Vulnerability index

Browse CVEs

1,961 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Resource Management ErrorsCWE-399 × clear
iOS HIGH 7.8
CVE-2013-5553

Multiple memory leaks in Cisco IOS 15.1 before 15.1(4)M7 allow remote attackers to cause a denial of service (memory consumption or device reload) by…

Mitigation only
Fix from $1,950 2013-11-08
Linux Kernel HIGH 7.1
CVE-2013-4348EPSS 9%

The skb_flow_dissect function in net/core/flow_dissector.c in the Linux kernel through 3.12 allows remote attackers to cause a denial of service (inf…

Fix: 3.2.54 / 3.4.70+
Fix from $1,950 2013-11-04
Mac Os X MEDIUM 5.7
CVE-2013-5184

The kernel in Apple Mac OS X before 10.9 does not properly check for errors during the processing of multicast Wi-Fi packets, which allows remote att…

Fix: after 10.8.5
Fix from $1,600 2013-10-24
Adaptive Security Appliance Software MEDIUM 5.4
CVE-2013-5544

The VPN authentication functionality in Cisco Adaptive Security Appliance (ASA) Software allows remote attackers to cause a denial of service (device…

Mitigation only
Fix from $1,600 2013-10-22
Adaptive Security Appliance Software HIGH 8.5
CVE-2013-5542

Cisco Adaptive Security Appliance (ASA) Software 8.4 before 8.4(7.2), 8.7 before 8.7(1.8), 9.0 before 9.0(3.6), and 9.1 before 9.1(2.8) allows remote…

Mitigation only
Fix from $1,950 2013-10-21
Hdl2 A\/e MEDIUM 6.8
CVE-2013-4712

I-O DATA DEVICE HDL-A and HDL2-A devices with firmware 1.07 and earlier do not properly manage sessions, which allows remote attackers to obtain sens…

Fix: after 1.07
Fix from $1,600 2013-10-19
Chrome MEDIUM 6.8
CVE-2013-2926

Use-after-free vulnerability in the IndentOutdentCommand::tryIndentingAsListItem function in core/editing/IndentOutdentCommand.cpp in Blink, as used …

Fix: after 30.0.1599.100
Fix from $1,600 2013-10-16
Debian Linux MEDIUM 6.8
CVE-2013-2927

Use-after-free vulnerability in the HTMLFormElement::prepareForSubmission function in core/html/HTMLFormElement.cpp in Blink, as used in Google Chrom…

Fix: after 30.0.1599.100
Fix from $1,600 2013-10-16
Chrome MEDIUM 6.8
CVE-2013-2925

Use-after-free vulnerability in core/xml/XMLHttpRequest.cpp in Blink, as used in Google Chrome before 30.0.1599.101, allows remote attackers to cause…

Fix: after 30.0.1599.100
Fix from $1,600 2013-10-16
Identity Services Engine Software MEDIUM 6.8
CVE-2013-5540

The file-upload feature in Cisco Identity Services Engine (ISE) allows remote authenticated users to cause a denial of service (disk consumption and …

Mitigation only
Fix from $1,600 2013-10-16
X.org X11 MEDIUM 6.5
CVE-2013-4396

Use-after-free vulnerability in the doImageText function in dix/dixfonts.c in the xorg-server module before 1.14.4 in X.Org X11 allows remote authent…

Patch available
Fix from $1,600 2013-10-10
Enterprise Mrg MEDIUM 5.0
CVE-2013-4284

Cumin, as used in Red Hat Enterprise MRG 2.4, allows remote attackers to cause a denial of service (CPU and memory consumption) via a crafted Ajax up…

Mitigation only
Fix from $1,600 2013-10-09
Agent MEDIUM 5.0
CVE-2013-3627

FrameworkService.exe in McAfee Framework Service in McAfee Managed Agent (MA) before 4.5.0.1927 and 4.6 before 4.6.0.3258 allows remote attackers to …

Fix: 4.5.0.1927 / 4.6.0.3258+
Fix from $1,600 2013-10-05
Rsyslog MEDIUM 6.8
CVE-2013-4758

Double free vulnerability in the writeDataError function in the ElasticSearch plugin (omelasticsearch) in rsyslog before 7.4.2 and before 7.5.2 devel…

Fix: after 7.5.1
Fix from $1,600 2013-10-04
Ios Xr HIGH 7.8
CVE-2013-5503

The UDP process in Cisco IOS XR 4.3.1 does not free packet memory upon detecting full packet queues, which allows remote attackers to cause a denial …

