Vulnerability index

Browse CVEs

284 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Memory Buffer Bounds ErrorCWE-119 × clear
Debian Linux MEDIUM 6.8
CVE-2013-7020

The read_header function in libavcodec/ffv1dec.c in FFmpeg before 2.1 does not properly enforce certain bit-count and colorspace constraints, which a…

Fix: after 2.0.1
Fix from $1,600 2013-12-09
Debian Linux MEDIUM 6.8
CVE-2013-4234

Multiple heap-based buffer overflows in the (1) abc_MIDI_drum and (2) abc_MIDI_gchord functions in load_abc.cpp in libmodplug 0.8.8.4 and earlier all…

Fix: after 0.8.8.4
Fix from $1,600 2013-09-16
Debian Linux MEDIUM 6.8
CVE-2013-4243EPSS 7%

Heap-based buffer overflow in the readgifimage function in the gif2tiff tool in libtiff 4.0.3 and earlier allows remote attackers to cause a denial o…

Fix: after 4.0.3
Fix from $1,600 2013-09-10
Debian Linux HIGH 7.4
CVE-2013-2072

Buffer overflow in the Python bindings for the xc_vcpu_setaffinity call in Xen 4.0.x, 4.1.x, and 4.2.x allows local administrators with permissions t…

Mitigation only
Fix from $1,950 2013-08-28
Debian Linux MEDIUM 5.0
CVE-2013-4076

Buffer overflow in the dissect_iphc_crtp_fh function in epan/dissectors/packet-ppp.c in the PPP dissector in Wireshark 1.8.x before 1.8.8 allows remo…

Mitigation only
Fix from $1,600 2013-06-09
Debian Linux MEDIUM 5.0
CVE-2013-4077

Array index error in the NBAP dissector in Wireshark 1.8.x before 1.8.8 allows remote attackers to cause a denial of service (application crash) via …

Mitigation only
Fix from $1,600 2013-06-09
Latd HIGH 10.0
CVE-2013-0251

Stack-based buffer overflow in llogincircuit.cc in latd 1.25 through 1.30 and earlier allows remote attackers to cause a denial of service (crash) an…

Mitigation only
Fix from $1,950 2013-03-19
Cfingerd HIGH 10.0
CVE-2013-1049

Buffer overflow in the RFC1413 (ident) client in cfingerd 1.4.3-3 allows remote IDENT servers to cause a denial of service (crash) and possibly execu…

Patch available
Fix from $1,950 2013-03-14
Debian Linux HIGH 10.0
CVE-2008-3529EPSS 23%

Heap-based buffer overflow in the xmlParseAttValueComplex function in parser.c in libxml2 before 2.7.0 allows context-dependent attackers to cause a …

Fix: 2.7.0 / 3.0+
Fix from $1,950 2008-09-12
Debian Linux HIGH 10.0
CVE-2008-1673EPSS 7%

The asn1 implementation in (a) the Linux kernel 2.4 before 2.4.36.6 and 2.6 before 2.6.25.5, as used in the cifs and ip_nat_snmp_basic modules; and (…

Patch available
Fix from $1,950 2008-06-10
Debian Linux HIGH 7.2
CVE-2007-5729

The NE2000 emulator in QEMU 0.8.2 allows local users to execute arbitrary code by writing Ethernet frames with a size larger than the MTU to the EN0_…

Mitigation only
Fix from $1,950 2007-10-30
Debian Linux HIGH 7.2
CVE-2007-5365EPSS 80%

Stack-based buffer overflow in the cons_options function in options.c in dhcpd in OpenBSD 4.0 through 4.2, and some other dhcpd implementations based…

Patch available
Fix from $1,950 2007-10-11
Debian Linux HIGH 7.5
CVE-2007-4476EPSS 15%

Buffer overflow in the safer_name_suffix function in GNU tar has unspecified attack vectors and impact, resulting in a "crashing stack."

Fix: 1.19+
Fix from $1,950 2007-09-05
Debian Linux HIGH 7.5
CVE-2005-0211EPSS 22%

Buffer overflow in wccp.c in Squid 2.5 before 2.5.STABLE7 allows remote attackers to cause a denial of service and possibly execute arbitrary code vi…

Patch available
Fix from $1,950 2005-05-02