Vulnerability index

Browse CVEs

771 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Reachable AssertionCWE-617 × clear
Imagemagick MEDIUM 6.5
CVE-2017-9501

In ImageMagick 7.0.5-7 Q16, an assertion failure was found in the function LockSemaphoreInfo, which allows attackers to cause a denial of service via…

Patch available
Fix from $1,600 2017-06-07
Hana Xs HIGH 7.5
CVE-2017-8915

sinopia, as used in SAP HANA XS 1.00 and 2.00, allows remote attackers to cause a denial of service (assertion failure and service crash) by pushing …

Mitigation only
Fix from $1,950 2017-05-23
Debian Linux MEDIUM 6.5
CVE-2017-9141

In ImageMagick 7.0.5-7 Q16, a crafted file could trigger an assertion failure in the ResetImageProfileIterator function in MagickCore/profile.c becau…

Patch available
Fix from $1,600 2017-05-22
Debian Linux MEDIUM 6.5
CVE-2017-9142

In ImageMagick 7.0.5-7 Q16, a crafted file could trigger an assertion failure in the WriteBlob function in MagickCore/blob.c because of missing check…

Patch available
Fix from $1,600 2017-05-22
Openvpn HIGH 7.5
CVE-2017-7478EPSS 14%

OpenVPN version 2.3.12 and newer is vulnerable to unauthenticated Denial of Service of server via received large control packet. Note that this issue…

No fix yet
Fix from $1,950 2017-05-15
Openvpn MEDIUM 6.5
CVE-2017-7479

OpenVPN versions before 2.3.15 and before 2.4.2 are vulnerable to reachable assertion when packet-ID counter rolls over resulting into Denial of Serv…

Fix: after 2.3.14
Fix from $1,600 2017-05-15
Libaacplus HIGH 7.8
CVE-2017-7605

aacplusenc.c in HE-AAC+ Codec (aka libaacplus) 2.0.2 has an assertion failure, which might allow remote attackers to cause a denial of service (appli…

No fix yet
Fix from $1,950 2017-04-09
Fedora HIGH 7.5
CVE-2016-9398EPSS 6%

The jpc_floorlog2 function in jpc_math.c in JasPer before 1.900.17 allows remote attackers to cause a denial of service (assertion failure) via unspe…

Fix: 1.900.17+
Fix from $1,950 2017-03-23
Fedora HIGH 7.5
CVE-2016-9399

The calcstepsizes function in jpc_dec.c in JasPer 1.900.22 allows remote attackers to cause a denial of service (assertion failure) via unspecified v…

Patch available
Fix from $1,950 2017-03-23
Ubuntu Linux MEDIUM 5.5
CVE-2016-9388

The ras_getcmap function in ras_dec.c in JasPer before 1.900.14 allows remote attackers to cause a denial of service (assertion failure) via a crafte…

Fix: 1.900.14+
Fix from $1,600 2017-03-23
Fedora HIGH 7.5
CVE-2016-9397

The jpc_dequantize function in jpc_dec.c in JasPer 1.900.13 allows remote attackers to cause a denial of service (assertion failure) via unspecified …

Patch available
Fix from $1,950 2017-03-23
Zziplib MEDIUM 5.5
CVE-2017-5981

seeko.c in zziplib 0.13.62 allows remote attackers to cause a denial of service (assertion failure and crash) via a crafted ZIP file.

No fix yet
Fix from $1,600 2017-03-01
Linux Kernel MEDIUM 5.5
CVE-2017-5986

Race condition in the sctp_wait_for_sndbuf function in net/sctp/socket.c in the Linux kernel before 4.9.11 allows local users to cause a denial of se…

Fix: after 4.9.11
Fix from $1,600 2017-02-18
Debian Linux MEDIUM 5.5
CVE-2015-8745

QEMU (aka Quick Emulator) built with a VMWARE VMXNET3 paravirtual NIC emulator support is vulnerable to crash issue. It could occur while reading Int…

Fix: after 2.4.1
Fix from $1,600 2016-12-29
Enterprise Linux Desktop HIGH 7.5
CVE-2016-8864EPSS 39%

named in ISC BIND 9.x before 9.9.9-P4, 9.10.x before 9.10.4-P4, and 9.11.x before 9.11.0-P1 allows remote attackers to cause a denial of service (ass…

Fix: 9.9.9 / 9.10.4+
Fix from $1,950 2016-11-02
Chrome MEDIUM 5.0
CVE-2010-3411

Google Chrome before 6.0.472.59 on Linux does not properly handle cursors, which might allow attackers to cause a denial of service (assertion failur…

Fix: 6.0.472.59+
Fix from $1,600 2010-09-16
Oftpd HIGH 7.5
CVE-2006-6767EPSS 7%

oftpd before 0.3.7 allows remote attackers to cause a denial of service (daemon abort) via a (1) LPRT or (2) LPASV command with an unsupported addres…

Fix: 0.3.7+
Fix from $1,950 2007-01-16
Ubuntu Linux MEDIUM 6.5
CVE-2006-6811EPSS 10%

KsIRC 1.3.12 allows remote attackers to cause a denial of service (crash) via a long PRIVMSG string when connecting to an Internet Relay Chat (IRC) s…

No fix yet
Fix from $1,600 2006-12-29
Ubuntu Linux HIGH 7.5
CVE-2006-5779EPSS 76%

OpenLDAP before 2.3.29 allows remote attackers to cause a denial of service (daemon crash) via LDAP BIND requests with long authcid names, which trig…

Fix: 2.3.29+
Fix from $1,950 2006-11-07
Wireshark HIGH 7.5
CVE-2006-4574

Off-by-one error in the MIME Multipart dissector in Wireshark (formerly Ethereal) 0.10.1 through 0.99.3 allows remote attackers to cause a denial of …

Fix: after 0.99.3
Fix from $1,950 2006-10-28
Ubuntu Linux HIGH 7.5
CVE-2006-4095EPSS 12%

BIND before 9.2.6-P1 and 9.3.x before 9.3.2-P1 allows remote attackers to cause a denial of service (crash) via certain SIG queries, which cause an a…

Fix: 10.3.9 / 10.4.9+
Fix from $1,950 2006-09-06