Top technology
Linux 13140
Google 12536
Microsoft 12379
Oracle 6843
Apple 6692
Adobe 6387
Ibm 6336
Cisco 5759
Debian 3919
Mozilla 2895
Apache 2864
Redhat 2592
MEDIUM 6.8
CVE-2016-6172
PowerDNS (aka pdns) Authoritative Server before 4.0.1 allows remote primary DNS servers to cause a denial of service (memory exhaustion and secondary…
Leap
after 4.0.0
MEDIUM 5.5
CVE-2016-5403
The virtqueue_pop function in hw/virtio/virtio.c in QEMU allows local guest OS administrators to cause a denial of service (memory consumption and QE…
Ubuntu Linux
Patch available
MEDIUM 6.5
CVE-2016-4592
WebKit in Apple iOS before 9.3.3, Safari before 9.1.2, and tvOS before 9.2.2 allows remote attackers to cause a denial of service (memory consumption…
Webkit
2.10.5+
MEDIUM 6.5
CVE-2014-3672
The qemu implementation in libvirt before 1.3.0 and Xen allows local guest OS users to cause a denial of service (host disk consumption) by writing t…
Libvirt
after 1.2.21
MEDIUM 6.0
CVE-2016-4037
The ehci_advance_state function in hw/usb/hcd-ehci.c in QEMU allows local guest OS administrators to cause a denial of service (infinite loop and CPU…
Fedora
after 2.5.1
MEDIUM 6.5
CVE-2016-1784
The History implementation in WebKit in Apple iOS before 9.3, Safari before 9.1, and tvOS before 9.2 allows remote attackers to cause a denial of ser…
Safari
9.1 / 9.2+
MEDIUM 5.3
CVE-2016-0747EPSS 8%
The resolver in nginx before 1.8.1 and 1.9.x before 1.9.10 does not properly limit CNAME resolution, which allows remote attackers to cause a denial …
Nginx
1.8.1 / 1.9.10+
HIGH 8.6
CVE-2015-1779EPSS 7%
The VNC websocket frame decoder in QEMU allows remote attackers to cause a denial of service (memory and CPU consumption) via a large (1) websocket p…
Ubuntu Linux
Patch available
HIGH 8.1
CVE-2015-5600EPSS 9%
The kbdint_next_device function in auth2-chall.c in sshd in OpenSSH through 6.9 does not properly restrict the processing of keyboard-interactive dev…
Openssh
after 6.9
HIGH 7.5
CVE-2015-1916
Unspecified vulnerability in IBM Java 8 before SR1 allows remote attackers to cause a denial of service via unknown vectors related to SSL/TLS and th…
Java
No fix yet
HIGH 7.8
CVE-2014-5418
GE Multilink ML800, ML1200, ML1600, and ML2400 switches with firmware 4.2.1 and earlier and Multilink ML810, ML3000, and ML3100 switches with firmwar…
Multilink Ml810 Firmware
after 5.2.0
MEDIUM 5.0
CVE-2014-8124
OpenStack Dashboard (Horizon) before 2014.1.3 and 2014.2.x before 2014.2.1 does not properly handle session records when using a db or memcached sess…
Fedora
2014.1.3 / 2014.2.1+
HIGH 7.5
CVE-2014-7255
Internet Initiative Japan Inc. SEIL Series routers SEIL/X1 2.50 through 4.62, SEIL/X2 2.50 through 4.62, SEIL/B1 2.50 through 4.62, and SEIL/x86 Fuji…
Seil B1 Firmware
after 4.62
MEDIUM 5.0
CVE-2014-3407
The SSL VPN implementation in Cisco Adaptive Security Appliance (ASA) Software 9.3(.2) and earlier does not properly allocate memory blocks during HT…
Adaptive Security Appliance Software
after 9.3
MEDIUM 5.5
CVE-2014-8559
The d_walk function in fs/dcache.c in the Linux kernel through 3.17.2 does not properly maintain the semantics of rename_lock, which allows local use…
Linux Kernel
after 3.17.2
MEDIUM 5.5
CVE-2014-3690
arch/x86/kvm/vmx.c in the KVM subsystem in the Linux kernel before 3.17.2 on Intel processors does not ensure that the value in the CR4 control regis…
Linux Kernel
3.17.2+
HIGH 7.5
CVE-2014-3687EPSS 9%
The sctp_assoc_lookup_asconf_ack function in net/sctp/associola.c in the SCTP implementation in the Linux kernel through 3.17.2 allows remote attacke…
Linux Kernel
3.2.64 / 3.4.107+
MEDIUM 5.5
CVE-2014-7970
The pivot_root implementation in fs/namespace.c in the Linux kernel through 3.17 does not properly interact with certain locations of a chroot direct…
Linux Kernel
after 3.17
MEDIUM 5.0
CVE-2014-3328
The Intercluster Sync Agent Service in Cisco Unified Presence Server allows remote attackers to cause a denial of service via a TCP SYN flood, aka Bu…
Unified Presence Server
Mitigation only
MEDIUM 5.4
CVE-2013-5567
Cisco Adaptive Security Appliance (ASA) Software 8.4(.6) and earlier, when using an unsupported configuration with overlapping criteria for filtering…
Adaptive Security Appliance Software
after 8.4
MEDIUM 5.0
CVE-2014-2342
Triangle MicroWorks SCADA Data Gateway before 3.00.0635 allows remote attackers to cause a denial of service (excessive data processing) via a crafte…
Scada Data Gateway
after 3.00.0633
MEDIUM 5.0
CVE-2014-1500
Mozilla Firefox before 28.0 and SeaMonkey before 2.25 allow remote attackers to cause a denial of service (resource consumption and application hang)…
Firefox
2.25 / 28.0+
HIGH 7.8
CVE-2012-6638
The tcp_rcv_state_process function in net/ipv4/tcp_input.c in the Linux kernel before 3.2.24 allows remote attackers to cause a denial of service (ke…
Linux Kernel
3.0.38 / 3.2.24+
MEDIUM 5.5
CVE-2013-2128
The tcp_read_sock function in net/ipv4/tcp.c in the Linux kernel before 2.6.34 does not properly manage skb consumption, which allows local users to …
Linux Kernel
2.6.34+
MEDIUM 5.0
CVE-2013-2763
The Schneider Electric M340 PLC modules allow remote attackers to cause a denial of service (resource consumption) via unspecified vectors. NOTE: th…
Modicon M340 Bmx Noc 0401 Firmware
Mitigation only
HIGH 7.5
CVE-2010-5107EPSS 17%
The default configuration of OpenSSH through 6.1 enforces a fixed time limit between establishing a TCP connection and completing a login, which make…
Openssh
after 6.1
MEDIUM 6.5
CVE-2012-0260
The JPEGWarningHandler function in coders/jpeg.c in ImageMagick before 6.7.6-3 allows remote attackers to cause a denial of service (memory consumpti…
Ubuntu Linux
Patch available
MEDIUM 5.5
CVE-2011-2906
Integer signedness error in the pmcraid_ioctl_passthrough function in drivers/scsi/pmcraid.c in the Linux kernel before 3.1 might allow local users t…
Linux Kernel
3.1+
MEDIUM 5.5
CVE-2011-2918
The Performance Events subsystem in the Linux kernel before 3.1 does not properly handle event overflows associated with PERF_COUNT_SW_CPU_CLOCK even…
Linux Kernel
3.1+
MEDIUM 5.5
CVE-2012-0058
The kiocb_batch_free function in fs/aio.c in the Linux kernel before 3.2.2 allows local users to cause a denial of service (OOPS) via vectors that tr…
Linux Kernel
3.2.2+