Vulnerability index

Browse CVEs

3,919 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Debian Linux MEDIUM 6.5
CVE-2018-7874

An invalid memory address dereference was discovered in strlenext in util/decompile.c in libming 0.4.8. The vulnerability causes a segmentation fault…

No fix yet
Fix from $1,600 2018-03-08
Debian Linux MEDIUM 6.5
CVE-2018-7875

There is a heap-based buffer over-read in the getString function of util/decompile.c in libming 0.4.8 for CONSTANT8 data. A Crafted input will lead t…

No fix yet
Fix from $1,600 2018-03-08
Debian Linux MEDIUM 6.5
CVE-2018-7876

In libming 0.4.8, a memory exhaustion vulnerability was found in the function parseSWF_ACTIONRECORD in util/parser.c, which allows remote attackers t…

No fix yet
Fix from $1,600 2018-03-08
Debian Linux MEDIUM 6.5
CVE-2018-7877

There is a heap-based buffer overflow in the getString function of util/decompile.c in libming 0.4.8 for DOUBLE data. A Crafted input will lead to a …

No fix yet
Fix from $1,600 2018-03-08
Debian Linux HIGH 8.8
CVE-2018-7871

There is a heap-based buffer over-read in the getName function of util/decompile.c in libming 0.4.8 for CONSTANT16 data. A crafted input will lead to…

No fix yet
Fix from $1,950 2018-03-08
Debian Linux HIGH 7.5
CVE-2018-7869

There is a memory leak triggered in the function dcinit of util/decompile.c in libming 0.4.8, which will lead to a denial of service attack.

No fix yet
Fix from $1,950 2018-03-08
Debian Linux MEDIUM 6.5
CVE-2018-7870

An invalid memory address dereference was discovered in getString in util/decompile.c in libming 0.4.8 for CONSTANT16 data. The vulnerability causes …

No fix yet
Fix from $1,600 2018-03-08
Debian Linux MEDIUM 6.5
CVE-2018-7872

An invalid memory address dereference was discovered in the function getName in libming 0.4.8 for CONSTANT16 data. The vulnerability causes a segment…

No fix yet
Fix from $1,600 2018-03-08
Debian Linux MEDIUM 6.5
CVE-2018-7873

There is a heap-based buffer overflow in the getString function of util/decompile.c in libming 0.4.8 for INTEGER data. A Crafted input will lead to a…

No fix yet
Fix from $1,600 2018-03-08
Debian Linux MEDIUM 6.5
CVE-2018-7866

A NULL pointer dereference was discovered in newVar3 in util/decompile.c in libming 0.4.8. The vulnerability causes a segmentation fault and applicat…

No fix yet
Fix from $1,600 2018-03-08
Debian Linux MEDIUM 6.5
CVE-2018-7867

There is a heap-based buffer overflow in the getString function of util/decompile.c in libming 0.4.8 during a RegisterNumber sprintf. A Crafted input…

No fix yet
Fix from $1,600 2018-03-08
Debian Linux MEDIUM 6.5
CVE-2018-7868

There is a heap-based buffer over-read in the getName function of util/decompile.c in libming 0.4.8 for CONSTANT8 data. A Crafted input will lead to …

No fix yet
Fix from $1,600 2018-03-08
Debian Linux HIGH 7.8
CVE-2018-7752

GPAC through 0.7.1 has a Buffer Overflow in the gf_media_avc_read_sps function in media_tools/av_parsers.c, a different vulnerability than CVE-2018-1…

Fix: after 0.7.1
Fix from $1,950 2018-03-07
Debian Linux CRITICAL 9.8
CVE-2018-1000116EPSS 6%

NET-SNMP version 5.7.2 contains a heap corruption vulnerability in the UDP protocol handler that can result in command execution.

