Vulnerability index

Browse CVEs

248 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Ubuntu Linux HIGH 7.8
CVE-2018-19543

An issue was discovered in JasPer 2.0.14. There is a heap-based buffer over-read of size 8 in the function jp2_decode in libjasper/jp2/jp2_dec.c.

No fix yet
Fix from $1,950 2018-11-26
Ubuntu Linux MEDIUM 6.5
CVE-2018-19542

An issue was discovered in JasPer 2.0.14. There is a NULL pointer dereference in the function jp2_decode in libjasper/jp2/jp2_dec.c, leading to a den…

No fix yet
Fix from $1,600 2018-11-26
Ubuntu Linux MEDIUM 6.5
CVE-2018-19060

An issue was discovered in Poppler 0.71.0. There is a NULL pointer dereference in goo/GooString.h, will lead to denial of service, as demonstrated by…

No fix yet
Fix from $1,600 2018-11-07
Ubuntu Linux MEDIUM 6.5
CVE-2018-19058

An issue was discovered in Poppler 0.71.0. There is a reachable abort in Object.h, will lead to denial of service because EmbFile::save2 in FileSpec.…

No fix yet
Fix from $1,600 2018-11-07
Ubuntu Linux MEDIUM 6.5
CVE-2018-19059

An issue was discovered in Poppler 0.71.0. There is a out-of-bounds read in EmbFile::save2 in FileSpec.cc, will lead to denial of service, as demonst…

No fix yet
Fix from $1,600 2018-11-07
Ubuntu Linux MEDIUM 5.5
CVE-2018-18873

An issue was discovered in JasPer 2.0.14. There is a NULL pointer dereference in the function ras_putdatastd in ras/ras_enc.c.

No fix yet
Fix from $1,600 2018-10-31
Ubuntu Linux CRITICAL 9.8
CVE-2018-18751

An issue was discovered in GNU gettext 0.19.8. There is a double free in default_add_message in read-catalog.c, related to an invalid free in po_gram…

No fix yet
Fix from $2,300 2018-10-29
Ubuntu Linux HIGH 7.5
CVE-2018-17962

Qemu has a Buffer Overflow in pcnet_receive in hw/net/pcnet.c because an incorrect integer data type is used.

No fix yet
Fix from $1,950 2018-10-09
Ubuntu Linux HIGH 7.8
CVE-2018-17183

Artifex Ghostscript before 9.25 allowed a user-writable error exception table, which could be used by remote attackers able to supply crafted PostScr…

Mitigation only
Fix from $1,950 2018-09-19
Ubuntu Linux MEDIUM 6.6
CVE-2018-0643

Ubuntu14.04 ORCA (Online Receipt Computer Advantage) 4.8.0 (panda-server) 1:1.4.9+p41-u4jma1 and earlier allows attacker with administrator rights to…

Mitigation only
Fix from $1,600 2018-09-07
Ubuntu Linux MEDIUM 6.5
CVE-2018-16336

Exiv2::Internal::PngChunk::parseTXTChunk in Exiv2 v0.26 allows remote attackers to cause a denial of service (heap-based buffer over-read) via a craf…

Mitigation only
Fix from $1,600 2018-09-02
Ubuntu Linux HIGH 7.8
CVE-2018-16140

A buffer underwrite vulnerability in get_line() (read.c) in fig2dev 3.2.7a allows an attacker to write prior to the beginning of the buffer via a cra…

Mitigation only
Fix from $1,950 2018-08-30
Ubuntu Linux HIGH 7.0
CVE-2018-6557

The MOTD update script in the base-files package in Ubuntu 18.04 LTS before 10.1ubuntu2.2, and Ubuntu 18.10 before 10.1ubuntu6 incorrectly handled te…

Mitigation only
Fix from $1,950 2018-08-21
Ubuntu Linux HIGH 8.8
CVE-2018-1000222

Libgd version 2.2.5 contains a Double Free Vulnerability vulnerability in gdImageBmpPtr Function that can result in Remote Code Execution . This atta…

Mitigation only
Fix from $1,950 2018-08-20
Ubuntu Linux HIGH 8.8
CVE-2018-6553

The CUPS AppArmor profile incorrectly confined the dnssd backend due to use of hard links. A local attacker could possibly use this issue to escape c…

Mitigation only
Fix from $1,950 2018-08-10
Ubuntu Linux HIGH 7.5
CVE-2016-9597

It was found that Red Hat JBoss Core Services erratum RHSA-2016:2957 for CVE-2016-3705 did not actually include the fix for the issue found in libxml…

Mitigation only
Fix from $1,950 2018-07-30
Ubuntu Linux CRITICAL 9.8
CVE-2018-14551

The ReadMATImageV4 function in coders/mat.c in ImageMagick 7.0.8-7 uses an uninitialized variable, leading to memory corruption.

