Vulnerability index

Browse CVEs

23 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Numeric ErrorsCWE-189 × clear
Debian Linux HIGH 8.8
CVE-2022-3970

A vulnerability was found in LibTIFF. It has been classified as critical. This affects the function TIFFReadRGBATileExt of the file libtiff/tif_getim…

Fix: 4.5.0 / 13.5+
Fix from $1,950 2022-11-13
Debian Linux MEDIUM 5.5
CVE-2016-5241

magick/render.c in GraphicsMagick before 1.3.24 allows remote attackers to cause a denial of service (arithmetic exception and application crash) via…

Fix: after 1.3.23
Fix from $1,600 2017-02-03
Debian Linux HIGH 7.8
CVE-2015-8875

Multiple integer overflows in the (1) pixops_composite_nearest, (2) pixops_composite_color_nearest, and (3) pixops_process functions in pixops/pixops…

Fix: after 2.33
Fix from $1,950 2016-06-01
Debian Linux HIGH 7.8
CVE-2015-8312

Off-by-one error in afs_pioctl.c in OpenAFS before 1.6.16 might allow local users to cause a denial of service (memory overwrite and system crash) vi…

Fix: after 1.6.15
Fix from $1,950 2016-05-13
Debian Linux HIGH 7.5
CVE-2014-9763

imlib2 before 1.4.7 allows remote attackers to cause a denial of service (divide-by-zero error and application crash) via a crafted PNM file.

Fix: after 1.4.6
Fix from $1,950 2016-05-13
Debian Linux HIGH 7.5
CVE-2011-5326

imlib2 before 1.4.9 allows remote attackers to cause a denial of service (divide-by-zero error and application crash) by drawing a 2x1 ellipse.

Fix: after 1.4.8
Fix from $1,950 2016-05-13
Debian Linux HIGH 7.5
CVE-2015-6525

Multiple integer overflows in the evbuffer API in Libevent 2.0.x before 2.0.22 and 2.1.x before 2.1.5-beta allow context-dependent attackers to cause…

Mitigation only
Fix from $1,950 2015-08-24
Debian Linux HIGH 7.5
CVE-2014-6272

Multiple integer overflows in the evbuffer API in Libevent 1.4.x before 1.4.15, 2.0.x before 2.0.22, and 2.1.x before 2.1.5-beta allow context-depend…

Mitigation only
Fix from $1,950 2015-08-24
Debian Linux HIGH 7.5
CVE-2015-1258

Google Chrome before 43.0.2357.65 relies on libvpx code that was not built with an appropriate --size-limit value, which allows remote attackers to t…

Fix: after 42.0.2311.152
Fix from $1,950 2015-05-20
Debian Linux MEDIUM 5.0
CVE-2015-2191

Integer overflow in the dissect_tnef function in epan/dissectors/packet-tnef.c in the TNEF dissector in Wireshark 1.10.x before 1.10.13 and 1.12.x be…

Mitigation only
Fix from $1,600 2015-03-08
Debian Linux HIGH 7.5
CVE-2014-8157EPSS 17%

Off-by-one error in the jpc_dec_process_sot function in JasPer 1.900.1 and earlier allows remote attackers to cause a denial of service (crash) or po…

Fix: after 1.900.1
Fix from $1,950 2015-01-26
Debian Linux HIGH 7.5
CVE-2014-5119EPSS 18%

Off-by-one error in the __gconv_translit_find function in gconv_trans.c in GNU C Library (aka glibc) allows context-dependent attackers to cause a de…

Fix: 2.20+
Fix from $1,950 2014-08-29
Debian Linux MEDIUM 6.8
CVE-2013-4233

Integer overflow in the abc_set_parts function in load_abc.cpp in libmodplug 0.8.8.4 and earlier allows remote attackers to cause a denial of service…

Fix: after 0.8.8.4
Fix from $1,600 2013-09-16
Debian Linux HIGH 7.5
CVE-2013-2901

Multiple integer overflows in (1) libGLESv2/renderer/Renderer9.cpp and (2) libGLESv2/renderer/Renderer11.cpp in Almost Native Graphics Layer Engine (…

Fix: after 29.0.1547.56
Fix from $1,950 2013-08-21
Debian Linux MEDIUM 6.8
CVE-2013-4852

Integer overflow in PuTTY 0.62 and earlier, WinSCP before 5.1.6, and other products that use PuTTY allows remote SSH servers to cause a denial of ser…

Fix: after 5.1.5
Fix from $1,600 2013-08-19
Debian Linux MEDIUM 6.8
CVE-2013-2064

Integer overflow in X.org libxcb 1.9 and earlier allows X servers to trigger allocation of insufficient memory and a buffer overflow via vectors rela…

Fix: after 1.9
Fix from $1,600 2013-06-15
Debian Linux HIGH 7.8
CVE-2013-3561

Multiple integer overflows in Wireshark 1.8.x before 1.8.7 allow remote attackers to cause a denial of service (loop or application crash) via a malf…

Patch available
Fix from $1,950 2013-05-25
Debian Linux MEDIUM 5.0
CVE-2013-3559

epan/dissectors/packet-dcp-etsi.c in the DCP ETSI dissector in Wireshark 1.8.x before 1.8.7 uses incorrect integer data types, which allows remote at…

Patch available
Fix from $1,600 2013-05-25
Debian Linux MEDIUM 5.0
CVE-2013-3562

Multiple integer signedness errors in the tvb_unmasked function in epan/dissectors/packet-websocket.c in the Websocket dissector in Wireshark 1.8.x b…

Patch available
Fix from $1,600 2013-05-25
Debian Linux HIGH 7.8
CVE-2013-2487

epan/dissectors/packet-reload.c in the REsource LOcation And Discovery (aka RELOAD) dissector in Wireshark 1.8.x before 1.8.6 uses incorrect integer …

Mitigation only
Fix from $1,950 2013-03-07
Debian Linux MEDIUM 6.1
CVE-2013-2486

The dissect_diagnosticrequest function in epan/dissectors/packet-reload.c in the REsource LOcation And Discovery (aka RELOAD) dissector in Wireshark …

Mitigation only
Fix from $1,600 2013-03-07
Debian Linux HIGH 7.5
CVE-2012-1149EPSS 14%

Integer overflow in the vclmi.dll module in OpenOffice.org (OOo) 3.3, 3.4 Beta, and possibly earlier, and LibreOffice before 3.5.3, allows remote att…

Patch available
Fix from $1,950 2012-06-21
Debian Linux HIGH 9.3
CVE-2007-1667

Multiple integer overflows in (1) the XGetPixel function in ImUtil.c in X.Org libx11 before 1.0.3, and (2) XInitImage function in xwd.c for ImageMagi…

Fix: after 1.0.2
Fix from $1,950 2007-03-24