Vulnerability index

Browse CVEs

1,284 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

HIGH 7.5 CVE-2017-15275EPSS 21% Samba before 4.7.3 might allow remote attackers to obtain sensitive information by leveraging failure of the server to clear allocated heap memory. Ubuntu Linux 4.5.15 / 4.6.11+ Fix from $1,9502017-11-27 HIGH 7.8 CVE-2015-7529 sosreport in SoS 3.x allows local users to obtain sensitive information from sosreport files or gain privileges via a symlink attack on an archive fi… Ubuntu Linux after 3.8 Fix from $1,9502017-11-06 CRITICAL 9.8 CVE-2017-16548EPSS 5% The receive_xattr function in xattrs.c in rsync 3.1.2 and 3.1.3-development does not check for a trailing '\0' character in an xattr name, which allo… Ubuntu Linux after 3.1.2 Fix from $2,3002017-11-06 HIGH 8.8 CVE-2017-16546 The ReadWPGImage function in coders/wpg.c in ImageMagick 7.0.7-9 does not properly validate the colormap index in a WPG palette, which allows remote … Ubuntu Linux Patch available Fix from $1,9502017-11-05 HIGH 7.5 CVE-2017-15908EPSS 24% In systemd 223 through 235, a remote DNS server can respond with a custom crafted DNS NSEC resource record to trigger an infinite loop in the dns_pac… Ubuntu Linux Patch available Fix from $1,9502017-10-26 HIGH 8.1 CVE-2017-13082 Wi-Fi Protected Access (WPA and WPA2) that supports IEEE 802.11r allows reinstallation of the Pairwise Transient Key (PTK) Temporal Key (TK) during t… Ubuntu Linux No fix yet Fix from $1,9502017-10-17 MEDIUM 6.8 CVE-2017-13084 Wi-Fi Protected Access (WPA and WPA2) allows reinstallation of the Station-To-Station-Link (STSL) Transient Key (STK) during the PeerKey handshake, a… Ubuntu Linux Mitigation only Fix from $1,6002017-10-17 MEDIUM 6.8 CVE-2017-13086 Wi-Fi Protected Access (WPA and WPA2) allows reinstallation of the Tunneled Direct-Link Setup (TDLS) Peer Key (TPK) during the TDLS handshake, allowi… Ubuntu Linux Mitigation only Fix from $1,6002017-10-17 MEDIUM 5.3 CVE-2017-13078 Wi-Fi Protected Access (WPA and WPA2) allows reinstallation of the Group Temporal Key (GTK) during the four-way handshake, allowing an attacker withi… Ubuntu Linux Mitigation only Fix from $1,6002017-10-17 MEDIUM 5.3 CVE-2017-13079 Wi-Fi Protected Access (WPA and WPA2) that supports IEEE 802.11w allows reinstallation of the Integrity Group Temporal Key (IGTK) during the four-way… Ubuntu Linux Mitigation only Fix from $1,6002017-10-17 MEDIUM 5.3 CVE-2017-13080 Wi-Fi Protected Access (WPA and WPA2) allows reinstallation of the Group Temporal Key (GTK) during the group key handshake, allowing an attacker with… Ubuntu Linux Mitigation only Fix from $1,6002017-10-17 MEDIUM 5.3 CVE-2017-13081 Wi-Fi Protected Access (WPA and WPA2) that supports IEEE 802.11w allows reinstallation of the Integrity Group Temporal Key (IGTK) during the group ke… Ubuntu Linux Mitigation only Fix from $1,6002017-10-17 MEDIUM 5.3 CVE-2017-13087 Wi-Fi Protected Access (WPA and WPA2) that support 802.11v allows reinstallation of the Group Temporal Key (GTK) when processing a Wireless Network M… Ubuntu Linux Mitigation only Fix from $1,6002017-10-17 MEDIUM 5.3 CVE-2017-13088 Wi-Fi Protected Access (WPA and WPA2) that support 802.11v allows reinstallation of the Integrity Group Temporal Key (IGTK) when processing a Wireles… Ubuntu Linux Mitigation only