Vulnerability index

Browse CVEs

1,961 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Resource Management ErrorsCWE-399 × clear
Eoscada HIGH 7.8
CVE-2012-1813

eosfailoverservice.exe in C3-ilex EOScada before 11.0.19.2 allows remote attackers to cause a denial of service by sending a large amount of data to …

Fix: after 11.0.19.1
Fix from $1,950 2012-11-13
Eoscada HIGH 7.8
CVE-2012-1811

EOSDataServer.exe in C3-ilex EOScada before 11.0.19.2 allows remote attackers to cause a denial of service by sending a large amount of data to TCP p…

Fix: after 11.0.19.1
Fix from $1,950 2012-11-13
Kde MEDIUM 6.8
CVE-2012-4515EPSS 6%

Use-after-free vulnerability in khtml/rendering/render_replaced.cpp in Konqueror in KDE 4.7.3, when the context menu is shown, allows remote attacker…

No fix yet
Fix from $1,600 2012-11-11
Chrome HIGH 7.5
CVE-2012-5122

Google Chrome before 23.0.1271.64 does not properly perform a cast of an unspecified variable during handling of input, which allows remote attackers…

Fix: after 23.0.1271.62
Fix from $1,950 2012-11-07
Flashpix Plugin MEDIUM 6.8
CVE-2012-0025EPSS 6%

Double free vulnerability in the Free_All_Memory function in jpeg/dectile.c in libfpx before 1.3.1-1, as used in the FlashPix PlugIn 4.2.2.0 for Irfa…

No fix yet
Fix from $1,600 2012-11-02
Vlc Media Player HIGH 9.3
CVE-2012-0023

Double free vulnerability in the get_chunk_header function in modules/demux/ty.c in VideoLAN VLC media player 0.9.0 through 1.1.12 allows remote atta…

Patch available
Fix from $1,950 2012-10-30
Adaptive Security Appliance Software HIGH 7.1
CVE-2012-4643

The DHCP server on Cisco Adaptive Security Appliances (ASA) 5500 series devices, and the ASA Services Module (ASASM) in Cisco Catalyst 6500 series de…

Mitigation only
Fix from $1,950 2012-10-29
Ibacm MEDIUM 5.0
CVE-2012-4517

ibacm before 1.0.6 does not properly manage reference counts for multicast connections, which allows remote attackers to cause a denial of service (i…

Fix: after 1.0.5
Fix from $1,600 2012-10-22
Chrome HIGH 10.0
CVE-2012-5112

Use-after-free vulnerability in the SVG implementation in WebKit, as used in Google Chrome before 22.0.1229.94, allows remote attackers to execute ar…

Fix: after 22.0.1229.92
Fix from $1,950 2012-10-11
Linux Kernel MEDIUM 6.6
CVE-2012-4467

The (1) do_siocgstamp and (2) do_siocgstampns functions in net/socket.c in the Linux kernel before 3.5.4 use an incorrect argument order, which allow…

Fix: after 3.5.3
Fix from $1,600 2012-10-10
Word Automation Services HIGH 9.3
CVE-2012-2528EPSS 22%

Use-after-free vulnerability in Microsoft Word 2003 SP3, 2007 SP2 and SP3, and 2010 SP1; Word Viewer; Office Compatibility Pack SP2 and SP3; Word Aut…

Mitigation only
Fix from $1,950 2012-10-09
Android HIGH 7.8
CVE-2011-3918

The Zygote process in Android 4.0.3 and earlier accepts fork requests from processes with arbitrary UIDs, which allows remote attackers to cause a de…

Fix: after 4.0.3
Fix from $1,950 2012-10-07
Linux Kernel MEDIUM 5.6
CVE-2012-3510

Use-after-free vulnerability in the xacct_add_tsk function in kernel/tsacct.c in the Linux kernel before 2.6.19 allows local users to obtain potentia…

Fix: after 2.6.18.8
Fix from $1,600 2012-10-03
Optipng HIGH 7.5
CVE-2012-4432EPSS 5%

Use-after-free vulnerability in opngreduc.c in OptiPNG Hg and 0.7.x before 0.7.3 might allow remote attackers to execute arbitrary code via unspecifi…

Patch available
Fix from $1,950 2012-10-01
Qpid MEDIUM 5.0
CVE-2012-2145

Apache Qpid 0.17 and earlier does not properly restrict incoming client connections, which allows remote attackers to cause a denial of service (file…

