Vulnerability index

Browse CVEs

3,919 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Debian Linux CRITICAL 9.8
CVE-2016-10711

Apsis Pound before 2.8a allows request smuggling via crafted headers, a different vulnerability than CVE-2005-3751.

Fix: after 2.7
Fix from $2,300 2018-01-29
Debian Linux MEDIUM 6.5
CVE-2018-6392

The filter_slice function in libavfilter/vf_transpose.c in FFmpeg through 3.4.1 allows remote attackers to cause a denial of service (out-of-array ac…

Fix: after 3.4.1
Fix from $1,600 2018-01-29
Debian Linux HIGH 7.8
CVE-2017-18078

systemd-tmpfiles in systemd before 237 attempts to support ownership/permission changes on hardlinked files even if the fs.protected_hardlinks sysctl…

Fix: 237+
Fix from $1,950 2018-01-29
Debian Linux HIGH 8.8
CVE-2018-6360

mpv through 0.28.0 allows remote attackers to execute arbitrary code via a crafted web site, because it reads HTML documents containing VIDEO element…

Fix: after 0.28.0
Fix from $1,950 2018-01-28
Debian Linux HIGH 8.8
CVE-2018-6358

The printDefineFont2 function (util/listfdb.c) in libming through 0.4.8 is vulnerable to a heap-based buffer overflow, which may allow attackers to c…

Fix: after 0.4.8
Fix from $1,950 2018-01-27
Debian Linux HIGH 8.8
CVE-2018-6359

The decompileIF function (util/decompile.c) in libming through 0.4.8 is vulnerable to a use-after-free, which may allow attackers to cause a denial o…

Fix: after 0.4.8
Fix from $1,950 2018-01-27
Debian Linux CRITICAL 9.8
CVE-2017-12377EPSS 12%

ClamAV AntiVirus software versions 0.99.2 and prior contain a vulnerability that could allow an unauthenticated, remote attacker to cause a denial of…

Fix: after 0.99.2
Fix from $2,300 2018-01-26
Debian Linux CRITICAL 9.8
CVE-2017-12379EPSS 13%

ClamAV AntiVirus software versions 0.99.2 and prior contain a vulnerability that could allow an unauthenticated, remote attacker to cause a denial of…

Fix: after 0.99.2
Fix from $2,300 2018-01-26
Debian Linux HIGH 7.8
CVE-2017-12376EPSS 7%

ClamAV AntiVirus software versions 0.99.2 and prior contain a vulnerability that could allow an unauthenticated, remote attacker to cause a denial of…

Fix: after 0.99.2
Fix from $1,950 2018-01-26
Debian Linux HIGH 7.5
CVE-2017-12374

The ClamAV AntiVirus software versions 0.99.2 and prior contain a vulnerability that could allow an unauthenticated, remote attacker to cause a denia…

Fix: after 0.99.2
Fix from $1,950 2018-01-26
Debian Linux HIGH 7.5
CVE-2017-12375EPSS 6%

The ClamAV AntiVirus software versions 0.99.2 and prior contain a vulnerability that could allow an unauthenticated, remote attacker to cause a denia…

Fix: after 0.99.2
Fix from $1,950 2018-01-26
Debian Linux HIGH 7.5
CVE-2017-12380EPSS 5%

ClamAV AntiVirus software versions 0.99.2 and prior contain a vulnerability that could allow an unauthenticated, remote attacker to cause a denial of…

Fix: after 0.99.2
Fix from $1,950 2018-01-26
Debian Linux MEDIUM 5.5
CVE-2017-12378

ClamAV AntiVirus software versions 0.99.2 and prior contain a vulnerability that could allow an unauthenticated, remote attacker to cause a denial of…

Fix: after 0.99.2
Fix from $1,600 2018-01-26
Debian Linux HIGH 8.8
CVE-2018-6315

The outputSWF_TEXT_RECORD function (util/outputscript.c) in libming through 0.4.8 is vulnerable to an integer overflow and resultant out-of-bounds re…

Fix: after 0.4.8
Fix from $1,950 2018-01-25
Debian Linux HIGH 7.5
CVE-2017-15132

A flaw was found in dovecot 2.0 up to 2.2.33 and 2.3.0. An abort of SASL authentication results in a memory leak in dovecot's auth client used by log…

