Vulnerability index

Browse CVEs

982 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Numeric ErrorsCWE-189 × clear
Libexif HIGH 7.5
CVE-2012-2841EPSS 6%

Integer underflow in the exif_entry_get_value function in exif-entry.c in the EXIF Tag Parsing Library (aka libexif) 0.6.20 might allow remote attack…

Mitigation only
Fix from $1,950 2012-07-13
Exif MEDIUM 6.4
CVE-2012-2845

Integer overflow in the jpeg_data_load_data function in jpeg-data.c in libjpeg in exif 0.6.20 allows remote attackers to cause a denial of service (b…

Mitigation only
Fix from $1,600 2012-07-13
Libzip MEDIUM 6.8
CVE-2012-1163

Integer overflow in the _zip_readcdir function in zip_open.c in libzip 0.10 allows remote attackers to execute arbitrary code via the size and offset…

Mitigation only
Fix from $1,600 2012-07-12
Linux Kernel HIGH 7.1
CVE-2012-2100

The ext4_fill_flex_info function in fs/ext4/super.c in the Linux kernel before 3.2.2, on the x86 platform and unspecified other platforms, allows use…

Fix: after 3.2.1
Fix from $1,950 2012-07-03
Chrome MEDIUM 6.8
CVE-2012-2828

Multiple integer overflows in the PDF functionality in Google Chrome before 20.0.1132.43 allow remote attackers to cause a denial of service or possi…

Fix: after 20.0.1132.42
Fix from $1,600 2012-06-27
Chrome HIGH 9.3
CVE-2012-2834

Integer overflow in Google Chrome before 20.0.1132.43 allows remote attackers to cause a denial of service or possibly have unspecified other impact …

Fix: after 20.0.1132.42
Fix from $1,950 2012-06-27
Chrome MEDIUM 6.8
CVE-2012-2807

Multiple integer overflows in libxml2, as used in Google Chrome before 20.0.1132.43 and other products, on 64-bit Linux platforms allow remote attack…

Fix: after 20.0.1132.42
Fix from $1,600 2012-06-27
Enterprise Linux Optional Productivity Applications HIGH 7.5
CVE-2012-2149EPSS 14%

The WPXContentListener::_closeTableRow function in WPXContentListener.cpp in libwpd 0.8.8, as used by OpenOffice.org (OOo) before 3.4, allows remote …

Fix: after 3.4
Fix from $1,950 2012-06-21
Debian Linux HIGH 7.5
CVE-2012-1149EPSS 14%

Integer overflow in the vclmi.dll module in OpenOffice.org (OOo) 3.3, 3.4 Beta, and possibly earlier, and LibreOffice before 3.5.3, allows remote att…

Patch available
Fix from $1,950 2012-06-21
Openoffice.org MEDIUM 6.8
CVE-2012-2334EPSS 13%

Integer overflow in filter/source/msfilter/msdffimp.cxx in OpenOffice.org (OOo) 3.3, 3.4 Beta, and possibly earlier, and LibreOffice before 3.5.3, al…

Fix: after 3.5.2
Fix from $1,600 2012-06-19
Linux Kernel MEDIUM 6.2
CVE-2011-1759

Integer overflow in the sys_oabi_semtimedop function in arch/arm/kernel/sys_oabi-compat.c in the Linux kernel before 2.6.39 on the ARM platform, when…

Fix: after 2.6.38.8
Fix from $1,600 2012-06-13
Libmodplug MEDIUM 6.8
CVE-2011-2911

Integer overflow in the CSoundFile::ReadWav function in src/load_wav.cpp in libmodplug before 0.8.8.4 allows remote attackers to cause a denial of se…

Fix: after 0.8.8.3
Fix from $1,600 2012-06-07
Libmodplug MEDIUM 6.8
CVE-2011-2913

Off-by-one error in the CSoundFile::ReadAMS function in src/load_ams.cpp in libmodplug before 0.8.8.4 allows remote attackers to cause a denial of se…

Fix: after 0.8.8.3
Fix from $1,600 2012-06-07
Libmodplug MEDIUM 6.8
CVE-2011-2914

Off-by-one error in the CSoundFile::ReadDSM function in src/load_dms.cpp in libmodplug before 0.8.8.4 allows remote attackers to cause a denial of se…

Fix: after 0.8.8.3
Fix from $1,600 2012-06-07
Libmodplug MEDIUM 6.8
CVE-2011-2915

Off-by-one error in the CSoundFile::ReadAMS2 function in src/load_ams.cpp in libmodplug before 0.8.8.4 allows remote attackers to cause a denial of s…

