Vulnerability index

Browse CVEs

1,961 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Resource Management ErrorsCWE-399 × clear
Wireless Lan Controller Software HIGH 7.1
CVE-2014-0705

The multicast listener discovery (MLD) service on Cisco Wireless LAN Controller (WLC) devices 7.2, 7.3, 7.4 before 7.4.121.0, and 7.5, when MLDv2 Sno…

Mitigation only
Fix from $1,950 2014-03-06
Wireless Lan Controller Software HIGH 7.8
CVE-2014-0706

Cisco Wireless LAN Controller (WLC) devices 7.2 before 7.2.115.2, 7.3, and 7.4 before 7.4.110.0 allow remote attackers to cause a denial of service (…

Mitigation only
Fix from $1,950 2014-03-06
Wireless Lan Controller Software HIGH 7.8
CVE-2014-0707

Cisco Wireless LAN Controller (WLC) devices 7.2, 7.3, and 7.4 before 7.4.110.0 allow remote attackers to cause a denial of service (device restart) v…

Mitigation only
Fix from $1,950 2014-03-06
Chrome HIGH 7.5
CVE-2013-6663

Use-after-free vulnerability in the SVGImage::setContainerSize function in core/svg/graphics/SVGImage.cpp in the SVG implementation in Blink, as used…

Fix: after 33.0.1750.144
Fix from $1,950 2014-03-05
Chrome HIGH 7.5
CVE-2013-6664

Use-after-free vulnerability in the FormAssociatedElement::formRemovedFromTree function in core/html/FormAssociatedElement.cpp in Blink, as used in G…

Fix: after 33.0.1750.144
Fix from $1,950 2014-03-05
Chrome HIGH 7.5
CVE-2013-6658

Multiple use-after-free vulnerabilities in the layout implementation in Blink, as used in Google Chrome before 33.0.1750.117, allow remote attackers …

Fix: after 33.0.1750.116
Fix from $1,950 2014-02-24
Chrome HIGH 7.5
CVE-2013-6653

Use-after-free vulnerability in the web contents implementation in Google Chrome before 33.0.1750.117 allows remote attackers to cause a denial of se…

Fix: after 33.0.1750.116
Fix from $1,950 2014-02-24
Chrome HIGH 7.5
CVE-2013-6655

Use-after-free vulnerability in Blink, as used in Google Chrome before 33.0.1750.117, allows remote attackers to cause a denial of service or possibl…

Fix: after 33.0.1750.116
Fix from $1,950 2014-02-24
Bsafe Ssl J MEDIUM 5.0
CVE-2014-0625

The SSLSocket implementation in the (1) JSAFE and (2) JSSE APIs in EMC RSA BSAFE SSL-J 5.x before 5.1.3 and 6.x before 6.0.2 allows remote attackers …

Mitigation only
Fix from $1,600 2014-02-18
Mumble MEDIUM 5.0
CVE-2014-1916

The (1) opus_packet_get_nb_frames and (2) opus_packet_get_samples_per_frame functions in the client in MumbleKit before commit fd190328a9b24d37382b26…

Mitigation only
Fix from $1,600 2014-02-08
Simatic Wincc Open Architecture MEDIUM 5.0
CVE-2014-1699

Siemens SIMATIC WinCC OA before 3.12 P002 January allows remote attackers to cause a denial of service (monitoring-service outage) via malformed HTTP…

Fix: after 3.12
Fix from $1,600 2014-02-07
Pidgin MEDIUM 5.0
CVE-2013-6479

util.c in libpurple in Pidgin before 2.10.8 does not properly allocate memory for HTTP responses that are inconsistent with the Content-Length header…

Fix: after 2.10.7
Fix from $1,600 2014-02-06
Telvent Sage 3030 Firmware MEDIUM 5.0
CVE-2013-6143

The Schneider Electric Telvent SAGE 3030 RTU with firmware C3413-500-001D3_P4 and C3413-500-001F0_PB allows remote attackers to cause a denial of ser…

Mitigation only
Fix from $1,600 2014-01-31
Codesys Runtime Toolkit MEDIUM 5.0
CVE-2014-0757

Smart Software Solutions (3S) CoDeSys Runtime Toolkit before 2.4.7.44 allows remote attackers to cause a denial of service (NULL pointer dereference …

Fix: after 2.4.7.43
Fix from $1,600 2014-01-31
Chrome HIGH 7.5
CVE-2013-6649

Use-after-free vulnerability in the RenderSVGImage::paint function in core/rendering/svg/RenderSVGImage.cpp in Blink, as used in Google Chrome before…