Mitigation only
Fix from $1,950 2013-10-02
Chrome HIGH 7.5
CVE-2013-2909

Use-after-free vulnerability in Blink, as used in Google Chrome before 30.0.1599.66, allows remote attackers to cause a denial of service or possibly…

Fix: after 30.0.1599.65
Fix from $1,950 2013-10-02
Chrome HIGH 7.5
CVE-2013-2910

Use-after-free vulnerability in modules/webaudio/AudioScheduledSourceNode.cpp in the Web Audio implementation in Blink, as used in Google Chrome befo…

Fix: after 30.0.1599.65
Fix from $1,950 2013-10-02
Chrome MEDIUM 6.8
CVE-2013-2911

Use-after-free vulnerability in the XSLStyleSheet::compileStyleSheet function in core/xml/XSLStyleSheetLibxslt.cpp in Blink, as used in Google Chrome…

Fix: after 30.0.1599.65
Fix from $1,600 2013-10-02
Chrome HIGH 7.5
CVE-2013-2912

Use-after-free vulnerability in the PepperInProcessRouter::SendToHost function in content/renderer/pepper/pepper_in_process_router.cc in the Pepper P…

Fix: after 30.0.1599.65
Fix from $1,950 2013-10-02
Chrome MEDIUM 6.8
CVE-2013-2913

Use-after-free vulnerability in the XMLDocumentParser::append function in core/xml/parser/XMLDocumentParser.cpp in Blink, as used in Google Chrome be…

Fix: after 30.0.1599.65
Fix from $1,600 2013-10-02
Chrome MEDIUM 6.8
CVE-2013-2914

Use-after-free vulnerability in the color-chooser dialog in Google Chrome before 30.0.1599.66 on Windows allows remote attackers to cause a denial of…

Fix: after 30.0.1599.65
Fix from $1,600 2013-10-02
Chrome HIGH 7.5
CVE-2013-2918

Use-after-free vulnerability in the RenderBlock::collapseAnonymousBlockChild function in core/rendering/RenderBlock.cpp in the DOM implementation in …

Fix: after 30.0.1599.65
Fix from $1,950 2013-10-02
Chrome MEDIUM 6.8
CVE-2013-2921

Double free vulnerability in the ResourceFetcher::didLoadResource function in core/fetch/ResourceFetcher.cpp in the resource loader in Blink, as used…

Fix: after 30.0.1599.65
Fix from $1,600 2013-10-02
Chrome MEDIUM 6.8
CVE-2013-2922

Use-after-free vulnerability in core/html/HTMLTemplateElement.cpp in Blink, as used in Google Chrome before 30.0.1599.66, allows remote attackers to …

Fix: after 30.0.1599.65
Fix from $1,600 2013-10-02
Chrome HIGH 7.5
CVE-2013-2924

Use-after-free vulnerability in International Components for Unicode (ICU), as used in Google Chrome before 30.0.1599.66 and other products, allows r…

Fix: after 30.0.1599.65
Fix from $1,950 2013-10-02
MongoDB MEDIUM 6.5
CVE-2013-3969EPSS 10%

The find prototype in scripting/engine_v8.h in MongoDB 2.4.0 through 2.4.4 allows remote authenticated users to cause a denial of service (uninitiali…

Mitigation only
Fix from $1,600 2013-10-01
Enterprise Linux HIGH 7.2
CVE-2013-2231

Unquoted Windows search path vulnerability in the QEMU Guest Agent service for Red Hat Enterprise Linux Desktop 6, HPC Node 6, Server 6, Workstation …

Mitigation only
Fix from $1,950 2013-10-01
Xen MEDIUM 5.5
CVE-2011-2901

Off-by-one error in the __addr_ok macro in Xen 3.3 and earlier allows local 64 bit PV guest administrators to cause a denial of service (host crash) …

Fix: after 3.3.0
Fix from $1,600 2013-10-01
Telepresence Multipoint Switch MEDIUM 6.3
CVE-2013-5516

The Media Snapshot implementation on Cisco TelePresence Multipoint Switch (CTMS) devices allows remote authenticated users to cause a denial of servi…

Mitigation only
Fix from $1,600 2013-10-01
Libvirt MEDIUM 5.0
CVE-2013-4153

Double free vulnerability in the qemuAgentGetVCPUs function in qemu/qemu_agent.c in libvirt 1.0.6 through 1.1.0 allows remote attackers to cause a de…

Patch available
Fix from $1,600 2013-09-30