Top technology
Linux 13140
Google 12536
Microsoft 12379
Oracle 6843
Apple 6692
Adobe 6387
Ibm 6336
Cisco 5759
Debian 3919
Mozilla 2895
Apache 2864
Redhat 2592
HIGH 7.8
CVE-2017-0383
An elevation of privilege vulnerability in the Framework APIs could enable a local malicious application to execute arbitrary code within the context…
Android
Mitigation only
HIGH 7.8
CVE-2017-0381
An information disclosure vulnerability in silk/NLSF_stabilize.c in libopus in Mediaserver could enable a local malicious application to access data …
Android
Patch available
CRITICAL 9.8
CVE-2016-8438
Integer overflow leading to a TOCTOU condition in hypervisor PIL. An integer overflow exposes a race condition that may be used to bypass (Peripheral…
Linux Kernel
Mitigation only
CRITICAL 9.8
CVE-2017-5340EPSS 17%
Zend/zend_hash.c in PHP before 7.0.15 and 7.1.x before 7.1.1 mishandles certain cases that require large array allocations, which allows remote attac…
PHP
7.0.15 / 7.1.1+
HIGH 7.8
CVE-2016-4290
When opening a Hangul HShow Document (.hpt) and processing a structure within the document, Hancom Office 2014 will attempt to allocate space for a b…
Hancom Office 2014
after 9.1.0.2176
HIGH 7.8
CVE-2016-4291
When opening a Hangul HShow Document (.hpt) and processing a structure within the document, Hancom Office 2014 will use a field from the structure in…
Hancom Office 2014
after 9.1.0.2176
HIGH 7.8
CVE-2016-4298
When opening a Hangul HShow Document (.hpt) and processing a structure within the document, Hancom Office 2014 will attempt to allocate space for a l…
Hancom Office 2014
after 9.1.0.2176
CRITICAL 9.8
CVE-2016-8704EPSS 23%
An integer overflow in the process_bin_append_prepend function in Memcached, which is responsible for processing multiple commands of Memcached binar…
Memcached
after 1.4.31
CRITICAL 9.8
CVE-2016-8705EPSS 20%
Multiple integer overflows in process_bin_update function in Memcached, which is responsible for processing multiple commands of Memcached binary pro…
Memcached
after 1.4.31
HIGH 8.1
CVE-2016-8706EPSS 46%
An integer overflow in process_bin_sasl_auth function in Memcached, which is responsible for authentication commands of Memcached binary protocol, ca…
Memcached
after 1.4.31
HIGH 7.5
CVE-2015-7848EPSS 6%
An integer overflow can occur in NTP-dev.4.3.70 leading to an out-of-bounds memory copy operation when processing a specially crafted private mode pa…
Clustered Data Ontap
4.2.8 / 4.3.77+
HIGH 7.8
CVE-2016-9754
The ring_buffer_resize function in kernel/trace/ring_buffer.c in the profiling subsystem in the Linux kernel before 4.6.1 mishandles certain integer …
Linux Kernel
3.10.102 / 3.12.61+
HIGH 7.8
CVE-2016-9031
An exploitable integer overflow exists in the Joyent SmartOS 20161110T013148Z Hyprlofs file system. The vulnerability is present in the Ioctl system …
Smartos
No fix yet
HIGH 8.8
CVE-2016-8733
An exploitable integer overflow exists in the Joyent SmartOS 20161110T013148Z Hyprlofs file system. The vulnerability is present in the Ioctl system …
Smartos
after 20161110t013148z
CRITICAL 9.8
CVE-2016-7951
Multiple integer overflows in X.org libXtst before 1.2.3 allow remote X servers to trigger out-of-bounds memory access operations by leveraging the l…
Fedora
after 1.2.2
CRITICAL 9.8
CVE-2016-7947
Multiple integer overflows in X.org libXrandr before 1.5.1 allow remote X servers to trigger out-of-bounds write operations via a crafted response.
Fedora
after 1.5.0
HIGH 7.5
CVE-2016-7945
Multiple integer overflows in X.org libXi before 1.7.7 allow remote X servers to cause a denial of service (out-of-bounds memory access or infinite l…
Fedora
after 1.7.6
CRITICAL 9.8
CVE-2016-7944
Integer overflow in X.org libXfixes before 5.0.3 on 32-bit platforms might allow remote X servers to gain privileges via a length value of INT_MAX, w…
Fedora
after 5.0.2
CRITICAL 9.8
CVE-2016-5841EPSS 13%
Integer overflow in MagickCore/profile.c in ImageMagick before 7.0.2-1 allows remote attackers to cause a denial of service (segmentation fault) or p…
Imagemagick
after 7.0.2-0
CRITICAL 9.8
CVE-2016-9427
Integer overflow vulnerability in bdwgc before 2016-09-27 allows attackers to cause client of bdwgc denial of service (heap buffer overflow crash) an…
Debian Linux
after 7.4.4
HIGH 8.8
CVE-2016-9426
An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-31. Integer overflow vulnerability in the renderTable function in w3m allows r…
W3m
after 0.5.3-30
HIGH 7.4
CVE-2015-8870
Integer overflow in tools/bmp2tiff.c in LibTIFF before 4.0.4 allows remote attackers to cause a denial of service (heap-based buffer over-read), or p…
Libtiff
after 4.0.3
HIGH 7.8
CVE-2016-9084
drivers/vfio/pci/vfio_pci_intrs.c in the Linux kernel through 4.8.11 misuses the kzalloc function, which allows local users to cause a denial of serv…
Linux Kernel
after 4.8.11
HIGH 7.8
CVE-2016-9083
drivers/vfio/pci/vfio_pci.c in the Linux kernel through 4.8.11 allows local users to bypass integer overflow checks, and cause a denial of service (m…
Linux Kernel
3.10.107 / 3.12.70+
CRITICAL 9.8
CVE-2016-9538
tools/tiffcrop.c in libtiff 4.0.6 reads an undefined buffer in readContigStripsIntoBuffer() because of a uint16 integer overflow. Reported as MSVR 35…
Libtiff
Patch available
HIGH 7.5
CVE-2016-9277
Integer overflow in SystemUI in KK(4.4) and L(5.0/5.1) on Samsung Note devices allows attackers to cause a denial of service (UI restart) via vectors…
Samsung Mobile
Mitigation only
MEDIUM 5.5
CVE-2016-9189
Pillow before 3.3.2 allows context-dependent attackers to obtain sensitive information by using the "crafted image file" approach, related to an "Int…
Pillow
after 3.3.1
CRITICAL 9.8
CVE-2016-7990
On Samsung Galaxy S4 through S7 devices, an integer overflow condition exists within libomacp.so when parsing OMACP messages (within WAP Push SMS mes…
Android
Mitigation only
CRITICAL 9.8
CVE-2016-6999EPSS 6%
Integer overflow in Adobe Reader and Acrobat before 11.0.18, Acrobat and Acrobat Reader DC Classic before 15.006.30243, and Acrobat and Acrobat Reade…
Acrobat
after 15.017.20053
HIGH 7.8
CVE-2016-3935
Multiple integer overflows in drivers/crypto/msm/qcedev.c in the Qualcomm cryptographic engine driver in Android before 2016-10-05 on Nexus 5X, Nexus…
Android
after 7.0