Vulnerability index

Browse CVEs

8,456 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Out-of-bounds ReadCWE-125 × clear
HIGH 7.8 CVE-2017-11719 The dnxhd_decode_header function in libavcodec/dnxhddec.c in FFmpeg 3.0 through 3.3.2 allows remote attackers to cause a denial of service (out-of-ar… Ffmpeg after 3.3.2 Fix from $1,9502017-07-28 MEDIUM 5.5 CVE-2017-9260EPSS 6% The TDStretchSSE::calcCrossCorr function in source/SoundTouch/sse_optimized.cpp in SoundTouch 1.9.2 allows remote attackers to cause a denial of serv… Soundtouch No fix yet Fix from $1,6002017-07-27 MEDIUM 5.5 CVE-2017-9545 The next_text function in src/libmpg123/id3.c in mpg123 1.24.0 allows remote attackers to cause a denial of service (buffer over-read) via a crafted … Mpg123 No fix yet Fix from $1,6002017-07-27 HIGH 7.8 CVE-2017-9610 The xps_load_sfnt_name function in xps/xpsfont.c in Artifex Ghostscript GhostXPS 9.21 allows remote attackers to cause a denial of service (heap-base… Ghostscript Ghostxps No fix yet Fix from $1,9502017-07-26 HIGH 7.8 CVE-2017-9611 The Ins_MIRP function in base/ttinterp.c in Artifex Ghostscript GhostXPS 9.21 allows remote attackers to cause a denial of service (heap-based buffer… Debian Linux No fix yet Fix from $1,9502017-07-26 HIGH 7.8 CVE-2017-9620 The xps_select_font_encoding function in xps/xpsfont.c in Artifex Ghostscript GhostXPS 9.21 allows remote attackers to cause a denial of service (hea… Ghostscript Ghostxps No fix yet Fix from $1,9502017-07-26 HIGH 7.8 CVE-2017-9726 The Ins_MDRP function in base/ttinterp.c in Artifex Ghostscript GhostXPS 9.21 allows remote attackers to cause a denial of service (heap-based buffer… Debian Linux Mitigation only Fix from $1,9502017-07-26 HIGH 7.8 CVE-2017-9727 The gx_ttfReader__Read function in base/gxttfb.c in Artifex Ghostscript GhostXPS 9.21 allows remote attackers to cause a denial of service (heap-base… Debian Linux No fix yet Fix from $1,9502017-07-26 HIGH 7.8 CVE-2017-9739 The Ins_JMPR function in base/ttinterp.c in Artifex Ghostscript GhostXPS 9.21 allows remote attackers to cause a denial of service (heap-based buffer… Debian Linux No fix yet Fix from $1,9502017-07-26 HIGH 7.8 CVE-2017-9740 The xps_decode_font_char_imp function in xps/xpsfont.c in Artifex Ghostscript GhostXPS 9.21 allows remote attackers to cause a denial of service (hea… Ghostscript Ghostxps No fix yet Fix from $1,9502017-07-26 MEDIUM 5.9 CVE-2017-11654 An out-of-bounds read and write flaw was found in the way SIPcrack 0.2 processed SIP traffic, because 0x00 termination of a payload array was mishand… Sipcrack No fix yet Fix from $1,6002017-07-26 MEDIUM 6.5 CVE-2017-11639 When ImageMagick 7.0.6-1 processes a crafted file in convert, it can lead to a heap-based buffer over-read in the WriteCIPImage() function in coders/… Imagemagick Patch available Fix from $1,6002017-07-26 MEDIUM 5.5 CVE-2017-11434 The dhcp_decode function in slirp/bootp.c in QEMU (aka Quick Emulator) allows local guest OS users to cause a denial of service (out-of-bounds read a… Debian Linux after 2.9.1 Fix from $1,6002017-07-25 MEDIUM 6.5 CVE-2017-11608 There is a heap-based buffer over-read in the Sass::Prelexer::re_linebreak function in lexer.cpp in LibSass 3.4.5. A crafted input will lead to a rem… Libsass Mitigation only Fix from $1,6002017-07-24 HIGH 7.0 CVE-2017-11600 net/xfrm/xfrm_policy.c in the Linux kernel through 4.12.3, when CONFIG_XFRM_MIGRATE