Vulnerability index

Browse CVEs

3,919 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Debian Linux HIGH 7.5
CVE-2019-18976EPSS 7%

An issue was discovered in res_pjsip_t38.c in Sangoma Asterisk through 13.x and Certified Asterisk through 13.21-x. If it receives a re-invite initia…

Fix: after 13.29.1
Fix from $1,950 2019-11-22
Debian Linux MEDIUM 6.5
CVE-2019-18790

An issue was discovered in channels/chan_sip.c in Sangoma Asterisk 13.x before 13.29.2, 16.x before 16.6.2, and 17.x before 17.0.1, and Certified Ast…

Fix: 13.29.2 / 16.6.2+
Fix from $1,600 2019-11-22
Debian Linux MEDIUM 6.1
CVE-2012-0812

PostfixAdmin 2.3.4 has multiple XSS vulnerabilities

Mitigation only
Fix from $1,600 2019-11-22
Debian Linux MEDIUM 5.5
CVE-2019-19221

In Libarchive 3.4.0, archive_wstring_append_from_mbs in archive_string.c has an out-of-bounds read because of an incorrect mbrtowc or mbtowc call. Fo…

Patch available
Fix from $1,600 2019-11-21
Debian Linux HIGH 7.0
CVE-2014-5255

xcfa before 5.0.1 creates temporary files insecurely which could allow local users to launch a symlink attack and overwrite arbitrary files. Note: A …

Fix: 5.0.1+
Fix from $1,950 2019-11-21
Debian Linux HIGH 7.5
CVE-2019-19204EPSS 7%

An issue was discovered in Oniguruma 6.x before 6.9.4_rc2. In the function fetch_interval_quantifier (formerly known as fetch_range_quantifier) in re…

Fix: 6.9.4+
Fix from $1,950 2019-11-21
Debian Linux MEDIUM 6.5
CVE-2019-18890

A SQL injection vulnerability in Redmine through 3.2.9 and 3.3.x before 3.3.10 allows Redmine users to access protected information via a crafted obj…

Fix: 3.3.10+
Fix from $1,600 2019-11-21
Debian Linux HIGH 8.8
CVE-2019-5087

An exploitable integer overflow vulnerability exists in the flattenIncrementally function in the xcf2png and xcf2pnm binaries of xcftools 1.0.7. An i…

No fix yet
Fix from $1,950 2019-11-21
Debian Linux HIGH 8.8
CVE-2019-5086

An exploitable integer overflow vulnerability exists in the flattenIncrementally function in the xcf2png and xcf2pnm binaries of xcftools, version 1.…

No fix yet
Fix from $1,950 2019-11-21
Debian Linux HIGH 7.5
CVE-2014-1936

rc before 1.7.1-5 insecurely creates temporary files.

Fix: 1.7.1-5+
Fix from $1,950 2019-11-21
Debian Linux MEDIUM 5.3
CVE-2014-1935

9base 1:6-6 and 1:6-7 insecurely creates temporary files which results in predictable filenames.

No fix yet
Fix from $1,600 2019-11-21
Debian Linux HIGH 7.5
CVE-2012-2350

pam_shield before 0.9.4: Default configuration does not perform protective action

Fix: 0.9.4+
Fix from $1,950 2019-11-21
Debian Linux HIGH 7.5
CVE-2013-1817

MediaWiki before 1.19.4 and 1.20.x before 1.20.3 contains an error in the api.php script which allows remote attackers to obtain sensitive informatio…

Fix: 1.19.4 / 1.20.3+
Fix from $1,950 2019-11-20
Debian Linux HIGH 7.5
CVE-2013-1816

MediaWiki before 1.19.4 and 1.20.x before 1.20.3 allows remote attackers to cause a denial of service (application crash) by sending a specially craf…

Fix: 1.19.4 / 1.20.3+
Fix from $1,950 2019-11-20
Debian Linux MEDIUM 5.5
CVE-2015-1606

The keyring DB in GnuPG before 2.1.2 does not properly handle invalid packets, which allows remote attackers to cause a denial of service (invalid re…

Fix: 2.1.2+
Fix from $1,600 2019-11-20
Debian Linux HIGH 7.5
CVE-2011-0529

Weborf before 0.12.5 is affected by a Denial of Service (DOS) due to malformed fields in HTTP.

