Top technology
Linux 13140
Google 12525
Microsoft 12378
Apple 6692
Oracle 6673
Adobe 6383
Ibm 6286
Cisco 5751
Debian 3919
Mozilla 2886
Apache 2864
Redhat 2586
HIGH 7.8
CVE-2007-3642
The decode_choice function in net/netfilter/nf_conntrack_h323_asn1.c in the Linux kernel before 2.6.20.15, 2.6.21.x before 2.6.21.6, and before 2.6.2…
Linux Kernel
after 2.6.20.14
HIGH 7.2
CVE-2007-3508
Integer overflow in the process_envvars function in elf/rtld.c in glibc before 2.5-rc4 might allow local users to execute arbitrary code via a large …
Glibc
after 2.5
MEDIUM 5.1
CVE-2007-2799
Integer overflow in the "file" program 4.20, when running on 32-bit systems, as used in products including The Sleuth Kit, might allow user-assisted …
File
Mitigation only
MEDIUM 6.8
CVE-2007-2788EPSS 18%
Integer overflow in the embedded ICC profile image parser in Sun Java Development Kit (JDK) before 1.5.0_11-b03 and 1.6.x before 1.6.0_01-b06, and Su…
Jdk
Patch available
HIGH 8.5
CVE-2007-1351EPSS 6%
Integer overflow in the bdfReadCharacters function in bdfread.c in (1) X.Org libXfont before 20070403 and (2) freetype 2.3.2 and earlier allows remot…
Ubuntu Linux
Patch available
MEDIUM 5.0
CVE-2007-1270
Double free vulnerability in VMware ESX Server 3.0.0 and 3.0.1 allows attackers to cause a denial of service (crash), obtain sensitive information, o…
Esx Server
Mitigation only
MEDIUM 6.8
CVE-2007-1797
Multiple integer overflows in ImageMagick before 6.3.3-5 allow remote attackers to execute arbitrary code via (1) a crafted DCM image, which results …
Imagemagick
Patch available
HIGH 9.3
CVE-2007-1667
Multiple integer overflows in (1) the XGetPixel function in ImUtil.c in X.Org libx11 before 1.0.3, and (2) XInitImage function in xwd.c for ImageMagi…
Debian Linux
after 1.0.2
HIGH 9.3
CVE-2007-1536EPSS 12%
Integer underflow in the file_printf function in the "file" program before 4.20 allows user-assisted attackers to execute arbitrary code via a file t…
File
after 4.19
MEDIUM 6.8
CVE-2007-1466
Integer overflow in the WP6GeneralTextPacket::_readContents function in WordPerfect Document importer/exporter (libwpd) before 0.8.9 allows user-assi…
Wordperfect Document Importer Exporter
after 0.8.8
MEDIUM 6.8
CVE-2007-1218
Off-by-one buffer overflow in the parse_elements function in the 802.11 printer code (print-802_11.c) for tcpdump 3.9.5 and earlier allows remote att…
Tcpdump
after 3.9.5
MEDIUM 6.8
CVE-2007-0008
Integer underflow in the SSLv2 support in Mozilla Network Security Services (NSS) before 3.11.5, as used by Firefox before 1.5.0.10 and 2.x before 2.…
Firefox
after 1.5.0.9
HIGH 7.2
CVE-2007-0229
Integer overflow in the ffs_mountfs function in Mac OS X 10.4.8 and FreeBSD 6.1 allows local users to cause a denial of service (panic) and possibly …
FreeBSD
No fix yet
HIGH 9.3
CVE-2006-5870EPSS 8%
Multiple integer overflows in OpenOffice.org (OOo) 2.0.4 and earlier, and possibly other versions before 2.1.0; and StarOffice 6 through 8; allow use…
Openoffice
after 2.0.4
HIGH 9.3
CVE-2006-6676EPSS 6%
