Vulnerability index

Browse CVEs

43 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Reachable AssertionCWE-617 × clear
Debian Linux MEDIUM 5.5
CVE-2019-13223

A reachable assertion in the lookup1_values function in stb_vorbis through 2019-03-04 allows an attacker to cause a denial of service by opening a cr…

Fix: after 2019-03-04
Fix from $1,600 2019-08-15
Debian Linux MEDIUM 5.3
CVE-2017-3138EPSS 6%

named contains a feature which allows operators to issue commands to a running server by communicating with the server process over a control channel…

Mitigation only
Fix from $1,600 2019-01-16
Debian Linux MEDIUM 5.3
CVE-2018-20217

A Reachable Assertion issue was discovered in the KDC in MIT Kerberos 5 (aka krb5) before 1.17. If an attacker can obtain a krbtgt ticket using an ol…

Fix: 5-1.17+
Fix from $1,600 2018-12-26
Debian Linux MEDIUM 6.5
CVE-2018-19539

An issue was discovered in JasPer 2.0.14. There is an access violation in the function jas_image_readcmpt in libjasper/base/jas_image.c, leading to a…

No fix yet
Fix from $1,600 2018-11-26
Debian Linux HIGH 7.5
CVE-2018-15822

The flv_write_packet function in libavformat/flvenc.c in FFmpeg through 2.8 does not check for an empty audio packet, leading to an assertion failure.

Fix: after 2.8
Fix from $1,950 2018-08-23
Debian Linux MEDIUM 6.5
CVE-2018-10963

The TIFFWriteDirectorySec() function in tif_dirwrite.c in LibTIFF through 4.0.9 allows remote attackers to cause a denial of service (assertion failu…

Fix: after 4.0.9
Fix from $1,600 2018-05-10
Debian Linux MEDIUM 5.5
CVE-2018-5269

In OpenCV 3.3.1, an assertion failure happens in cv::RBaseStream::setPos in modules/imgcodecs/src/bitstrm.cpp because of an incorrect integer cast.

No fix yet
Fix from $1,600 2018-01-08
Debian Linux HIGH 7.5
CVE-2017-17432

OpenAFS 1.x before 1.6.22 does not properly validate Rx ack packets, which allows remote attackers to cause a denial of service (system crash or appl…

Fix: 1.6.22+
Fix from $1,950 2017-12-06
Debian Linux MEDIUM 5.5
CVE-2017-15371

There is a reachable assertion abort in the function sox_append_comment() in formats.c in Sound eXchange (SoX) 14.4.2. A Crafted input will lead to a…

No fix yet
Fix from $1,600 2017-10-16
Debian Linux HIGH 7.5
CVE-2017-0376

The hidden-service feature in Tor before 0.3.0.8 allows a denial of service (assertion failure and daemon exit) in the connection_edge_process_relay_…

Fix: 0.3.0.8+
Fix from $1,950 2017-06-09
Debian Linux MEDIUM 6.5
CVE-2017-9141

In ImageMagick 7.0.5-7 Q16, a crafted file could trigger an assertion failure in the ResetImageProfileIterator function in MagickCore/profile.c becau…

Patch available
Fix from $1,600 2017-05-22
Debian Linux MEDIUM 6.5
CVE-2017-9142

In ImageMagick 7.0.5-7 Q16, a crafted file could trigger an assertion failure in the WriteBlob function in MagickCore/blob.c because of missing check…

Patch available
Fix from $1,600 2017-05-22
Debian Linux MEDIUM 5.5
CVE-2015-8745

QEMU (aka Quick Emulator) built with a VMWARE VMXNET3 paravirtual NIC emulator support is vulnerable to crash issue. It could occur while reading Int…

Fix: after 2.4.1
Fix from $1,600 2016-12-29