Vulnerability index

Browse CVEs

1,961 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Resource Management ErrorsCWE-399 × clear
Imagemagick MEDIUM 6.5
CVE-2015-8959

coders/dds.c in ImageMagick before 6.9.0-4 Beta allows remote attackers to cause a denial of service (CPU consumption) via a crafted DDS file.

Fix: after 6.9.0-3
Fix from $1,600 2017-04-20
Traffic Server HIGH 7.5
CVE-2016-5396

Apache Traffic Server 6.0.0 to 6.2.0 are affected by an HPACK Bomb Attack.

Patch available
Fix from $1,950 2017-04-17
Debian Linux HIGH 7.5
CVE-2016-7551EPSS 5%

chain_sip in Asterisk Open Source 11.x before 11.23.1 and 13.x 13.11.1 and Certified Asterisk 11.6 before 11.6-cert15 and 13.8 before 13.8-cert3 allo…

Patch available
Fix from $1,950 2017-04-17
Office MEDIUM 6.5
CVE-2016-4871

Cybozu Office 9.0.0 through 10.4.0 allows remote attackers to cause a denial of service.

No fix yet
Fix from $1,600 2017-04-17
Debian Linux MEDIUM 6.5
CVE-2015-8345

The eepro100 emulator in QEMU qemu-kvm blank allows local guest users to cause a denial of service (application crash and infinite loop) via vectors …

Fix: after 2.4.1
Fix from $1,600 2017-04-13
Debian Linux HIGH 7.5
CVE-2012-6697

InspIRCd before 2.0.7 allows remote attackers to cause a denial of service (infinite loop).

Fix: after 2.0.6
Fix from $1,950 2017-04-13
Ssl Visibility Appliance Sv1800 Firmware MEDIUM 5.9
CVE-2016-10259

Symantec SSL Visibility (SSLV) 3.8.4FC, 3.9, 3.10 before 3.10.4.1, and 3.11 before 3.11.3.1 is susceptible to a denial-of-service vulnerability that …

Mitigation only
Fix from $1,600 2017-04-11
Wireless Lan Controller MEDIUM 5.3
CVE-2016-9195

A vulnerability in RADIUS Change of Authorization (CoA) request processing in the Cisco Wireless LAN Controller (WLC) could allow an unauthenticated,…

Mitigation only
Fix from $1,600 2017-04-07
Wireless Lan Controller MEDIUM 6.5
CVE-2016-9194

A vulnerability in 802.11 Wireless Multimedia Extensions (WME) action frame processing in Cisco Wireless LAN Controller (WLC) Software could allow an…

Mitigation only
Fix from $1,600 2017-04-06
Secospace Usg6300 Firmware MEDIUM 6.5
CVE-2016-8781

Huawei Secospace USG6300 with software V500R001C20 and V500R001C20SPC200PWE, Secospace USG6500 with software V500R001C20, Secospace USG6600 with soft…

Mitigation only
Fix from $1,600 2017-04-02
Ar3200 Firmware HIGH 7.5
CVE-2016-8797

Huawei AR3200 with software V200R007C00, V200R005C32, V200R005C20; S12700 with software V200R008C00, V200R007C00; S5300 with software V200R008C00, V2…

Mitigation only
Fix from $1,950 2017-04-02
Eudemon8000e Firmware HIGH 7.5
CVE-2014-3221

Huawei Eudemon8000E firewall with software V200R001C01SPC800 and earlier versions allows users to log in to the device using Telnet or SSH. When an a…

Mitigation only
Fix from $1,950 2017-04-02
Quidway S5300 Firmware HIGH 7.5
CVE-2014-3224

Huawei Quidway S9700 V200R003C00SPC500, Quidway S9300 V200R003C00SPC500, Quidway S7700 V200R003C00SPC500, Quidway S6700 V200R003C00SPC300, Quidway S6…

Mitigation only
Fix from $1,950 2017-04-02
Imagemagick HIGH 7.5
CVE-2016-10146EPSS 5%

Multiple memory leaks in the caption and label handling code in ImageMagick allow remote attackers to cause a denial of service (memory consumption) …

Fix: 6.9.6-8+
Fix from $1,950 2017-03-24
Ios Xe HIGH 7.5
CVE-2017-3856

A vulnerability in the web user interface of Cisco IOS XE 3.1 through 3.17 could allow an unauthenticated, remote attacker to cause an affected devic…

