Vulnerability index

Browse CVEs

1,961 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Resource Management ErrorsCWE-399 × clear
Graphicsmagick MEDIUM 5.0
CVE-2008-3134

Multiple unspecified vulnerabilities in GraphicsMagick before 1.2.4 allow remote attackers to cause a denial of service (crash, infinite loop, or mem…

Mitigation only
Fix from $1,600 2008-07-10
Office Word HIGH 9.3
CVE-2008-2244EPSS 32%

Microsoft Office Word 2002 SP3 allows remote attackers to execute arbitrary code via a .doc file that contains malformed data, as exploited in the wi…

Mitigation only
Fix from $1,950 2008-07-09
Vsftpd HIGH 7.1
CVE-2008-2375

Memory leak in a certain Red Hat deployment of vsftpd before 2.0.5 on Red Hat Enterprise Linux (RHEL) 3 and 4, when PAM is used, allows remote attack…

No fix yet
Fix from $1,950 2008-07-09
Firefox HIGH 10.0
CVE-2008-2798EPSS 14%

Multiple unspecified vulnerabilities in Mozilla Firefox before 2.0.0.15, Thunderbird 2.0.0.14 and earlier, and SeaMonkey before 1.1.10 allow remote a…

Fix: after 2.0.0.14
Fix from $1,950 2008-07-07
Firefox HIGH 10.0
CVE-2008-2799EPSS 6%

Multiple unspecified vulnerabilities in Mozilla Firefox before 2.0.0.15, Thunderbird 2.0.0.14 and earlier, and SeaMonkey before 1.1.10 allow remote a…

Fix: after 2.0.0.14
Fix from $1,950 2008-07-07
Firefox HIGH 10.0
CVE-2008-2811EPSS 7%

The block reflow implementation in Mozilla Firefox before 2.0.0.15, Thunderbird 2.0.0.14 and earlier, and SeaMonkey before 1.1.10 allows remote attac…

Fix: after 2.0.0.14
Fix from $1,950 2008-07-07
Pdf Generator 2 Extension MEDIUM 5.0
CVE-2008-3050

Unspecified vulnerability in the PDF Generator 2 (pdf_generator2) extension 0.5.0 and earlier for TYPO3 allows attackers to cause a denial of service…

Fix: after 0.5.0
Fix from $1,600 2008-07-07
Sql Frontend Extension HIGH 7.5
CVE-2008-3052

Unspecified vulnerability in the SQL Frontend (mh_omsqlio) extension 1.0.11 and earlier for TYPO3 allows remote attackers to cause a denial of servic…

Fix: after 1.0.11
Fix from $1,950 2008-07-07
Pidgin MEDIUM 5.0
CVE-2008-2956

Memory leak in Pidgin 2.0.0, and possibly other versions, allows remote attackers to cause a denial of service (memory consumption) via malformed XML…

Mitigation only
Fix from $1,600 2008-07-01
Openldap MEDIUM 5.0
CVE-2008-2952EPSS 13%

liblber/io.c in OpenLDAP 2.2.4 to 2.4.10 allows remote attackers to cause a denial of service (program termination) via crafted ASN.1 BER datagrams t…

Mitigation only
Fix from $1,600 2008-07-01
Solaris HIGH 7.8
CVE-2008-2946

The SNMP-DMI mapper subagent daemon (aka snmpXdmid) in Solstice Enterprise Agents in Sun Solaris 8 through 10 allows remote attackers to cause a deni…

Mitigation only
Fix from $1,950 2008-06-30
Tivoli Directory Server MEDIUM 6.0
CVE-2008-2943

Double free vulnerability in IBM Tivoli Directory Server (TDS) 6.1.0.0 through 6.1.0.15 allows remote authenticated administrators to cause a denial …

Mitigation only
Fix from $1,600 2008-06-30
Ruby HIGH 7.8
CVE-2008-2664

The rb_str_format function in Ruby 1.8.4 and earlier, 1.8.5 before 1.8.5-p231, 1.8.6 before 1.8.6-p230, 1.8.7 before 1.8.7-p22, and 1.9.0 before 1.9.…

Fix: 1.8.5.231 / 1.8.6.230+
Fix from $1,950 2008-06-24
Safari HIGH 9.3
CVE-2008-2307EPSS 7%

Unspecified vulnerability in WebKit in Apple Safari before 3.1.2, as distributed in Mac OS X before 10.5.4, and standalone for Windows and Mac OS X 1…

Fix: after 3.1.1
Fix from $1,950 2008-06-23
Word HIGH 7.1
CVE-2008-2752EPSS 28%

Microsoft Word 2000 9.0.2812 and 2003 11.8106.8172 does not properly handle unordered lists, which allows user-assisted remote attackers to cause a d…

