Vulnerability index

Browse CVEs

460 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Out-of-bounds WriteCWE-787 × clear
Debian Linux HIGH 8.8
CVE-2017-12604

OpenCV (Open Source Computer Vision Library) through 3.3 has an out-of-bounds write error in the FillUniColor function in utils.cpp when reading an i…

Fix: after 3.3.0
Fix from $1,950 2017-08-07
Debian Linux HIGH 8.8
CVE-2017-12605

OpenCV (Open Source Computer Vision Library) through 3.3 has an out-of-bounds write error in the FillColorRow8 function in utils.cpp when reading an …

Fix: after 3.3.0
Fix from $1,950 2017-08-07
Debian Linux HIGH 8.8
CVE-2017-12606

OpenCV (Open Source Computer Vision Library) through 3.3 has an out-of-bounds write error in the function FillColorRow4 in utils.cpp when reading an …

Fix: after 3.3.0
Fix from $1,950 2017-08-07
Debian Linux MEDIUM 5.5
CVE-2017-10806

Stack-based buffer overflow in hw/usb/redirect.c in QEMU (aka Quick Emulator) allows local guest OS users to cause a denial of service (QEMU process …

Fix: after 2.9.1
Fix from $1,600 2017-08-02
Debian Linux HIGH 8.8
CVE-2017-6891EPSS 6%

Two errors in the "asn1_find_node()" function (lib/parser_aux.c) within GnuTLS libtasn1 version 4.10 can be exploited to cause a stacked-based buffer…

Patch available
Fix from $1,950 2017-05-22
Debian Linux CRITICAL 9.8
CVE-2017-2520

An issue was discovered in certain Apple products. iOS before 10.3.2 is affected. macOS before 10.12.5 is affected. tvOS before 10.2.1 is affected. w…

Fix: 3.2.2 / 10.2.1+
Fix from $2,300 2017-05-22
Debian Linux CRITICAL 9.8
CVE-2017-8105

FreeType 2 before 2017-03-24 has an out-of-bounds write caused by a heap-based buffer overflow related to the t1_decoder_parse_charstrings function i…

Fix: 2.7.1+
Fix from $2,300 2017-04-24
Debian Linux CRITICAL 9.8
CVE-2017-7863

FFmpeg before 2017-02-04 has an out-of-bounds write caused by a heap-based buffer overflow related to the decode_frame_common function in libavcodec/…

Fix: after 2.8.10
Fix from $2,300 2017-04-14
Debian Linux CRITICAL 9.8
CVE-2017-7865

FFmpeg before 2017-01-24 has an out-of-bounds write caused by a heap-based buffer overflow related to the ipvideo_decode_block_opcode_0xA function in…

Fix: after 2.8.9
Fix from $2,300 2017-04-14
Debian Linux HIGH 7.5
CVE-2017-7867

International Components for Unicode (ICU) for C/C++ before 2017-02-13 has an out-of-bounds write caused by a heap-based buffer overflow related to t…

Fix: after 58.2
Fix from $1,950 2017-04-14
Debian Linux HIGH 7.5
CVE-2017-7868

International Components for Unicode (ICU) for C/C++ before 2017-02-13 has an out-of-bounds write caused by a heap-based buffer overflow related to t…

Fix: after 58.2
Fix from $1,950 2017-04-14
Debian Linux HIGH 7.5
CVE-2015-8619

The Human Monitor Interface support in QEMU allows remote attackers to cause a denial of service (out-of-bounds write and application crash).

Fix: after 2.5.1.1
Fix from $1,950 2017-04-13
Debian Linux HIGH 7.9
CVE-2015-8666

Heap-based buffer overflow in QEMU, when built with the Q35-chipset-based PC system emulator.

Fix: after 2.4.1
Fix from $1,950 2017-04-11
Debian Linux MEDIUM 6.5
CVE-2015-8613

Stack-based buffer overflow in the megasas_ctrl_get_info function in QEMU, when built with SCSI MegaRAID SAS HBA emulation support, allows local gues…

Fix: after 2.5.1
Fix from $1,600 2017-04-11
Debian Linux HIGH 7.8
CVE-2017-5510

coders/psd.c in ImageMagick allows remote attackers to have unspecified impact via a crafted PSD file, which triggers an out-of-bounds write.

