Vulnerability index

Browse CVEs

983 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Numeric ErrorsCWE-189 × clear
Pcre MEDIUM 6.8
CVE-2006-7228

Integer overflow in Perl-Compatible Regular Expression (PCRE) library before 6.7 might allow context-dependent attackers to execute arbitrary code vi…

Fix: after 6.6
Fix from $1,600 2007-11-14
Pcre HIGH 7.5
CVE-2007-4766

Multiple integer overflows in Perl-Compatible Regular Expression (PCRE) library before 7.3 allow context-dependent attackers to cause a denial of ser…

Fix: after 7.3
Fix from $1,950 2007-11-07
Linux Kernel HIGH 7.1
CVE-2007-4997

Integer underflow in the ieee80211_rx function in net/ieee80211/ieee80211_rx.c in the Linux kernel 2.6.x before 2.6.23 allows remote attackers to cau…

Fix: after 2.6.22.7
Fix from $1,950 2007-11-06
Aix HIGH 7.2
CVE-2007-4622

Integer underflow in the dns_name_fromtext function in (1) libdns_nonsecure.a and (2) libdns_secure.a in IBM AIX 5.2 allows local users to gain privi…

Patch available
Fix from $1,950 2007-11-05
E Business Server HIGH 9.3
CVE-2007-2957EPSS 6%

Integer overflow in McAfee E-Business Server before 8.5.3 for Solaris, and before 8.1.2 for Linux, HP-UX, and AIX, allows remote attackers to execute…

Fix: after 8.5.2
Fix from $1,950 2007-10-31
Cups HIGH 10.0
CVE-2007-4351EPSS 7%

Off-by-one error in the ippReadIO function in cups/ipp.c in CUPS 1.3.3 allows remote attackers to cause a denial of service (crash) via a crafted (1)…

Fix: after 1.3.3
Fix from $1,950 2007-10-31
Realone Player HIGH 9.3
CVE-2007-5080EPSS 8%

Integer overflow in RealNetworks RealPlayer 10 and 10.5, RealOne Player 1, and RealPlayer Enterprise for Windows allows remote attackers to execute a…

Patch available
Fix from $1,950 2007-10-31
Amx Mod X HIGH 7.5
CVE-2007-5713

Off-by-one error in the GeoIP module in the AMX Mod X 1.76d plugin for Half-Life Server might allow attackers to execute arbitrary code or cause a de…

Patch available
Fix from $1,950 2007-10-30
iOS HIGH 9.3
CVE-2007-5552

Integer overflow in Cisco IOS allows remote attackers to execute arbitrary code via unspecified vectors. NOTE: as of 20071016, the only disclosure i…

No fix yet
Fix from $1,950 2007-10-18
Lg Mobile Handset HIGH 7.8
CVE-2007-5558

Integer overflow in the LG Mobile handset allows remote attackers to cause a denial of service (reboot) via a crafted HTTP packet. NOTE: as of 20071…

No fix yet
Fix from $1,950 2007-10-18
Extremail HIGH 10.0
CVE-2007-5467EPSS 14%

Integer overflow in eXtremail 2.1.1 and earlier allows remote attackers to cause a denial of service, and possibly execute arbitrary code, via a long…

Fix: after 2.1.1
Fix from $1,950 2007-10-15
Libflac HIGH 9.3
CVE-2007-4619EPSS 7%

Multiple integer overflows in Free Lossless Audio Codec (FLAC) libFLAC before 1.2.1, as used in Winamp before 5.5 and other products, allow user-assi…

Fix: after 5.35
Fix from $1,950 2007-10-12
Drupal MEDIUM 6.8
CVE-2007-5416

Drupal 5.2 and earlier does not properly unset variables when the input data includes a numeric parameter with a value matching an alphanumeric param…

Fix: after 5.2
Fix from $1,600 2007-10-12
World In Conflict MEDIUM 5.0
CVE-2007-5369

The GetMagicNumberString function in Massive Entertainment World in Conflict 1.000 and earlier allows remote attackers to cause a denial of service (…

Patch available
Fix from $1,600 2007-10-11
Wzdftpd MEDIUM 5.0
CVE-2007-5300

Off-by-one error in the do_login_loop function in libwzd-core/wzd_login.c in wzdftpd 0.8.0, 0.8.2, and possibly other versions allows remote attacker…

