Vulnerability index

Browse CVEs

983 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Numeric ErrorsCWE-189 × clear
Veritas Dynamic Multi Pathing HIGH 10.0
CVE-2011-0547EPSS 7%

Multiple integer overflows in vxsvc.exe in the Veritas Enterprise Administrator service in Symantec Veritas Storage Foundation 5.1 and earlier, Verit…

Fix: after 5.1
Fix from $1,950 2011-08-19
Xen MEDIUM 6.9
CVE-2011-1583

Multiple integer overflows in tools/libxc/xc_dom_bzimageloader.c in Xen 3.2, 3.3, 4.0, and 4.1 allow local users to cause a denial of service and pos…

Patch available
Fix from $1,600 2011-08-12
Flash Player HIGH 10.0
CVE-2011-2416EPSS 10%

Integer overflow in Adobe Flash Player before 10.3.183.5 on Windows, Mac OS X, Linux, and Solaris and before 10.3.186.3 on Android, and Adobe AIR bef…

Fix: after 10.3.181.36
Fix from $1,950 2011-08-10
Flash Player HIGH 10.0
CVE-2011-2136EPSS 10%

Integer overflow in Adobe Flash Player before 10.3.183.5 on Windows, Mac OS X, Linux, and Solaris and before 10.3.186.3 on Android, and Adobe AIR bef…

Fix: after 10.3.181.36
Fix from $1,950 2011-08-10
Flash Player HIGH 10.0
CVE-2011-2138EPSS 10%

Integer overflow in Adobe Flash Player before 10.3.183.5 on Windows, Mac OS X, Linux, and Solaris and before 10.3.186.3 on Android, and Adobe AIR bef…

Fix: after 10.3.181.36
Fix from $1,950 2011-08-10
Clamav MEDIUM 5.0
CVE-2011-2721

Off-by-one error in the cli_hm_scan function in matcher-hash.c in libclamav in ClamAV before 0.97.2 allows remote attackers to cause a denial of serv…

Fix: after 0.97.1
Fix from $1,600 2011-08-05
Opie HIGH 7.2
CVE-2011-2489

Multiple off-by-one errors in opiesu.c in opiesu in OPIE 2.4.1-test1 and earlier might allow local users to gain privileges via a crafted command lin…

Fix: after 2.4.1
Fix from $1,950 2011-07-27
Safari HIGH 9.3
CVE-2011-0216EPSS 5%

Off-by-one error in libxml in Apple Safari before 5.0.6 allows remote attackers to execute arbitrary code or cause a denial of service (heap-based bu…

Fix: after 5.0.5
Fix from $1,950 2011-07-21
Freetype HIGH 9.3
CVE-2011-0226EPSS 7%

Integer signedness error in psaux/t1decode.c in FreeType before 2.4.6, as used in CoreGraphics in Apple iOS before 4.2.9 and 4.3.x before 4.3.4 and o…

Fix: after 4.2.8
Fix from $1,950 2011-07-19
Windows 2003 Server HIGH 7.2
CVE-2011-1284

Integer overflow in the Client/Server Run-time Subsystem (aka CSRSS) in the Win32 subsystem in Microsoft Windows XP SP2 and SP3, Windows Server 2003 …

Mitigation only
Fix from $1,950 2011-07-13
Windows 2003 Server HIGH 7.2
CVE-2011-1870

Integer overflow in the Client/Server Run-time Subsystem (aka CSRSS) in the Win32 subsystem in Microsoft Windows XP SP2 and SP3, and Windows Server 2…

Mitigation only
Fix from $1,950 2011-07-13
Xml Security For C\+\+ MEDIUM 5.0
CVE-2011-2516EPSS 8%

Off-by-one error in the XML signature feature in Apache XML Security for C++ 1.6.0, as used in Shibboleth before 2.4.3 and possibly other products, a…

Fix: after 2.4.2
Fix from $1,600 2011-07-11
Firefox HIGH 10.0
CVE-2011-2371EPSS 76%

Integer overflow in the Array.reduceRight method in Mozilla Firefox before 3.6.18 and 4.x through 4.0.1, Thunderbird before 3.1.11, and SeaMonkey thr…

Fix: after 3.6.17
Fix from $1,950 2011-06-30
Foxit Reader HIGH 9.3
CVE-2011-1908

Integer overflow in the Type 1 font decoder in the FreeType engine in Foxit Reader before 4.0.0.0619 allows remote attackers to execute arbitrary cod…

Fix: after 4.0
Fix from $1,950 2011-06-24
Vlc Media Player HIGH 9.3
CVE-2011-2194EPSS 9%