Mitigation only
Fix from $1,950 2017-03-22
iOS HIGH 7.5
CVE-2017-3857

A vulnerability in the Layer 2 Tunneling Protocol (L2TP) parsing function of Cisco IOS (12.0 through 12.4 and 15.0 through 15.6) and Cisco IOS XE (3.…

Fix: after 15.6
Fix from $1,950 2017-03-22
iOS HIGH 8.6
CVE-2017-3864

A vulnerability in the DHCP client implementation of Cisco IOS (12.2, 12.4, and 15.0 through 15.6) and Cisco IOS XE (3.3 through 3.7) could allow an …

Fix: after 15.6
Fix from $1,950 2017-03-22
Ubuntu Linux HIGH 7.5
CVE-2014-9848

Memory leak in ImageMagick allows remote attackers to cause a denial of service (memory consumption).

Patch available
Fix from $1,950 2017-03-20
Ubuntu Linux HIGH 7.5
CVE-2014-9850

Logic error in ImageMagick 6.8.9.9 allows remote attackers to cause a denial of service (resource consumption).

Patch available
Fix from $1,950 2017-03-20
Virglrenderer MEDIUM 6.5
CVE-2016-10214

Memory leak in the virgl_resource_attach_backing function in virglrenderer before 0.6.0 allows local guest OS users to cause a denial of service (mem…

Fix: after 0.5.0
Fix from $1,600 2017-03-20
Ubuntu Linux MEDIUM 5.5
CVE-2014-9853

Memory leak in coders/rle.c in ImageMagick allows remote attackers to cause a denial of service (memory consumption) via a crafted rle file.

Fix: 6.9.4-0+
Fix from $1,600 2017-03-17
Ubuntu Linux HIGH 7.5
CVE-2014-9854

coders/tiff.c in ImageMagick allows remote attackers to cause a denial of service (application crash) via vectors related to the "identification of i…

Fix: 6.9.4-0+
Fix from $1,950 2017-03-17
Libtiff MEDIUM 5.5
CVE-2015-7313

LibTIFF before 4.0.7 allows remote attackers to cause a denial of service (memory consumption and crash) via a crafted tiff file.

Fix: 4.0.7+
Fix from $1,600 2017-03-17
Virglrenderer MEDIUM 6.5
CVE-2016-10163

Memory leak in the vrend_renderer_context_create_internal function in vrend_decode.c in virglrenderer before 0.6.0 allows local guest OS users to cau…

Fix: after 0.5.0
Fix from $1,600 2017-03-15
Imagemagick HIGH 7.5
CVE-2016-10252

Memory leak in the IsOptionMember function in MagickCore/option.c in ImageMagick before 6.9.2-2, as used in ODR-PadEnc and other products, allows att…

Fix: after 6.9.2-1
Fix from $1,950 2017-03-14
Qradar Security Information And Event Manager HIGH 7.5
CVE-2016-9740

IBM QRadar 7.2 could allow a remote attacker to consume all resources on the server due to not properly restricting the size or amount of resources r…

Patch available
Fix from $1,950 2017-03-07
Fedora HIGH 7.5
CVE-2016-7972EPSS 5%

The check_allocations function in libass/ass_shaper.c in libass before 0.13.4 allows remote attackers to cause a denial of service (memory allocation…

Fix: after 0.13.3
Fix from $1,950 2017-03-03
Netflow Generation Appliance Software HIGH 7.5
CVE-2017-3826

A vulnerability in the Stream Control Transmission Protocol (SCTP) decoder of the Cisco NetFlow Generation Appliance (NGA) with software before 1.1(1…

Mitigation only
Fix from $1,950 2017-03-01
Usg50 Firmware HIGH 7.5
CVE-2016-10227

Zyxel USG50 Security Appliance and NWA3560-N Access Point allow remote attackers to cause a denial of service (CPU consumption) via a flood of ICMPv4…

Patch available
Fix from $1,950 2017-02-21
Simplesamlphp CRITICAL 9.1
CVE-2016-9814

The validateSignature method in the SAML2\Utils class in SimpleSAMLphp before 1.14.10 and simplesamlphp/saml2 library before 1.9.1, 1.10.x before 1.1…

Fix: after 1.14.9
Fix from $2,300 2017-02-17