Vulnerability index

Browse CVEs

771 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Reachable AssertionCWE-617 × clear
Bind HIGH 7.5
CVE-2018-5737EPSS 10%

A problem with the implementation of the new serve-stale feature in BIND 9.12 can lead to an assertion failure in rbtdb.c, even when stale-answer-ena…

Mitigation only
Fix from $1,950 2019-01-16
Cairo MEDIUM 6.5
CVE-2019-6461

An issue was discovered in cairo 1.16.0. There is an assertion problem in the function _cairo_arc_in_direction in the file cairo-arc.c.

No fix yet
Fix from $1,600 2019-01-16
Junos MEDIUM 5.9
CVE-2019-0003

When a specific BGP flowspec configuration is enabled and upon receipt of a specific matching BGP packet meeting a specific term in the flowspec conf…

Mitigation only
Fix from $1,600 2019-01-15
Debian Linux MEDIUM 5.3
CVE-2018-20217

A Reachable Assertion issue was discovered in the KDC in MIT Kerberos 5 (aka krb5) before 1.17. If an attacker can obtain a krbtgt ticket using an ol…

Fix: 5-1.17+
Fix from $1,600 2018-12-26
Xen HIGH 7.8
CVE-2018-19963

An issue was discovered in Xen 4.11 allowing HVM guest OS users to cause a denial of service (host OS crash) or possibly gain host OS privileges beca…

Patch available
Fix from $1,950 2018-12-08
Debian Linux MEDIUM 6.5
CVE-2018-19539

An issue was discovered in JasPer 2.0.14. There is an access violation in the function jas_image_readcmpt in libjasper/base/jas_image.c, leading to a…

No fix yet
Fix from $1,600 2018-11-26
Mosquitto HIGH 7.5
CVE-2018-12543EPSS 36%

In Eclipse Mosquitto versions 1.5 to 1.5.2 inclusive, if a message is published to Mosquitto that has a topic starting with $, but that is not $SYS, …

Fix: after 1.5.2
Fix from $1,950 2018-11-15
Telegram Desktop HIGH 7.5
CVE-2018-17231

Telegram Desktop (aka tdesktop) 1.3.14 might allow attackers to cause a denial of service (assertion failure and application exit) via an "Edit color…

No fix yet
Fix from $1,950 2018-09-19
Openstack HIGH 7.5
CVE-2018-17205

An issue was discovered in Open vSwitch (OvS) 2.7.x through 2.7.6, affecting ofproto_rule_insert__ in ofproto/ofproto.c. During bundle commit, flows …

Fix: after 2.7.6
Fix from $1,950 2018-09-19
Soundtouch MEDIUM 6.5
CVE-2018-17096

The BPMDetect class in BPMDetect.cpp in libSoundTouch.a in Olli Parviainen SoundTouch 2.0 allows remote attackers to cause a denial of service (asser…

No fix yet
Fix from $1,600 2018-09-16
Debian Linux HIGH 7.5
CVE-2018-15822

The flv_write_packet function in libavformat/flvenc.c in FFmpeg through 2.8 does not check for an empty audio packet, leading to an assertion failure.

Fix: after 2.8
Fix from $1,950 2018-08-23
Openstack HIGH 7.5
CVE-2017-7539EPSS 6%

An assertion-failure flaw was found in Qemu before 2.10.1, in the Network Block Device (NBD) server's initial connection negotiation, where the I/O c…

Fix: 2.10.1+
Fix from $1,950 2018-07-26
Soundtouch HIGH 7.5
CVE-2018-14044

The RateTransposer::setChannels function in RateTransposer.cpp in libSoundTouch.a in Olli Parviainen SoundTouch 2.0 allows remote attackers to cause …

Mitigation only
Fix from $1,950 2018-07-13
Soundtouch HIGH 7.5
CVE-2018-14045

The FIRFilter::evaluateFilterMulti function in FIRFilter.cpp in libSoundTouch.a in Olli Parviainen SoundTouch 2.0 allows remote attackers to cause a …

Mitigation only
Fix from $1,950 2018-07-13
Ffmpeg MEDIUM 6.5
CVE-2018-13304

In libavcodec in FFmpeg 4.0.1, improper maintenance of the consistency between the context profile field and studio_profile in libavcodec may trigger…

Patch available
Fix from $1,600 2018-07-05
Tinyexr HIGH 7.5
CVE-2018-12687

tinyexr 0.9.5 has an assertion failure in DecodePixelData in tinyexr.h.

