Vulnerability index

Browse CVEs

8,456 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Out-of-bounds ReadCWE-125 × clear
MEDIUM 5.5 CVE-2018-8103 The JBIG2Stream::readGenericBitmap function in JBIG2Stream.cc in xpdf 4.00 allows attackers to launch denial of service (heap-based buffer over-read … Xpdf Mitigation only Fix from $1,6002018-03-14 MEDIUM 5.5 CVE-2018-8104 The BufStream::lookChar function in Stream.cc in xpdf 4.00 allows attackers to launch denial of service (heap-based buffer over-read and application … Xpdf Mitigation only Fix from $1,6002018-03-14 MEDIUM 5.5 CVE-2018-8105 The JPXStream::fillReadBuf function in JPXStream.cc in xpdf 4.00 allows attackers to launch denial of service (heap-based buffer over-read and applic… Xpdf Mitigation only Fix from $1,6002018-03-14 MEDIUM 5.5 CVE-2018-8106 The JPXStream::readTilePartData function in JPXStream.cc in xpdf 4.00 allows attackers to launch denial of service (heap-based buffer over-read and a… Xpdf Mitigation only Fix from $1,6002018-03-14 MEDIUM 5.5 CVE-2018-8107 The JPXStream::close function in JPXStream.cc in xpdf 4.00 allows attackers to launch denial of service (heap-based buffer over-read and application … Xpdf Mitigation only Fix from $1,6002018-03-14 MEDIUM 5.5 CVE-2018-1000085 ClamAV version version 0.99.3 contains a Out of bounds heap memory read vulnerability in XAR parser, function xar_hash_check() that can result in Lea… Debian Linux Patch available Fix from $1,6002018-03-13 MEDIUM 5.5 CVE-2018-7858 Quick Emulator (aka QEMU), when built with the Cirrus CLGD 54xx VGA Emulator support, allows local guest OS privileged users to cause a denial of ser… Enterprise Linux Desktop after 2.11.2 Fix from $1,6002018-03-12 CRITICAL 9.8 CVE-2016-9953 The verify_certificate function in lib/vtls/schannel.c in libcurl 7.30.0 through 7.51.0, when built for Windows CE using the schannel TLS backend, al… Curl after 7.51.0 Fix from $2,3002018-03-12 MEDIUM 5.5 CVE-2017-6285 NVIDIA libnvrm contains a possible out of bounds read due to a missing bounds check which could lead to local information disclosure. This issue is r… Android Mitigation only Fix from $1,6002018-03-12 MEDIUM 5.5 CVE-2017-6287 NVIDIA libnvrm contains a possible out of bounds read due to a missing bounds check which could lead to local information disclosure. This issue is r… Android Mitigation only Fix from $1,6002018-03-12 MEDIUM 5.5 CVE-2017-6288 NVIDIA libnvrm contains a possible out of bounds read due to a missing bounds check which could lead to local information disclosure. This issue is r… Android Mitigation only Fix from $1,6002018-03-12 HIGH 7.8 CVE-2018-8001 In PoDoFo 0.9.5, there exists a heap-based buffer over-read vulnerability in UnescapeName() in PdfName.cpp. Remote attackers could leverage this vuln… Podofo Mitigation only Fix from $1,9502018-03-09 MEDIUM 5.9 CVE-2017-17216 Media Gateway Control Protocol (MGCP) in Huawei DP300 V500R002C00; RP200 V500R002C00SPC200; V600R006C00; TE30 V100R001C10; V500R002C00; V600R006C00; … Dp300 Firmware Mitigation only Fix from $1,6002018-03-09 MEDIUM 5.3 CVE-2017-17218 SCCPX module in Huawei DP300 V500R002C00; RP200 V500R002C00; V600R006C00; TE30 V100R001C10; V500R002C00; V600R006C00; TE40 V500R002C00; V600R006C00; … Dp300 Firmware Mitigation only Fix from $1,6002018-03-09 MEDIUM 5.3 CVE-2017-17220 SCCPX module in Huawei DP300 V500R002C00; RP200 V500R002C00; V600R006C00; TE30 V100R001C10; V500R002C00; V600R006C00; TE40 V500R002C00; V600R006C00; … Dp300 