Fix from $1,6002017-10-17 MEDIUM 6.8 CVE-2017-13077 Wi-Fi Protected Access (WPA and WPA2) allows reinstallation of the Pairwise Transient Key (PTK) Temporal Key (TK) during the four-way handshake, allo… Ubuntu Linux Mitigation only Fix from $1,6002017-10-17 HIGH 8.8 CVE-2017-15281 ReadPSDImage in coders/psd.c in ImageMagick 7.0.7-6 allows remote attackers to cause a denial of service (application crash) or possibly have unspeci… Ubuntu Linux Patch available Fix from $1,9502017-10-12 HIGH 8.8 CVE-2017-2888 An exploitable integer overflow vulnerability exists when creating a new RGB Surface in SDL 2.0.5. A specially crafted file can cause an integer over… Ubuntu Linux No fix yet Fix from $1,9502017-10-11 MEDIUM 6.5 CVE-2017-15217 ImageMagick 7.0.7-2 has a memory leak in ReadSGIImage in coders/sgi.c. Ubuntu Linux Patch available Fix from $1,6002017-10-10 MEDIUM 6.5 CVE-2017-15218 ImageMagick 7.0.7-2 has a memory leak in ReadOneJNGImage in coders/png.c. Ubuntu Linux Patch available Fix from $1,6002017-10-10 CRITICAL 9.8 CVE-2017-15032 ImageMagick version 7.0.7-2 contains a memory leak in ReadYCBCRImage in coders/ycbcr.c. Ubuntu Linux Patch available Fix from $2,3002017-10-05 HIGH 7.5 CVE-2017-15033 ImageMagick version 7.0.7-2 contains a memory leak in ReadYUVImage in coders/yuv.c. Ubuntu Linux Patch available Fix from $1,9502017-10-05 HIGH 8.8 CVE-2017-15017 ImageMagick 7.0.7-0 Q16 has a NULL pointer dereference vulnerability in ReadOneMNGImage in coders/png.c. Ubuntu Linux Patch available Fix from $1,9502017-10-05 HIGH 8.8 CVE-2017-15015 ImageMagick 7.0.7-0 Q16 has a NULL pointer dereference vulnerability in PDFDelegateMessage in coders/pdf.c. Ubuntu Linux Patch available Fix from $1,9502017-10-05 HIGH 8.8 CVE-2017-15016 ImageMagick 7.0.7-0 Q16 has a NULL pointer dereference vulnerability in ReadEnhMetaFile in coders/emf.c. Ubuntu Linux Patch available Fix from $1,9502017-10-05 CRITICAL 9.8 CVE-2017-14492EPSS 93% Heap-based buffer overflow in dnsmasq before 2.78 allows remote attackers to cause a denial of service (crash) or execute arbitrary code via a crafte… Ubuntu Linux after 2.77 Fix from $2,3002017-10-03 CRITICAL 9.8 CVE-2017-14493EPSS 84% Stack-based buffer overflow in dnsmasq before 2.78 allows remote attackers to cause a denial of service (crash) or execute arbitrary code via a craft… Ubuntu Linux after 2.77 Fix from $2,3002017-10-03 HIGH 7.5 CVE-2017-14495EPSS 84% Memory leak in dnsmasq before 2.78, when the --add-mac, --add-cpe-id or --add-subnet option is specified, allows remote attackers to cause a denial o… Ubuntu Linux after 2.77 Fix from $1,9502017-10-03 HIGH 7.5 CVE-2017-14496EPSS 66% Integer underflow in the add_pseudoheader function in dnsmasq before 2.78 , when the --add-mac, --add-cpe-id or --add-subnet option is specified, all… Ubuntu Linux after 2.77 Fix from $1,9502017-10-03 MEDIUM 5.9 CVE-2017-14494EPSS 68% dnsmasq before 2.78, when configured as a relay, allows remote attackers to obtain sensitive memory information via vectors involving handling DHCPv6… Ubuntu Linux after 2.77 Fix from $1,6002017-10-03 HIGH 7.5 CVE-2017-13704EPSS 65% In dnsmasq before 2.78, if the DNS packet size does not match the expected size, the size parameter in a memset call gets a negative value. As it is … Ubuntu Linux after 2.77 Fix from $1,9502017-10-03