Fix: 0.12.5+
Fix from $1,950 2019-11-20
Debian Linux CRITICAL 9.8
CVE-2011-1028

The $smarty.template variable in Smarty3 allows attackers to possibly execute arbitrary PHP code via the sysplugins/smarty_internal_compile_private_s…

Fix: 3.0.7+
Fix from $2,300 2019-11-20
Debian Linux MEDIUM 5.5
CVE-2011-2924

foomatic-rip filter v4.0.12 and prior used insecurely creates temporary files for storage of PostScript data by rendering the data when the debug mod…

Fix: after 4.0.12
Fix from $1,600 2019-11-19
Debian Linux MEDIUM 5.5
CVE-2011-2923

foomatic-rip filter, all versions, used insecurely creates temporary files for storage of PostScript data by rendering the data when the debug mode w…

Mitigation only
Fix from $1,600 2019-11-19
Debian Linux HIGH 7.5
CVE-2012-6071

nuSOAP before 0.7.3-5 does not properly check the hostname of a cert.

Fix: 0.7.3-5+
Fix from $1,950 2019-11-19
Debian Linux HIGH 7.8
CVE-2014-5439

Multiple Stack-based Buffer Overflow vulnerabilities exists in Sniffit prior to 0.3.7 via a crafted configuration file that will bypass Non-eXecutabl…

Fix: after 0.3.7
Fix from $1,950 2019-11-19
Debian Linux MEDIUM 5.5
CVE-2012-0843

uzbl: Information disclosure via world-readable cookies storage file

Mitigation only
Fix from $1,600 2019-11-19
Debian Linux MEDIUM 5.5
CVE-2012-0842

surf: cookie jar has read access from other local user

Fix: 0.5+
Fix from $1,600 2019-11-19
Debian Linux CRITICAL 9.8
CVE-2019-19012EPSS 11%

An integer overflow in the search_in_range function in regexec.c in Oniguruma 6.x before 6.9.4_rc2 leads to an out-of-bounds read, in which the offse…

Fix: after 6.9.3
Fix from $2,300 2019-11-17
Debian Linux CRITICAL 9.8
CVE-2011-0703

In gksu-polkit before 0.0.3, the source file for xauth may contain arbitrary commands that may allow an attacker to overtake an administrator X11 ses…

Fix: 0.0.3+
Fix from $2,300 2019-11-15
Debian Linux MEDIUM 6.7
CVE-2011-2910

The AX.25 daemon (ax25d) in ax25-tools before 0.0.8-13 does not check the return value of a setuid call. The setuid call is responsible for dropping …

Fix: 0.0.8-13+
Fix from $1,600 2019-11-15
Debian Linux HIGH 7.5
CVE-2016-5285

A Null pointer dereference vulnerability exists in Mozilla Network Security Services due to a missing NULL check in PK11_SignWithSymKey / ssl3_Comput…

Fix: 3.26+
Fix from $1,950 2019-11-15
Debian Linux CRITICAL 9.8
CVE-2013-7087

ClamAV before 0.97.7 has WWPack corrupt heap memory

Fix: 0.97.7+
Fix from $2,300 2019-11-15
Debian Linux CRITICAL 9.8
CVE-2013-7088

ClamAV before 0.97.7 has buffer overflow in the libclamav component

Fix: 0.97.7+
Fix from $2,300 2019-11-15
Debian Linux HIGH 7.5
CVE-2013-7089

ClamAV before 0.97.7: dbg_printhex possible information leak

Fix: 0.97.7+
Fix from $1,950 2019-11-15