Vulnerability index

Browse CVEs

7,937 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Use After FreeCWE-416 × clear
Libpgf CRITICAL 9.8
CVE-2015-6673

Use-after-free vulnerability in Decoder.cpp in libpgf before 6.15.32.

Fix: after 6.14.12
Fix from $2,300 2017-09-20
Openlitespeed HIGH 7.5
CVE-2015-3890

Use-after-free vulnerability in Open Litespeed before 1.3.10.

Fix: 1.3.10+
Fix from $1,950 2017-09-20
HTTP Server HIGH 7.5
CVE-2017-9798EPSS 95%

Apache httpd allows remote attackers to read secret data from process memory if the Limit directive can be set in a user's .htaccess file, or if http…

Fix: after 2.2.34
Fix from $1,950 2017-09-18
Debian Linux MEDIUM 6.5
CVE-2017-14528

The TIFFSetProfiles function in coders/tiff.c in ImageMagick 7.0.6 has incorrect expectations about whether LibTIFF TIFFGetField return values imply …

No fix yet
Fix from $1,600 2017-09-18
Glibc MEDIUM 5.9
CVE-2017-12133

Use-after-free vulnerability in the clntudp_call function in sunrpc/clnt_udp.c in the GNU C Library (aka glibc or libc6) before 2.26 allows remote at…

Fix: after 2.25
Fix from $1,600 2017-09-07
Ledger HIGH 7.8
CVE-2017-2808

An exploitable use-after-free vulnerability exists in the account parsing component of the Ledger-CLI 3.1.1. A specially crafted ledger file can caus…

Mitigation only
Fix from $1,950 2017-09-05
Perceptive Document Filters HIGH 8.8
CVE-2017-2821

An exploitable use-after-free exists in the PDF parsing functionality of Lexmark Perspective Document Filters 11.3.0.2400 and 11.4.0.2452. A crafted …

Mitigation only
Fix from $1,950 2017-09-05
Debian Linux HIGH 7.5
CVE-2017-13711

Use-after-free vulnerability in the sofree function in slirp/socket.c in QEMU (aka Quick Emulator) allows attackers to cause a denial of service (QEM…

Fix: after 2.10.1
Fix from $1,950 2017-09-01
Graphicsmagick HIGH 8.8
CVE-2017-14103EPSS 30%

The ReadJNGImage and ReadOneJNGImage functions in coders/png.c in GraphicsMagick 1.3.26 do not properly manage image pointers after certain error con…

Patch available
Fix from $1,950 2017-09-01
Debian Linux MEDIUM 6.5
CVE-2017-13737

There is an invalid free in the MagickFree function in magick/memory.c in GraphicsMagick 1.3.26 that will lead to a remote denial of service attack.

Patch available
Fix from $1,600 2017-08-29
Liblouis MEDIUM 6.5
CVE-2017-13741

There is a use-after-free in the function compileBrailleIndicator() in compileTranslationTable.c in Liblouis 3.2.0 that will lead to a remote denial …

Mitigation only
Fix from $1,600 2017-08-29
Debian Linux MEDIUM 6.5
CVE-2017-12877

Use-after-free vulnerability in the DestroyImage function in image.c in ImageMagick before 7.0.6-6 allows remote attackers to cause a denial of servi…

Fix: 6.9.9-6 / 7.0.6-6+
Fix from $1,600 2017-08-28
Linux Kernel HIGH 7.0
CVE-2017-10661EPSS 13%

Race condition in fs/timerfd.c in the Linux kernel before 4.10.15 allows local users to gain privileges or cause a denial of service (list corruption…

Fix: 3.2.92 / 3.16.47+
Fix from $1,950 2017-08-19
Android CRITICAL 9.8
CVE-2017-7364

In all Qualcomm products with Android releases from CAF using the Linux kernel, in function __mdss_fb_copy_destscaler_data(), variable ds_data[i].sca…

Patch available
Fix from $2,300 2017-08-18
Android HIGH 7.0
CVE-2017-9684

In all Qualcomm products with Android releases from CAF using the Linux kernel, a race condition in a USB driver can lead to a Use After Free conditi…

Mitigation only
Fix from $1,950 2017-08-18
Android HIGH 8.1
CVE-2017-9685

In all Qualcomm products with Android releases from CAF using the Linux kernel, a race condition in a WLAN driver can lead to a Use After Free condit…