No fix yet
Fix from $1,950 2018-06-22
Tinyexr HIGH 7.5
CVE-2018-12504

tinyexr 0.9.5 has an assertion failure in ComputeChannelLayout in tinyexr.h.

Mitigation only
Fix from $1,950 2018-06-16
Android MEDIUM 5.5
CVE-2017-18169

User process can perform the kernel DOS in ashmem when doing cache maintenance operation in all Android releases(Android for MSM, Firefox OS for MSM,…

Patch available
Fix from $1,600 2018-06-15
Debian Linux MEDIUM 6.5
CVE-2018-10963

The TIFFWriteDirectorySec() function in tif_dirwrite.c in LibTIFF through 4.0.9 allows remote attackers to cause a denial of service (assertion failu…

Fix: after 4.0.9
Fix from $1,600 2018-05-10
Exiv2 MEDIUM 6.5
CVE-2018-9303

In Exiv2 0.26, an assertion failure in BigTiffImage::readData in bigtiffimage.cpp results in an abort.

Fix: 0.26+
Fix from $1,600 2018-04-04
Jasper MEDIUM 6.5
CVE-2018-9252

JasPer 2.0.14 allows denial of service via a reachable assertion in the function jpc_abstorelstepsize in libjasper/jpc/jpc_enc.c.

No fix yet
Fix from $1,600 2018-04-04
Safari MEDIUM 6.5
CVE-2018-4113

An issue was discovered in certain Apple products. iOS before 11.3 is affected. Safari before 11.1 is affected. iCloud before 7.4 on Windows is affec…

Fix: 2.20.4 / 4.3+
Fix from $1,600 2018-04-03
Jasper MEDIUM 5.5
CVE-2018-9055

JasPer 2.0.14 allows denial of service via a reachable assertion in the function jpc_firstone in libjasper/jpc/jpc_math.c.

No fix yet
Fix from $1,600 2018-03-27
Ubuntu Linux MEDIUM 6.5
CVE-2017-18252

An issue was discovered in ImageMagick 7.0.7. The MogrifyImageList function in MagickWand/mogrify.c allows attackers to cause a denial of service (as…

Patch available
Fix from $1,600 2018-03-27
Opencv HIGH 7.5
CVE-2018-7712

The validateInputImageSize function in modules/imgcodecs/src/loadsave.cpp in OpenCV 3.4.1 allows remote attackers to cause a denial of service (asser…

Mitigation only
Fix from $1,950 2018-03-05
Opencv HIGH 7.5
CVE-2018-7713

The validateInputImageSize function in modules/imgcodecs/src/loadsave.cpp in OpenCV 3.4.1 allows remote attackers to cause a denial of service (asser…

Mitigation only
Fix from $1,950 2018-03-05
Opencv HIGH 7.5
CVE-2018-7714

The validateInputImageSize function in modules/imgcodecs/src/loadsave.cpp in OpenCV 3.4.1 allows remote attackers to cause a denial of service (asser…

Mitigation only
Fix from $1,950 2018-03-05
Exiv2 MEDIUM 6.5
CVE-2017-17722

In Exiv2 0.26, there is a reachable assertion in the readHeader function in bigtiffimage.cpp, which will lead to a remote denial of service attack vi…

No fix yet
Fix from $1,600 2018-02-12
Debian Linux MEDIUM 5.5
CVE-2018-5269

In OpenCV 3.3.1, an assertion failure happens in cv::RBaseStream::setPos in modules/imgcodecs/src/bitstrm.cpp because of an incorrect integer cast.

No fix yet
Fix from $1,600 2018-01-08
Ceph MEDIUM 6.5
CVE-2017-16818

RADOS Gateway in Ceph 12.1.0 through 12.2.1 allows remote authenticated users to cause a denial of service (assertion failure and application exit) b…

Fix: after 12.2.1
Fix from $1,600 2017-12-20