Vulnerability index

Browse CVEs

983 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Numeric ErrorsCWE-189 × clear
Helix Mobile Server HIGH 10.0
CVE-2010-1319EPSS 5%

Integer overflow in the AgentX::receive_agentx function in AgentX++ 1.4.16, as used in RealNetworks Helix Server and Helix Mobile Server 11.x through…

Fix: after 13.1.1
Fix from $1,950 2010-04-20
Tetex MEDIUM 6.8
CVE-2010-0739

Integer overflow in the predospecial function in dospecial.c in dvips in (1) TeX Live and (2) teTeX might allow user-assisted remote attackers to exe…

Patch available
Fix from $1,600 2010-04-16
Opera Browser HIGH 10.0
CVE-2010-1349EPSS 20%

Integer overflow in Opera 10.10 through 10.50 allows remote attackers to execute arbitrary code via a large Content-Length value, which triggers a he…

Patch available
Fix from $1,950 2010-04-12
Linux Kernel HIGH 7.1
CVE-2010-1085

The azx_position_ok function in hda_intel.c in Linux kernel 2.6.33-rc4 and earlier, when running on the AMD780V chip set, allows context-dependent at…

Fix: 2.6.33+
Fix from $1,950 2010-04-06
Mac Os X MEDIUM 6.8
CVE-2010-0519EPSS 9%

Integer overflow in QuickTime in Apple Mac OS X before 10.6.3 allows remote attackers to execute arbitrary code or cause a denial of service (applica…

Patch available
Fix from $1,600 2010-03-30
Safari HIGH 9.3
CVE-2010-1179EPSS 9%

Safari on Apple iPhone OS 3.1.3 for iPod touch allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary…

No fix yet
Fix from $1,950 2010-03-29
Safari MEDIUM 5.0
CVE-2010-1099

Integer overflow in Apple Safari allows remote attackers to bypass intended port restrictions on outbound TCP connections via a port number outside t…

Mitigation only
Fix from $1,600 2010-03-24
Arora MEDIUM 5.0
CVE-2010-1100

Integer overflow in Arora allows remote attackers to bypass intended port restrictions on outbound TCP connections via a port number outside the rang…

Mitigation only
Fix from $1,600 2010-03-24
Icab MEDIUM 5.0
CVE-2010-1101

Integer overflow in Alexander Clauss iCab allows remote attackers to bypass intended port restrictions on outbound TCP connections via a port number …

Mitigation only
Fix from $1,600 2010-03-24
Omniweb MEDIUM 5.0
CVE-2010-1102

Integer overflow in OmniWeb allows remote attackers to bypass intended port restrictions on outbound TCP connections via a port number outside the ra…

Mitigation only
Fix from $1,600 2010-03-24
Stainless MEDIUM 5.0
CVE-2010-1103

Integer overflow in Stainless allows remote attackers to bypass intended port restrictions on outbound TCP connections via a port number outside the …

Mitigation only
Fix from $1,600 2010-03-24
Firefox HIGH 9.3
CVE-2010-1028EPSS 9%

Integer overflow in the decompression functionality in the Web Open Fonts Format (WOFF) decoder in Mozilla Firefox 3.6 before 3.6.2 and 3.7 before 3.…

Mitigation only
Fix from $1,950 2010-03-19
Xnview HIGH 9.3
CVE-2009-4001

Integer overflow in XnView before 1.97.2 might allow remote attackers to execute arbitrary code via a DICOM image with crafted dimensions, leading to…

Fix: after 1.97.1
Fix from $1,950 2010-03-15
Safari HIGH 9.3
CVE-2010-0040EPSS 6%

Integer overflow in ColorSync in Apple Safari before 4.0.5 on Windows, and iTunes before 9.1, allows remote attackers to execute arbitrary code or ca…

Fix: after 4.0.4
Fix from $1,950 2010-03-15
Lotus Notes HIGH 10.0
CVE-2009-3032

Integer overflow in kvolefio.dll 8.5.0.8339 and 10.5.0.0 in the Autonomy KeyView Filter SDK, as used in IBM Lotus Notes 8.5, Symantec Mail Security f…

No fix yet
Fix from $1,950 2010-03-05
Informix Dynamic Server HIGH 10.0
CVE-2009-2754EPSS 40%

