Vulnerability index

Browse CVEs

598 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

CRITICAL 9.8 CVE-2017-5443 An out-of-bounds write vulnerability while decoding improperly formed BinHex format archives. This vulnerability affects Thunderbird < 52.1, Firefox … Debian Linux 45.9.0 / 53.0+ Fix from $2,3002018-06-11 CRITICAL 9.8 CVE-2017-5446 An out-of-bounds read when an HTTP/2 connection to a servers sends "DATA" frames with incorrect data content. This leads to a potentially exploitable… Debian Linux 45.9.0 / 53.0+ Fix from $2,3002018-06-11 CRITICAL 9.1 CVE-2017-5447EPSS 12% An out-of-bounds read during the processing of glyph widths during text layout. This results in a potentially exploitable crash and could allow an at… Debian Linux 45.9.0 / 53.0+ Fix from $2,3002018-06-11 CRITICAL 9.8 CVE-2017-5432 A use-after-free vulnerability occurs during certain text input selection resulting in a potentially exploitable crash. This vulnerability affects Th… Debian Linux 45.9.0 / 53.0+ Fix from $2,3002018-06-11 CRITICAL 9.8 CVE-2017-5433 A use-after-free vulnerability in SMIL animation functions occurs when pointers to animation elements in an array are dropped from the animation cont… Debian Linux 45.9.0 / 53.0+ Fix from $2,3002018-06-11 CRITICAL 9.8 CVE-2017-5435 A use-after-free vulnerability occurs during transaction processing in the editor during design mode interactions. This results in a potentially expl… Debian Linux 45.9.0 / 53.0+ Fix from $2,3002018-06-11 CRITICAL 9.8 CVE-2017-5438 A use-after-free vulnerability during XSLT processing due to the result handler being held by a freed handler during handling. This results in a pote… Debian Linux 45.9.0 / 53.0+ Fix from $2,3002018-06-11 CRITICAL 9.8 CVE-2017-5439 A use-after-free vulnerability during XSLT processing due to poor handling of template parameters. This results in a potentially exploitable crash. T… Debian Linux 45.9.0 / 52.1.0+ Fix from $2,3002018-06-11 CRITICAL 9.8 CVE-2017-5440 A use-after-free vulnerability during XSLT processing due to a failure to propagate error conditions during matching while evaluating context, leadin… Debian Linux 45.9.0 / 53.0+ Fix from $2,3002018-06-11 CRITICAL 9.8 CVE-2017-5401 A crash triggerable by web content in which an "ErrorResult" references unassigned memory due to a logic error. The resulting crash may be exploitabl… Debian Linux 45.8.0 / 52.0+ Fix from $2,3002018-06-11 CRITICAL 9.8 CVE-2017-5402 A use-after-free can occur when events are fired for a "FontFace" object after the object has been already been destroyed while working with fonts. T… Debian Linux 45.8.0 / 52.0+ Fix from $2,3002018-06-11 CRITICAL 9.8 CVE-2017-5404EPSS 13% A use-after-free error can occur when manipulating ranges in selections with one node inside a native anonymous tree and one node outside of it. This… Debian Linux 45.8.0 / 52.0+ Fix from $2,3002018-06-11 CRITICAL 9.8 CVE-2017-5410 Memory corruption resulting in a potentially exploitable crash during garbage collection of JavaScript due errors in how incremental sweeping is mana… Debian Linux 45.8.0 / 52.0+ Fix from $2,3002018-06-11 CRITICAL 9.8 CVE-2017-5380 A potential use-after-free found through fuzzing during DOM manipulation of SVG content. This vulnerability affects Thunderbird < 45.7, Firefox ESR <… Debian Linux 45.7.0 / 51.0+ Fix from $2,3002018-06-11 CRITICAL 9.8 CVE-2017-5390 The JSON viewer in the Developer Tools uses insecure methods to create a communication channel for copying and