is enabled, does not ensure that the dir value of xfrm_userpolicy… Linux Kernel 3.2.93 / 3.10.108+ Fix from $1,9502017-07-24 MEDIUM 6.5 CVE-2017-11605 There is a heap based buffer over-read in LibSass 3.4.5, related to address 0xb4803ea1. A crafted input will lead to a remote denial of service attac… Libsass Mitigation only Fix from $1,6002017-07-24 HIGH 7.8 CVE-2017-11568 FontForge 20161012 is vulnerable to a heap-based buffer over-read in PSCharStringToSplines (psread.c) resulting in DoS or code execution via a crafte… Fontforge Patch available Fix from $1,9502017-07-23 HIGH 7.8 CVE-2017-11569 FontForge 20161012 is vulnerable to a heap-based buffer over-read in readttfcopyrights (parsettf.c) resulting in DoS or code execution via a crafted … Fontforge Mitigation only Fix from $1,9502017-07-23 HIGH 7.8 CVE-2017-11570 FontForge 20161012 is vulnerable to a buffer over-read in umodenc (parsettf.c) resulting in DoS or code execution via a crafted otf file. Fontforge Patch available Fix from $1,9502017-07-23 HIGH 7.8 CVE-2017-11572 FontForge 20161012 is vulnerable to a heap-based buffer over-read in readcfftopdicts (parsettf.c) resulting in DoS or code execution via a crafted ot… Fontforge Patch available Fix from $1,9502017-07-23 HIGH 7.8 CVE-2017-11573 FontForge 20161012 is vulnerable to a buffer over-read in ValidatePostScriptFontName (parsettf.c) resulting in DoS or code execution via a crafted ot… Fontforge Patch available Fix from $1,9502017-07-23 HIGH 7.8 CVE-2017-11575 FontForge 20161012 is vulnerable to a buffer over-read in strnmatch (char.c) resulting in DoS or code execution via a crafted otf file, related to a … Fontforge Patch available Fix from $1,9502017-07-23 HIGH 7.8 CVE-2017-11577 FontForge 20161012 is vulnerable to a buffer over-read in getsid (parsettf.c) resulting in DoS or code execution via a crafted otf file. Fontforge Patch available Fix from $1,9502017-07-23 MEDIUM 6.5 CVE-2017-11533 When ImageMagick 7.0.6-1 processes a crafted file in convert, it can lead to a heap-based buffer over-read in the WriteUILImage() function in coders/… Imagemagick Patch available Fix from $1,6002017-07-23 MEDIUM 6.5 CVE-2017-11535 When ImageMagick 7.0.6-1 processes a crafted file in convert, it can lead to a heap-based buffer over-read in the WritePSImage() function in coders/p… Imagemagick Patch available Fix from $1,6002017-07-23 MEDIUM 6.5 CVE-2017-11540 When ImageMagick 7.0.6-1 processes a crafted file in convert, it can lead to a heap-based buffer over-read in the GetPixelIndex() function, called fr… Imagemagick Patch available Fix from $1,6002017-07-23 CRITICAL 9.8 CVE-2017-11541 tcpdump 4.9.0 has a heap-based buffer over-read in the lldp_print function in print-lldp.c, related to util-print.c. Tcpdump No fix yet Fix from $2,3002017-07-23 CRITICAL 9.8 CVE-2017-11542 tcpdump 4.9.0 has a heap-based buffer over-read in the pimv1_print function in print-pim.c. Tcpdump No fix yet Fix from $2,3002017-07-23 MEDIUM 5.5 CVE-2017-7036 An issue was discovered in certain Apple products. macOS before 10.12.6 is affected. The issue involves the "Intel Graphics Driver" component. It all… Mac Os X after 10.12.5 Fix from $1,6002017-07-20 HIGH 7.8 CVE-2017-7010 An issue was discovered in certain Apple products. iOS before 10.3.3 is affected. macOS before 10.12.6 is affected. iCloud before 6.2.2 on Windows is… Icloud after 12.6.1 Fix from $1,9502017-07-20