Integer signedness error in the authentication functionality in librpc.dll in the Informix Storage Manager (ISM) Portmapper service (aka portmap.exe)…

Patch available
Fix from $1,950 2010-03-05
Modo HIGH 9.3
CVE-2010-0766

Integer overflow in the Swap4 function in valet4.dll in Luxology Modo 401 allows user-assisted remote attackers to execute arbitrary code via a .LXO …

No fix yet
Fix from $1,950 2010-03-03
Linux Kernel HIGH 7.8
CVE-2005-4886

The selinux_parse_skb_ipv6 function in security/selinux/hooks.c in the Linux kernel before 2.6.12-rc4 allows remote attackers to cause a denial of se…

Fix: after 2.6.12
Fix from $1,950 2010-02-26
Chrome MEDIUM 5.0
CVE-2010-0662

The ParamTraits<SkBitmap>::Read function in common/common_param_traits.cc in Google Chrome before 4.0.249.78 does not use the correct variables in ca…

Fix: after 4.0.249.0
Fix from $1,600 2010-02-18
Chrome HIGH 9.3
CVE-2010-0645

Multiple integer overflows in factory.cc in Google V8 before r3560, as used in Google Chrome before 4.0.249.89, allow remote attackers to execute arb…

Fix: after 4.0.249.78
Fix from $1,950 2010-02-18
Chrome HIGH 10.0
CVE-2010-0646

Multiple integer signedness errors in factory.cc in Google V8 before r3560, as used in Google Chrome before 4.0.249.89, allow remote attackers to exe…

Fix: after 4.0.249.78
Fix from $1,950 2010-02-18
Chrome HIGH 9.3
CVE-2010-0649

Integer overflow in the CrossCallParamsEx::CreateFromBuffer function in sandbox/src/crosscall_server.cc in Google Chrome before 4.0.249.89 allows att…

Fix: after 4.0.249.78
Fix from $1,950 2010-02-18
Chrome HIGH 9.3
CVE-2010-0658

Multiple integer overflows in Skia, as used in Google Chrome before 4.0.249.78, allow remote attackers to execute arbitrary code in the Chrome sandbo…

Fix: after 4.0.249.0
Fix from $1,950 2010-02-18
Ffmpeg HIGH 9.3
CVE-2009-4631EPSS 5%

Off-by-one error in the VP3 decoder (vp3.c) in FFmpeg 0.5 allows remote attackers to cause a denial of service and possibly execute arbitrary code vi…

No fix yet
Fix from $1,950 2010-02-10
Ffmpeg MEDIUM 5.8
CVE-2009-4632

oggparsevorbis.c in FFmpeg 0.5 does not properly perform certain pointer arithmetic, which might allow remote attackers to obtain sensitive memory co…

No fix yet
Fix from $1,600 2010-02-10
Ffmpeg HIGH 10.0
CVE-2009-4633EPSS 8%

vorbis_dec.c in FFmpeg 0.5 uses an assignment operator when a comparison operator was intended, which might allow remote attackers to cause a denial …

No fix yet
Fix from $1,950 2010-02-10
Ffmpeg HIGH 10.0
CVE-2009-4634EPSS 7%

Multiple integer underflows in FFmpeg 0.5 allow remote attackers to cause a denial of service and possibly execute arbitrary code via a crafted file …

No fix yet
Fix from $1,950 2010-02-10
Ircd Hybrid MEDIUM 6.8
CVE-2009-4016

Integer underflow in the clean_string function in irc_string.c in (1) IRCD-hybrid 7.2.2 and 7.2.3, (2) ircd-ratbox before 2.2.9, and (3) oftc-hybrid …

Fix: after 2.2.8
Fix from $1,600 2010-02-04
PostgreSQL MEDIUM 6.5
CVE-2010-0442EPSS 13%

The bitsubstr function in backend/utils/adt/varbit.c in PostgreSQL 8.0.23, 8.1.11, and 8.3.8 allows remote authenticated users to cause a denial of s…

Fix: 7.4.28 / 8.0.24+
Fix from $1,600 2010-02-02
HTTP Server MEDIUM 6.8
CVE-2010-0010EPSS 43%

Integer overflow in the ap_proxy_send_fb function in proxy/proxy_util.c in mod_proxy in the Apache HTTP Server before 1.3.42 on 64-bit platforms allo…

Fix: after 1.3.41
Fix from $1,600 2010-02-02