viewing JSON or HTTP headers data, all… Debian Linux 45.7.0 / 51.0+ Fix from $2,3002018-06-11 CRITICAL 9.8 CVE-2017-5396 A use-after-free vulnerability in the Media Decoder when working with media files when some events are fired after the media elements are freed from … Debian Linux 45.7.0 / 51.0+ Fix from $2,3002018-06-11 CRITICAL 9.8 CVE-2017-5398 Memory safety bugs were reported in Thunderbird 45.7. Some of these bugs showed evidence of memory corruption and we presume that with enough effort … Debian Linux 45.8.0 / 52.0+ Fix from $2,3002018-06-11 CRITICAL 9.8 CVE-2016-9898 Use-after-free resulting in potentially exploitable crash when manipulating DOM subtrees in the Editor. This vulnerability affects Firefox < 50.1, Fi… Debian Linux 45.6.0 / 50.1.0+ Fix from $2,3002018-06-11 CRITICAL 9.8 CVE-2016-9899EPSS 16% Use-after-free while manipulating DOM events and removing audio elements due to errors in the handling of node adoption. This vulnerability affects F… Debian Linux 45.9.0 / 52.1.0+ Fix from $2,3002018-06-11 CRITICAL 9.8 CVE-2017-5376 Use-after-free while manipulating XSL in XSLT documents. This vulnerability affects Thunderbird < 45.7, Firefox ESR < 45.7, and Firefox < 51. Debian Linux 45.7.0 / 51.0+ Fix from $2,3002018-06-11 CRITICAL 9.8 CVE-2016-9893 Memory safety bugs were reported in Thunderbird 45.5. Some of these bugs showed evidence of memory corruption and we presume that with enough effort … Debian Linux 45.6.0 / 50.1+ Fix from $2,3002018-06-11 CRITICAL 9.8 CVE-2018-11743 The init_copy function in kernel.c in mruby 1.4.1 makes initialize_copy calls for TT_ICLASS objects, which allows attackers to cause a denial of serv… Debian Linux Patch available Fix from $2,3002018-06-05 CRITICAL 9.8 CVE-2018-11531 Exiv2 0.26 has a heap-based buffer overflow in getData in preview.cpp. Debian Linux No fix yet Fix from $2,3002018-05-29 CRITICAL 9.1 CVE-2018-1000301EPSS 6% curl version curl 7.20.0 to and including curl 7.59.0 contains a CWE-126: Buffer Over-read vulnerability in denial of service that can result in curl… Debian Linux 7.2+ Fix from $2,3002018-05-24 CRITICAL 9.8 CVE-2018-1000178 A heap corruption of type CWE-120 exists in quassel version 0.12.4 in quasselcore in void DataStreamPeer::processMessage(const QByteArray &msg) datas… Debian Linux Patch available Fix from $2,3002018-05-08 CRITICAL 9.8 CVE-2018-10771 Stack-based buffer overflow in the get_key function in parse.c in abcm2ps through 8.13.20 allows remote attackers to cause a denial of service (appli… Debian Linux after 8.13.20 Fix from $2,3002018-05-07 CRITICAL 9.8 CVE-2018-10753 Stack-based buffer overflow in the delayed_output function in music.c in abcm2ps through 8.13.20 allows remote attackers to cause a denial of service… Debian Linux after 8.13.20 Fix from $2,3002018-05-05 CRITICAL 9.8 CVE-2017-18264 An issue was discovered in libraries/common.inc.php in phpMyAdmin 4.0 before 4.0.10.20, 4.4.x, 4.6.x, and 4.7.0 prereleases. The restrictions caused … Debian Linux 4.0.10.20+ Fix from $2,3002018-05-01 CRITICAL 9.8 CVE-2017-2885EPSS 24% An exploitable stack based buffer overflow vulnerability exists in the GNOME libsoup 2.58. A specially crafted HTTP request can cause a stack overflo… Debian Linux No fix yet Fix from $2,3002018-04-24 CRITICAL 9.8 CVE-2017-17833 OpenSLP releases in the 1.0.2 and 1.1.0 code streams have a heap-related memory corruption issue which may manifest itself as a denial-of-service or … Debian Linux Patch available Fix from $2,3002018-04-23