Integer overflow in the (a) OLE2 and (b) CHM parsers for ESET NOD32 Antivirus before 1.1743 allows remote attackers to execute arbitrary code via a c…
Nod32 Antivirus
after 1.1742
HIGH 10.0
CVE-2006-5940
Unspecified vulnerability in Grisoft AVG Anti-Virus before 7.1.407 has unknown impact and remote attack vectors related to "Integer Issues" and parsi…
Avg Antivirus
Patch available
HIGH 7.5
CVE-2006-3445EPSS 41%
Integer overflow in the ReadWideString function in agentdpv.dll in Microsoft Agent on Microsoft Windows 2000 SP4, XP SP2, and Server 2003 up to SP1 a…
Windows 2000
Mitigation only
HIGH 7.8
CVE-2006-4517
Novell iManager 2.5 and 2.0.2 allows remote attackers to cause a denial of service (crash) in the Tomcat server via a long TREE parameter in an HTTP …
Imanager
after 2.5
MEDIUM 6.8
CVE-2006-4811
Integer overflow in Qt 3.3 before 3.3.7, 4.1 before 4.1.5, and 4.2 before 4.2.1, as used in the KDE khtml library, kdelibs 3.1.3, and possibly other …
Kdelibs
Patch available
HIGH 9.3
CVE-2006-3647EPSS 26%
Integer overflow in Microsoft Word 2000, 2002, 2003, 2004 for Mac, and v.X for Mac allows remote user-assisted attackers to execute arbitrary code vi…
Office
Mitigation only
MEDIUM 5.1
CVE-2006-3744
Multiple integer overflows in ImageMagick before 6.2.9 allows user-assisted attackers to execute arbitrary code via crafted Sun Rasterfile (bitmap) i…
Imagemagick
after 6.2.8
HIGH 7.5
CVE-2006-3464
TIFF library (libtiff) before 3.8.2 allows context-dependent attackers to pass numeric range checks and possibly execute code, and trigger assert err…
Libtiff
after 3.8.1
HIGH 7.6
CVE-2006-3747EPSS 96%
Off-by-one error in the ldap scheme handling in the Rewrite module (mod_rewrite) in Apache 1.3 from 1.3.28, 2.0.46 and other versions before 2.0.59, …
HTTP Server
1.3.37 / 2.0.59+
HIGH 7.5
CVE-2006-3806EPSS 5%
Multiple integer overflows in the Javascript engine in Mozilla Firefox before 1.5.0.5, Thunderbird before 1.5.0.5, and SeaMonkey before 1.0.3 might a…
Firefox
Patch available
MEDIUM 5.0
CVE-2006-3879EPSS 9%
Integer overflow in the loadChunk function in loaders/load_gt2.c in libmikmod in Mikmod Sound System 3.2.2 allows remote attackers to cause a denial …
Mikmod
No fix yet
HIGH 7.5
CVE-2006-3467
Integer overflow in FreeType before 2.2 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafte…
Freetype
after 2.1
HIGH 7.5
CVE-2006-3630
Multiple off-by-one errors in Wireshark (aka Ethereal) 0.9.7 to 0.99.0 have unknown impact and remote attack vectors via the (1) NCP NMAS and (2) NDP…
Wireshark
Patch available
MEDIUM 5.1
CVE-2006-1467EPSS 7%
Integer overflow in the AAC file parsing code in Apple iTunes before 6.0.5 on Mac OS X 10.2.8 or later, and Windows XP and 2000, allows remote user-a…
Itunes
after 6.0.4
MEDIUM 5.0
CVE-2006-3082EPSS 7%
parse-packet.c in GnuPG (gpg) 1.4.3 and 1.9.20, and earlier versions, allows remote attackers to cause a denial of service (gpg crash) and possibly o…
Gnupg
after 1.9.20
MEDIUM 6.5
CVE-2006-2197
Integer overflow in wv2 before 0.2.3 might allow context-dependent attackers to execute arbitrary code via a crafted Microsoft Word document.
Wv2
after 0.2.3