Integer overflow in the XSPF playlist parser in VideoLAN VLC media player 0.8.5 through 1.1.9 allows remote attackers to cause a denial of service (c…

Mitigation only
Fix from $1,950 2011-06-24
Mac Os X MEDIUM 6.8
CVE-2011-0200

Integer overflow in ColorSync in Apple Mac OS X before 10.6.8 allows remote attackers to execute arbitrary code or cause a denial of service (applica…

Patch available
Fix from $1,600 2011-06-24
Mac Os X HIGH 7.5
CVE-2011-0201

Off-by-one error in the CoreFoundation framework in Apple Mac OS X before 10.6.8 allows context-dependent attackers to execute arbitrary code or caus…

Patch available
Fix from $1,950 2011-06-24
Mac Os X MEDIUM 6.8
CVE-2011-0202

Integer overflow in CoreGraphics in Apple Mac OS X before 10.6.8 allows remote attackers to execute arbitrary code or cause a denial of service (appl…

Patch available
Fix from $1,600 2011-06-24
Windows 2003 Server HIGH 9.3
CVE-2011-0658EPSS 21%

Integer underflow in the OLE Automation protocol implementation in VBScript.dll in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows…

Mitigation only
Fix from $1,950 2011-06-16
Intelligent Management Center HIGH 10.0
CVE-2011-2331EPSS 13%

Integer overflow in img.exe in HP Intelligent Management Center (IMC) allows remote attackers to execute arbitrary code via a crafted length value in…

Mitigation only
Fix from $1,950 2011-06-02
Bind MEDIUM 5.0
CVE-2011-1910EPSS 25%

Off-by-one error in named in ISC BIND 9.x before 9.7.3-P1, 9.8.x before 9.8.0-P2, 9.4-ESV before 9.4-ESV-R4-P1, and 9.6-ESV before 9.6-ESV-R4-P1 allo…

Mitigation only
Fix from $1,600 2011-05-31
Lotus Notes HIGH 9.3
CVE-2011-1213EPSS 33%

Integer underflow in lzhsr.dll in Autonomy KeyView, as used in IBM Lotus Notes before 8.5.2 FP3, allows remote attackers to execute arbitrary code vi…

Fix: after 8.5.2.2
Fix from $1,950 2011-05-31
OpenBSD MEDIUM 5.0
CVE-2011-2168

Multiple integer overflows in the glob implementation in libc in OpenBSD before 4.9 might allow context-dependent attackers to have an unspecified im…

Fix: after 4.8
Fix from $1,600 2011-05-24
Linux Kernel MEDIUM 6.9
CVE-2011-1746

Multiple integer overflows in the (1) agp_allocate_memory and (2) agp_create_user_memory functions in drivers/char/agp/generic.c in the Linux kernel …

Fix: 2.6.38.5+
Fix from $1,600 2011-05-09
Linux Kernel MEDIUM 6.9
CVE-2011-1494

Integer overflow in the _ctl_do_mpt_command function in drivers/scsi/mpt2sas/mpt2sas_ctl.c in the Linux kernel 2.6.38 and earlier might allow local u…

Fix: after 2.6.38
Fix from $1,600 2011-05-03
Tinyproxy MEDIUM 6.8
CVE-2011-1843

Integer overflow in conf.c in Tinyproxy before 1.8.3 might allow remote attackers to bypass intended access restrictions in opportunistic circumstanc…

Fix: after 1.8.2
Fix from $1,600 2011-05-03
Firefox HIGH 10.0
CVE-2011-1300

The Program::getActiveUniformMaxLength function in libGLESv2/Program.cpp in libGLESv2.dll in the WebGLES library in Almost Native Graphics Layer Engi…

Fix: 10.0.648.205+
Fix from $1,950 2011-04-15
Windows 2003 Server HIGH 9.3
CVE-2011-0041EPSS 28%

Integer overflow in gdiplus.dll in GDI+ in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP1 and SP2, Windows Server 2008 …

Mitigation only
Fix from $1,950 2011-04-13
Excel HIGH 9.3
CVE-2011-0097EPSS 32%

Integer underflow in Microsoft Excel 2002 SP3, 2003 SP3, 2007 SP2, and 2010; Office 2004 and 2008 for Mac; Open XML File Format Converter for Mac; Ex…

Mitigation only
Fix from $1,950 2011-04-13
Excel HIGH 9.3
CVE-2011-0098EPSS 30%

Integer signedness error in Microsoft Excel 2002 SP3, 2003 SP3, 2007 SP2, and 2010; Office 2004 and 2008 for Mac; Open XML File Format Converter for …

Mitigation only
Fix from $1,950 2011-04-13