Top technology
Linux 13140
Google 12536
Microsoft 12379
Oracle 6843
Apple 6692
Adobe 6387
Ibm 6336
Cisco 5759
Debian 3919
Mozilla 2895
Apache 2864
Redhat 2592
CRITICAL 9.8
CVE-2017-8105
FreeType 2 before 2017-03-24 has an out-of-bounds write caused by a heap-based buffer overflow related to the t1_decoder_parse_charstrings function i…
Debian Linux
2.7.1+
CRITICAL 9.8
CVE-2017-7863
FFmpeg before 2017-02-04 has an out-of-bounds write caused by a heap-based buffer overflow related to the decode_frame_common function in libavcodec/…
Debian Linux
after 2.8.10
CRITICAL 9.8
CVE-2017-7865
FFmpeg before 2017-01-24 has an out-of-bounds write caused by a heap-based buffer overflow related to the ipvideo_decode_block_opcode_0xA function in…
Debian Linux
after 2.8.9
CRITICAL 9.8
CVE-2015-6674
Buffer underflow vulnerability in the Debian inspircd package before 2.0.5-1+deb7u1 for wheezy and before 2.0.16-1 for jessie and sid. NOTE: This iss…
Debian Linux
after 2.0.19
CRITICAL 9.8
CVE-2016-1908EPSS 14%
The client in OpenSSH before 7.2 mishandles failed cookie generation for untrusted X11 forwarding and relies on the local X11 server for access-contr…
Debian Linux
Patch available
CRITICAL 9.8
CVE-2017-5511EPSS 5%
coders/psd.c in ImageMagick allows remote attackers to have unspecified impact by leveraging an improper cast, which triggers a heap-based buffer ove…
Debian Linux
6.9.7-3 / 7.0.4-3+
CRITICAL 9.8
CVE-2017-5522
Stack-based buffer overflow in MapServer before 6.0.6, 6.2.x before 6.2.4, 6.4.x before 6.4.5, and 7.0.x before 7.0.4 allows remote attackers to caus…
Debian Linux
after 6.0.5
CRITICAL 9.8
CVE-2016-10195EPSS 7%
The name_parse function in evdns.c in libevent before 2.1.6-beta allows remote attackers to have unspecified impact via vectors involving the label_l…
Debian Linux
after 2.1.5
CRITICAL 9.8
CVE-2016-8863EPSS 7%
Heap-based buffer overflow in the create_url_list function in gena/gena_device.c in Portable UPnP SDK (aka libupnp) before 1.6.21 allows remote attac…
Debian Linux
after 1.6.20
CRITICAL 9.8
CVE-2016-1245
It was discovered that the zebra daemon in Quagga before 1.0.20161017 suffered from a stack-based buffer overflow when processing IPv6 Neighbor Disco…
Debian Linux
after 1.0.20160315
CRITICAL 9.8
CVE-2016-2148EPSS 27%
Heap-based buffer overflow in the DHCP client (udhcpc) in BusyBox before 1.25.0 allows remote attackers to have unspecified impact via vectors involv…
Debian Linux
after 1.24.2
CRITICAL 9.8
CVE-2016-7446
Buffer overflow in the MVG and SVG rendering code in GraphicsMagick 1.3.24 allows remote attackers to have unspecified impact via unknown vectors. No…
Debian Linux
Mitigation only
CRITICAL 9.8
CVE-2016-7447
Heap-based buffer overflow in the EscapeParenthesis function in GraphicsMagick before 1.3.25 allows remote attackers to have unspecified impact via u…
Debian Linux
after 1.3.24
CRITICAL 9.8
CVE-2017-5202
The ISO CLNS parser in tcpdump before 4.9.0 has a buffer overflow in print-isoclns.c:clnp_print().
Debian Linux
4.9.0+
CRITICAL 9.8
CVE-2017-5203
The BOOTP parser in tcpdump before 4.9.0 has a buffer overflow in print-bootp.c:bootp_print().
Debian Linux
4.9.0+
CRITICAL 9.8
CVE-2017-5204EPSS 6%
The IPv6 parser in tcpdump before 4.9.0 has a buffer overflow in print-ip6.c:ip6_print().
Debian Linux
4.9.0+
CRITICAL 9.8
CVE-2017-5205
The ISAKMP parser in tcpdump before 4.9.0 has a buffer overflow in print-isakmp.c:ikev2_e_print().
Debian Linux
4.9.0+
CRITICAL 9.8
CVE-2013-1430
An issue was discovered in xrdp before 0.9.1. When successfully logging in using RDP into an xrdp session, the file ~/.vnc/sesman_${username}_passwd …
Debian Linux
after 0.8.0
CRITICAL 9.8
CVE-2016-9427
Integer overflow vulnerability in bdwgc before 2016-09-27 allows attackers to cause client of bdwgc denial of service (heap buffer overflow crash) an…
Debian Linux
after 7.4.4
CRITICAL 9.8
CVE-2016-7117EPSS 24%
Use-after-free vulnerability in the __sys_recvmmsg function in net/socket.c in the Linux kernel before 4.5.2 allows remote attackers to execute arbit…
Debian Linux
3.2.80 / 3.4.113+
CRITICAL 9.8
CVE-2016-7161EPSS 6%
Heap-based buffer overflow in the .receive callback of xlnx.xps-ethernetlite in QEMU (aka Quick Emulator) allows attackers to execute arbitrary code …
Debian Linux
after 2.6.2
CRITICAL 9.8
CVE-2016-1243
Stack-based buffer overflow in the extractTree function in unADF allows remote attackers to execute arbitrary code via a long pathname.
Debian Linux
Patch available
CRITICAL 9.8
CVE-2016-5180EPSS 9%
Heap-based buffer overflow in the ares_create_query function in c-ares 1.x before 1.12.0 allows remote attackers to cause a denial of service (out-of…
Debian Linux
0.10.48 / 0.12.17+
CRITICAL 9.8
CVE-2016-4303EPSS 7%
The parse_string function in cjson.c in the cJSON library mishandles UTF8/16 strings, which allows remote attackers to cause a denial of service (cra…
Debian Linux
3.0.12 / 3.1.3+
CRITICAL 9.8
CVE-2016-6525
Heap-based buffer overflow in the pdf_load_mesh_params function in pdf/pdf-shade.c in MuPDF allows remote attackers to cause a denial of service (cra…
Debian Linux
after 1.9
CRITICAL 9.8
CVE-2016-6354EPSS 6%
Heap-based buffer overflow in the yy_get_next_buffer function in Flex before 2.6.1 might allow context-dependent attackers to cause a denial of servi…
Debian Linux
after 2.6.0
CRITICAL 9.8
CVE-2015-8871
Use-after-free vulnerability in the opj_j2k_write_mco function in j2k.c in OpenJPEG before 2.1.1 allows remote attackers to have unspecified impact v…
Debian Linux
after 2.1.0
CRITICAL 9.1
CVE-2016-6254EPSS 5%
Heap-based buffer overflow in the parse_packet function in network.c in collectd before 5.4.3 and 5.x before 5.5.2 allows remote attackers to cause a…
Debian Linux
5.4.3 / 5.5.2+
CRITICAL 9.8
CVE-2015-8949
Use-after-free vulnerability in the my_login function in DBD::mysql before 4.033_01 allows attackers to have unspecified impact by leveraging a call …
Debian Linux
Patch available
CRITICAL 9.8
CVE-2014-9906EPSS 6%
Use-after-free vulnerability in DBD::mysql before 4.029 allows attackers to cause a denial of service (program crash) or possibly execute arbitrary c…
Debian Linux
after 4.028