Vulnerability index

Browse CVEs

3,919 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Debian Linux HIGH 7.5
CVE-2020-36475

An issue was discovered in Mbed TLS before 2.25.0 (and before 2.16.9 LTS and before 2.7.18 LTS). The calculations performed by mbedtls_mpi_exp_mod ar…

Fix: 2.2 / 2.7.18+
Fix from $1,950 2021-08-23
Debian Linux HIGH 7.5
CVE-2020-36476

An issue was discovered in Mbed TLS before 2.24.0 (and before 2.16.8 LTS and before 2.7.17 LTS). There is missing zeroization of plaintext buffers in…

Fix: 2.7.17 / 2.16.8+
Fix from $1,950 2021-08-23
Debian Linux HIGH 7.5
CVE-2021-39371

An XML external entity (XXE) injection in PyWPS before 4.4.5 allows an attacker to view files on the application server filesystem by assigning a pat…

Fix: 4.4.5+
Fix from $1,950 2021-08-23
Debian Linux MEDIUM 5.9
CVE-2021-39365

In GNOME grilo though 0.3.13, grl-net-wc.c does not enable TLS certificate verification on the SoupSessionAsync objects it creates, leaving users vul…

Fix: after 0.3.13
Fix from $1,600 2021-08-22
Debian Linux CRITICAL 9.8
CVE-2021-38171

adts_decode_extradata in libavformat/adtsenc.c in FFmpeg 4.4 does not check the init_get_bits return value, which is a necessary step because the sec…

Patch available
Fix from $2,300 2021-08-21
Debian Linux HIGH 7.5
CVE-2021-37698

Icinga is a monitoring system which checks the availability of network resources, notifies users of outages, and generates performance data for repor…

Fix: 2.11.10 / 2.12.6+
Fix from $1,950 2021-08-19
Debian Linux HIGH 8.8
CVE-2021-21857

Multiple exploitable integer overflow vulnerabilities exist within the MPEG-4 decoding functionality of the GPAC Project on Advanced Content library …

No fix yet
Fix from $1,950 2021-08-18
Debian Linux HIGH 8.8
CVE-2021-21858

Multiple exploitable integer overflow vulnerabilities exist within the MPEG-4 decoding functionality of the GPAC Project on Advanced Content library …

No fix yet
Fix from $1,950 2021-08-18
Debian Linux HIGH 8.8
CVE-2021-21837

Multiple exploitable integer overflow vulnerabilities exist within the MPEG-4 decoding functionality of the GPAC Project on Advanced Content library …

No fix yet
Fix from $1,950 2021-08-18
Debian Linux HIGH 8.8
CVE-2021-21838

Multiple exploitable integer overflow vulnerabilities exist within the MPEG-4 decoding functionality of the GPAC Project on Advanced Content library …

No fix yet
Fix from $1,950 2021-08-18
Debian Linux HIGH 8.8
CVE-2021-21839

Multiple exploitable integer overflow vulnerabilities exist within the MPEG-4 decoding functionality of the GPAC Project on Advanced Content library …

No fix yet
Fix from $1,950 2021-08-18
Debian Linux HIGH 8.8
CVE-2021-21843

Multiple exploitable integer overflow vulnerabilities exist within the MPEG-4 decoding functionality of the GPAC Project on Advanced Content library …

No fix yet
Fix from $1,950 2021-08-18
Debian Linux HIGH 8.8
CVE-2021-21844

Multiple exploitable integer overflow vulnerabilities exist within the MPEG-4 decoding functionality of the GPAC Project on Advanced Content library …

No fix yet
Fix from $1,950 2021-08-18
Debian Linux HIGH 8.8
CVE-2021-21845

Multiple exploitable integer overflow vulnerabilities exist within the MPEG-4 decoding functionality of the GPAC Project on Advanced Content library …

No fix yet
Fix from $1,950 2021-08-18
Debian Linux HIGH 8.8
CVE-2021-21846

Multiple exploitable integer overflow vulnerabilities exist within the MPEG-4 decoding functionality of the GPAC Project on Advanced Content library …

No fix yet
Fix from $1,950 2021-08-18
Debian Linux HIGH 8.8
CVE-2021-21847

Multiple exploitable integer overflow vulnerabilities exist within the MPEG-4 decoding functionality of the GPAC Project on Advanced Content library …

