Vulnerability index

Browse CVEs

680 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

HIGH 8.8 CVE-2018-7871 There is a heap-based buffer over-read in the getName function of util/decompile.c in libming 0.4.8 for CONSTANT16 data. A crafted input will lead to… Debian Linux No fix yet Fix from $1,9502018-03-08 HIGH 7.5 CVE-2018-7869 There is a memory leak triggered in the function dcinit of util/decompile.c in libming 0.4.8, which will lead to a denial of service attack. Debian Linux No fix yet Fix from $1,9502018-03-08 MEDIUM 6.5 CVE-2018-7870 An invalid memory address dereference was discovered in getString in util/decompile.c in libming 0.4.8 for CONSTANT16 data. The vulnerability causes … Debian Linux No fix yet Fix from $1,6002018-03-08 MEDIUM 6.5 CVE-2018-7872 An invalid memory address dereference was discovered in the function getName in libming 0.4.8 for CONSTANT16 data. The vulnerability causes a segment… Debian Linux No fix yet Fix from $1,6002018-03-08 MEDIUM 6.5 CVE-2018-7873 There is a heap-based buffer overflow in the getString function of util/decompile.c in libming 0.4.8 for INTEGER data. A Crafted input will lead to a… Debian Linux No fix yet Fix from $1,6002018-03-08 MEDIUM 6.5 CVE-2018-7866 A NULL pointer dereference was discovered in newVar3 in util/decompile.c in libming 0.4.8. The vulnerability causes a segmentation fault and applicat… Debian Linux No fix yet Fix from $1,6002018-03-08 MEDIUM 6.5 CVE-2018-7867 There is a heap-based buffer overflow in the getString function of util/decompile.c in libming 0.4.8 during a RegisterNumber sprintf. A Crafted input… Debian Linux No fix yet Fix from $1,6002018-03-08 MEDIUM 6.5 CVE-2018-7868 There is a heap-based buffer over-read in the getName function of util/decompile.c in libming 0.4.8 for CONSTANT8 data. A Crafted input will lead to … Debian Linux No fix yet Fix from $1,6002018-03-08 CRITICAL 9.8 CVE-2018-1000116EPSS 6% NET-SNMP version 5.7.2 contains a heap corruption vulnerability in the UDP protocol handler that can result in command execution. Debian Linux No fix yet Fix from $2,3002018-03-07 CRITICAL 9.8 CVE-2018-7551 There is an invalid free in MiniPS::delete0 in minips.cpp that leads to a Segmentation fault in sam2p 0.49.4. A crafted input will lead to a denial o… Debian Linux No fix yet Fix from $2,3002018-02-28 CRITICAL 9.8 CVE-2018-7552 There is an invalid free in Mapping::DoubleHash::clear in mapping.cpp that leads to a Segmentation fault in sam2p 0.49.4. A crafted input will lead t… Debian Linux No fix yet Fix from $2,3002018-02-28 CRITICAL 9.8 CVE-2018-7553 There is a heap-based buffer overflow in the pcxLoadRaster function of in_pcx.cpp in sam2p 0.49.4. A crafted input will lead to a denial of service o… Debian Linux No fix yet Fix from $2,3002018-02-28 CRITICAL 9.8 CVE-2018-7554 There is an invalid free in ReadImage in input-bmp.ci that leads to a Segmentation fault in sam2p 0.49.4. A crafted input will lead to a denial of se… Debian Linux No fix yet Fix from $2,3002018-02-28 HIGH 7.8 CVE-2018-7487 There is a heap-based buffer overflow in the LoadPCX function of in_pcx.cpp in sam2p 0.49.4. A Crafted input will lead to a denial of service or poss… Debian Linux No fix yet Fix from $1,9502018-02-26 MEDIUM 6.5 CVE-2018-7443 The ReadTIFFImage function in coders/tiff.c in ImageMagick 7.0.7-23 Q16 does not properly validate the amount of image data in a file, which