Vulnerability index

Browse CVEs

982 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Numeric ErrorsCWE-189 × clear
Virtual War MEDIUM 5.0
CVE-2010-5279

article.php in Virtual War (aka VWar) 1.6.1 R2 allows remote attackers to cause a denial of service (memory consumption) via a large integer in the r…

No fix yet
Fix from $1,600 2012-10-08
Linux Kernel HIGH 7.8
CVE-2012-3412EPSS 6%

The sfc (aka Solarflare Solarstorm) driver in the Linux kernel before 3.2.30 allows remote attackers to cause a denial of service (DMA descriptor con…

Fix: 3.0.44 / 3.2.30+
Fix from $1,950 2012-10-03
Groupwise HIGH 10.0
CVE-2012-0417EPSS 6%

Integer overflow in GroupWise Internet Agent (GWIA) in Novell GroupWise 8.0 before Support Pack 3 and 2012 before Support Pack 1 allows remote attack…

Patch available
Fix from $1,950 2012-09-28
Chrome HIGH 7.5
CVE-2012-2896

Integer overflow in the WebGL implementation in Google Chrome before 22.0.1229.79 on Mac OS X allows remote attackers to cause a denial of service or…

Fix: after 22.0.1229.78
Fix from $1,950 2012-09-26
Groupwise HIGH 10.0
CVE-2012-0271EPSS 17%

Integer overflow in the WebConsole component in gwia.exe in GroupWise Internet Agent (GWIA) in Novell GroupWise 8.0 before 8.0.3 HP1 and 2012 before …

Mitigation only
Fix from $1,950 2012-09-19
Cms MEDIUM 6.8
CVE-2012-4405EPSS 7%

Multiple integer underflows in the icmLut_allocate function in International Color Consortium (ICC) Format library (icclib), as used in Ghostscript 9…

Mitigation only
Fix from $1,600 2012-09-18
Realplayer HIGH 7.5
CVE-2012-3234

RealNetworks RealPlayer before 15.0.6.14, RealPlayer SP 1.0 through 1.1.5, and Mac RealPlayer before 12.0.1.1750 do not properly handle codec frame s…

Fix: after 15.0.5.109
Fix from $1,950 2012-09-12
Ubuntu Linux MEDIUM 5.0
CVE-2012-3509

Multiple integer overflows in the (1) _objalloc_alloc function in objalloc.c and (2) objalloc_alloc macro in include/objalloc.h in GNU libiberty, as …

Fix: 2.24+
Fix from $1,600 2012-09-05
Firefox HIGH 9.3
CVE-2012-3969

Integer overflow in the nsSVGFEMorphologyElement::Filter function in Mozilla Firefox before 15.0, Firefox ESR 10.x before 10.0.7, Thunderbird before …

Fix: after 14.0
Fix from $1,950 2012-08-29
Performance Co Pilot MEDIUM 5.0
CVE-2012-3418EPSS 6%

libpcp in Performance Co-Pilot (PCP) before 3.6.5 allows remote attackers to cause a denial of service and possibly execute arbitrary code via (1) a …

Fix: after 3.6.4
Fix from $1,600 2012-08-27
Gnash MEDIUM 6.8
CVE-2012-1175

Integer overflow in the GnashImage::size method in libbase/GnashImage.h in GNU Gnash 0.8.10 allows remote attackers to cause a denial of service (cra…

Mitigation only
Fix from $1,600 2012-08-26
Flash Player HIGH 10.0
CVE-2012-4167EPSS 9%

Integer overflow in Adobe Flash Player before 10.3.183.23 and 11.x before 11.4.402.265 on Windows and Mac OS X, before 10.3.183.23 and 11.x before 11…

Fix: 3.4.0.2540 / 10.3.183.23+
Fix from $1,950 2012-08-21
Libav MEDIUM 6.8
CVE-2011-4352EPSS 7%

Integer overflow in the vp3_dequant function in the VP3 decoder (vp3.c) in libavcodec in FFmpeg 0.5.x before 0.5.7, 0.6.x before 0.6.4, 0.7.x before …

Mitigation only
Fix from $1,600 2012-08-20
Winlog Pro HIGH 9.3
CVE-2012-4354EPSS 8%

TCPIPS_Story.dll in Sielco Sistemi Winlog Pro SCADA before 2.07.17 and Winlog Lite SCADA before 2.07.17 allows remote attackers to execute arbitrary …

Fix: after 2.07.16
Fix from $1,950 2012-08-19
Winlog Pro HIGH 9.3
CVE-2012-4355EPSS 8%