Mitigation only
Fix from $1,950 2017-08-18
Android HIGH 7.0
CVE-2017-8262

In all Qualcomm products with Android releases from CAF using the Linux kernel, in some memory allocation and free functions, a race condition can po…

Patch available
Fix from $1,950 2017-08-18
Android HIGH 7.0
CVE-2017-8266

In all Qualcomm products with Android releases from CAF using the Linux kernel, a race condition exists in a video driver potentially leading to a us…

Patch available
Fix from $1,950 2017-08-18
Android HIGH 7.0
CVE-2017-8270

In all Qualcomm products with Android releases from CAF using the Linux kernel, a race condition exists in a driver potentially leading to a use-afte…

Patch available
Fix from $1,950 2017-08-18
Android CRITICAL 9.8
CVE-2016-10385

In all Qualcomm products with Android releases from CAF using the Linux kernel, a use-after-free vulnerability exists in IMS RCS.

Mitigation only
Fix from $2,300 2017-08-18
Debian Linux HIGH 8.8
CVE-2017-12936EPSS 25%

The ReadWMFImage function in coders/wmf.c in GraphicsMagick 1.3.26 has a use-after-free issue for data associated with exception reporting.

Patch available
Fix from $1,950 2017-08-18
PHP CRITICAL 9.8
CVE-2017-12932EPSS 7%

ext/standard/var_unserializer.re in PHP 7.0.x through 7.0.22 and 7.1.x through 7.1.8 is prone to a heap use after free while unserializing untrusted …

Patch available
Fix from $2,300 2017-08-18
PHP HIGH 7.5
CVE-2017-12934

ext/standard/var_unserializer.re in PHP 7.0.x before 7.0.21 and 7.1.x before 7.1.7 is prone to a heap use after free while unserializing untrusted da…

Mitigation only
Fix from $1,950 2017-08-18
Digital Editions HIGH 7.5
CVE-2017-11279EPSS 7%

Adobe Digital Editions 4.5.4 and earlier has an exploitable use after free vulnerability. Successful exploitation could lead to arbitrary code execut…

Fix: after 4.5.5
Fix from $1,950 2017-08-11
Acrobat HIGH 8.8
CVE-2017-3113EPSS 9%

Adobe Acrobat Reader 2017.009.20058 and earlier, 2017.008.30051 and earlier, 2015.006.30306 and earlier, and 11.0.20 and earlier has an exploitable u…

Fix: 11.0.21 / 15.006.30355+
Fix from $1,950 2017-08-11
Acrobat HIGH 8.8
CVE-2017-3120EPSS 9%

Adobe Acrobat Reader 2017.009.20058 and earlier, 2017.008.30051 and earlier, 2015.006.30306 and earlier, and 11.0.20 and earlier has an exploitable u…

Fix: 11.0.21 / 15.006.30355+
Fix from $1,950 2017-08-11
Acrobat HIGH 8.8
CVE-2017-11254EPSS 8%

Adobe Acrobat Reader 2017.009.20058 and earlier, 2017.008.30051 and earlier, 2015.006.30306 and earlier, and 11.0.20 and earlier has an exploitable u…

Fix: after 17.011.30066
Fix from $1,950 2017-08-11
Acrobat HIGH 8.8
CVE-2017-11256EPSS 8%

Adobe Acrobat Reader 2017.009.20058 and earlier, 2017.008.30051 and earlier, 2015.006.30306 and earlier, and 11.0.20 and earlier has an exploitable u…

Fix: after 17.011.30066
Fix from $1,950 2017-08-11
Digital Editions CRITICAL 9.8
CVE-2017-11274EPSS 9%

Adobe Digital Editions 4.5.4 and earlier has an exploitable use after free vulnerability. Successful exploitation could lead to arbitrary code execut…

Fix: after 4.5.5
Fix from $2,300 2017-08-11
Acrobat HIGH 8.8
CVE-2017-11218EPSS 10%

Adobe Acrobat Reader 2017.009.20058 and earlier, 2017.008.30051 and earlier, 2015.006.30306 and earlier, and 11.0.20 and earlier has an exploitable u…

Fix: after 17.011.30066
Fix from $1,950 2017-08-11