Top technology
Linux 13140
Google 12536
Microsoft 12379
Oracle 6843
Apple 6692
Adobe 6387
Ibm 6336
Cisco 5759
Debian 3919
Mozilla 2895
Apache 2864
Redhat 2592
CRITICAL 9.8
CVE-2017-12873
SimpleSAMLphp 1.7.0 through 1.14.10 might allow attackers to obtain sensitive information, gain unauthorized access, or have unspecified other impact…
Debian Linux
after 1.14.10
CRITICAL 9.8
CVE-2017-0899EPSS 10%
RubyGems version 2.6.12 and earlier is vulnerable to maliciously crafted gem specifications that include terminal escape characters. Printing the gem…
Debian Linux
after 2.6.12
CRITICAL 9.8
CVE-2017-14062
Integer overflow in the decode_digit function in puny_decode.c in Libidn2 before 2.0.4 allows remote attackers to cause a denial of service or possib…
Debian Linux
2.0.4+
CRITICAL 9.8
CVE-2017-12865EPSS 6%
Stack-based buffer overflow in "dnsproxy.c" in connman 1.34 and earlier allows remote attackers to cause a denial of service (crash) or execute arbit…
Debian Linux
after 1.34
CRITICAL 9.8
CVE-2014-9513
Insecure use of temporary files in xbindkeys-config 0.1.3-2 allows remote attackers to execute arbitrary code.
Xbindkeys Config
No fix yet
CRITICAL 9.8
CVE-2017-13139
In ImageMagick before 6.9.9-0 and 7.x before 7.0.6-1, the ReadOneMNGImage function in coders/png.c has an out-of-bounds read with the MNG CLIP chunk.
Debian Linux
after 6.9.9-0
CRITICAL 9.6
CVE-2017-10096
Vulnerability in the Java SE, Java SE Embedded component of Oracle Java SE (subcomponent: JAXP). Supported versions that are affected are Java SE: 6u…
Debian Linux
Patch available
CRITICAL 9.6
CVE-2017-10101
Vulnerability in the Java SE, Java SE Embedded component of Oracle Java SE (subcomponent: JAXP). Supported versions that are affected are Java SE: 6u…
Debian Linux
Patch available
CRITICAL 9.6
CVE-2017-10107
Vulnerability in the Java SE, Java SE Embedded component of Oracle Java SE (subcomponent: RMI). Supported versions that are affected are Java SE: 6u1…
Debian Linux
Patch available
CRITICAL 9.6
CVE-2017-10110
Vulnerability in the Java SE component of Oracle Java SE (subcomponent: AWT). Supported versions that are affected are Java SE: 6u151, 7u141 and 8u13…
Debian Linux
Patch available
CRITICAL 9.6
CVE-2017-10111
Vulnerability in the Java SE, Java SE Embedded component of Oracle Java SE (subcomponent: Libraries). The supported version that is affected is Java …
Debian Linux
Patch available
CRITICAL 9.0
CVE-2017-10102
Vulnerability in the Java SE, Java SE Embedded component of Oracle Java SE (subcomponent: RMI). Supported versions that are affected are Java SE: 6u1…
Debian Linux
Patch available
CRITICAL 9.6
CVE-2017-10086
Vulnerability in the Java SE component of Oracle Java SE (subcomponent: JavaFX). Supported versions that are affected are Java SE: 7u141 and 8u131. E…
Debian Linux
after 11.70.1
CRITICAL 9.6
CVE-2017-10087
Vulnerability in the Java SE, Java SE Embedded component of Oracle Java SE (subcomponent: Libraries). Supported versions that are affected are Java S…
Debian Linux
Patch available
CRITICAL 9.6
CVE-2017-10089
Vulnerability in the Java SE component of Oracle Java SE (subcomponent: ImageIO). Supported versions that are affected are Java SE: 6u151, 7u141 and …
Debian Linux
Patch available
CRITICAL 9.6
CVE-2017-10090
Vulnerability in the Java SE, Java SE Embedded component of Oracle Java SE (subcomponent: Libraries). Supported versions that are affected are Java S…
Debian Linux
Patch available
CRITICAL 9.8
CVE-2015-7871EPSS 82%
Crypto-NAK packets in ntpd in NTP 4.2.x before 4.2.8p4, and 4.3.x before 4.3.77 allows remote attackers to bypass authentication.
Debian Linux
4.2.8 / 4.3.77+
CRITICAL 9.8
CVE-2017-12562
Heap-based Buffer Overflow in the psf_binheader_writef function in common.c in libsndfile through 1.0.28 allows remote attackers to cause a denial of…
Debian Linux
Patch available
CRITICAL 9.8
CVE-2017-12424
In shadow before 4.5, the newusers tool could be made to manipulate internal data structures in ways unintended by the authors. Malformed input may l…
Debian Linux
4.5+
CRITICAL 9.8
CVE-2017-11139
GraphicsMagick 1.3.26 has double free vulnerabilities in the ReadOneJNGImage() function in coders/png.c.
Debian Linux
Patch available
CRITICAL 9.8
CVE-2016-4000EPSS 6%
Jython before 2.7.1rc1 allows attackers to execute arbitrary code via a crafted serialized PyFunction object.
Debian Linux
Patch available
CRITICAL 9.8
CVE-2017-7494 KEVEPSS 99%
Samba since version 3.5.0 and before 4.6.4, 4.5.10 and 4.4.14 is vulnerable to remote code execution vulnerability, allowing a malicious client to up…
Debian Linux
4.4.0 / 4.4.14+
CRITICAL 9.8
CVE-2017-9214
In Open vSwitch (OvS) 2.7.0, while parsing an OFPT_QUEUE_GET_CONFIG_REPLY type OFP 1.0 message, there is a buffer over-read that is caused by an unsi…
Debian Linux
Patch available
CRITICAL 9.8
CVE-2016-9841EPSS 8%
inffast.c in zlib 1.2.8 might allow context-dependent attackers to have unspecified impact by leveraging improper pointer arithmetic.
Debian Linux
after 8.0.12
CRITICAL 9.8
CVE-2016-9843EPSS 6%
The crc32_big function in crc32.c in zlib 1.2.8 might allow context-dependent attackers to have unspecified impact via vectors involving big-endian C…
Debian Linux
after 8.0.12
CRITICAL 9.8
CVE-2017-2518EPSS 5%
An issue was discovered in certain Apple products. iOS before 10.3.2 is affected. macOS before 10.12.5 is affected. tvOS before 10.2.1 is affected. w…
Debian Linux
3.2.2 / 10.2.1+
CRITICAL 9.8
CVE-2017-2519
An issue was discovered in certain Apple products. iOS before 10.3.2 is affected. macOS before 10.12.5 is affected. tvOS before 10.2.1 is affected. w…
Debian Linux
3.2.2 / 10.2.1+
CRITICAL 9.8
CVE-2017-2520
An issue was discovered in certain Apple products. iOS before 10.3.2 is affected. macOS before 10.12.5 is affected. tvOS before 10.2.1 is affected. w…
Debian Linux
3.2.2 / 10.2.1+
CRITICAL 9.8
CVE-2016-10243EPSS 6%
TeX Live allows remote attackers to execute arbitrary commands by leveraging inclusion of mpost in shell_escape_commands in the texmf.cnf config file.
Debian Linux
Patch available
CRITICAL 9.8
CVE-2017-8283
dpkg-source in dpkg 1.3.0 through 1.18.23 is able to use a non-GNU patch program and does not offer a protection mechanism for blank-indented diff hu…
Dpkg
Patch available