Vulnerability index

Browse CVEs

810 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Double FreeCWE-415 × clear
HIGH 8.1 CVE-2016-8360 An issue was discovered in Moxa SoftCMS versions prior to Version 1.6. A specially crafted URL request sent to the SoftCMS ASP Webserver can cause a … Softcms after 1.5 Fix from $1,9502017-02-13 CRITICAL 9.8 CVE-2016-6912 Double free vulnerability in the gdImageWebPtr function in the GD Graphics Library (aka libgd) before 2.2.4 allows remote attackers to have unspecifi… Libgd after 2.2.3 Fix from $2,3002017-01-26 CRITICAL 9.8 CVE-2016-3177 Multiple use-after-free and double-free vulnerabilities in gifcolor.c in GIFLIB 5.1.2 have unspecified impact and attack vectors. Giflib Patch available Fix from $2,3002017-01-23 HIGH 7.8 CVE-2016-9806 Race condition in the netlink_dump function in net/netlink/af_netlink.c in the Linux kernel before 4.6.3 allows local users to cause a denial of serv… Linux Kernel 3.12.62 / 3.14.73+ Fix from $1,9502016-12-28 HIGH 7.3 CVE-2015-8962 Double free vulnerability in the sg_common_write function in drivers/scsi/sg.c in the Linux kernel before 4.4 allows local users to gain privileges o… Linux Kernel 3.2.85 / 3.10.107+ Fix from $1,9502016-11-16 HIGH 7.8 CVE-2016-5384 fontconfig before 2.12.1 does not validate offsets, which allows local users to trigger arbitrary free calls and consequently conduct double free att… Fedora 2.12.1+ Fix from $1,9502016-08-13 CRITICAL 9.8 CVE-2016-5772EPSS 10% Double free vulnerability in the php_wddx_process_data function in wddx.c in the WDDX extension in PHP before 5.5.37, 5.6.x before 5.6.23, and 7.x be… PHP 5.5.37 / 5.6.23+ Fix from $2,3002016-08-07 CRITICAL 9.8 CVE-2016-3132EPSS 12% Double free vulnerability in the SplDoublyLinkedList::offsetSet function in ext/spl/spl_dllist.c in PHP 7.x before 7.0.6 allows remote attackers to e… PHP Patch available Fix from $2,3002016-08-07 CRITICAL 9.8 CVE-2015-8880 Double free vulnerability in the format printer in PHP 7.x before 7.0.1 allows remote attackers to have an unspecified impact by triggering an error. PHP Mitigation only Fix from $2,3002016-05-22 HIGH 7.2 CVE-2015-0058 Double free vulnerability in win32k.sys in the kernel-mode drivers in Microsoft Windows 8.1, Windows Server 2012 R2, and Windows RT 8.1 allows local … Windows 8.1 Patch available Fix from $1,9502015-02-11 HIGH 7.6 CVE-2014-4343EPSS 6% Double free vulnerability in the init_ctx_reselect function in the SPNEGO initiator in lib/gssapi/spnego/spnego_mech.c in MIT Kerberos 5 (aka krb5) 1… Debian Linux Patch available Fix from $1,9502014-08-14 HIGH 7.2 CVE-2014-1767EPSS 13% Double free vulnerability in the Ancillary Function Driver (AFD) in afd.sys in the kernel-mode drivers in Microsoft Windows Server 2003 SP2, Windows … Windows 7 No fix yet Fix from $1,9502014-07-08 HIGH 8.8 CVE-2014-0502 KEVEPSS 24% Double free vulnerability in Adobe Flash Player before 11.7.700.269 and 11.8.x through 12.0.x before 12.0.0.70 on Windows and Mac OS X and before 11.