Fix: after 32.0.1700.101
Fix from $1,950 2014-01-28
Cxxtools MEDIUM 5.0
CVE-2013-7298

query_params.cpp in cxxtools before 2.2.1 allows remote attackers to cause a denial of service (infinite recursion and crash) via an HTTP query that …

Fix: after 2.2
Fix from $1,600 2014-01-26
Unity Connection MEDIUM 6.8
CVE-2014-0664

The server in Cisco Unity Connection allows remote authenticated users to cause a denial of service (CPU consumption) via unspecified IMAP commands, …

Mitigation only
Fix from $1,600 2014-01-10
Ffmpeg MEDIUM 6.8
CVE-2013-7021

The filter_frame function in libavfilter/vf_fps.c in FFmpeg before 2.1 does not properly ensure the availability of FIFO content, which allows remote…

Fix: after 2.0.1
Fix from $1,600 2013-12-09
Ffmpeg MEDIUM 6.8
CVE-2011-3946EPSS 6%

The ff_h264_decode_sei function in libavcodec/h264_sei.c in FFmpeg before 0.10 allows remote attackers to have an unspecified impact via crafted Supp…

Fix: after 0.9.1
Fix from $1,600 2013-12-09
Ffmpeg MEDIUM 6.8
CVE-2011-3934

Double free vulnerability in the vp3_update_thread_context function in libavcodec/vp3.c in FFmpeg before 0.10 allows remote attackers to have an unsp…

Fix: after 0.9.1
Fix from $1,600 2013-12-09
Chrome MEDIUM 6.8
CVE-2013-6635

Use-after-free vulnerability in the editing implementation in Blink, as used in Google Chrome before 31.0.1650.63, allows remote attackers to cause a…

Fix: after 31.0.1650.62
Fix from $1,600 2013-12-07
Garoon MEDIUM 5.0
CVE-2013-6002

The server in Cybozu Garoon before 3.7 SP1 allows remote attackers to cause a denial of service (CPU consumption) via unspecified vectors.

Fix: after 3.7
Fix from $1,600 2013-12-05
Ios Xe HIGH 7.1
CVE-2013-6704

Cisco IOS XE does not properly manage memory for TFTP UDP flows, which allows remote attackers to cause a denial of service (memory consumption) via …

Mitigation only
Fix from $1,950 2013-12-03
Ubuntu Linux MEDIUM 5.0
CVE-2010-3443

ctcphandler.cpp in Quassel before 0.6.3 and 0.7.x before 0.7.1 allows remote attackers to cause a denial of service (unresponsive IRC) via multiple C…

Fix: after 0.6.2
Fix from $1,600 2013-11-23
Ios Xe MEDIUM 6.3
CVE-2013-6692

Cisco IOS XE 3.8S(.2) and earlier does not properly use a DHCP pool during assignment of an IP address, which allows remote authenticated users to ca…

Fix: after 3.8s
Fix from $1,600 2013-11-22
Word HIGH 7.1
CVE-2013-6801EPSS 14%

Microsoft Word 2003 SP2 and SP3 on Windows XP SP3 allows remote attackers to cause a denial of service (CPU consumption) via a malformed .doc file co…

No fix yet
Fix from $1,950 2013-11-18
Chrome HIGH 7.5
CVE-2013-6621

Use-after-free vulnerability in Google Chrome before 31.0.1650.48 allows remote attackers to cause a denial of service or possibly have unspecified o…

Fix: after 31.0.1650.47
Fix from $1,950 2013-11-13
Chrome MEDIUM 6.8
CVE-2013-6622

Use-after-free vulnerability in the HTMLMediaElement::didMoveToNewDocument function in core/html/HTMLMediaElement.cpp in Blink, as used in Google Chr…

Fix: after 31.0.1650.47
Fix from $1,600 2013-11-13
Chrome HIGH 7.5
CVE-2013-6624

Use-after-free vulnerability in Google Chrome before 31.0.1650.48 allows remote attackers to cause a denial of service or possibly have unspecified o…

Fix: after 31.0.1650.47
Fix from $1,950 2013-11-13
Chrome MEDIUM 6.8
CVE-2013-6625

Use-after-free vulnerability in core/dom/ContainerNode.cpp in Blink, as used in Google Chrome before 31.0.1650.48, allows remote attackers to cause a…

Fix: after 31.0.1650.47
Fix from $1,600 2013-11-13