Vulnerability index

Browse CVEs

680 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Debian Linux HIGH 8.8
CVE-2018-7871

There is a heap-based buffer over-read in the getName function of util/decompile.c in libming 0.4.8 for CONSTANT16 data. A crafted input will lead to…

No fix yet
Fix from $1,950 2018-03-08
Debian Linux HIGH 7.5
CVE-2018-7869

There is a memory leak triggered in the function dcinit of util/decompile.c in libming 0.4.8, which will lead to a denial of service attack.

No fix yet
Fix from $1,950 2018-03-08
Debian Linux MEDIUM 6.5
CVE-2018-7870

An invalid memory address dereference was discovered in getString in util/decompile.c in libming 0.4.8 for CONSTANT16 data. The vulnerability causes …

No fix yet
Fix from $1,600 2018-03-08
Debian Linux MEDIUM 6.5
CVE-2018-7872

An invalid memory address dereference was discovered in the function getName in libming 0.4.8 for CONSTANT16 data. The vulnerability causes a segment…

No fix yet
Fix from $1,600 2018-03-08
Debian Linux MEDIUM 6.5
CVE-2018-7873

There is a heap-based buffer overflow in the getString function of util/decompile.c in libming 0.4.8 for INTEGER data. A Crafted input will lead to a…

No fix yet
Fix from $1,600 2018-03-08
Debian Linux MEDIUM 6.5
CVE-2018-7866

A NULL pointer dereference was discovered in newVar3 in util/decompile.c in libming 0.4.8. The vulnerability causes a segmentation fault and applicat…

No fix yet
Fix from $1,600 2018-03-08
Debian Linux MEDIUM 6.5
CVE-2018-7867

There is a heap-based buffer overflow in the getString function of util/decompile.c in libming 0.4.8 during a RegisterNumber sprintf. A Crafted input…

No fix yet
Fix from $1,600 2018-03-08
Debian Linux MEDIUM 6.5
CVE-2018-7868

There is a heap-based buffer over-read in the getName function of util/decompile.c in libming 0.4.8 for CONSTANT8 data. A Crafted input will lead to …

No fix yet
Fix from $1,600 2018-03-08
Debian Linux CRITICAL 9.8
CVE-2018-1000116EPSS 6%

NET-SNMP version 5.7.2 contains a heap corruption vulnerability in the UDP protocol handler that can result in command execution.

No fix yet
Fix from $2,300 2018-03-07
Debian Linux CRITICAL 9.8
CVE-2018-7551

There is an invalid free in MiniPS::delete0 in minips.cpp that leads to a Segmentation fault in sam2p 0.49.4. A crafted input will lead to a denial o…

No fix yet
Fix from $2,300 2018-02-28
Debian Linux CRITICAL 9.8
CVE-2018-7552

There is an invalid free in Mapping::DoubleHash::clear in mapping.cpp that leads to a Segmentation fault in sam2p 0.49.4. A crafted input will lead t…

No fix yet
Fix from $2,300 2018-02-28
Debian Linux CRITICAL 9.8
CVE-2018-7553

There is a heap-based buffer overflow in the pcxLoadRaster function of in_pcx.cpp in sam2p 0.49.4. A crafted input will lead to a denial of service o…

No fix yet
Fix from $2,300 2018-02-28
Debian Linux CRITICAL 9.8
CVE-2018-7554

There is an invalid free in ReadImage in input-bmp.ci that leads to a Segmentation fault in sam2p 0.49.4. A crafted input will lead to a denial of se…

No fix yet
Fix from $2,300 2018-02-28
Debian Linux HIGH 7.8
CVE-2018-7487

There is a heap-based buffer overflow in the LoadPCX function of in_pcx.cpp in sam2p 0.49.4. A Crafted input will lead to a denial of service or poss…

No fix yet
Fix from $1,950 2018-02-26
Debian Linux MEDIUM 6.5
CVE-2018-7443

The ReadTIFFImage function in coders/tiff.c in ImageMagick 7.0.7-23 Q16 does not properly validate the amount of image data in a file, which allows r…

No fix yet
Fix from $1,600 2018-02-23
Debian Linux CRITICAL 9.8
CVE-2018-7225EPSS 6%

