Vulnerability index

Browse CVEs

248 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Ubuntu Linux MEDIUM 6.4
CVE-2014-7142EPSS 25%

The pinger in Squid 3.x before 3.4.8 allows remote attackers to obtain sensitive information or cause a denial of service (crash) via a crafted (1) I…

Mitigation only
Fix from $1,600 2014-11-26
Ubuntu Linux MEDIUM 5.0
CVE-2014-8768EPSS 20%

Multiple Integer underflows in the geonet_print function in tcpdump 4.5.0 through 4.6.2, when in verbose mode, allow remote attackers to cause a deni…

No fix yet
Fix from $1,600 2014-11-20
Ubuntu Linux MEDIUM 6.8
CVE-2014-3686

wpa_supplicant and hostapd 0.7.2 through 2.2, when running with certain configurations and using wpa_cli or hostapd_cli with action scripts, allows r…

Mitigation only
Fix from $1,600 2014-10-16
Acpi Support HIGH 7.2
CVE-2014-0484

The Debian acpi-support package before 0.140-5+deb7u3 allows local users to gain privileges via vectors related to the "user's environment."

No fix yet
Fix from $1,950 2014-09-22
Ubuntu Linux HIGH 7.5
CVE-2014-3618EPSS 9%

Heap-based buffer overflow in formisc.c in formail in procmail 3.22 allows remote attackers to cause a denial of service (crash) and possibly execute…

No fix yet
Fix from $1,950 2014-09-08
Ubuntu Linux HIGH 7.9
CVE-2014-3560EPSS 56%

NetBIOS name services daemon (nmbd) in Samba 4.0.x before 4.0.21 and 4.1.x before 4.1.11 allows remote attackers to execute arbitrary code via unspec…

Mitigation only
Fix from $1,950 2014-08-06
Ltsp Display Manager HIGH 10.0
CVE-2012-1166

The default keybindings for wwm in LTSP Display Manager (ldm) 2.2.x before 2.2.7 allow remote attackers to execute arbitrary commands via the KP_RETU…

Mitigation only
Fix from $1,950 2014-05-21
Ubuntu Linux HIGH 10.0
CVE-2014-1528EPSS 6%

The sse2_composite_src_x888_8888 function in Pixman, as used in Cairo in Mozilla Firefox 28.0 and SeaMonkey 2.25 on Windows, allows remote attackers …

Mitigation only
Fix from $1,950 2014-04-30
Ubuntu Linux HIGH 9.0
CVE-2014-0187

The openvswitch-agent process in OpenStack Neutron 2013.1 before 2013.2.4 and 2014.1 before 2014.1.1 allows remote authenticated users to bypass secu…

Mitigation only
Fix from $1,950 2014-04-28
Ubuntu Linux HIGH 7.5
CVE-2014-2412

Unspecified vulnerability in Oracle Java SE 5.0u61, 6u71, SE 7u51, and 8, and Java SE Embedded 7u51, allows remote attackers to affect confidentialit…

Mitigation only
Fix from $1,950 2014-04-16
Ubuntu Linux HIGH 7.5
CVE-2014-2414

Unspecified vulnerability in Oracle Java SE 6u71, 7u51, and 8, and Java SE Embedded 7u51, allows remote attackers to affect confidentiality, integrit…

Mitigation only
Fix from $1,950 2014-04-16
Ubuntu Linux HIGH 7.5
CVE-2014-2423

Unspecified vulnerability in Oracle Java SE 6u71, 7u51, and 8, and Java SE Embedded 7u51, allows remote attackers to affect confidentiality, integrit…

Mitigation only
Fix from $1,950 2014-04-16
Ubuntu Linux HIGH 7.5
CVE-2014-2427

Unspecified vulnerability in Oracle Java SE 5.0u61, 6u71, 7u51, and 8, and Java SE Embedded 7u51, allows remote attackers to affect confidentiality, …

Mitigation only
Fix from $1,950 2014-04-16
Ubuntu Linux HIGH 9.3
CVE-2014-2397EPSS 6%

Unspecified vulnerability in Oracle Java SE 7u51 and 8, and Java SE Embedded 7u51, allows remote attackers to affect confidentiality, integrity, and …

Mitigation only
Fix from $1,950 2014-04-16
Ubuntu Linux HIGH 7.5
CVE-2014-2402

Unspecified vulnerability in Oracle Java SE 7u51 and 8, and Java SE Embedded 7u51, allows remote attackers to affect confidentiality, integrity, and …