TCPIPS_Story.dll in Sielco Sistemi Winlog Pro SCADA before 2.07.18 and Winlog Lite SCADA before 2.07.18 allows remote attackers to execute arbitrary …

Fix: after 2.07.17
Fix from $1,950 2012-08-19
Wireshark MEDIUM 5.4
CVE-2012-4298EPSS 6%

Integer signedness error in the vwr_read_rec_data_ethernet function in wiretap/vwr.c in the Ixia IxVeriWave file parser in Wireshark 1.8.x before 1.8…

Patch available
Fix from $1,600 2012-08-16
Internet Explorer HIGH 9.3
CVE-2012-2523EPSS 22%

Integer overflow in Microsoft Internet Explorer 8 and 9, JScript 5.8, and VBScript 5.8 on 64-bit platforms allows remote attackers to execute arbitra…

Mitigation only
Fix from $1,950 2012-08-15
Gdk Pixbuf MEDIUM 5.0
CVE-2012-2370

Multiple integer overflows in the read_bitmap_file_data function in io-xbm.c in gdk-pixbuf before 2.26.1 allow remote attackers to cause a denial of …

Fix: after 2.26.0
Fix from $1,600 2012-08-13
Bitcoin Core HIGH 7.5
CVE-2010-5139

Integer overflow in wxBitcoin and bitcoind before 0.3.11 allows remote attackers to bypass intended economic restrictions and create many bitcoins vi…

Fix: after 0.3.10
Fix from $1,950 2012-08-06
Chrome MEDIUM 6.8
CVE-2012-2851

Multiple integer overflows in the PDF functionality in Google Chrome before 21.0.1180.57 on Mac OS X and Linux, and before 21.0.1180.60 on Windows an…

Fix: after 21.0.1180.56
Fix from $1,600 2012-08-06
Pool MEDIUM 5.0
CVE-2012-2677

Integer overflow in the ordered_malloc function in boost/pool/pool.hpp in Boost Pool before 3.9 makes it easier for context-dependent attackers to pe…

Fix: after 1.0.0
Fix from $1,600 2012-07-25
Garbage Collector MEDIUM 5.0
CVE-2012-2673

Multiple integer overflows in the (1) GC_generic_malloc and (2) calloc functions in malloc.c, and the (3) GC_generic_malloc_ignore_off_page function …

Fix: after 7.2
Fix from $1,600 2012-07-25
Gperftools MEDIUM 5.0
CVE-2005-4895

Multiple integer overflows in TCMalloc (tcmalloc.cc) in gperftools before 0.4 make it easier for context-dependent attackers to perform memory-relate…

Fix: after 0.3
Fix from $1,600 2012-07-25
FreeBSD MEDIUM 5.0
CVE-2006-7252

Integer overflow in the calloc function in libc/stdlib/malloc.c in jemalloc in libc for FreeBSD 6.4 and NetBSD makes it easier for context-dependent …

Patch available
Fix from $1,600 2012-07-25
FreeBSD MEDIUM 5.0
CVE-2007-6754

The ipalloc function in libc/stdlib/malloc.c in jemalloc in libc for FreeBSD 6.4 and NetBSD does not properly allocate memory, which makes it easier …

Patch available
Fix from $1,600 2012-07-25
Libpng HIGH 7.5
CVE-2011-3464

Off-by-one error in the png_formatted_warning function in pngerror.c in libpng 1.5.4 through 1.5.7 might allow remote attackers to cause a denial of …

Mitigation only
Fix from $1,950 2012-07-22
Libtiff HIGH 7.5
CVE-2012-2088EPSS 6%

Integer signedness error in the TIFFReadDirectory function in tif_dirread.c in libtiff 3.9.4 and earlier allows remote attackers to cause a denial of…

Fix: after 3.9.4
Fix from $1,950 2012-07-22
Libtiff MEDIUM 6.8
CVE-2012-2113EPSS 6%

Multiple integer overflows in tiff2pdf in libtiff before 4.0.2 allow remote attackers to cause a denial of service (application crash) or possibly ex…

Fix: after 4.0.1
Fix from $1,600 2012-07-22
Libexif MEDIUM 5.0
CVE-2012-2837

The mnote_olympus_entry_get_value function in olympus/mnote-olympus-entry.c in the EXIF Tag Parsing Library (aka libexif) before 0.6.21 allows remote…

Fix: after 0.6.20
Fix from $1,600 2012-07-13
Libexif HIGH 7.5
CVE-2012-2840EPSS 5%

Off-by-one error in the exif_convert_utf16_to_utf8 function in exif-entry.c in the EXIF Tag Parsing Library (aka libexif) before 0.6.21 allows remote…

Fix: after 0.6.20
Fix from $1,950 2012-07-13