Fix: 6.9.7-4 / 7.0.4-4+
Fix from $1,950 2017-03-24
Debian Linux MEDIUM 5.5
CVE-2016-10246

Buffer overflow in the main function in jstest_main.c in Mujstest in Artifex Software, Inc. MuPDF before 1.10 allows remote attackers to cause a deni…

Fix: after 1.10
Fix from $1,600 2017-03-16
Debian Linux MEDIUM 5.5
CVE-2016-10247

Buffer overflow in the my_getline function in jstest_main.c in Mujstest in Artifex Software, Inc. MuPDF before 1.10 allows remote attackers to cause …

Fix: after 1.10
Fix from $1,600 2017-03-16
Debian Linux HIGH 7.5
CVE-2016-10196EPSS 5%

Stack-based buffer overflow in the evutil_parse_sockaddr_port function in evutil.c in libevent before 2.1.6-beta allows attackers to cause a denial o…

Fix: 45.9.0 / 52.1.0+
Fix from $1,950 2017-03-15
Debian Linux HIGH 7.8
CVE-2017-6060EPSS 7%

Stack-based buffer overflow in jstest_main.c in mujstest in Artifex Software, Inc. MuPDF 1.10a allows remote attackers to have unspecified impact via…

No fix yet
Fix from $1,950 2017-03-15
Debian Linux MEDIUM 5.5
CVE-2017-5975

Heap-based buffer overflow in the __zzip_get64 function in fetch.c in zziplib 0.13.62, 0.13.61, 0.13.60, 0.13.59, 0.13.58, 0.13.57, 0.13.56 allows re…

No fix yet
Fix from $1,600 2017-03-01
Debian Linux MEDIUM 5.5
CVE-2017-5976

Heap-based buffer overflow in the zzip_mem_entry_extra_block function in memdisk.c in zziplib 0.13.62, 0.13.61, 0.13.60, 0.13.59, 0.13.58, 0.13.57, 0…

No fix yet
Fix from $1,600 2017-03-01
Debian Linux HIGH 7.8
CVE-2017-6305

An issue was discovered in ytnef before 1.9.1. This is related to a patch described as "8 of 9. Out of Bounds read and write."

Fix: after 1.9
Fix from $1,950 2017-02-24
Debian Linux HIGH 7.8
CVE-2017-6307

An issue was discovered in tnef before 1.4.13. Two OOB Writes have been identified in src/mapi_attr.c:mapi_attr_read(). These might lead to invalid r…

Fix: after 1.4.12
Fix from $1,950 2017-02-24
Debian Linux HIGH 7.8
CVE-2017-6309

An issue was discovered in tnef before 1.4.13. Two type confusions have been identified in the parse_file() function. These might lead to invalid rea…

Fix: after 1.4.12
Fix from $1,950 2017-02-24
Debian Linux HIGH 7.8
CVE-2017-6310

An issue was discovered in tnef before 1.4.13. Four type confusions have been identified in the file_add_mapi_attrs() function. These might lead to i…

Fix: after 1.4.12
Fix from $1,950 2017-02-24
Debian Linux HIGH 7.8
CVE-2016-9560

Stack-based buffer overflow in the jpc_tsfb_getbands2 function in jpc_tsfb.c in JasPer before 1.900.30 allows remote attackers to have unspecified im…

Fix: 1.900.30+
Fix from $1,950 2017-02-15
Debian Linux HIGH 7.8
CVE-2016-9453

The t2p_readwrite_pdf_image_tile function in LibTIFF allows remote attackers to cause a denial of service (out-of-bounds write and crash) or possibly…

Fix: 4.0.7+
Fix from $1,950 2017-01-27
Debian Linux HIGH 7.1
CVE-2015-8743

QEMU (aka Quick Emulator) built with the NE2000 device emulation support is vulnerable to an OOB r/w access issue. It could occur while performing 'i…

Fix: after 2.5.1
Fix from $1,950 2016-12-29
Debian Linux HIGH 7.8
CVE-2016-8707

An exploitable out of bounds write exists in the handling of compressed TIFF images in ImageMagicks's convert utility. A crafted TIFF document can le…

No fix yet
Fix from $1,950 2016-12-23
Debian Linux CRITICAL 9.8
CVE-2016-7161EPSS 6%

Heap-based buffer overflow in the .receive callback of xlnx.xps-ethernetlite in QEMU (aka Quick Emulator) allows attackers to execute arbitrary code …

Fix: after 2.6.2
Fix from $2,300 2016-10-05