Vulnerability index

Browse CVEs

3,919 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Debian Linux HIGH 8.8
CVE-2017-12599

OpenCV (Open Source Computer Vision Library) through 3.3 has an out-of-bounds read error in the function icvCvt_BGRA2BGR_8u_C4C3R when reading an ima…

Fix: after 3.3.0
Fix from $1,950 2017-08-07
Debian Linux HIGH 8.8
CVE-2017-12601

OpenCV (Open Source Computer Vision Library) through 3.3 has a buffer overflow in the cv::BmpDecoder::readData function in modules/imgcodecs/src/grfm…

Fix: after 3.3.0
Fix from $1,950 2017-08-07
Debian Linux HIGH 8.8
CVE-2017-12603

OpenCV (Open Source Computer Vision Library) through 3.3 has an invalid write in the cv::RLByteStream::getBytes function in modules/imgcodecs/src/bit…

Fix: after 3.3.0
Fix from $1,950 2017-08-07
Debian Linux HIGH 8.8
CVE-2017-12604

OpenCV (Open Source Computer Vision Library) through 3.3 has an out-of-bounds write error in the FillUniColor function in utils.cpp when reading an i…

Fix: after 3.3.0
Fix from $1,950 2017-08-07
Debian Linux HIGH 8.8
CVE-2017-12605

OpenCV (Open Source Computer Vision Library) through 3.3 has an out-of-bounds write error in the FillColorRow8 function in utils.cpp when reading an …

Fix: after 3.3.0
Fix from $1,950 2017-08-07
Debian Linux HIGH 8.8
CVE-2017-12606

OpenCV (Open Source Computer Vision Library) through 3.3 has an out-of-bounds write error in the function FillColorRow4 in utils.cpp when reading an …

Fix: after 3.3.0
Fix from $1,950 2017-08-07
Debian Linux CRITICAL 9.8
CVE-2017-12562

Heap-based Buffer Overflow in the psf_binheader_writef function in common.c in libsndfile through 1.0.28 allows remote attackers to cause a denial of…

Patch available
Fix from $2,300 2017-08-05
Debian Linux CRITICAL 9.8
CVE-2017-12424

In shadow before 4.5, the newusers tool could be made to manipulate internal data structures in ways unintended by the authors. Malformed input may l…

Fix: 4.5+
Fix from $2,300 2017-08-04
Debian Linux HIGH 7.5
CVE-2017-10664

qemu-nbd in QEMU (aka Quick Emulator) does not ignore SIGPIPE, which allows remote attackers to cause a denial of service (daemon crash) by disconnec…

Patch available
Fix from $1,950 2017-08-02
Debian Linux MEDIUM 5.5
CVE-2017-10806

Stack-based buffer overflow in hw/usb/redirect.c in QEMU (aka Quick Emulator) allows local guest OS users to cause a denial of service (QEMU process …

Fix: after 2.9.1
Fix from $1,600 2017-08-02
Debian Linux MEDIUM 5.5
CVE-2017-11358EPSS 7%

The read_samples function in hcom.c in Sound eXchange (SoX) 14.4.2 allows remote attackers to cause a denial of service (invalid memory read and appl…

No fix yet
Fix from $1,600 2017-07-31
Debian Linux MEDIUM 5.5
CVE-2017-11359EPSS 7%

The wavwritehdr function in wav.c in Sound eXchange (SoX) 14.4.2 allows remote attackers to cause a denial of service (divide-by-zero error and appli…

No fix yet
Fix from $1,600 2017-07-31
Debian Linux MEDIUM 5.5
CVE-2017-11332EPSS 7%

The startread function in wav.c in Sound eXchange (SoX) 14.4.2 allows remote attackers to cause a denial of service (divide-by-zero error and applica…

No fix yet
Fix from $1,600 2017-07-31
Debian Linux MEDIUM 5.5
CVE-2017-11732

A heap-based buffer overflow vulnerability was found in the function dcputs (called from decompileIMPLEMENTS) in util/decompile.c in Ming 0.4.8, whic…

Mitigation only
Fix from $1,600 2017-07-29
Debian Linux MEDIUM 5.5
CVE-2017-11733

A null pointer dereference vulnerability was found in the function stackswap (called from decompileSTACKSWAP) in util/decompile.c in Ming 0.4.8, whic…

