Vulnerability index

Browse CVEs

1,961 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Resource Management ErrorsCWE-399 × clear
Iphone Os MEDIUM 6.8
CVE-2012-3747

WebKit, as used in Apple iOS before 6, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and applicat…

Fix: after 5.1.1
Fix from $1,600 2012-09-20
Mac Os X MEDIUM 6.8
CVE-2012-3722

The Sorenson codec in QuickTime in Apple Mac OS X before 10.7.5, and in CoreMedia in iOS before 6, accesses uninitialized memory locations, which all…

Fix: after 10.7.4
Fix from $1,600 2012-09-20
Iphone Os MEDIUM 6.8
CVE-2012-3726

Double free vulnerability in ImageIO in Apple iOS before 6 allows remote attackers to execute arbitrary code or cause a denial of service (applicatio…

Fix: after 5.1.1
Fix from $1,600 2012-09-20
Application Control Engine Module MEDIUM 5.0
CVE-2012-3919

The Cisco Application Control Engine (ACE) module 3.0 for Cisco Catalyst switches and Cisco routers does not properly monitor Load Balancer (LB) queu…

Mitigation only
Fix from $1,600 2012-09-16
Unity Connection HIGH 7.8
CVE-2012-3060

Cisco Unity Connection (UC) 8.6, 9.0, and 9.5 allows remote attackers to cause a denial of service (CPU consumption) via malformed UDP packets, aka B…

Mitigation only
Fix from $1,950 2012-09-16
iOS HIGH 7.8
CVE-2012-3079

Cisco IOS 12.2 allows remote attackers to cause a denial of service (CPU consumption) by establishing many IPv6 neighbors, aka Bug ID CSCtn78957.

Mitigation only
Fix from $1,950 2012-09-16
Intrusion Prevention System MEDIUM 5.0
CVE-2012-3899

sensorApp on Cisco IPS 4200 series sensors 6.0, 6.2, and 7.0 does not properly allocate memory, which allows remote attackers to cause a denial of se…

Mitigation only
Fix from $1,600 2012-09-16
Asa Cx Context Aware Security HIGH 7.8
CVE-2012-4629

The Cisco ASA-CX Context-Aware Security module before 9.0.2-103 for Adaptive Security Appliances (ASA) devices, and Prime Security Manager (aka PRSM)…

Fix: after 9.0
Fix from $1,950 2012-09-12
Libav HIGH 10.0
CVE-2012-2803

Double free vulnerability in the mpeg_decode_frame function in libavcodec/mpeg12.c in FFmpeg before 0.11, and Libav 0.7.x before 0.7.7 and 0.8.x befo…

Fix: after 0.10.4
Fix from $1,950 2012-09-10
Firefox MEDIUM 6.9
CVE-2012-3974

Untrusted search path vulnerability in the installer in Mozilla Firefox before 15.0, Firefox ESR 10.x before 10.0.7, Thunderbird before 15.0, and Thu…

Fix: after 14.0
Fix from $1,600 2012-08-29
Firefox HIGH 10.0
CVE-2012-3958EPSS 5%

Use-after-free vulnerability in the nsHTMLEditRules::DeleteNonTableElements function in Mozilla Firefox before 15.0, Firefox ESR 10.x before 10.0.7, …

Fix: after 14.0
Fix from $1,950 2012-08-29
Firefox HIGH 10.0
CVE-2012-3964EPSS 5%

Use-after-free vulnerability in the gfxTextRun::GetUserData function in Mozilla Firefox before 15.0, Firefox ESR 10.x before 10.0.7, Thunderbird befo…

Fix: after 14.0
Fix from $1,950 2012-08-29
Firefox HIGH 10.0
CVE-2012-3970EPSS 5%

Use-after-free vulnerability in the nsTArray_base::Length function in Mozilla Firefox before 15.0, Firefox ESR 10.x before 10.0.7, Thunderbird before…

Fix: after 14.0
Fix from $1,950 2012-08-29
Performance Co Pilot MEDIUM 5.0
CVE-2012-3420

Multiple memory leaks in Performance Co-Pilot (PCP) before 3.6.5 allow remote attackers to cause a denial of service (memory consumption or daemon cr…

Fix: after 3.6.4
Fix from $1,600 2012-08-27
Munin MEDIUM 5.0
CVE-2012-4678

munin-cgi-graph for Munin 2.0 rc4 does not delete temporary files, which allows remote attackers to cause a denial of service (disk consumption) via …