An issue was discovered in LibVNCServer through 0.9.11. rfbProcessClientNormalMessage() in rfbserver.c does not sanitize msg.cct.length, leading to a…

No fix yet
Fix from $2,300 2018-02-19
Debian Linux MEDIUM 5.5
CVE-2018-6616

In OpenJPEG 2.3.0, there is excessive iteration in the opj_t1_encode_cblks function of openjp2/t1.c. Remote attackers could leverage this vulnerabili…

No fix yet
Fix from $1,600 2018-02-04
Debian Linux MEDIUM 5.5
CVE-2018-6544

pdf_load_obj_stm in pdf/pdf-xref.c in Artifex MuPDF 1.12.0 could reference the object stream recursively and therefore run out of error stack, which …

No fix yet
Fix from $1,600 2018-02-02
Debian Linux MEDIUM 5.5
CVE-2018-6192

In Artifex MuPDF 1.12.0, the pdf_read_new_xref function in pdf/pdf-xref.c allows remote attackers to cause a denial of service (segmentation violatio…

No fix yet
Fix from $1,600 2018-01-24
Debian Linux MEDIUM 5.5
CVE-2018-6187

In Artifex MuPDF 1.12.0, there is a heap-based buffer overflow vulnerability in the do_pdf_save_document function in the pdf/pdf-write.c file. Remote…

No fix yet
Fix from $1,600 2018-01-24
Debian Linux MEDIUM 6.5
CVE-2018-5785

In OpenJPEG 2.3.0, there is an integer overflow caused by an out-of-bounds left shift in the opj_j2k_setup_encoder function (openjp2/j2k.c). Remote a…

No fix yet
Fix from $1,600 2018-01-19
Debian Linux MEDIUM 5.5
CVE-2018-5747

In Long Range Zip (aka lrzip) 0.631, there is a use-after-free in the ucompthread function (stream.c). Remote attackers could leverage this vulnerabi…

No fix yet
Fix from $1,600 2018-01-17
Debian Linux MEDIUM 5.5
CVE-2018-5686

In MuPDF 1.12.0, there is an infinite loop vulnerability and application hang in the pdf_parse_array function (pdf/pdf-parse.c) because EOF is not co…

No fix yet
Fix from $1,600 2018-01-14
Debian Linux MEDIUM 6.5
CVE-2018-5294

In libming 0.4.8, there is an integer overflow (caused by an out-of-range left shift) in the readUInt32 function (util/read.c). Remote attackers coul…

Mitigation only
Fix from $1,600 2018-01-08
Debian Linux MEDIUM 5.5
CVE-2018-5268

In OpenCV 3.3.1, a heap-based buffer overflow happens in cv::Jpeg2KDecoder::readComponent8u in modules/imgcodecs/src/grfmt_jpeg2000.cpp when parsing …

No fix yet
Fix from $1,600 2018-01-08
Debian Linux MEDIUM 5.5
CVE-2018-5269

In OpenCV 3.3.1, an assertion failure happens in cv::RBaseStream::setPos in modules/imgcodecs/src/bitstrm.cpp because of an incorrect integer cast.

No fix yet
Fix from $1,600 2018-01-08
Debian Linux MEDIUM 6.5
CVE-2018-5251

In libming 0.4.8, there is an integer signedness error vulnerability (left shift of a negative value) in the readSBits function (util/read.c). Remote…

No fix yet
Fix from $1,600 2018-01-05
Debian Linux HIGH 8.8
CVE-2018-5248

In ImageMagick 7.0.7-17 Q16, there is a heap-based buffer over-read in coders/sixel.c in the ReadSIXELImage function, related to the sixel_decode fun…

No fix yet
Fix from $1,950 2018-01-05
Debian Linux MEDIUM 5.9
CVE-2017-1665

IBM Tivoli Key Lifecycle Manager 2.5, 2.6, and 2.7 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly …

Mitigation only
Fix from $1,600 2018-01-04
Debian Linux MEDIUM 5.5
CVE-2017-18005

Exiv2 0.26 has a Null Pointer Dereference in the Exiv2::DataValue::toLong function in value.cpp, related to crafted metadata in a TIFF file.

No fix yet
Fix from $1,600 2017-12-31