5
CVE-2014-9829

coders/sun.c in ImageMagick allows remote attackers to cause a denial of service (out-of-bounds access) via a crafted sun file.

Fix: 6.9.4-0+
Fix from $1,600 2017-04-05
Podofo MEDIUM 5.5
CVE-2017-7379

The PoDoFo::PdfSimpleEncoding::ConvertToEncoding function in PdfEncoding.cpp in PoDoFo 0.9.5 allows remote attackers to cause a denial of service (he…

Mitigation only
Fix from $1,600 2017-04-03
Safari HIGH 7.5
CVE-2016-10226

JavaScriptCore in WebKit, as distributed in Safari Technology Preview Release 18, allows remote attackers to cause a denial of service (bitfield out-…

Mitigation only
Fix from $1,950 2017-04-03
Yara HIGH 7.5
CVE-2017-5923

libyara/grammar.y in YARA 3.5.0 allows remote attackers to cause a denial of service (heap-based out-of-bounds read and application crash) via a craf…

Patch available
Fix from $1,950 2017-04-03
Podofo MEDIUM 5.5
CVE-2017-7378

The PoDoFo::PdfPainter::ExpandTabs function in PdfPainter.cpp in PoDoFo 0.9.5 allows remote attackers to cause a denial of service (heap-based buffer…

Mitigation only
Fix from $1,600 2017-04-03
Iphone Os HIGH 7.1
CVE-2017-2439

An issue was discovered in certain Apple products. iOS before 10.3 is affected. macOS before 10.12.4 is affected. tvOS before 10.2 is affected. watch…

Fix: after 10.12.3
Fix from $1,950 2017-04-02
Iphone Os HIGH 7.1
CVE-2017-2450

An issue was discovered in certain Apple products. iOS before 10.3 is affected. macOS before 10.12.4 is affected. tvOS before 10.2 is affected. watch…

Fix: after 10.12.3
Fix from $1,950 2017-04-02
Mac Os X HIGH 7.1
CVE-2017-2409

An issue was discovered in certain Apple products. macOS before 10.12.4 is affected. The issue involves the "Menus" component. It allows attackers to…

Fix: after 10.12.3
Fix from $1,950 2017-04-02
Acrobat HIGH 7.5
CVE-2017-3009

Adobe Acrobat Reader versions 15.020.20042 and earlier, 15.006.30244 and earlier, 11.0.18 and earlier have an exploitable buffer overflow vulnerabili…

Fix: after 15.020.20042
Fix from $1,950 2017-03-31
Imagemagick MEDIUM 5.5
CVE-2014-9816

ImageMagick allows remote attackers to cause a denial of service (out-of-bounds access) via a crafted viff file.

Fix: 6.9.4-0+
Fix from $1,600 2017-03-30
Imagemagick MEDIUM 5.5
CVE-2014-9818

ImageMagick allows remote attackers to cause a denial of service (out-of-bounds access) via a malformed sun file.

Fix: 6.9.4-0+
Fix from $1,600 2017-03-30
Binutils MEDIUM 5.5
CVE-2017-7299

The Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.28, has an invalid read (of size 8) because the code to emit …

Patch available
Fix from $1,600 2017-03-29
Binutils HIGH 7.5
CVE-2017-7300

The Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.28, has an aout_link_add_symbols function in bfd/aoutx.h that…

Patch available
Fix from $1,950 2017-03-29
Binutils HIGH 7.5
CVE-2017-7302

The Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.28, has a swap_std_reloc_out function in bfd/aoutx.h that is …

Patch available
Fix from $1,950 2017-03-29
Binutils HIGH 7.5
CVE-2017-7303

The Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.28, is vulnerable to an invalid read (of size 4) because of m…

Patch available
Fix from $1,950 2017-03-29
Binutils HIGH 7.5
CVE-2017-7304

The Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.28, is vulnerable to an invalid read (of size 8) because of m…

Patch available
Fix from $1,950 2017-03-29
Linux Kernel HIGH 7.1
CVE-2017-7277

The TCP stack in the Linux kernel through 4.10.6 mishandles the SCM_TIMESTAMPING_OPT_STATS feature, which allows local users to obtain sensitive info…

Fix: after 4.10.6
Fix from $1,950 2017-03-28
Freeradius HIGH 8.1
CVE-2015-8763

The EAP-PWD module in FreeRADIUS 3.0 through 3.0.8 allows remote attackers to have unspecified impact via a crafted (1) commit or (2) confirm message…

Patch available
Fix from $1,950 2017-03-27
Potrace HIGH 7.8
CVE-2017-7263

The bm_readbody_bmp function in bitmap_io.c in Potrace 1.14 allows remote attackers to cause a denial of service (heap-based buffer over-read and app…

Patch available
Fix from $1,950 2017-03-26
Libtiff HIGH 7.8
CVE-2016-10269

LibTIFF 4.0.0alpha4, 4.0.0alpha5, 4.0.0alpha6, 4.0.0beta7, 4.0.0, 4.0.1, 4.0.2, 4.0.3, 4.0.4, 4.0.4beta, 4.0.5, 4.0.6 and 4.0.7 allows remote attacke…

Patch available
Fix from $1,950 2017-03-24
Libtiff HIGH 7.8
CVE-2016-10270

LibTIFF 4.0.7 allows remote attackers to cause a denial of service (heap-based buffer over-read) or possibly have unspecified other impact via a craf…

Patch available
Fix from $1,950 2017-03-24
Minissdpd MEDIUM 5.5
CVE-2016-3178

The processRequest function in minissdpd.c in MiniSSDPd 1.2.20130907-3 allows local users to cause a denial of service (out-of-bounds memory access a…

Patch available
Fix from $1,600 2017-03-24