Vulnerability index

Browse CVEs

810 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Double FreeCWE-415 × clear
CRITICAL 9.8 CVE-2017-11462EPSS 5% Double free vulnerability in MIT Kerberos 5 (aka krb5) allows attackers to have unspecified impact via vectors involving automatic deletion of securi… Fedora Patch available Fix from $2,3002017-09-13 HIGH 7.5 CVE-2017-6362EPSS 5% Double free vulnerability in the gdImagePngPtr function in libgd2 before 2.2.5 allows remote attackers to cause a denial of service via vectors relat… Debian Linux Patch available Fix from $1,9502017-09-07 CRITICAL 9.8 CVE-2015-7700 Double-free vulnerability in the sPLT chunk structure and png.c in pngcrush before 1.7.87 allows attackers to have unspecified impact via unknown vec… Pngcrush after 1.7.86 Fix from $2,3002017-08-31 HIGH 7.0 CVE-2017-10950 This vulnerability allows local attackers to execute arbitrary code on vulnerable installations of Bitdefender Total Security 21.0.24.62. An attacker… Total Security Mitigation only Fix from $1,9502017-08-29 MEDIUM 6.5 CVE-2017-12925 Double free vulnerability in DfFromLB in docfile.cxx in libfpx 1.3.1_p6 allows remote attackers to cause a denial of service via a crafted fpx image. Libfpx Mitigation only Fix from $1,6002017-08-28 CRITICAL 9.8 CVE-2017-12858 Double free vulnerability in the _zip_dirent_read function in zip_dirent.c in libzip allows attackers to have unspecified impact via unknown vectors. Libzip Patch available Fix from $2,3002017-08-23 HIGH 7.0 CVE-2017-8265 In all Qualcomm products with Android releases from CAF using the Linux kernel, a race condition exists in a video driver which can lead to a double … Android Patch available Fix from $1,9502017-08-18 MEDIUM 5.5 CVE-2015-5203 Double free vulnerability in the jasper_image_stop_load function in JasPer 1.900.17 allows remote attackers to cause a denial of service (crash) via … Fedora Mitigation only Fix from $1,6002017-08-02 CRITICAL 9.8 CVE-2017-1000072 Creolabs Gravity version 1.0 is vulnerable to a Double Free in gravity_value resulting potentially leading to modification of unexpected memory locat… Gravity Patch available Fix from $2,3002017-07-17 CRITICAL 9.8 CVE-2017-11139 GraphicsMagick 1.3.26 has double free vulnerabilities in the ReadOneJNGImage() function in coders/png.c. Debian Linux Patch available Fix from $2,3002017-07-10 HIGH 8.1 CVE-2017-10914 The grant-table feature in Xen through 4.8.x has a race condition leading to a double free, which allows guest OS users to cause a denial of service … Xen after 4.8.1 Fix from $1,9502017-07-05 MEDIUM 5.9 CVE-2017-7521 OpenVPN versions before 2.4.3 and before 2.3.17 are vulnerable to remote denial-of-service due to memory exhaustion caused by memory leaks and double… Openvpn after 2.3.16 Fix from $1,6002017-06-27 HIGH 7.8 CVE-2017-7373 In all Android releases from CAF using the Linux kernel, a double free vulnerability exists in a display driver. Android Patch available Fix from $1,9502017-06-13 MEDIUM 6.5 CVE-2015-1207 Double-free vulnerability in libavformat/mov.c in FFMPEG in Google Chrome 41.0.2251.0 allows remote attackers to cause a denial of service (memory co… Chrome Mitigation only Fix from $1,6002017-06-06 HIGH 7.8 CVE-2015-9007 In TrustZone in all Android releases from CAF using the Linux kernel, a Double Free vulnerability could potentially exist. Android Patch available Fix from $1,9502017-06-06 MEDIUM 6.5 CVE-2017-9287EPSS 7% servers/slapd/back-mdb/search.c in OpenLDAP through 2.4.44 is prone to a double free vulnerability. A user with access to search the directory can cr… Debian Linux after 2.4.44 Fix from $1,6002017-05-29 HIGH 8.8 CVE-2017-9078EPSS 5% The server in Dropbear before 2017.75 might allow post-authentication root remote code execution because of a double free in cleanup of TCP listeners… Debian Linux 2017.75+ Fix from $1,9502017-05-19 HIGH 7.8 CVE-2017-8890 The inet_csk_clone_lock function in net/ipv4/inet_connection_sock.c in the Linux kernel through 4.10.15 allows attackers to cause a denial of service… Linux Kernel 3.2.89 / 3.10.106+ Fix from $1,9502017-05-10 HIGH 8.8 CVE-2016-1516 OpenCV 3.0.0 has a double free issue that allows attackers to execute arbitrary code. Debian Linux Patch available Fix from $1,9502017-04-10 HIGH 7.8 CVE-2017-2425 An issue was discovered in certain Apple products. macOS before 10.12.4 is affected. The issue involves the "SecurityFoundation" component. A double … Mac Os X after 10.12.3 Fix from $1,9502017-04-02 HIGH 8.8 CVE-2017-7393 In TigerVNC 1.7.1 (VNCSConnectionST.cxx VNCSConnectionST::fence), an authenticated client can cause a double free, leading to denial of service or po… Tigervnc Patch available Fix from $1,9502017-04-01 MEDIUM 5.5 CVE-2014-9807 The pdb coder in ImageMagick allows remote attackers to cause a denial of service (double free) via unspecified vectors. Imagemagick 6.9.4-0+ Fix from $1,6002017-03-30 CRITICAL 9.8 CVE-2017-5334EPSS 33% Double free vulnerability in the gnutls_x509_ext_import_proxy function in GnuTLS before 3.3.26 and 3.5.x before 3.5.8 allows remote attackers to have… Leap after 3.3.25 Fix from $2,3002017-03-24 HIGH 7.8 CVE-2017-5506 Double free vulnerability in magick/profile.c in ImageMagick allows remote attackers to have unspecified impact via a crafted file. Debian Linux Patch available Fix from $1,9502017-03-24 MEDIUM 5.5 CVE-2015-8894 Double free vulnerability in coders/tga.c in ImageMagick 7.0.0 and later allows remote attackers to cause a denial of service (application crash) via… Imagemagick Patch available Fix from $1,6002017-03-15 HIGH 7.0 CVE-2017-2636 Race condition in drivers/tty/n_hdlc.c in the Linux kernel through 4.10.1 allows local users to gain privileges or cause a denial of service (double … Linux Kernel 3.2.87 / 3.10.106+ Fix from $1,9502017-03-07 HIGH 7.5 CVE-2017-5836 The plist_free_data function in plist.c in libplist allows attackers to cause a denial of service (crash) via vectors involving an integer node that … Libplist Patch available Fix from $1,9502017-03-03 MEDIUM 5.5 CVE-2017-6353 net/sctp/socket.c in the Linux kernel through 4.10.1 does not properly restrict association peel-off operations during certain wait states, which all… Linux Kernel after 4.10 Fix from $1,6002017-03-01 HIGH 7.8 CVE-2017-6074EPSS 6% The dccp_rcv_state_process function in net/dccp/input.c in the Linux kernel through 4.9.11 mishandles DCCP_PKT_REQUEST packet data structures in the … Linux Kernel 3.2.86 / 3.10.106+ Fix from $1,9502017-02-18 HIGH 7.8 CVE-2016-8693 Double free vulnerability in the mem_close function in jas_stream.c in JasPer before 1.900.10 allows remote attackers to cause a denial of service (c… Fedora after 1.900.5 Fix from $1,9502017-02-15