No fix yet
Fix from $1,600 2007-10-09
X Font Server MEDIUM 6.8
CVE-2007-4568

Integer overflow in the build_range function in X.Org X Font Server (xfs) before 1.0.5 allows context-dependent attackers to execute arbitrary code v…

Patch available
Fix from $1,600 2007-10-05
X Font Server HIGH 7.5
CVE-2007-4990EPSS 11%

The swap_char2b function in X.Org X Font Server (xfs) before 1.0.5 allows context-dependent attackers to execute arbitrary code via (1) QueryXBitmaps…

Fix: after 1.0.4
Fix from $1,950 2007-10-05
Brightstor Arcserve Backup Laptops Desktops HIGH 9.3
CVE-2007-5004EPSS 9%

Integer overflow in CA (Computer Associates) BrightStor ARCserve Backup for Laptops and Desktops r11.0 through r11.5 allows remote attackers to execu…

Patch available
Fix from $1,950 2007-10-01
Windows 2003 Server HIGH 7.1
CVE-2007-5133EPSS 23%

Microsoft Windows Explorer (explorer.exe) allows user-assisted remote attackers to cause a denial of service (CPU consumption) via a certain PNG file…

No fix yet
Fix from $1,950 2007-09-27
Imagemagick MEDIUM 6.8
CVE-2007-4986

Multiple integer overflows in ImageMagick before 6.3.5-9 allow context-dependent attackers to execute arbitrary code via a crafted (1) .dcm, (2) .dib…

Patch available
Fix from $1,600 2007-09-24
Imagemagick HIGH 9.3
CVE-2007-4987

Off-by-one error in the ReadBlobString function in blob.c in ImageMagick before 6.3.5-9 allows context-dependent attackers to execute arbitrary code …

Patch available
Fix from $1,950 2007-09-24
Ace HIGH 10.0
CVE-2007-0062EPSS 8%

Integer overflow in the ISC dhcpd 3.0.x before 3.0.7 and 3.1.x before 3.1.1; and the DHCP server in EMC VMware Workstation before 5.5.5 Build 56455 a…

Patch available
Fix from $1,950 2007-09-21
Dibbler MEDIUM 5.0
CVE-2007-5029

Dibbler 0.6.0 does not verify that certain length parameters are appropriate for buffer sizes, which allows remote attackers to trigger a buffer over…

Patch available
Fix from $1,600 2007-09-21
Dibbler MEDIUM 5.0
CVE-2007-5030

Multiple integer overflows in Dibbler 0.6.0 allow remote attackers to cause a denial of service (daemon crash) via packets containing options with la…

Patch available
Fix from $1,600 2007-09-21
Media Player Classic HIGH 9.3
CVE-2007-4940

Multiple integer overflows in Media Player Classic (MPC) 6.4.9.0 and earlier, as used standalone and in mympc (aka CD-Storm) 1.0.0.1, StormPlayer 1.0…

Fix: after 6.4.9.0
Fix from $1,950 2007-09-18
Anti Virus MEDIUM 6.8
CVE-2007-4578EPSS 7%

Sophos Anti-Virus for Windows and for Unix/Linux before 2.48.0 allows remote attackers to cause a denial of service (crash) and possibly execute arbi…

Patch available
Fix from $1,600 2007-08-28
Serverprotect HIGH 10.0
CVE-2007-4218EPSS 13%

Multiple buffer overflows in the ServerProtect service (SpntSvc.exe) in Trend Micro ServerProtect for Windows before 5.58 Security Patch 4 allow remo…

Patch available
Fix from $1,950 2007-08-22
Serverprotect HIGH 10.0
CVE-2007-4219EPSS 10%

Integer overflow in the RPCFN_SYNC_TASK function in StRpcSrv.dll, as used by the ServerProtect service (SpntSvc.exe), in Trend Micro ServerProtect fo…

Patch available
Fix from $1,950 2007-08-22
Office HIGH 9.3
CVE-2007-2224EPSS 35%

Object linking and embedding (OLE) Automation, as used in Microsoft Windows 2000 SP4, XP SP2, Server 2003 SP1 and SP2, Office 2004 for Mac, and Visua…

Mitigation only
Fix from $1,950 2007-08-14
Windows 2000 HIGH 9.3
CVE-2007-3034EPSS 52%

Integer overflow in the AttemptWrite function in Graphics Rendering Engine (GDI) on Microsoft Windows 2000 SP4, XP SP2, and Server 2003 SP1 allows re…

Patch available
Fix from $1,950 2007-08-14