allows r… Debian Linux No fix yet Fix from $1,6002018-02-23 CRITICAL 9.8 CVE-2018-7225EPSS 6% An issue was discovered in LibVNCServer through 0.9.11. rfbProcessClientNormalMessage() in rfbserver.c does not sanitize msg.cct.length, leading to a… Debian Linux No fix yet Fix from $2,3002018-02-19 MEDIUM 5.5 CVE-2018-6616 In OpenJPEG 2.3.0, there is excessive iteration in the opj_t1_encode_cblks function of openjp2/t1.c. Remote attackers could leverage this vulnerabili… Debian Linux No fix yet Fix from $1,6002018-02-04 MEDIUM 5.5 CVE-2018-6544 pdf_load_obj_stm in pdf/pdf-xref.c in Artifex MuPDF 1.12.0 could reference the object stream recursively and therefore run out of error stack, which … Debian Linux No fix yet Fix from $1,6002018-02-02 MEDIUM 5.5 CVE-2018-6192 In Artifex MuPDF 1.12.0, the pdf_read_new_xref function in pdf/pdf-xref.c allows remote attackers to cause a denial of service (segmentation violatio… Debian Linux No fix yet Fix from $1,6002018-01-24 MEDIUM 5.5 CVE-2018-6187 In Artifex MuPDF 1.12.0, there is a heap-based buffer overflow vulnerability in the do_pdf_save_document function in the pdf/pdf-write.c file. Remote… Debian Linux No fix yet Fix from $1,6002018-01-24 MEDIUM 6.5 CVE-2018-5785 In OpenJPEG 2.3.0, there is an integer overflow caused by an out-of-bounds left shift in the opj_j2k_setup_encoder function (openjp2/j2k.c). Remote a… Debian Linux No fix yet Fix from $1,6002018-01-19 MEDIUM 5.5 CVE-2018-5747 In Long Range Zip (aka lrzip) 0.631, there is a use-after-free in the ucompthread function (stream.c). Remote attackers could leverage this vulnerabi… Debian Linux No fix yet Fix from $1,6002018-01-17 MEDIUM 5.5 CVE-2018-5686 In MuPDF 1.12.0, there is an infinite loop vulnerability and application hang in the pdf_parse_array function (pdf/pdf-parse.c) because EOF is not co… Debian Linux No fix yet Fix from $1,6002018-01-14 MEDIUM 6.5 CVE-2018-5294 In libming 0.4.8, there is an integer overflow (caused by an out-of-range left shift) in the readUInt32 function (util/read.c). Remote attackers coul… Debian Linux Mitigation only Fix from $1,6002018-01-08 MEDIUM 5.5 CVE-2018-5268 In OpenCV 3.3.1, a heap-based buffer overflow happens in cv::Jpeg2KDecoder::readComponent8u in modules/imgcodecs/src/grfmt_jpeg2000.cpp when parsing … Debian Linux No fix yet Fix from $1,6002018-01-08 MEDIUM 5.5 CVE-2018-5269 In OpenCV 3.3.1, an assertion failure happens in cv::RBaseStream::setPos in modules/imgcodecs/src/bitstrm.cpp because of an incorrect integer cast. Debian Linux No fix yet Fix from $1,6002018-01-08 MEDIUM 6.5 CVE-2018-5251 In libming 0.4.8, there is an integer signedness error vulnerability (left shift of a negative value) in the readSBits function (util/read.c). Remote… Debian Linux No fix yet Fix from $1,6002018-01-05 HIGH 8.8 CVE-2018-5248 In ImageMagick 7.0.7-17 Q16, there is a heap-based buffer over-read in coders/sixel.c in the ReadSIXELImage function, related to the sixel_decode fun… Debian Linux No fix yet Fix from $1,9502018-01-05 MEDIUM 5.9 CVE-2017-1665 IBM Tivoli Key Lifecycle Manager 2.5, 2.6, and 2.7 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly … Debian Linux Mitigation only Fix from $1,6002018-01-04 MEDIUM 5.5 CVE-2017-18005 Exiv2 0.26 has a Null Pointer Dereference in the Exiv2::DataValue::toLong function in value.cpp, related to crafted metadata in a TIFF file. Debian Linux No fix yet Fix from $1,6002017-12-31