No fix yet
Fix from $1,950 2021-08-18
Debian Linux HIGH 8.8
CVE-2021-21853

Multiple exploitable integer overflow vulnerabilities exist within the MPEG-4 decoding functionality of the GPAC Project on Advanced Content library …

No fix yet
Fix from $1,950 2021-08-18
Debian Linux HIGH 8.8
CVE-2021-21854

Multiple exploitable integer overflow vulnerabilities exist within the MPEG-4 decoding functionality of the GPAC Project on Advanced Content library …

No fix yet
Fix from $1,950 2021-08-18
Debian Linux HIGH 8.8
CVE-2021-21855

Multiple exploitable integer overflow vulnerabilities exist within the MPEG-4 decoding functionality of the GPAC Project on Advanced Content library …

No fix yet
Fix from $1,950 2021-08-18
Debian Linux HIGH 7.5
CVE-2021-39240

An issue was discovered in HAProxy 2.2 before 2.2.16, 2.3 before 2.3.13, and 2.4 before 2.4.3. It does not ensure that the scheme and path portions o…

Fix: 2.2.16 / 2.3.13+
Fix from $1,950 2021-08-17
Debian Linux HIGH 7.5
CVE-2021-39242

An issue was discovered in HAProxy 2.2 before 2.2.16, 2.3 before 2.3.13, and 2.4 before 2.4.3. It can lead to a situation with an attacker-controlled…

Fix: 2.2.16 / 2.3.13+
Fix from $1,950 2021-08-17
Debian Linux MEDIUM 5.3
CVE-2021-39241

An issue was discovered in HAProxy 2.0 before 2.0.24, 2.2 before 2.2.16, 2.3 before 2.3.13, and 2.4 before 2.4.3. An HTTP method name may contain a s…

Fix: 2.0.24 / 2.2.16+
Fix from $1,600 2021-08-17
Debian Linux HIGH 8.8
CVE-2021-21859

An exploitable integer truncation vulnerability exists within the MPEG-4 decoding functionality of the GPAC Project on Advanced Content library v1.0.…

No fix yet
Fix from $1,950 2021-08-16
Debian Linux HIGH 8.8
CVE-2021-21860

An exploitable integer truncation vulnerability exists within the MPEG-4 decoding functionality of the GPAC Project on Advanced Content library v1.0.…

No fix yet
Fix from $1,950 2021-08-16
Debian Linux HIGH 8.8
CVE-2021-21861

An exploitable integer truncation vulnerability exists within the MPEG-4 decoding functionality of the GPAC Project on Advanced Content library v1.0.…

No fix yet
Fix from $1,950 2021-08-16
Debian Linux HIGH 7.5
CVE-2021-33193EPSS 46%

A crafted method sent through HTTP/2 will bypass validation and be forwarded by mod_proxy, which can lead to request splitting or cache poisoning. Th…

Fix: 2.4.49 / 18.1.0.1.0+
Fix from $1,950 2021-08-16
Debian Linux MEDIUM 5.4
CVE-2021-37695

ckeditor is an open source WYSIWYG HTML editor with rich content support. A potential vulnerability has been discovered in CKEditor 4 [Fake Objects](…

Fix: 4.16.2 / 21.1.4+
Fix from $1,600 2021-08-13
Debian Linux HIGH 7.5
CVE-2021-38291

FFmpeg version (git commit de8e6e67e7523e48bb27ac224a0b446df05e1640) suffers from a an assertion failure at src/libavutil/mathematics.c.

Fix: 4.1.7 / 4.2.5+
Fix from $1,950 2021-08-12
Debian Linux HIGH 8.8
CVE-2020-21688

A heap-use-after-free in the av_freep function in libavutil/mem.c of FFmpeg 4.2 allows attackers to execute arbitrary code.

Patch available
Fix from $1,950 2021-08-10
Debian Linux MEDIUM 6.5
CVE-2020-21697

A heap-use-after-free in the mpeg_mux_write_packet function in libavformat/mpegenc.c of FFmpeg 4.2 allows to cause a denial of service (DOS) via a cr…

Patch available
Fix from $1,600 2021-08-10