Mitigation only
Fix from $1,600 2012-08-26
Munin MEDIUM 5.0
CVE-2012-2147

munin-cgi-graph in Munin 2.0 rc4 allows remote attackers to cause a denial of service (disk or memory consumption) via many image requests with large…

Mitigation only
Fix from $1,600 2012-08-26
Tor MEDIUM 5.0
CVE-2012-3517

Use-after-free vulnerability in dns.c in Tor before 0.2.2.38 might allow remote attackers to cause a denial of service (daemon crash) via vectors rel…

Fix: after 0.2.2.37
Fix from $1,600 2012-08-26
Ffmpeg MEDIUM 6.8
CVE-2012-0858

The Shorten codec (shorten.c) in libavcodec in FFmpeg 0.7.x before 0.7.12 and 0.8.x before 0.8.11, and in Libav 0.5.x before 0.5.9, 0.6.x before 0.6.…

Mitigation only
Fix from $1,600 2012-08-20
Wireshark MEDIUM 5.0
CVE-2012-4287

epan/dissectors/packet-mongo.c in the MongoDB dissector in Wireshark 1.8.x before 1.8.2 allows remote attackers to cause a denial of service (loop an…

Patch available
Fix from $1,600 2012-08-16
Chrome MEDIUM 6.8
CVE-2012-2862

Use-after-free vulnerability in the PDF functionality in Google Chrome before 21.0.1180.75 allows remote attackers to cause a denial of service or po…

Fix: after 21.0.1180.74
Fix from $1,600 2012-08-09
Poi MEDIUM 5.0
CVE-2012-0213EPSS 8%

The UnhandledDataStructure function in hwpf/model/UnhandledDataStructure.java in Apache POI 3.8 and earlier allows remote attackers to cause a denial…

Fix: after 3.8
Fix from $1,600 2012-08-07
Emergency Responder MEDIUM 5.0
CVE-2012-1346

Cisco Emergency Responder 8.6 and 9.2 allows remote attackers to cause a denial of service (CPU consumption) by sending malformed UDP packets to the …

Mitigation only
Fix from $1,600 2012-08-06
Adaptive Security Appliance Software HIGH 7.8
CVE-2012-2472

Cisco Adaptive Security Appliances (ASA) 5500 series devices with software 8.2 and 8.4, when SIP inspection is enabled, create many identical pre-all…

Mitigation only
Fix from $1,950 2012-08-06
Chrome MEDIUM 6.8
CVE-2012-2852

The PDF functionality in Google Chrome before 21.0.1180.57 on Mac OS X and Linux, and before 21.0.1180.60 on Windows and Chrome Frame, does not prope…

Fix: after 21.0.1180.56
Fix from $1,600 2012-08-06
Chrome MEDIUM 6.8
CVE-2012-2855

Use-after-free vulnerability in the PDF functionality in Google Chrome before 21.0.1180.57 on Mac OS X and Linux, and before 21.0.1180.60 on Windows …

Fix: after 21.0.1180.56
Fix from $1,600 2012-08-06
Chrome MEDIUM 6.8
CVE-2012-2857

Use-after-free vulnerability in the Cascading Style Sheets (CSS) DOM implementation in Google Chrome before 21.0.1180.57 on Mac OS X and Linux, and b…

Fix: after 21.0.1180.59
Fix from $1,600 2012-08-06
Firefox HIGH 10.0
CVE-2012-1962EPSS 6%

Use-after-free vulnerability in the JSDependentString::undepend function in Mozilla Firefox 4.x through 13.0, Firefox ESR 10.x before 10.0.6, Thunder…

Fix: after 2.10
Fix from $1,950 2012-07-18
Firefox HIGH 10.0
CVE-2012-1951EPSS 6%

Use-after-free vulnerability in the nsSMILTimeValueSpec::IsEventBased function in Mozilla Firefox 4.x through 13.0, Firefox ESR 10.x before 10.0.6, T…

Fix: after 2.10
Fix from $1,950 2012-07-18
Firefox HIGH 9.3
CVE-2012-1952

The nsTableFrame::InsertFrames function in Mozilla Firefox 4.x through 13.0, Firefox ESR 10.x before 10.0.6, Thunderbird 5.0 through 13.0, Thunderbir…

Fix: after 2.10
Fix from $1,950 2012-07-18
Firefox HIGH 10.0
CVE-2012-1954

Use-after-free vulnerability in the nsDocument::AdoptNode function in Mozilla Firefox 4.x through 13.0, Firefox ESR 10.x before 10.0.6, Thunderbird 5…

Fix: after 2.10
Fix from $1,950 2012-07-18