Vulnerability index

Browse CVEs

2,053 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Resource Allocation Without LimitsCWE-770 × clear
Dtsearch HIGH 7.5
CVE-2018-11488

A stack exhaustion vulnerability in the search function of dtSearch 7.90.8538.1 and prior allows remote attackers to cause a denial of service condit…

Fix: after 7.90.8538.1
Fix from $1,950 2018-05-29
Jenkins MEDIUM 5.4
CVE-2017-2613

jenkins before versions 2.44, 2.32.2 is vulnerable to a user creation CSRF using GET by admins. While this user record was only retained until restar…

Fix: 2.32.2 / 2.44+
Fix from $1,600 2018-05-15
Flif MEDIUM 5.5
CVE-2018-10971

An issue was discovered in Free Lossless Image Format (FLIF) 0.3. The Plane function in image/image.hpp allows remote attackers to cause a denial of …

Mitigation only
Fix from $1,600 2018-05-10
Openshift Container Platform MEDIUM 5.9
CVE-2018-10237EPSS 5%

Unbounded memory allocation in Google Guava 11.0 through 24.x before 24.1.1 allows remote attackers to conduct denial of service attacks against serv…

Fix: 24.1.1+
Fix from $1,600 2018-04-26
Staros HIGH 7.5
CVE-2018-0239

A vulnerability in the egress packet processing functionality of the Cisco StarOS operating system for Cisco Aggregation Services Router (ASR) 5700 S…

Mitigation only
Fix from $1,950 2018-04-19
Spring Data Rest HIGH 7.5
CVE-2018-1274

Spring Data Commons, versions 1.13 to 1.13.10, 2.0 to 2.0.5, and older unsupported versions, contain a property path parser vulnerability caused by u…

Fix: 1.13.11 / 2.0.6+
Fix from $1,950 2018-04-18
Libxml2 MEDIUM 6.5
CVE-2017-18258

The xz_head function in xzlib.c in libxml2 before 2.9.6 allows remote attackers to cause a denial of service (memory consumption) via a crafted LZMA …

Fix: 2.9.6+
Fix from $1,600 2018-04-08
Debian Linux MEDIUM 6.5
CVE-2017-18229

An issue was discovered in GraphicsMagick 1.3.26. An allocation failure vulnerability was found in the function ReadTIFFImage in coders/tiff.c, which…

No fix yet
Fix from $1,600 2018-03-14
Weblog Expert HIGH 7.5
CVE-2018-7582EPSS 36%

WebLog Expert Web Server Enterprise 9.4 allows Remote Denial Of Service (daemon crash) via a long HTTP Accept Header to TCP port 9991.

No fix yet
Fix from $1,950 2018-03-09
Debian Linux MEDIUM 6.5
CVE-2017-18219

An issue was discovered in GraphicsMagick 1.3.26. An allocation failure vulnerability was found in the function ReadOnePNGImage in coders/png.c, whic…

Patch available
Fix from $1,600 2018-03-05
Debian Linux MEDIUM 6.5
CVE-2018-7443

The ReadTIFFImage function in coders/tiff.c in ImageMagick 7.0.7-23 Q16 does not properly validate the amount of image data in a file, which allows r…

No fix yet
Fix from $1,600 2018-02-23
Debian Linux MEDIUM 6.5
CVE-2018-6869

In ZZIPlib 0.13.68, there is an uncontrolled memory allocation and a crash in the __zzip_parse_root_directory function of zzip/zip.c. Remote attacker…

Patch available
Fix from $1,600 2018-02-09
Prime Network HIGH 8.6
CVE-2018-0137

A vulnerability in the TCP throttling process of Cisco Prime Network could allow an unauthenticated, remote attacker to cause a denial of service (Do…

Mitigation only
Fix from $1,950 2018-02-08
Podofo MEDIUM 5.5
CVE-2018-5783

In PoDoFo 0.9.5, there is an uncontrolled memory allocation in the PoDoFo::PdfVecObjects::Reserve function (base/PdfVecObjects.h). Remote attackers c…

No fix yet
Fix from $1,600 2018-01-19
Android HIGH 7.5
CVE-2017-13189

A vulnerability in the Android media framework (libavc) related to handling dec_hdl memory allocation failures. Product: Android. Versions: 7.0, 7.1.…

