Vulnerability index

Browse CVEs

682 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Improper LockingCWE-667 × clear
Adaptive Security Appliance Software HIGH 8.6
CVE-2018-0228

A vulnerability in the ingress flow creation functionality of Cisco Adaptive Security Appliance (ASA) could allow an unauthenticated, remote attacker…

Fix: 6.1.0.6 / 6.2.0.5+
Fix from $1,950 2018-04-19
Debian Linux HIGH 7.5
CVE-2018-1000127

memcached version prior to 1.4.37 contains an Integer Overflow vulnerability in items.c:item_free() that can result in data corruption and deadlocks …

Fix: 1.4.37+
Fix from $1,950 2018-03-13
FreeBSD HIGH 7.8
CVE-2010-4210

The pfs_getextattr function in FreeBSD 7.x before 7.3-RELEASE and 8.x before 8.0-RC1 unlocks a mutex that was not previously locked, which allows loc…

Fix: 7.3+
Fix from $1,950 2010-11-22
Linux Kernel HIGH 7.5
CVE-2009-4272EPSS 11%

A certain Red Hat patch for net/ipv4/route.c in the Linux kernel 2.6.18 on Red Hat Enterprise Linux (RHEL) 5 allows remote attackers to cause a denia…

No fix yet
Fix from $1,950 2010-01-27
HTTP Server HIGH 7.5
CVE-2009-2699EPSS 14%

The Solaris pollset feature in the Event Port backend in poll/unix/port.c in the Apache Portable Runtime (APR) library before 1.3.9, as used in the A…

Fix: 1.3.9 / 2.2.14+
Fix from $1,950 2009-10-13
Opensolaris MEDIUM 5.5
CVE-2009-2857

The kernel in Sun Solaris 8, 9, and 10, and OpenSolaris before snv_103, does not properly handle interaction between the filesystem and virtual-memor…

Patch available
Fix from $1,600 2009-08-19
Linux Kernel MEDIUM 5.5
CVE-2009-1388

The ptrace_start function in kernel/ptrace.c in the Linux kernel 2.6.18 does not properly handle simultaneous execution of the do_coredump function, …

Patch available
Fix from $1,600 2009-07-05
Linux Kernel MEDIUM 5.5
CVE-2009-1243

net/ipv4/udp.c in the Linux kernel before 2.6.29.1 performs an unlocking step in certain incorrect circumstances, which allows local users to cause a…

Fix: 2.6.29.1+
Fix from $1,600 2009-04-06
Linux Kernel MEDIUM 5.5
CVE-2009-0935

The inotify_read function in the Linux kernel 2.6.27 to 2.6.27.13, 2.6.28 to 2.6.28.2, and 2.6.29-rc3 allows local users to cause a denial of service…

Fix: after 2.6.28.2
Fix from $1,600 2009-03-18
Linux Kernel MEDIUM 5.5
CVE-2008-4302

fs/splice.c in the splice subsystem in the Linux kernel before 2.6.22.2 does not properly handle a failure of the add_to_page_cache_lru function, and…

Fix: 2.6.22.2+
Fix from $1,600 2008-09-29
Linux Kernel HIGH 7.5
CVE-2006-5158

The nlmclnt_mark_reclaim in clntlock.c in NFS lockd in Linux kernel before 2.6.16 allows remote attackers to cause a denial of service (process crash…

Fix: 2.6.16+
Fix from $1,950 2006-10-05
Windows 2000 MEDIUM 5.5
CVE-2006-2374

The Server Message Block (SMB) driver (MRXSMB.SYS) in Microsoft Windows 2000 SP4, XP SP1 and SP2, and Server 2003 SP1 and earlier allows local users …

Patch available
Fix from $1,600 2006-06-13
Ubuntu Linux HIGH 7.5
CVE-2006-2275

Linux SCTP (lksctp) before 2.6.17 allows remote attackers to cause a denial of service (deadlock) via a large number of small messages to a receiver …

Fix: 2.6.17+
Fix from $1,950 2006-05-09
Linux Kernel MEDIUM 5.5
CVE-2005-3847

The handle_stop_signal function in signal.c in Linux kernel 2.6.11 up to other versions before 2.6.13 and 2.6.12.6 allows local users to cause a deni…

Fix: 2.6.13+
Fix from $1,600 2005-11-27
Linux Kernel MEDIUM 5.5
CVE-2005-2456

Array index overflow in the xfrm_sk_policy_insert function in xfrm_user.c in Linux kernel 2.6 allows local users to cause a denial of service (oops o…

Patch available
Fix from $1,600 2005-08-04
HTTP Server HIGH 7.5
CVE-2004-0174EPSS 12%

Apache 1.4.x before 1.3.30, and 2.0.x before 2.0.49, when using multiple listening sockets on certain platforms, allows remote attackers to cause a d…

Fix: after 2.0.49
Fix from $1,950 2004-05-04
HTTP Server HIGH 7.5
CVE-2002-1850EPSS 17%

mod_cgi in Apache 2.0.39 and 2.0.40 allows local users and possibly remote attackers to cause a denial of service (hang and memory consumption) by ca…

Patch available
Fix from $1,950 2002-12-31
Dump MEDIUM 5.5
CVE-2002-1914

dump 0.4 b10 through b29 allows local users to cause a denial of service (execution prevention) by using flock() to lock the /etc/dumpdates file.

Mitigation only
Fix from $1,600 2002-12-31
FreeBSD MEDIUM 5.5
CVE-2002-1915

tip on multiple BSD-based operating systems allows local users to cause a denial of service (execution prevention) by using flock() to lock the /var/…

Mitigation only
Fix from $1,600 2002-12-31
Qpopper MEDIUM 5.5
CVE-2000-1198

qpopper POP server creates lock files with predictable names, which allows local users to cause a denial of service for other users (lack of mail acc…

Mitigation only
Fix from $1,600 2001-08-31
Zonealarm Pro MEDIUM 5.5
CVE-2001-0682

ZoneAlarm and ZoneAlarm Pro allows a local attacker to cause a denial of service by running a trojan to initialize a ZoneAlarm mutex object which pre…

Mitigation only
Fix from $1,600 2001-08-29
Concurrent Versions Software MEDIUM 5.5
CVE-2000-0338

Concurrent Versions Software (CVS) uses predictable temporary file names for locking, which allows local users to cause a denial of service by creati…

Patch available
Fix from $1,600 2000-04-23