No fix yet
Fix from $2,300 2018-03-07
Debian Linux MEDIUM 5.5
CVE-2018-7730

An issue was discovered in Exempi through 2.4.4. A certain case of a 0xffffffff length is mishandled in XMPFiles/source/FormatSupport/PSIR_FileWriter…

Fix: after 2.4.4
Fix from $1,600 2018-03-06
Debian Linux HIGH 8.1
CVE-2018-7711

HTTPRedirect.php in the saml2 library in SimpleSAMLphp before 1.15.4 has an incorrect check of return values in the signature validation utilities, a…

Fix: 1.10.6 / 1.15.4+
Fix from $1,950 2018-03-05
Debian Linux MEDIUM 6.5
CVE-2017-18219

An issue was discovered in GraphicsMagick 1.3.26. An allocation failure vulnerability was found in the function ReadOnePNGImage in coders/png.c, whic…

Patch available
Fix from $1,600 2018-03-05
Debian Linux HIGH 7.5
CVE-2018-0490

An issue was discovered in Tor before 0.2.9.15, 0.3.1.x before 0.3.1.10, and 0.3.2.x before 0.3.2.10. The directory-authority protocol-list subprotoc…

Fix: after 0.3.1.9
Fix from $1,950 2018-03-05
Debian Linux HIGH 7.1
CVE-2017-14461EPSS 17%

A specially crafted email delivered over SMTP and passed on to Dovecot by MTA can trigger an out of bounds read resulting in potential sensitive info…

Patch available
Fix from $1,950 2018-03-02
Debian Linux MEDIUM 5.9
CVE-2017-15130

A denial of service flaw was found in dovecot before 2.2.34. An attacker able to generate random SNI server names could exploit TLS SNI configuration…

Fix: 2.2.34+
Fix from $1,600 2018-03-02
Debian Linux HIGH 8.8
CVE-2018-7550

The load_multiboot function in hw/i386/multiboot.c in Quick Emulator (aka QEMU) allows local guest OS users to execute arbitrary code on the QEMU hos…

Patch available
Fix from $1,950 2018-03-01
Debian Linux CRITICAL 9.1
CVE-2018-7556

LimeSurvey 2.6.x before 2.6.7, 2.7x.x before 2.73.1, and 3.x before 3.4.2 mishandles application/controller/InstallerController.php after installatio…

Fix: 2.6.7 / 2.73.1+
Fix from $2,300 2018-02-28
Debian Linux MEDIUM 6.5
CVE-2018-7557

The decode_init function in libavcodec/utvideodec.c in FFmpeg 2.8 through 3.4.2 allows remote attackers to cause a denial of service (Out of array re…

Fix: after 3.4.2
Fix from $1,600 2018-02-28
Debian Linux CRITICAL 9.8
CVE-2018-7551

There is an invalid free in MiniPS::delete0 in minips.cpp that leads to a Segmentation fault in sam2p 0.49.4. A crafted input will lead to a denial o…

No fix yet
Fix from $2,300 2018-02-28
Debian Linux CRITICAL 9.8
CVE-2018-7552

There is an invalid free in Mapping::DoubleHash::clear in mapping.cpp that leads to a Segmentation fault in sam2p 0.49.4. A crafted input will lead t…

No fix yet
Fix from $2,300 2018-02-28
Debian Linux CRITICAL 9.8
CVE-2018-7553

There is a heap-based buffer overflow in the pcxLoadRaster function of in_pcx.cpp in sam2p 0.49.4. A crafted input will lead to a denial of service o…

No fix yet
Fix from $2,300 2018-02-28
Debian Linux CRITICAL 9.8
CVE-2018-7554

There is an invalid free in ReadImage in input-bmp.ci that leads to a Segmentation fault in sam2p 0.49.4. A crafted input will lead to a denial of se…

No fix yet
Fix from $2,300 2018-02-28
Debian Linux HIGH 8.8
CVE-2018-7541

An issue was discovered in Xen through 4.10.x allowing guest OS users to cause a denial of service (hypervisor crash) or gain privileges by triggerin…

Fix: after 4.10.0
Fix from $1,950 2018-02-27
Debian Linux MEDIUM 6.5
CVE-2018-7540

An issue was discovered in Xen through 4.10.x allowing x86 PV guest OS users to cause a denial of service (host OS CPU hang) via non-preemptable L3/L…

Fix: after 4.10.0
Fix from $1,600 2018-02-27
Debian Linux MEDIUM 6.5
CVE-2018-7542

An issue was discovered in Xen 4.8.x through 4.10.x allowing x86 PVH guest OS users to cause a denial of service (NULL pointer dereference and hyperv…

Fix: after 4.10.0
Fix from $1,600 2018-02-27