Vulnerability index

Browse CVEs

22 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Resource Management ErrorsCWE-399 × clear
Debian Linux HIGH 7.5
CVE-2016-7551EPSS 5%

chain_sip in Asterisk Open Source 11.x before 11.23.1 and 13.x 13.11.1 and Certified Asterisk 11.6 before 11.6-cert15 and 13.8 before 13.8-cert3 allo…

Patch available
Fix from $1,950 2017-04-17
Debian Linux MEDIUM 6.5
CVE-2015-8345

The eepro100 emulator in QEMU qemu-kvm blank allows local guest users to cause a denial of service (application crash and infinite loop) via vectors …

Fix: after 2.4.1
Fix from $1,600 2017-04-13
Debian Linux HIGH 7.5
CVE-2012-6697

InspIRCd before 2.0.7 allows remote attackers to cause a denial of service (infinite loop).

Fix: after 2.0.6
Fix from $1,950 2017-04-13
Debian Linux HIGH 7.5
CVE-2016-7448

The Utah RLE reader in GraphicsMagick before 1.3.25 allows remote attackers to cause a denial of service (CPU consumption or large memory allocations…

Fix: after 1.3.24
Fix from $1,950 2017-02-06
Debian Linux HIGH 7.5
CVE-2014-9747

The t42_parse_encoding function in type42/t42parse.c in FreeType before 2.5.4 does not properly update the current position for immediates-only mode,…

Fix: after 2.5.3
Fix from $1,950 2016-06-07
Debian Linux HIGH 7.5
CVE-2015-5727

The BER decoder in Botan 1.10.x before 1.10.10 and 1.11.x before 1.11.19 allows remote attackers to cause a denial of service (memory consumption) vi…

Mitigation only
Fix from $1,950 2016-05-13
Debian Linux MEDIUM 5.0
CVE-2014-9745

The parse_encoding function in type1/t1load.c in FreeType before 2.5.3 allows remote attackers to cause a denial of service (infinite loop) via a "br…

Fix: after 2.5.2
Fix from $1,600 2015-09-14
Debian Linux MEDIUM 5.0
CVE-2015-1819EPSS 6%

The xmlreader in libxml allows remote attackers to cause a denial of service (memory consumption) via crafted XML data, related to an XML Entity Expa…

Fix: after 9.2.1
Fix from $1,600 2015-08-14
Debian Linux MEDIUM 5.0
CVE-2015-0971

The DER parser in Suricata before 2.0.8 allows remote attackers to cause a denial of service (crash) via vectors related to SSL/TLS certificates.

Fix: after 2.0.7
Fix from $1,600 2015-05-14
Debian Linux HIGH 7.1
CVE-2014-9472

The email gateway in RT (aka Request Tracker) 3.0.0 through 4.x before 4.0.23 and 4.2.x before 4.2.10 allows remote attackers to cause a denial of se…

Mitigation only
Fix from $1,950 2015-03-09
Debian Linux MEDIUM 5.0
CVE-2015-0885

checkpw 1.02 and earlier allows remote attackers to cause a denial of service (infinite loop) via a -- (dash dash) in a username.

Fix: after 1.02
Fix from $1,600 2015-02-28
Debian Linux MEDIUM 5.0
CVE-2015-1381

Multiple unspecified vulnerabilities in pcrs.c in Privoxy before 3.0.23 allow remote attackers to cause a denial of service (segmentation fault or me…

Fix: after 3.0.22
Fix from $1,600 2015-02-03
Debian Linux MEDIUM 5.0
CVE-2014-8601EPSS 69%

PowerDNS Recursor before 3.6.2 does not limit delegation chaining, which allows remote attackers to cause a denial of service ("performance degradati…

Fix: after 3.6.1
Fix from $1,600 2014-12-10
Debian Linux MEDIUM 6.8
CVE-2014-8104

OpenVPN 2.x before 2.0.11, 2.1.x, 2.2.x before 2.2.3, and 2.3.x before 2.3.6 allows remote authenticated users to cause a denial of service (server c…

Mitigation only
Fix from $1,600 2014-12-03
Debian Linux MEDIUM 6.8
CVE-2013-2927

Use-after-free vulnerability in the HTMLFormElement::prepareForSubmission function in core/html/HTMLFormElement.cpp in Blink, as used in Google Chrom…

Fix: after 30.0.1599.100
Fix from $1,600 2013-10-16
Debian Linux MEDIUM 6.8
CVE-2013-4232EPSS 5%

Use-after-free vulnerability in the t2p_readwrite_pdf_image function in tools/tiff2pdf.c in libtiff 4.0.3 allows remote attackers to cause a denial o…

Patch available
Fix from $1,600 2013-09-10
Debian Linux HIGH 7.5
CVE-2013-2885

Use-after-free vulnerability in Google Chrome before 28.0.1500.95 allows remote attackers to cause a denial of service or possibly have unspecified o…

Fix: after 28.0.1500.94
Fix from $1,950 2013-07-31
Debian Linux HIGH 7.5
CVE-2013-2873

Use-after-free vulnerability in Google Chrome before 28.0.1500.71 allows remote attackers to cause a denial of service or possibly have unspecified o…

Fix: after 28.0.1500.70
Fix from $1,950 2013-07-10
Debian Linux HIGH 7.5
CVE-2013-2861

Use-after-free vulnerability in the SVG implementation in Google Chrome before 27.0.1453.110 allows remote attackers to cause a denial of service or …

Fix: after 27.0.1453.109
Fix from $1,950 2013-06-05
Debian Linux HIGH 7.1
CVE-2012-0920EPSS 6%

Use-after-free vulnerability in Dropbear SSH Server 0.52 through 2012.54, when command restriction and public key authentication are enabled, allows …

Fix: after 2012.54
Fix from $1,950 2012-06-05
Debian Linux MEDIUM 5.0
CVE-2008-3912

libclamav in ClamAV before 0.94 allows attackers to cause a denial of service (NULL pointer dereference and application crash) via vectors related to…

Fix: 0.94+
Fix from $1,600 2008-09-11
Debian Linux MEDIUM 5.0
CVE-2007-6284

The xmlCurrentChar function in libxml2 before 2.6.31 allows context-dependent attackers to cause a denial of service (infinite loop) via XML containi…

Patch available
Fix from $1,600 2008-01-12