Vulnerability index

Browse CVEs

1,961 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Resource Management ErrorsCWE-399 × clear
Firefox MEDIUM 6.8
CVE-2008-1237

Multiple unspecified vulnerabilities in Mozilla Firefox before 2.0.0.13, Thunderbird before 2.0.0.13, and SeaMonkey before 1.1.9 allow remote attacke…

Fix: after 2.0.0.12
Fix from $1,600 2008-03-27
Panda Antivirus And Firewall HIGH 7.2
CVE-2008-1471

The cpoint.sys driver in Panda Internet Security 2008 and Antivirus+ Firewall 2008 allows local users to cause a denial of service (system crash or k…

Patch available
Fix from $1,950 2008-03-24
Net Inspector HIGH 7.1
CVE-2008-1402

MG-SOFT Net Inspector 6.5.0.828 and earlier for Windows allows remote attackers to cause a (1) denial of service (exception and crash) via a UDP pack…

Fix: after 6.5.0.828
Fix from $1,950 2008-03-20
Ace HIGH 7.1
CVE-2008-1340

Virtual Machine Communication Interface (VMCI) in VMware Workstation 6.0.x before 6.0.3, VMware Player 2.0.x before 2.0.3, and VMware ACE 2.0.x befor…

Patch available
Fix from $1,950 2008-03-20
Ace HIGH 7.8
CVE-2008-1364

Unspecified vulnerability in the DHCP service in VMware Workstation 5.5.x before 5.5.6, VMware Player 1.0.x before 1.0.6, VMware ACE 1.0.x before 1.0…

Patch available
Fix from $1,950 2008-03-20
Gcc HIGH 7.5
CVE-2008-1367

gcc 4.3.x does not generate a cld instruction while compiling functions used for string manipulation such as memcpy and memmove on x86 and i386, whic…

No fix yet
Fix from $1,950 2008-03-17
Realplayer HIGH 9.3
CVE-2008-1309EPSS 46%

The RealAudioObjects.RealAudio ActiveX control in rmoc3260.dll in RealNetworks RealPlayer Enterprise, RealPlayer 10, RealPlayer 10.5 before build 6.0…

No fix yet
Fix from $1,950 2008-03-12
Graphicsmagick MEDIUM 6.8
CVE-2008-1097

Heap-based buffer overflow in the ReadPCXImage function in the PCX coder in coders/pcx.c in (1) ImageMagick 6.2.4-5 and 6.2.8-0 and (2) GraphicsMagic…

No fix yet
Fix from $1,600 2008-03-05
Scan Engine HIGH 7.1
CVE-2008-0308

Symantec Decomposer, as used in certain Symantec antivirus products including Symantec Scan Engine 5.1.2 and other versions before 5.1.6.31, allows r…

Fix: after 5.1.4.24
Fix from $1,950 2008-02-28
Miro Player HIGH 9.3
CVE-2008-0984EPSS 15%

The MP4 demuxer (mp4.c) for VLC media player 0.8.6d and earlier, as used in Miro Player 1.1 and earlier, allows remote attackers to overwrite arbitra…

Fix: after 1.1
Fix from $1,950 2008-02-26
Lighttpd MEDIUM 5.0
CVE-2008-0983

lighttpd 1.4.18, and possibly other versions before 1.5.0, does not properly calculate the size of a file descriptor array, which allows remote attac…

Patch available
Fix from $1,600 2008-02-26
Cups MEDIUM 5.0
CVE-2008-0596

Memory leak in CUPS before 1.1.22, and possibly other versions, allows remote attackers to cause a denial of service (memory consumption and daemon c…

Mitigation only
Fix from $1,600 2008-02-26
Cups MEDIUM 5.0
CVE-2008-0597

Use-after-free vulnerability in CUPS before 1.1.22, and possibly other versions, allows remote attackers to cause a denial of service (crash) via cra…

Mitigation only
Fix from $1,600 2008-02-26
Double Take MEDIUM 5.0
CVE-2008-0974

Double-Take 5.0.0.2865 and earlier, distributed under the HP StorageWorks Storage Mirroring name and other names, allows remote attackers to cause a …

Fix: after 5.0.0.2865
Fix from $1,600 2008-02-25
Double Take MEDIUM 5.0
CVE-2008-0976

Double-Take 5.0.0.2865 and earlier, distributed under the HP StorageWorks Storage Mirroring name and other names, allows remote attackers to cause a …