Fix: after 2.2.33
Fix from $1,950 2018-01-25
Debian Linux CRITICAL 9.1
CVE-2018-1000005

libcurl 7.49.0 to and including 7.57.0 contains an out bounds read in code handling HTTP/2 trailers. It was reported (https://github.com/curl/curl/pu…

Fix: after 7.57.0
Fix from $2,300 2018-01-24
Debian Linux MEDIUM 5.5
CVE-2018-6192

In Artifex MuPDF 1.12.0, the pdf_read_new_xref function in pdf/pdf-xref.c allows remote attackers to cause a denial of service (segmentation violatio…

No fix yet
Fix from $1,600 2018-01-24
Debian Linux CRITICAL 9.8
CVE-2017-12176

xorg-x11-server before 1.19.5 was missing extra length validation in ProcEstablishConnection function allowing malicious X client to cause X server t…

Fix: 1.19.5+
Fix from $2,300 2018-01-24
Debian Linux CRITICAL 9.8
CVE-2017-12177

xorg-x11-server before 1.19.5 was vulnerable to integer overflow in ProcDbeGetVisualInfo function allowing malicious X client to cause X server to cr…

Fix: 1.19.5+
Fix from $2,300 2018-01-24
Debian Linux CRITICAL 9.8
CVE-2017-12178

xorg-x11-server before 1.19.5 had wrong extra length check in ProcXIChangeHierarchy function allowing malicious X client to cause X server to crash o…

Fix: 1.19.5+
Fix from $2,300 2018-01-24
Debian Linux CRITICAL 9.8
CVE-2017-12179

xorg-x11-server before 1.19.5 was vulnerable to integer overflow in (S)ProcXIBarrierReleasePointer functions allowing malicious X client to cause X s…

Fix: 1.19.5+
Fix from $2,300 2018-01-24
Debian Linux CRITICAL 9.8
CVE-2017-12180

xorg-x11-server before 1.19.5 was missing length validation in XFree86 VidModeExtension allowing malicious X client to cause X server to crash or pos…

Fix: 1.19.5+
Fix from $2,300 2018-01-24
Debian Linux CRITICAL 9.8
CVE-2017-12181

xorg-x11-server before 1.19.5 was missing length validation in XFree86 DGA extension allowing malicious X client to cause X server to crash or possib…

Fix: 1.19.5+
Fix from $2,300 2018-01-24
Debian Linux CRITICAL 9.8
CVE-2017-12182

xorg-x11-server before 1.19.5 was missing length validation in XFree86 DRI extension allowing malicious X client to cause X server to crash or possib…

Fix: 1.19.5+
Fix from $2,300 2018-01-24
Debian Linux CRITICAL 9.8
CVE-2017-12183

xorg-x11-server before 1.19.5 was missing length validation in XFIXES extension allowing malicious X client to cause X server to crash or possibly ex…

Fix: 1.19.5+
Fix from $2,300 2018-01-24
Debian Linux CRITICAL 9.8
CVE-2017-12184

xorg-x11-server before 1.19.5 was missing length validation in XINERAMA extension allowing malicious X client to cause X server to crash or possibly …

Fix: 1.19.5+
Fix from $2,300 2018-01-24
Debian Linux CRITICAL 9.8
CVE-2017-12185

xorg-x11-server before 1.19.5 was missing length validation in MIT-SCREEN-SAVER extension allowing malicious X client to cause X server to crash or p…

Fix: 1.19.5+
Fix from $2,300 2018-01-24
Debian Linux CRITICAL 9.8
CVE-2017-12186

xorg-x11-server before 1.19.5 was missing length validation in X-Resource extension allowing malicious X client to cause X server to crash or possibl…

Fix: 1.19.5+
Fix from $2,300 2018-01-24
Debian Linux CRITICAL 9.8
CVE-2017-12187

xorg-x11-server before 1.19.5 was missing length validation in RENDER extension allowing malicious X client to cause X server to crash or possibly ex…

Fix: 1.19.5+
Fix from $2,300 2018-01-24
Debian Linux MEDIUM 5.5
CVE-2018-6187

In Artifex MuPDF 1.12.0, there is a heap-based buffer overflow vulnerability in the do_pdf_save_document function in the pdf/pdf-write.c file. Remote…

No fix yet
Fix from $1,600 2018-01-24