No fix yet
Fix from $2,300 2018-07-23
Ubuntu Linux MEDIUM 6.5
CVE-2018-14434

ImageMagick 7.0.8-4 has a memory leak for a colormap in WriteMPCImage in coders/mpc.c.

No fix yet
Fix from $1,600 2018-07-20
Ubuntu Linux MEDIUM 6.5
CVE-2018-14435

ImageMagick 7.0.8-4 has a memory leak in DecodeImage in coders/pcd.c.

No fix yet
Fix from $1,600 2018-07-20
Ubuntu Linux MEDIUM 6.5
CVE-2018-14436

ImageMagick 7.0.8-4 has a memory leak in ReadMIFFImage in coders/miff.c.

No fix yet
Fix from $1,600 2018-07-20
Ubuntu Linux MEDIUM 6.5
CVE-2018-14437

ImageMagick 7.0.8-4 has a memory leak in parse8BIM in coders/meta.c.

No fix yet
Fix from $1,600 2018-07-20
Ubuntu Linux MEDIUM 6.5
CVE-2018-13440

The audiofile Audio File Library 0.3.6 has a NULL pointer dereference bug in ModuleState::setup in modules/ModuleState.cpp, which allows an attacker …

No fix yet
Fix from $1,600 2018-07-08
Ubuntu Linux MEDIUM 6.5
CVE-2018-13153

In ImageMagick 7.0.8-4, there is a memory leak in the XMagickCommand function in MagickCore/animate.c.

No fix yet
Fix from $1,600 2018-07-05
Ubuntu Linux HIGH 7.8
CVE-2018-12931

ntfs_attr_find in the ntfs.ko filesystem driver in the Linux kernel 4.15.0 allows attackers to trigger a stack-based out-of-bounds write and cause a …

Mitigation only
Fix from $1,950 2018-06-28
Ubuntu Linux HIGH 8.8
CVE-2018-12900EPSS 25%

Heap-based buffer overflow in the cpSeparateBufToContigBuf function in tiffcp.c in LibTIFF 3.9.3, 3.9.4, 3.9.5, 3.9.6, 3.9.7, 4.0.0beta7, 4.0.0alpha4…

No fix yet
Fix from $1,950 2018-06-26
Ubuntu Linux CRITICAL 9.8
CVE-2018-12699

finish_stab in stabs.c in GNU Binutils 2.30 allows attackers to cause a denial of service (heap-based buffer overflow) or possibly have unspecified o…

No fix yet
Fix from $2,300 2018-06-23
Ubuntu Linux HIGH 7.5
CVE-2018-12697EPSS 5%

A NULL pointer dereference (aka SEGV on unknown address 0x000000000000) was discovered in work_stuff_copy_to_from in cplus-dem.c in GNU libiberty, as…

No fix yet
Fix from $1,950 2018-06-23
Ubuntu Linux HIGH 7.5
CVE-2018-12698EPSS 7%

demangle_template in cplus-dem.c in GNU libiberty, as distributed in GNU Binutils 2.30, allows attackers to trigger excessive memory consumption (aka…

No fix yet
Fix from $1,950 2018-06-23
Ubuntu Linux HIGH 8.8
CVE-2018-12599

In ImageMagick 7.0.8-3 Q16, ReadBMPImage and WriteBMPImage in coders/bmp.c allow attackers to cause an out of bounds write via a crafted file.

No fix yet
Fix from $1,950 2018-06-20
Ubuntu Linux HIGH 8.8
CVE-2018-12600

In ImageMagick 7.0.8-3 Q16, ReadDIBImage and WriteDIBImage in coders/dib.c allow attackers to cause an out of bounds write via a crafted file.

No fix yet
Fix from $1,950 2018-06-20