Vulnerability index

Browse CVEs

171 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Use After FreeCWE-416 × clear
CRITICAL 9.8 CVE-2017-5435 A use-after-free vulnerability occurs during transaction processing in the editor during design mode interactions. This results in a potentially expl… Debian Linux 45.9.0 / 53.0+ Fix from $2,3002018-06-11 CRITICAL 9.8 CVE-2017-5438 A use-after-free vulnerability during XSLT processing due to the result handler being held by a freed handler during handling. This results in a pote… Debian Linux 45.9.0 / 53.0+ Fix from $2,3002018-06-11 CRITICAL 9.8 CVE-2017-5439 A use-after-free vulnerability during XSLT processing due to poor handling of template parameters. This results in a potentially exploitable crash. T… Debian Linux 45.9.0 / 52.1.0+ Fix from $2,3002018-06-11 CRITICAL 9.8 CVE-2017-5440 A use-after-free vulnerability during XSLT processing due to a failure to propagate error conditions during matching while evaluating context, leadin… Debian Linux 45.9.0 / 53.0+ Fix from $2,3002018-06-11 CRITICAL 9.8 CVE-2017-5402 A use-after-free can occur when events are fired for a "FontFace" object after the object has been already been destroyed while working with fonts. T… Debian Linux 45.8.0 / 52.0+ Fix from $2,3002018-06-11 CRITICAL 9.8 CVE-2017-5404EPSS 17% A use-after-free error can occur when manipulating ranges in selections with one node inside a native anonymous tree and one node outside of it. This… Debian Linux 45.8.0 / 52.0+ Fix from $2,3002018-06-11 CRITICAL 9.8 CVE-2017-5380 A potential use-after-free found through fuzzing during DOM manipulation of SVG content. This vulnerability affects Thunderbird < 45.7, Firefox ESR <… Debian Linux 45.7.0 / 51.0+ Fix from $2,3002018-06-11 CRITICAL 9.8 CVE-2017-5396 A use-after-free vulnerability in the Media Decoder when working with media files when some events are fired after the media elements are freed from … Debian Linux 45.7.0 / 51.0+ Fix from $2,3002018-06-11 CRITICAL 9.8 CVE-2016-9898 Use-after-free resulting in potentially exploitable crash when manipulating DOM subtrees in the Editor. This vulnerability affects Firefox < 50.1, Fi… Debian Linux 45.6.0 / 50.1.0+ Fix from $2,3002018-06-11 CRITICAL 9.8 CVE-2016-9899EPSS 21% Use-after-free while manipulating DOM events and removing audio elements due to errors in the handling of node adoption. This vulnerability affects F… Debian Linux 45.9.0 / 52.1.0+ Fix from $2,3002018-06-11 CRITICAL 9.8 CVE-2017-5376 Use-after-free while manipulating XSL in XSLT documents. This vulnerability affects Thunderbird < 45.7, Firefox ESR < 45.7, and Firefox < 51. Debian Linux 45.7.0 / 51.0+ Fix from $2,3002018-06-11 HIGH 7.5 CVE-2016-9079 KEVEPSS 87% A use-after-free vulnerability in SVG Animation has been discovered. An exploit built on this vulnerability has been discovered in the wild targeting… Debian Linux 45.5.1 / 50.0.2+ Fix from $1,9502018-06-11 MEDIUM 6.5 CVE-2018-11496 In Long Range Zip (aka lrzip) 0.631, there is a use-after-free in read_stream in stream.c, because decompress_file in lrzip.c lacks certain size vali… Debian Linux No fix yet Fix from $1,6002018-05-26 HIGH 7.8 CVE-2018-10119 sot/source/sdstor/stgstrms.cxx in LibreOffice before 5.4.5.1 and 6.x before 6.0.1.1 uses an incorrect integer data type in the StgSmallStrm class, wh… Debian Linux 5.4.5.1 / 6.0.1.1+ Fix from $1,9502018-04-16 HIGH 7.2 CVE-2018-0493 remctld in remctl before 3.14, when an attacker is authorized