Fix: after 0.17
Fix from $1,600 2012-09-28
Optima Plc HIGH 7.8
CVE-2012-5048EPSS 7%

APIFTP Server in Optimalog Optima PLC 1.5.2 and earlier allows remote attackers to cause a denial of service (NULL pointer dereference and daemon cra…

Fix: after 1.5.2
Fix from $1,950 2012-09-28
10008 Router HIGH 7.8
CVE-2012-4620

Cisco IOS 12.2 and 15.0 through 15.2 on Cisco 10000 series routers, when a tunnel interface exists, allows remote attackers to cause a denial of serv…

Mitigation only
Fix from $1,950 2012-09-27
iOS HIGH 7.8
CVE-2012-4621

The Device Sensor feature in Cisco IOS 15.0 through 15.2 allows remote attackers to cause a denial of service (device reload) via a DHCP packet, aka …

Mitigation only
Fix from $1,950 2012-09-27
Ios Xe HIGH 7.1
CVE-2012-4622

Cisco IOS XE 03.02.00.XO.15.0(2)XO on Catalyst 4500E series switches, when a Supervisor Engine 7L-E card is installed, allows remote attackers to cau…

Mitigation only
Fix from $1,950 2012-09-27
iOS HIGH 7.1
CVE-2012-3950

The Intrusion Prevention System (IPS) feature in Cisco IOS 12.3 through 12.4 and 15.0 through 15.2, in certain configurations of enabled categories a…

Mitigation only
Fix from $1,950 2012-09-27
iOS HIGH 7.8
CVE-2012-4618

The SIP ALG feature in the NAT implementation in Cisco IOS 12.2, 12.4, and 15.0 through 15.2 allows remote attackers to cause a denial of service (de…

Mitigation only
Fix from $1,950 2012-09-27
iOS HIGH 7.8
CVE-2012-4619

The NAT implementation in Cisco IOS 12.2, 12.4, and 15.0 through 15.2 allows remote attackers to cause a denial of service (device reload) via transi…

Mitigation only
Fix from $1,950 2012-09-27
Chrome MEDIUM 6.8
CVE-2012-2893

Double free vulnerability in libxslt, as used in Google Chrome before 22.0.1229.79, allows remote attackers to cause a denial of service or possibly …

Fix: after 22.0.1229.78
Fix from $1,600 2012-09-26
Chrome MEDIUM 6.8
CVE-2012-2894

Google Chrome before 22.0.1229.79 does not properly handle graphics-context data structures, which allows remote attackers to cause a denial of servi…

Fix: after 22.0.1229.78
Fix from $1,600 2012-09-26
Chrome HIGH 7.5
CVE-2012-2878

Use-after-free vulnerability in Google Chrome before 22.0.1229.79 allows remote attackers to cause a denial of service or possibly have unspecified o…

Fix: after 22.0.1229.78
Fix from $1,950 2012-09-26
Chrome HIGH 7.5
CVE-2012-2885

Double free vulnerability in Google Chrome before 22.0.1229.79 allows remote attackers to cause a denial of service or possibly have unspecified othe…

Fix: after 22.0.1229.78
Fix from $1,950 2012-09-26
Chrome HIGH 7.5
CVE-2012-2887

Use-after-free vulnerability in Google Chrome before 22.0.1229.79 allows remote attackers to cause a denial of service or possibly have unspecified o…

Fix: after 22.0.1229.78
Fix from $1,950 2012-09-26
Chrome HIGH 7.5
CVE-2012-2888

Use-after-free vulnerability in Google Chrome before 22.0.1229.79 allows remote attackers to cause a denial of service or possibly have unspecified o…

Fix: after 22.0.1229.78
Fix from $1,950 2012-09-26
Chrome MEDIUM 6.8
CVE-2012-2890

Use-after-free vulnerability in the PDF functionality in Google Chrome before 22.0.1229.79 allows remote attackers to cause a denial of service or po…

Fix: after 22.0.1229.78
Fix from $1,600 2012-09-26
Websphere Mq MEDIUM 5.0
CVE-2012-2199

The server message channel agent in the queue manager in the server in IBM WebSphere MQ 7.0.1 before 7.0.1.9, 7.1, and 7.5 on Solaris allows remote a…

Mitigation only
Fix from $1,600 2012-09-25