… Enterprise Linux Desktop 4.0.0.1628 / 11.2.202.341+ Fix from $1,9502014-02-21 HIGH 7.5 CVE-2014-1252 Double free vulnerability in Apple Pages 2.x before 2.1 and 5.x before 5.1 allows remote attackers to execute arbitrary code or cause a denial of ser… Pages after 10.9.1 Fix from $1,9502014-01-24 HIGH 7.5 CVE-2011-3892 Double free vulnerability in the Theora decoder in Google Chrome before 15.0.874.120 allows remote attackers to cause a denial of service or possibly… Chrome 15.0.874.120+ Fix from $1,9502011-11-11 MEDIUM 6.8 CVE-2011-2834 Double free vulnerability in libxml2, as used in Google Chrome before 14.0.835.163, allows remote attackers to cause a denial of service or possibly … Chrome 6.0 / 10.7.4+ Fix from $1,6002011-09-19 HIGH 7.5 CVE-2011-2821 Double free vulnerability in libxml2, as used in Google Chrome before 13.0.782.215, allows remote attackers to cause a denial of service or possibly … Chrome 6.0 / 10.7.4+ Fix from $1,9502011-08-29 HIGH 7.3 CVE-2010-3957 Double free vulnerability in the OpenType Font (OTF) driver in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP1 and SP2, … Windows 2003 Server Mitigation only Fix from $1,9502010-12-16 HIGH 7.5 CVE-2010-4494EPSS 8% Double free vulnerability in libxml2 2.7.8 and other versions, as used in Google Chrome before 8.0.552.215 and other products, allows remote attacker… Chrome 5.0.4 / 8.0.552.215+ Fix from $1,9502010-12-07 HIGH 7.2 CVE-2010-3080 Double free vulnerability in the snd_seq_oss_open function in sound/core/seq/oss/seq_oss_init.c in the Linux kernel before 2.6.36-rc4 might allow loc… Linux Kernel 2.6.36+ Fix from $1,9502010-09-21 HIGH 8.8 CVE-2009-1544EPSS 21% Double free vulnerability in the Workstation service in Microsoft Windows allows remote authenticated users to gain privileges via a crafted RPC mess… Windows 2003 Server Mitigation only Fix from $1,9502009-08-12 HIGH 9.0 CVE-2007-1216EPSS 10% Double free vulnerability in the GSS-API library (lib/gssapi/krb5/k5unseal.c), as used by the Kerberos administration daemon (kadmind) in MIT krb5 be… Ubuntu Linux 1.6.1+ Fix from $1,9502007-04-06 HIGH 8.1 CVE-2006-5051EPSS 45% Signal handler race condition in OpenSSH before 4.4 allows remote attackers to cause a denial of service (crash), and possibly execute arbitrary code… Debian Linux 10.3.9+ Fix from $1,9502006-09-27 CRITICAL 9.8 CVE-2005-1689EPSS 11% Double free vulnerability in the krb5_recvauth function in MIT Kerberos 5 (krb5) 1.4.1 and earlier allows remote attackers to execute arbitrary code … Debian Linux 10.4.2+ Fix from $2,3002005-07-18 HIGH 7.5 CVE-2005-0891 Double free vulnerability in gtk 2 (gtk2) before 2.2.4 allows remote attackers to cause a denial of service (crash) via a crafted BMP image. Gtk 2.2.4+ Fix from $1,9502005-05-02 CRITICAL 9.8 CVE-2004-0772EPSS 7% Double free vulnerabilities in error handling code in krb524d for MIT Kerberos 5 (krb5) 1.2.8 and earlier may allow remote attackers to execute arbit… Debian Linux after 1.2.8 Fix from $2,3002004-10-20 HIGH 7.5 CVE-2004-0642EPSS 8% Double free vulnerabilities in the error handling code for ASN.1 decoders in the (1) Key Distribution Center (KDC) library and (2) client library for… Debian Linux after 1.3.4 Fix from $1,9502004-09-28 HIGH 7.8 CVE-2003-1048EPSS 27% Double free vulnerability in mshtml.dll for certain versions of Internet Explorer 6.x allows remote attackers to cause a denial of service (applicati… Internet Explorer Patch available Fix from $1,9502004-07-27 HIGH 7.5 CVE-2003-0015EPSS 24% Double-free vulnerability in CVS 1.11.4 and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary code via a ma… FreeBSD Patch available Fix from $1,9502003-02-07 CRITICAL 9.8 CVE-2002-0059EPSS 10% The decompression algorithm in zlib 1.1.3 and earlier, as used in many different utilities and packages, causes inflateEnd to release certain memory … Zlib after 1.1.3 Fix from $2,3002002-03-15