to execute a command that uses the sudo option, has a use-after-free that leads to a da… Debian Linux 3.14+ Fix from $1,9502018-04-03 HIGH 8.8 CVE-2018-9009 In libming 0.4.8, there is a use-after-free in the decompileJUMP function of the decompile.c file. Debian Linux No fix yet Fix from $1,9502018-03-25 HIGH 7.8 CVE-2017-18234 An issue was discovered in Exempi before 2.4.3. It allows remote attackers to cause a denial of service (invalid memcpy with resultant use-after-free… Debian Linux 2.4.3+ Fix from $1,9502018-03-15 CRITICAL 9.8 CVE-2018-7551 There is an invalid free in MiniPS::delete0 in minips.cpp that leads to a Segmentation fault in sam2p 0.49.4. A crafted input will lead to a denial o… Debian Linux No fix yet Fix from $2,3002018-02-28 CRITICAL 9.8 CVE-2018-7554 There is an invalid free in ReadImage in input-bmp.ci that leads to a Segmentation fault in sam2p 0.49.4. A crafted input will lead to a denial of se… Debian Linux No fix yet Fix from $2,3002018-02-28 CRITICAL 9.8 CVE-2018-7053 An issue was discovered in Irssi before 1.0.7 and 1.1.x before 1.1.1. There is a use-after-free when SASL messages are received in an unexpected orde… Debian Linux 1.0.7+ Fix from $2,3002018-02-15 HIGH 7.8 CVE-2018-1000051 Artifex Mupdf version 1.12.0 contains a Use After Free vulnerability in fz_keep_key_storable that can result in DOS / Possible code execution. This a… Debian Linux Patch available Fix from $1,9502018-02-09 HIGH 8.8 CVE-2018-6359 The decompileIF function (util/decompile.c) in libming through 0.4.8 is vulnerable to a use-after-free, which may allow attackers to cause a denial o… Debian Linux after 0.4.8 Fix from $1,9502018-01-27 HIGH 7.5 CVE-2017-12374 The ClamAV AntiVirus software versions 0.99.2 and prior contain a vulnerability that could allow an unauthenticated, remote attacker to cause a denia… Debian Linux after 0.99.2 Fix from $1,9502018-01-26 MEDIUM 5.5 CVE-2018-5747 In Long Range Zip (aka lrzip) 0.631, there is a use-after-free in the ucompthread function (stream.c). Remote attackers could leverage this vulnerabi… Debian Linux No fix yet Fix from $1,6002018-01-17 CRITICAL 9.8 CVE-2017-1000421 Gifsicle gifview 1.89 and older is vulnerable to a use-after-free in the read_gif function resulting potential code execution Debian Linux after 1.89 Fix from $2,3002018-01-02 HIGH 8.8 CVE-2017-17670 In VideoLAN VLC media player through 2.2.8, there is a type conversion vulnerability in modules/demux/mp4/libmp4.c in the MP4 demux module leading to… Debian Linux after 2.2.8 Fix from $1,9502017-12-15 HIGH 8.1 CVE-2017-8823 In Tor before 0.2.5.16, 0.2.6 through 0.2.8 before 0.2.8.17, 0.2.9 before 0.2.9.14, 0.3.0 before 0.3.0.13, and 0.3.1 before 0.3.1.9, there is a use-a… Debian Linux 0.2.5.16 / 0.2.8.17+ Fix from $1,9502017-12-03 CRITICAL 9.8 CVE-2017-16943EPSS 47% The receive_msg function in receive.c in the SMTP daemon in Exim 4.88 and 4.89 allows remote attackers to execute arbitrary code or cause a denial of… Debian Linux Patch available Fix from $2,3002017-11-25 MEDIUM 5.5 CVE-2017-15642 In lsx_aiffstartread in aiff.c in Sound eXchange (SoX) 14.4.2, there is a Use-After-Free vulnerability triggered by supplying a malformed AIFF file. Debian Linux Mitigation only Fix from $1,6002017-10-19 HIGH 8.8 CVE-2017-15238 ReadOneJNGImage in coders/png.c in GraphicsMagick 1.3.26 has a use-after-free issue when the height or width is zero, related to ReadJNGImage. Debian Linux Patch available Fix from $1,9502017-10-11