Vulnerability index

Browse CVEs

5,206 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness NULL Pointer DereferenceCWE-476 × clear
Silc Server HIGH 7.8
CVE-2007-1327EPSS 10%

The SILC_SERVER_CMD_FUNC function in apps/silcd/command.c in silc-server 1.0.2 allows remote attackers to cause a denial of service (NULL dereference…

Mitigation only
Fix from $1,950 2007-03-07
Axigen Mail Server HIGH 7.8
CVE-2007-0887EPSS 10%

axigen 1.2.6 through 2.0.0b1 does not properly parse login credentials, which allows remote attackers to cause a denial of service (NULL dereference …

No fix yet
Fix from $1,950 2007-02-12
Safari HIGH 7.5
CVE-2007-0342

WebCore in Apple WebKit build 18794 allows remote attackers to cause a denial of service (null dereference and application crash) via a TD element wi…

No fix yet
Fix from $1,950 2007-01-18
Debian Linux MEDIUM 5.0
CVE-2006-2661EPSS 16%

ftutil.c in Freetype before 2.2 allows remote attackers to cause a denial of service (crash) via a crafted font file that triggers a null dereference.

Fix: 2.2+
Fix from $1,600 2006-05-30
Linux Kernel MEDIUM 5.0
CVE-2005-2459

The huft_build function in inflate.c in the zlib routines in the Linux kernel before 2.6.12.5 returns the wrong value, which allows remote attackers …

Mitigation only
Fix from $1,600 2005-08-23
Backup Exec HIGH 7.5
CVE-2005-0772EPSS 36%

VERITAS Backup Exec 9.0 through 10.0 for Windows Servers, and 9.0.4019 through 9.1.307 for Netware, allows remote attackers to cause a denial of serv…

Fix: after 10.0
Fix from $1,950 2005-06-28
Firewall Services Module HIGH 7.5
CVE-2004-0079EPSS 10%

The do_change_cipher_spec function in OpenSSL 0.9.6c to 0.9.6k, and 0.9.7a to 0.9.7c, allows remote attackers to cause a denial of service (crash) vi…

Mitigation only
Fix from $1,950 2004-11-23
Debian Linux HIGH 7.5
CVE-2004-0458

mah-jong before 1.6.2 allows remote attackers to cause a denial of service (server crash) via a missing argument, which triggers a null pointer deref…

Patch available
Fix from $1,950 2004-09-28
Helix Universal Server HIGH 7.5
CVE-2004-0389EPSS 55%

RealNetworks Helix Universal Server 9.0.1 and 9.0.2 allows remote attackers to cause a denial of service (crash) via malformed requests that trigger …

Patch available
Fix from $1,950 2004-06-01
Ethereal HIGH 7.5
CVE-2004-0365EPSS 6%

The dissect_attribute_value_pairs function in packet-radius.c for Ethereal 0.8.13 to 0.10.2 allows remote attackers to cause a denial of service (cra…

Fix: 0.10.3+
Fix from $1,950 2004-05-04
Xchat HIGH 7.5
CVE-2003-1000

xchat 2.0.6 allows remote attackers to cause a denial of service (crash) via a passive DCC request with an invalid ID number, which causes a null der…

Patch available
Fix from $1,950 2004-01-05
Ethereal HIGH 7.5
CVE-2003-1013

The Q.931 dissector in Ethereal before 0.10.0, and Tethereal, allows remote attackers to cause a denial of service (crash) via a malformed Q.931, whi…

Fix: 0.10.0+
Fix from $1,950 2004-01-05
Emr5000 HIGH 7.5
CVE-2002-1912

SkyStream EMR5000 1.16 through 1.18 does not drop packets or disable the Ethernet interface when the buffers are full, which allows remote attackers …

Patch available
Fix from $1,950 2002-12-31
Debian Linux HIGH 7.5
CVE-2002-0401EPSS 6%

SMB dissector in Ethereal 0.9.3 and earlier allows remote attackers to cause a denial of service (crash) or execute arbitrary code via malformed pack…

Fix: after 0.9.3
Fix from $1,950 2002-06-18
OpenBSD MEDIUM 5.5
CVE-2001-1559

The uipc system calls (uipc_syscalls.c) in OpenBSD 2.9 and 3.0 provide user mode return instead of versus rval kernel mode values to the fdrelease fu…

No fix yet
Fix from $1,600 2001-12-31
FreeBSD HIGH 7.5
CVE-1999-0052

IP fragmentation denial of service in FreeBSD allows a remote attacker to cause a crash.

Mitigation only
Fix from $1,950 1998-11-04