Firmware Mitigation only Fix from $1,6002018-03-09 HIGH 7.8 CVE-2017-17227 GPU driver in Huawei Mate 10 smart phones with the versions before ALP-L09 8.0.0.120(C212); The versions before ALP-L09 8.0.0.127(C900); The versions… Mate 10 Firmware Mitigation only Fix from $1,9502018-03-09 MEDIUM 5.9 CVE-2017-17199 Huawei DP300 V500R002C00; RP200 V500R002C00; V600R006C00; TE30 V100R001C10; V500R002C00; V600R006C00; TE40 V500R002C00; V600R006C00; TE50 V500R002C00… Dp300 Firmware Mitigation only Fix from $1,6002018-03-09 MEDIUM 5.9 CVE-2017-17200 Huawei DP300 V500R002C00; RP200 V500R002C00; V600R006C00; TE30 V100R001C10; V500R002C00; V600R006C00; TE40 V500R002C00; V600R006C00; TE50 V500R002C00… Dp300 Firmware Mitigation only Fix from $1,6002018-03-09 MEDIUM 6.5 CVE-2018-7875 There is a heap-based buffer over-read in the getString function of util/decompile.c in libming 0.4.8 for CONSTANT8 data. A Crafted input will lead t… Debian Linux No fix yet Fix from $1,6002018-03-08 HIGH 8.8 CVE-2018-7871 There is a heap-based buffer over-read in the getName function of util/decompile.c in libming 0.4.8 for CONSTANT16 data. A crafted input will lead to… Debian Linux No fix yet Fix from $1,9502018-03-08 MEDIUM 6.5 CVE-2018-7868 There is a heap-based buffer over-read in the getName function of util/decompile.c in libming 0.4.8 for CONSTANT8 data. A Crafted input will lead to … Debian Linux No fix yet Fix from $1,6002018-03-08 HIGH 7.5 CVE-2018-1054 An out-of-bounds memory read flaw was found in the way 389-ds-base handled certain LDAP search filters, affecting all versions including 1.4.x. A rem… Enterprise Linux Desktop after 1.4.0.6 Fix from $1,9502018-03-07 HIGH 7.5 CVE-2018-7182EPSS 25% The ctl_getitem method in ntpd in ntp-4.2.8p6 before 4.2.8p11 allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted… Ubuntu Linux Patch available Fix from $1,9502018-03-06 MEDIUM 5.5 CVE-2018-7728 An issue was discovered in Exempi through 2.4.4. XMPFiles/source/FileHandlers/TIFF_Handler.cpp mishandles a case of a zero length, leading to a heap-… Ubuntu Linux after 2.4.4 Fix from $1,6002018-03-06 MEDIUM 5.5 CVE-2018-7729 An issue was discovered in Exempi through 2.4.4. There is a stack-based buffer over-read in the PostScript_MetaHandler::ParsePSFile() function in XMP… Ubuntu Linux after 2.4.4 Fix from $1,6002018-03-06 MEDIUM 5.5 CVE-2018-7730 An issue was discovered in Exempi through 2.4.4. A certain case of a 0xffffffff length is mishandled in XMPFiles/source/FormatSupport/PSIR_FileWriter… Debian Linux after 2.4.4 Fix from $1,6002018-03-06 HIGH 7.5 CVE-2017-6280 NVIDIA driver contains a possible out-of-bounds read vulnerability due to a leak which may lead to information disclosure. This issue is rated as mod… Android Mitigation only Fix from $1,9502018-03-06 HIGH 8.4 CVE-2017-6295 NVIDIA TrustZone Software contains a vulnerability in the Keymaster implementation where the software reads data past the end, or before the beginnin… Shield Tv Firmware after 6.2 Fix from $1,9502018-03-06 MEDIUM 5.5 CVE-2017-17137 PEM module of Huawei DP300 V500R002C00; IPS Module V500R001C00; V500R001C30; NGFW Module V500R001C00; V500R002C00; NIP6300 V500R001C00; V500R001C30; … Dp300 Firmware Mitigation only Fix from $1,6002018-03-05 HIGH 7.1 CVE-2017-14461EPSS 17% A specially crafted email delivered over SMTP and passed on to Dovecot by MTA can trigger an out of bounds read resulting in potential sensitive info… Debian Linux Patch available Fix from $1,9502018-03-02