No fix yet
Fix from $1,950 2008-06-18
Clamav MEDIUM 5.0
CVE-2008-2713

libclamav/petite.c in ClamAV before 0.93.1 allows remote attackers to cause a denial of service via a crafted Petite file that triggers an out-of-bou…

No fix yet
Fix from $1,600 2008-06-16
Mdaemon MEDIUM 5.0
CVE-2008-2631EPSS 23%

The WordClient interface in Alt-N Technologies MDaemon 9.6.5 allows remote attackers to cause a denial of service (NULL pointer dereference and appli…

Fix: after 9.6.5
Fix from $1,600 2008-06-10
Asterisk Addons MEDIUM 5.0
CVE-2008-2543

The ooh323 channel driver in Asterisk Addons 1.2.x before 1.2.9 and Asterisk-Addons 1.4.x before 1.4.7 creates a remotely accessible TCP port that is…

Mitigation only
Fix from $1,600 2008-06-05
Pix Security Appliance HIGH 7.8
CVE-2008-2058

Cisco Adaptive Security Appliance (ASA) and Cisco PIX security appliance 7.2.x before 7.2(3)2 and 8.0.x before 8.0(2)17 allows remote attackers to ca…

Patch available
Fix from $1,950 2008-06-04
Mac Os X HIGH 9.3
CVE-2008-1575EPSS 6%

Unspecified vulnerability in the Apple Type Services (ATS) server in Apple Mac OS X 10.5 before 10.5.3 allows user-assisted remote attackers to execu…

Patch available
Fix from $1,950 2008-06-02
Mac Os X MEDIUM 6.8
CVE-2008-1576

Mail in Apple Mac OS X before 10.5, when an IPv6 SMTP server is used, does not properly initialize memory, which might allow remote attackers to exec…

Patch available
Fix from $1,600 2008-06-02
X Ray HIGH 7.5
CVE-2008-2502

Unspecified vulnerability in the web server in eMule X-Ray before 1.4 allows remote attackers to trigger memory corruption via unknown attack vectors.

Fix: after 1.2
Fix from $1,950 2008-05-29
Enterprise Linux HIGH 7.1
CVE-2007-5962EPSS 12%

Memory leak in a certain Red Hat patch, applied to vsftpd 2.0.5 on Red Hat Enterprise Linux (RHEL) 5 and Fedora 6 through 8, and on Foresight Linux a…

Patch available
Fix from $1,950 2008-05-22
Unified Communications Manager HIGH 7.8
CVE-2008-1742

Memory leak in the Certificate Trust List (CTL) Provider service in Cisco Unified Communications Manager (CUCM) 5.x before 5.1(3) allows remote attac…

Mitigation only
Fix from $1,950 2008-05-16
Unified Communications Manager HIGH 7.8
CVE-2008-1743

Memory leak in the Certificate Trust List (CTL) Provider service in Cisco Unified Communications Manager (CUCM) 5.x before 5.1(3) and 6.x before 6.1(…

Fix: 5.1 / 6.1+
Fix from $1,950 2008-05-16
Linux Kernel HIGH 7.8
CVE-2008-2136

Memory leak in the ipip6_rcv function in net/ipv6/sit.c in the Linux kernel 2.4 before 2.4.36.5 and 2.6 before 2.6.25.3 allows remote attackers to ca…

Fix: 2.4.36.5 / 2.6.25.3+
Fix from $1,950 2008-05-16
Cisco Content Switching Module HIGH 7.8
CVE-2008-1749

Memory leak in Cisco Content Switching Module (CSM) 4.2(3) up to 4.2(8) and Cisco Content Switching Module with SSL (CSM-S) 2.1(2) up to 2.1(7) allow…

Patch available
Fix from $1,950 2008-05-14
Office HIGH 9.3
CVE-2008-1434EPSS 31%

Use-after-free vulnerability in Microsoft Word in Office 2000 and XP SP3, 2003 SP2 and SP3, and 2007 Office System SP1 and earlier allows remote atta…

Patch available
Fix from $1,950 2008-05-13
Antigen For Exchange MEDIUM 5.0
CVE-2008-1437EPSS 13%

Unspecified vulnerability in Microsoft Malware Protection Engine (mpengine.dll) 1.1.3520.0 and 0.1.13.192, as used in multiple Microsoft products, al…

Mitigation only
Fix from $1,600 2008-05-13
Antigen For Exchange MEDIUM 5.0
CVE-2008-1438EPSS 13%

Unspecified vulnerability in Microsoft Malware Protection Engine (mpengine.dll) 1.1.3520.0 and 0.1.13.192, as used in multiple Microsoft products, al…

Mitigation only
Fix from $1,600 2008-05-13