Fix: after 0.8.8.3
Fix from $1,600 2012-06-07
Bind HIGH 8.5
CVE-2012-1667EPSS 13%

ISC BIND 9.x before 9.7.6-P1, 9.8.x before 9.8.3-P1, 9.9.x before 9.9.1-P1, and 9.4-ESV and 9.6-ESV before 9.6-ESV-R7-P1 does not properly handle res…

Mitigation only
Fix from $1,950 2012-06-05
Libtiff MEDIUM 6.8
CVE-2012-1173EPSS 7%

Multiple integer overflows in tiff_getimage.c in LibTIFF 3.9.4 allow remote attackers to execute arbitrary code via a crafted tile size in a TIFF fil…

Mitigation only
Fix from $1,600 2012-06-04
Rpm MEDIUM 6.8
CVE-2012-0815

The headerVerifyInfo function in lib/header.c in RPM before 4.9.1.3 allows remote attackers to cause a denial of service (crash) and possibly execute…

Fix: after 4.9.1.2
Fix from $1,600 2012-06-04
Xarrow HIGH 10.0
CVE-2012-2428

Integer overflow in the server in xArrow before 3.4.1 allows remote attackers to execute arbitrary code via a crafted packet that triggers an out-of-…

Fix: after 3.4
Fix from $1,950 2012-05-25
Xarrow HIGH 10.0
CVE-2012-2429

The server in xArrow before 3.4.1 performs an invalid read operation, which allows remote attackers to execute arbitrary code via unspecified vectors.

Fix: after 3.4
Fix from $1,950 2012-05-25
Connman MEDIUM 5.0
CVE-2012-2322

Integer overflow in the dhcpv6_get_option function in gdhcp/client.c in ConnMan before 0.85 allows remote attackers to cause a denial of service (inf…

Fix: after 0.84
Fix from $1,600 2012-05-18
Chrome MEDIUM 6.8
CVE-2011-3102

Off-by-one error in libxml2, as used in Google Chrome before 19.0.1084.46 and other products, allows remote attackers to cause a denial of service (o…

Fix: after 19.0.1084.45
Fix from $1,600 2012-05-16
OpenSSL MEDIUM 6.8
CVE-2012-2333EPSS 28%

Integer underflow in OpenSSL before 0.9.8x, 1.0.0 before 1.0.0j, and 1.0.1 before 1.0.1c, when TLS 1.1, TLS 1.2, or DTLS is used with CBC encryption,…

Fix: after 0.9.8w
Fix from $1,600 2012-05-14
Mac Os X MEDIUM 6.8
CVE-2012-0659

Integer overflow in QuickTime in Apple Mac OS X before 10.7.4 allows remote attackers to execute arbitrary code or cause a denial of service (applica…

Fix: after 10.7.3
Fix from $1,600 2012-05-11
Mac Os X HIGH 7.5
CVE-2012-0662

Integer overflow in the Security Framework in Apple Mac OS X before 10.7.4 allows remote attackers to execute arbitrary code or cause a denial of ser…

Fix: after 10.7.3
Fix from $1,950 2012-05-11
Xnview HIGH 9.3
CVE-2012-0684

Integer overflow in XnViewer (aka XnView) before 1.98.5 allows remote attackers to execute arbitrary code via a crafted file containing PSD record ty…

Fix: after 1.98.4
Fix from $1,950 2012-05-09
Xnview HIGH 9.3
CVE-2012-0685

Integer overflow in XnViewer (aka XnView) before 1.98.5 allows remote attackers to execute arbitrary code via a crafted file containing PSD record ty…

Fix: after 1.98.4
Fix from $1,950 2012-05-09
Adaptive Security Appliance Software HIGH 7.8
CVE-2012-0378

Cisco Adaptive Security Appliances (ASA) 5500 series devices with software 8.0 through 8.4 allow remote attackers to cause a denial of service (conne…

Mitigation only
Fix from $1,950 2012-05-03
Firefox MEDIUM 5.0
CVE-2012-0473

The WebGLBuffer::FindMaxUshortElement function in Mozilla Firefox 4.x through 11.0, Firefox ESR 10.x before 10.0.4, Thunderbird 5.0 through 11.0, Thu…

Fix: after 2.9
Fix from $1,600 2012-04-25
Data Protection Advisor MEDIUM 5.0
CVE-2012-0407

Integer overflow in the DPA_Utilities library in EMC Data Protection Advisor (DPA) 5.5 through 5.8 SP1 allows remote attackers to cause a denial of s…

No fix yet
Fix from $1,600 2012-04-20