Mitigation only
Fix from $1,600 2017-07-29
Debian Linux HIGH 7.8
CVE-2017-11714

psi/ztoken.c in Artifex Ghostscript 9.21 mishandles references to the scanner state structure, which allows remote attackers to cause a denial of ser…

Patch available
Fix from $1,950 2017-07-28
Debian Linux HIGH 7.8
CVE-2017-9611

The Ins_MIRP function in base/ttinterp.c in Artifex Ghostscript GhostXPS 9.21 allows remote attackers to cause a denial of service (heap-based buffer…

No fix yet
Fix from $1,950 2017-07-26
Debian Linux HIGH 7.8
CVE-2017-9612

The Ins_IP function in base/ttinterp.c in Artifex Ghostscript GhostXPS 9.21 allows remote attackers to cause a denial of service (use-after-free and …

No fix yet
Fix from $1,950 2017-07-26
Debian Linux HIGH 7.8
CVE-2017-9726

The Ins_MDRP function in base/ttinterp.c in Artifex Ghostscript GhostXPS 9.21 allows remote attackers to cause a denial of service (heap-based buffer…

Mitigation only
Fix from $1,950 2017-07-26
Debian Linux HIGH 7.8
CVE-2017-9727

The gx_ttfReader__Read function in base/gxttfb.c in Artifex Ghostscript GhostXPS 9.21 allows remote attackers to cause a denial of service (heap-base…

No fix yet
Fix from $1,950 2017-07-26
Debian Linux HIGH 7.8
CVE-2017-9739

The Ins_JMPR function in base/ttinterp.c in Artifex Ghostscript GhostXPS 9.21 allows remote attackers to cause a denial of service (heap-based buffer…

No fix yet
Fix from $1,950 2017-07-26
Debian Linux HIGH 7.8
CVE-2017-9835

The gs_alloc_ref_array function in psi/ialloc.c in Artifex Ghostscript 9.21 allows remote attackers to cause a denial of service (heap-based buffer o…

No fix yet
Fix from $1,950 2017-07-26
Debian Linux MEDIUM 5.5
CVE-2017-11434

The dhcp_decode function in slirp/bootp.c in QEMU (aka Quick Emulator) allows local guest OS users to cause a denial of service (out-of-bounds read a…

Fix: after 2.9.1
Fix from $1,600 2017-07-25
Tor HIGH 7.5
CVE-2017-11565

debian/tor.init in the Debian tor_0.2.9.11-1~deb9u1 package for Tor was designed to execute aa-exec from the standard system pathname if the apparmor…

Mitigation only
Fix from $1,950 2017-07-23
Debian Linux HIGH 7.5
CVE-2017-11521

The SdpContents::Session::Medium::parse function in resip/stack/SdpContents.cxx in reSIProcate 1.10.2 allows remote attackers to cause a denial of se…

Patch available
Fix from $1,950 2017-07-22
Debian Linux HIGH 8.8
CVE-2017-11450

coders/jpeg.c in ImageMagick before 7.0.6-1 allows remote attackers to cause a denial of service (application crash) or possibly have unspecified oth…

Fix: 6.9.9-0 / 7.0.6-1+
Fix from $1,950 2017-07-19
Debian Linux HIGH 7.5
CVE-2017-10978

An FR-GV-201 issue in FreeRADIUS 2.x before 2.2.10 and 3.x before 3.0.15 allows "Read / write overflow in make_secret()" and a denial of service.

Fix: 2.2.10 / 3.0.15+
Fix from $1,950 2017-07-17
Debian Linux MEDIUM 6.5
CVE-2017-11352

In ImageMagick before 7.0.5-10, a crafted RLE image can trigger a crash because of incorrect EOF handling in coders/rle.c. NOTE: this vulnerability e…

Fix: 6.9.8-9 / 7.0.5-10+
Fix from $1,600 2017-07-17
Debian Linux CRITICAL 9.8
CVE-2017-11139

GraphicsMagick 1.3.26 has double free vulnerabilities in the ReadOneJNGImage() function in coders/png.c.

Patch available
Fix from $2,300 2017-07-10
Debian Linux MEDIUM 6.1
CVE-2017-11107

phpLDAPadmin through 1.2.3 has XSS in htdocs/entry_chooser.php via the form, element, rdn, or container parameter.

Fix: after 1.2.3
Fix from $1,600 2017-07-08