Patch available
Fix from $1,950 2018-01-12
Android HIGH 7.5
CVE-2017-13190

A vulnerability in the Android media framework (libhevc) related to handling ps_codec_obj memory allocation failures. Product: Android. Versions: 7.0…

Patch available
Fix from $1,950 2018-01-12
Ubuntu Linux MEDIUM 6.5
CVE-2017-18028

In ImageMagick 7.0.7-1 Q16, a memory exhaustion vulnerability was found in the function ReadTIFFImage in coders/tiff.c, which allow remote attackers …

No fix yet
Fix from $1,600 2018-01-12
Junos MEDIUM 5.3
CVE-2018-0006

A high rate of VLAN authentication attempts sent from an adjacent host on the local broadcast domain can trigger high memory utilization by the BBE s…

Patch available
Fix from $1,600 2018-01-10
Qemu HIGH 7.5
CVE-2017-15124

VNC server implementation in Quick Emulator (QEMU) 2.11.0 and older was found to be vulnerable to an unbounded memory allocation issue, as it did not…

Fix: after 2.11.0
Fix from $1,950 2018-01-09
Podofo MEDIUM 5.5
CVE-2018-5296

In PoDoFo 0.9.5, there is an uncontrolled memory allocation in the PdfParser::ReadXRefSubsection function (base/PdfParser.cpp). Remote attackers coul…

No fix yet
Fix from $1,600 2018-01-08
Exiv2 MEDIUM 5.5
CVE-2018-4868

The Exiv2::Jp2Image::readMetadata function in jp2image.cpp in Exiv2 0.26 allows remote attackers to cause a denial of service (excessive memory alloc…

No fix yet
Fix from $1,600 2018-01-03
Firepower Extensible Operating System HIGH 8.6
CVE-2017-3883

A vulnerability in the authentication, authorization, and accounting (AAA) implementation of Cisco Firepower Extensible Operating System (FXOS) and N…

Fix: after 6.0
Fix from $1,950 2017-10-19
Binutils MEDIUM 5.5
CVE-2017-14938

_bfd_elf_slurp_version_tables in elf.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29, allows remote a…

Patch available
Fix from $1,600 2017-09-30
Ubuntu Linux MEDIUM 6.5
CVE-2017-14531

ImageMagick 7.0.7-0 has a memory exhaustion issue in ReadSUNImage in coders/sun.c.

Patch available
Fix from $1,600 2017-09-18
Android MEDIUM 5.5
CVE-2017-0771

A denial of service vulnerability in the Android media framework (libskia). Product: Android. Versions: 7.0, 7.1.1, 7.1.2. Android ID: A-37624243.

Patch available
Fix from $1,600 2017-09-08
Connected Grid Network Management System HIGH 7.5
CVE-2017-6780

A vulnerability in the TCP throttling process for Cisco IoT Field Network Director (IoT-FND) could allow an unauthenticated, remote attacker to cause…

Fix: after 3.2.0-182
Fix from $1,950 2017-09-07
Ubuntu Linux MEDIUM 6.5
CVE-2017-12691

The ReadOneLayer function in coders/xcf.c in ImageMagick 7.0.6-6 allows remote attackers to cause a denial of service (memory consumption) via a craf…

Patch available
Fix from $1,600 2017-09-01
Ubuntu Linux MEDIUM 6.5
CVE-2017-12692

The ReadVIFFImage function in coders/viff.c in ImageMagick 7.0.6-6 allows remote attackers to cause a denial of service (memory consumption) via a cr…

Patch available
Fix from $1,600 2017-09-01
Ubuntu Linux MEDIUM 6.5
CVE-2017-12693

The ReadBMPImage function in coders/bmp.c in ImageMagick 7.0.6-6 allows remote attackers to cause a denial of service (memory consumption) via a craf…

Patch available
Fix from $1,600 2017-09-01
Debian Linux MEDIUM 6.5
CVE-2017-14107

The _zip_read_eocd64 function in zip_open.c in libzip before 1.3.0 mishandles EOCD records, which allows remote attackers to cause a denial of servic…

Fix: 1.3.0+
Fix from $1,600 2017-09-01