No fix yet
Fix from $1,950 2014-04-16
Ubuntu Linux MEDIUM 5.0
CVE-2014-2403

Unspecified vulnerability in Oracle Java SE 6u71, 7u51, and 8, and Java SE Embedded 7u51, allows remote attackers to affect confidentiality via vecto…

Mitigation only
Fix from $1,600 2014-04-16
Ubuntu Linux HIGH 7.5
CVE-2014-0451

Unspecified vulnerability in Oracle Java SE 5.0u61, 6u71, 7u51, and 8, and Java SE Embedded 7u51, allows remote attackers to affect confidentiality, …

Mitigation only
Fix from $1,950 2014-04-16
Ubuntu Linux HIGH 7.5
CVE-2014-0452

Unspecified vulnerability in Oracle Java SE 6u71, 7u51, and 8, and Java SE Embedded 7u51, allows remote attackers to affect confidentiality, integrit…

Mitigation only
Fix from $1,950 2014-04-16
Ubuntu Linux HIGH 7.5
CVE-2014-0458

Unspecified vulnerability in Oracle Java SE 6u71, 7u51, and 8, and Java SE Embedded 7u51, allows remote attackers to affect confidentiality, integrit…

Mitigation only
Fix from $1,950 2014-04-16
Ubuntu Linux HIGH 7.5
CVE-2014-0446EPSS 6%

Unspecified vulnerability in Oracle Java SE 5.0u61, 6u71, 7u51, and 8, and Java SE Embedded 7u51, allows remote attackers to affect confidentiality, …

Mitigation only
Fix from $1,950 2014-04-16
Libpam Modules MEDIUM 6.9
CVE-2011-3628

Untrusted search path vulnerability in pam_motd (aka the MOTD module) in libpam-modules before 1.1.3-2ubuntu2.1 on Ubuntu 11.10, before 1.1.2-2ubuntu…

Mitigation only
Fix from $1,600 2014-04-15
Ubuntu Linux MEDIUM 5.0
CVE-2013-4402EPSS 5%

The compressed packet parser in GnuPG 1.4.x before 1.4.15 and 2.0.x before 2.0.22 allows remote attackers to cause a denial of service (infinite recu…

Mitigation only
Fix from $1,600 2013-10-28
Ubuntu Linux MEDIUM 6.8
CVE-2013-1872

The Intel drivers in Mesa 8.0.x and 9.0.x allow context-dependent attackers to cause a denial of service (reachable assertion and crash) and possibly…

Mitigation only
Fix from $1,600 2013-08-19
Ubuntu Linux MEDIUM 6.8
CVE-2013-1865

OpenStack Keystone Folsom (2012.2) does not properly perform revocation checks for Keystone PKI tokens when done through a server, which allows remot…

Mitigation only
Fix from $1,600 2013-03-22
Ubuntu Linux HIGH 7.6
CVE-2013-0335

OpenStack Compute (Nova) Grizzly, Folsom (2012.2), and Essex (2012.1) allows remote authenticated users to gain access to a VM in opportunistic circu…

Mitigation only
Fix from $1,950 2013-03-22
Ubuntu Linux MEDIUM 5.0
CVE-2013-1654

Puppet 2.7.x before 2.7.21 and 3.1.x before 3.1.1, and Puppet Enterprise 2.7.x before 2.7.2, does not properly negotiate the SSL protocol between cli…

Mitigation only
Fix from $1,600 2013-03-20
Ubuntu Linux CRITICAL 9.8
CVE-2013-0422 KEVEPSS 98%

Multiple vulnerabilities in Oracle Java 7 before Update 11 allow remote attackers to execute arbitrary code by (1) using the public getMBeanInstantia…

Mitigation only
Fix from $2,300 2013-01-10
Ubuntu Linux MEDIUM 5.9
CVE-2012-5821

Lynx does not verify that the server's certificate is signed by a trusted certification authority, which allows man-in-the-middle attackers to spoof …

No fix yet
Fix from $1,600 2012-11-04
Ubuntu Software Properties MEDIUM 5.8
CVE-2012-5356

The apt-add-repository tool in Ubuntu Software Properties 0.75.x before 0.75.10.3, 0.80.x before 0.80.9.2, 0.81.x before 0.81.13.5, 0.82.x before 0.8…

Mitigation only
Fix from $1,600 2012-10-10
Ubuntu Linux MEDIUM 6.1
CVE-2012-3571EPSS 13%

ISC DHCP 4.1.2 through 4.2.4 and 4.1-ESV before 4.1-ESV-R6 allows remote attackers to cause a denial of service (infinite loop and CPU consumption) v…

Mitigation only
Fix from $1,600 2012-07-25