Top technology
Linux 13140
Google 12536
Microsoft 12379
Oracle 6843
Apple 6692
Adobe 6387
Ibm 6336
Cisco 5759
Debian 3919
Mozilla 2895
Apache 2864
Redhat 2592
HIGH 7.5
CVE-2014-0160 KEVEPSS 100%
The (1) TLS and (2) DTLS implementations in OpenSSL 1.0.1 before 1.0.1g do not properly handle Heartbeat Extension packets, which allows remote attac…
OpenSSL
1.0.1g+
HIGH 8.8
CVE-2014-1497
The mozilla::WaveReader::DecodeAudioData function in Mozilla Firefox before 28.0, Firefox ESR 24.x before 24.4, Thunderbird before 24.4, and SeaMonke…
Firefox
24.4 / 28.0+
CRITICAL 9.1
CVE-2014-1508
The libxul.so!gfxContext::Polygon function in Mozilla Firefox before 28.0, Firefox ESR 24.x before 24.4, Thunderbird before 24.4, and SeaMonkey befor…
Firefox
24.4 / 28.0+
MEDIUM 6.3
CVE-2013-3245
plugins/demux/libmkv_plugin.dll in VideoLAN VLC Media Player 2.0.7, and possibly other versions, allows remote attackers to cause a denial of service…
Vlc Media Player
No fix yet
MEDIUM 5.0
CVE-2013-0888
Skia, as used in Google Chrome before 25.0.1364.97 on Windows and Linux, and before 25.0.1364.99 on Mac OS X, allows remote attackers to cause a deni…
Chrome
25.0.1364.97 / 25.0.1364.99+
HIGH 9.3
CVE-2013-0778
The ClusterIterator::NextCluster function in Mozilla Firefox before 19.0, Thunderbird before 17.0.3, and SeaMonkey before 2.16 allows remote attacker…
Firefox
2.16 / 17.0.3+
HIGH 9.3
CVE-2013-0779EPSS 5%
The nsCodingStateMachine::NextState function in Mozilla Firefox before 19.0, Thunderbird before 17.0.3, and SeaMonkey before 2.16 allows remote attac…
Firefox
2.16 / 17.0.3+
HIGH 10.0
CVE-2013-0767EPSS 6%
The nsSVGPathElement::GetPathLengthScale function in Mozilla Firefox before 18.0, Firefox ESR 10.x before 10.0.12 and 17.x before 17.0.1, Thunderbird…
Firefox
2.15 / 10.0.12+
MEDIUM 5.0
CVE-2012-5130
Skia, as used in Google Chrome before 23.0.1271.91, allows remote attackers to cause a denial of service (out-of-bounds read) via unspecified vectors.
Chrome
after 23.0.1271.89
HIGH 9.3
CVE-2012-3995EPSS 5%
The IsCSSWordSpacingSpace function in Mozilla Firefox before 16.0, Firefox ESR 10.x before 10.0.8, Thunderbird before 16.0, Thunderbird ESR 10.x befo…
Firefox
10.0.8 / 16.0+
MEDIUM 5.0
CVE-2012-5109
The International Components for Unicode (ICU) functionality in Google Chrome before 22.0.1229.92 allows remote attackers to cause a denial of servic…
Chrome
after 22.0.1229.91
MEDIUM 5.0
CVE-2012-5110
The compositor in Google Chrome before 22.0.1229.92 allows remote attackers to cause a denial of service (out-of-bounds read) via unspecified vectors.
Chrome
after 22.0.1229.91
MEDIUM 6.5
CVE-2012-1571
file before 5.11 and libmagic allow remote attackers to cause a denial of service (crash) via a crafted Composite Document File (CDF) file that trigg…
File
after 5.10
MEDIUM 6.5
CVE-2012-1798
The TIFFGetEXIFProperties function in coders/tiff.c in ImageMagick before 6.7.6-3 allows remote attackers to cause a denial of service (out-of-bounds…
Debian Linux
Patch available
MEDIUM 6.5
CVE-2012-0259
The GetEXIFProperty function in magick/property.c in ImageMagick before 6.7.6-3 allows remote attackers to cause a denial of service (crash) via a ze…
Debian Linux
6.7.6-3+
MEDIUM 6.8
CVE-2011-3066
Skia, as used in Google Chrome before 18.0.1025.151, does not properly perform clipping, which allows remote attackers to cause a denial of service (…
Chrome
18.0.1025.151+
MEDIUM 6.8
CVE-2011-3059
Google Chrome before 18.0.1025.142 does not properly handle SVG text elements, which allows remote attackers to cause a denial of service (out-of-bou…
Chrome
6.0 / 10.7+
MEDIUM 6.8
CVE-2011-3060
Google Chrome before 18.0.1025.142 does not properly handle text fragments, which allows remote attackers to cause a denial of service (out-of-bounds…
Chrome
6.0 / 10.7+
MEDIUM 5.0
CVE-2011-3963
Google Chrome before 17.0.963.46 does not properly handle PDF FAX images, which allows remote attackers to cause a denial of service (out-of-bounds r…
Chrome
17.0.963.46+
MEDIUM 5.0
CVE-2011-3905
libxml2, as used in Google Chrome before 16.0.912.63, allows remote attackers to cause a denial of service (out-of-bounds read) via unspecified vecto…
Chrome
16.0.912.63+
MEDIUM 5.0
CVE-2011-3906
The PDF parser in Google Chrome before 16.0.912.63 allows remote attackers to cause a denial of service (out-of-bounds read) via unspecified vectors.
Chrome
16.0.912.63+
MEDIUM 5.0
CVE-2011-3908
Google Chrome before 16.0.912.63 does not properly parse SVG documents, which allows remote attackers to cause a denial of service (out-of-bounds rea…
Chrome
5.1 / 5.1.4+
MEDIUM 5.0
CVE-2011-3910
Google Chrome before 16.0.912.63 does not properly handle YUV video frames, which allows remote attackers to cause a denial of service (out-of-bounds…
Chrome
16.0.912.63+
MEDIUM 5.0
CVE-2011-3911
Google Chrome before 16.0.912.63 does not properly handle PDF documents, which allows remote attackers to cause a denial of service (out-of-bounds re…
Chrome
16.0.912.63+
MEDIUM 5.0
CVE-2011-3916
Google Chrome before 16.0.912.63 does not properly handle PDF cross references, which allows remote attackers to cause a denial of service (out-of-bo…
Chrome
16.0.912.63+
MEDIUM 5.0
CVE-2011-3893
Google Chrome before 15.0.874.120 does not properly implement the MKV and Vorbis media handlers, which allows remote attackers to cause a denial of s…
Chrome
15.0.874.120+
MEDIUM 5.0
CVE-2011-2850
Google Chrome before 14.0.835.163 does not properly handle Khmer characters, which allows remote attackers to cause a denial of service (out-of-bound…
Chrome
14.0.835.163+
MEDIUM 5.0
CVE-2011-2851
Google Chrome before 14.0.835.163 does not properly handle video, which allows remote attackers to cause a denial of service (out-of-bounds read) via…
Chrome
14.0.835.163+
MEDIUM 5.0
CVE-2011-2858
Google Chrome before 14.0.835.163 does not properly handle triangle arrays, which allows remote attackers to cause a denial of service (out-of-bounds…
Chrome
14.0.835.163+
MEDIUM 5.0
CVE-2011-2864
Google Chrome before 14.0.835.163 does not properly handle Tibetan characters, which allows remote attackers to cause a denial of service (out-of-bou…
Chrome
14.0.835.163+