Fix: after 5.0.0.2865
Fix from $1,600 2008-02-25
Double Take MEDIUM 5.0
CVE-2008-0977

Double-Take 5.0.0.2865 and earlier, distributed under the HP StorageWorks Storage Mirroring name and other names, allows remote attackers to cause a …

No fix yet
Fix from $1,600 2008-02-25
Double Take MEDIUM 5.0
CVE-2008-0979

Stack consumption vulnerability in Double-Take 5.0.0.2865 and earlier, distributed under the HP StorageWorks Storage Mirroring name and other names, …

Fix: after 5.0.0.2865
Fix from $1,600 2008-02-25
Kerio Mailserver MEDIUM 5.0
CVE-2008-0859

Unspecified vulnerability in Kerio MailServer before 6.5.0 allows remote attackers to cause a denial of service (crash) via unspecified vectors relat…

Mitigation only
Fix from $1,600 2008-02-21
Connect Enterprise Server HIGH 10.0
CVE-2007-6148EPSS 8%

Use-after-free vulnerability in the Edge server in Adobe Flash Media Server 2 before 2.0.5, and Connect Enterprise Server 6 before SP3, allows remote…

Fix: after 6
Fix from $1,950 2008-02-13
Db2 HIGH 10.0
CVE-2007-3676

IBM DB2 Universal Database (UDB) Administration Server (DAS) 8 before Fix Pack 16 and 9 before Fix Pack 4 allows remote attackers to cause a denial o…

Fix: after 9.0
Fix from $1,950 2008-02-13
Office HIGH 9.3
CVE-2008-0103EPSS 30%

Unspecified vulnerability in Microsoft Office 2000 SP3, Office XP SP3, Office 2003 SP2, and Office 2004 for Mac allows remote attackers to execute ar…

Mitigation only
Fix from $1,950 2008-02-13
Publisher HIGH 10.0
CVE-2008-0102EPSS 37%

Unspecified vulnerability in Microsoft Office Publisher 2000, 2002, and 2003 SP2 allows remote attackers to execute arbitrary code via a crafted .pub…

Mitigation only
Fix from $1,950 2008-02-12
Office HIGH 9.3
CVE-2008-0109EPSS 31%

Word in Microsoft Office 2000 SP3, XP SP3, Office 2003 SP2, and Office Word Viewer 2003 allows remote attackers to execute arbitrary code via crafted…

Mitigation only
Fix from $1,950 2008-02-12
Mobile Safari HIGH 7.1
CVE-2008-0729EPSS 8%

Mobile Safari on Apple iPhone 1.1.2 and 1.1.3 allows remote attackers to cause a denial of service (memory exhaustion and device crash) via certain J…

No fix yet
Fix from $1,950 2008-02-12
Mac Os X HIGH 10.0
CVE-2008-0040EPSS 7%

Unspecified vulnerability in NFS in Apple Mac OS X 10.5 through 10.5.1 allows remote attackers to cause a denial of service (system shutdown) or exec…

Patch available
Fix from $1,950 2008-02-12
Clamav HIGH 10.0
CVE-2008-0728

The unmew11 function in libclamav/mew.c in libclamav in ClamAV before 0.92.1 has unknown impact and attack vectors that trigger "heap corruption."

Fix: after 0.92
Fix from $1,950 2008-02-12
Firefox HIGH 9.3
CVE-2008-0412

The browser engine in Mozilla Firefox before 2.0.0.12, Thunderbird before 2.0.0.12, and SeaMonkey before 1.1.8 allows remote attackers to cause a den…

Fix: after 2.0.0.11
Fix from $1,950 2008-02-08
Firefox HIGH 9.3
CVE-2008-0413

The JavaScript engine in Mozilla Firefox before 2.0.0.12, Thunderbird before 2.0.0.12, and SeaMonkey before 1.1.8 allows remote attackers to cause a …

Fix: after 2.0.0.11
Fix from $1,950 2008-02-08
Firefox HIGH 9.3
CVE-2008-0419

Mozilla Firefox before 2.0.0.12 and SeaMonkey before 1.1.8 allows remote attackers to steal navigation history and cause a denial of service (crash) …

Fix: after 2.0.0.11
Fix from $1,950 2008-02-08
Linux Kernel HIGH 7.2
CVE-2008-0007

Linux kernel before 2.6.22.17, when using certain drivers that register a fault handler that does not perform range checks, allows local users to acc…

Fix: after 2.6.22.16
Fix from $1,950 2008-02-08