Top technology
Linux 13140
Google 12536
Microsoft 12379
Oracle 6843
Apple 6692
Adobe 6387
Ibm 6336
Cisco 5759
Debian 3919
Mozilla 2895
Apache 2864
Redhat 2592
MEDIUM 6.8
CVE-2015-1274
Google Chrome before 44.0.2403.89 does not ensure that the auto-open list omits all dangerous file types, which makes it easier for remote attackers …
Debian Linux
after 43.0.2357.134
HIGH 7.5
CVE-2015-1272
Use-after-free vulnerability in the GPU process implementation in Google Chrome before 44.0.2403.89 allows remote attackers to cause a denial of serv…
Debian Linux
after 43.0.2357.134
MEDIUM 6.6
CVE-2015-2594
Unspecified vulnerability in the Oracle VM VirtualBox component in Oracle Virtualization VirtualBox prior to 4.0.32, 4.1.40, 4.2.32, and 4.3.30 allow…
Debian Linux
4.0.32 / 4.1.40+
MEDIUM 5.0
CVE-2015-3281
The buffer_slow_realign function in HAProxy 1.5.x before 1.5.14 and 1.6-dev does not properly realign a buffer that is used for pending outgoing data…
Debian Linux
Patch available
MEDIUM 5.0
CVE-2014-7810EPSS 14%
The Expression Language (EL) implementation in Apache Tomcat 6.x before 6.0.44, 7.x before 7.0.58, and 8.x before 8.0.16 does not properly consider t…
Debian Linux
Patch available
HIGH 7.5
CVE-2015-1265EPSS 8%
Multiple unspecified vulnerabilities in Google Chrome before 43.0.2357.65 allow attackers to cause a denial of service or possibly have other impact …
Debian Linux
after 42.0.2311.152
MEDIUM 5.0
CVE-2015-1261
android/java/src/org/chromium/chrome/browser/WebsiteSettingsPopup.java in Google Chrome before 43.0.2357.65 on Android does not properly restrict use…
Debian Linux
after 42.0.2311.107
HIGH 7.5
CVE-2015-1260
Multiple use-after-free vulnerabilities in content/renderer/media/user_media_client_impl.cc in the WebRTC implementation in Google Chrome before 43.0…
Debian Linux
after 42.0.2311.152
HIGH 7.5
CVE-2015-1259
PDFium, as used in Google Chrome before 43.0.2357.65, does not properly initialize memory, which allows remote attackers to cause a denial of service…
Debian Linux
after 42.0.2311.152
HIGH 7.5
CVE-2015-1258
Google Chrome before 43.0.2357.65 relies on libvpx code that was not built with an appropriate --size-limit value, which allows remote attackers to t…
Debian Linux
after 42.0.2311.152
HIGH 7.5
CVE-2015-1257
platform/graphics/filters/FEColorMatrix.cpp in the SVG implementation in Blink, as used in Google Chrome before 43.0.2357.65, does not properly handl…
Debian Linux
after 42.0.2311.152
HIGH 7.5
CVE-2015-1256
Use-after-free vulnerability in the SVG implementation in Blink, as used in Google Chrome before 43.0.2357.65, allows remote attackers to cause a den…
Debian Linux
after 42.0.2311.152
MEDIUM 5.0
CVE-2015-1254
core/dom/Document.cpp in Blink, as used in Google Chrome before 43.0.2357.65, enables the inheritance of the designMode attribute, which allows remot…
Debian Linux
after 42.0.2311.152
HIGH 7.5
CVE-2015-1253
core/html/parser/HTMLConstructionSite.cpp in the DOM implementation in Blink, as used in Google Chrome before 43.0.2357.65, allows remote attackers t…
Debian Linux
after 42.0.2311.152
HIGH 7.5
CVE-2015-3427
Quassel before 0.12.2 does not properly re-initialize the database session when the PostgreSQL database is restarted, which allows remote attackers t…
Debian Linux
after 0.12.1
MEDIUM 5.0
CVE-2015-0971
The DER parser in Suricata before 2.0.8 allows remote attackers to cause a denial of service (crash) via vectors related to SSL/TLS certificates.
Debian Linux
after 2.0.7
MEDIUM 5.0
CVE-2015-3026
Icecast before 2.4.2, when a stream_auth handler is defined for URL authentication, allows remote attackers to cause a denial of service (NULL pointe…
Debian Linux
after 2.4.1
MEDIUM 6.8
CVE-2015-3417
Use-after-free vulnerability in the ff_h264_free_tables function in libavcodec/h264.c in FFmpeg before 2.3.6 allows remote attackers to cause a denia…
Debian Linux
after 2.3.5
HIGH 7.5
CVE-2015-3415
The sqlite3VdbeExec function in vdbe.c in SQLite before 3.8.9 does not properly implement comparison operators, which allows context-dependent attack…
Debian Linux
5.4.42 / 5.5.26+
HIGH 7.5
CVE-2015-3333
Multiple unspecified vulnerabilities in Google V8 before 4.2.77.14, as used in Google Chrome before 42.0.2311.90, allow attackers to cause a denial o…
Debian Linux
after 42.0.2311.60
HIGH 7.5
CVE-2015-1249
Multiple unspecified vulnerabilities in Google Chrome before 42.0.2311.90 allow attackers to cause a denial of service or possibly have other impact …
Debian Linux
after 42.0.2311.60
MEDIUM 5.0
CVE-2015-1246
Blink, as used in Google Chrome before 42.0.2311.90, allows remote attackers to cause a denial of service (out-of-bounds read) via unspecified vector…
Debian Linux
after 42.0.2311.60
MEDIUM 5.0
CVE-2015-1240
gpu/blink/webgraphicscontext3d_impl.cc in the WebGL implementation in Google Chrome before 42.0.2311.90 allows remote attackers to cause a denial of …
Debian Linux
after 42.0.2311.60
MEDIUM 6.5
CVE-2015-1822
chrony before 1.31.1 does not initialize the last "next" pointer when saving unacknowledged replies to command requests, which allows remote authenti…
Debian Linux
after 1.31
MEDIUM 6.5
CVE-2015-1821
Heap-based buffer overflow in chrony before 1.31.1 allows remote authenticated users to cause a denial of service (chronyd crash) or possibly execute…
Debian Linux
after 1.31
HIGH 10.0
CVE-2015-2788
Multiple stack-based buffer overflows in the ib_fill_isqlda function in dbdimp.c in DBD-Firebird before 1.19 allow remote attackers to have unspecifi…
Debian Linux
after 1.18
HIGH 7.5
CVE-2015-2782EPSS 6%
Buffer overflow in Open-source ARJ archiver 3.10.22 allows remote attackers to cause a denial of service (crash) or possibly execute arbitrary code v…
Debian Linux
Mitigation only
MEDIUM 6.8
CVE-2015-2754
FreeXL before 1.0.0i allows remote attackers to cause a denial of service (stack corruption) and possibly execute arbitrary code via a crafted workbo…
Debian Linux
after 1.0.0h
MEDIUM 6.8
CVE-2015-2753
FreeXL before 1.0.0i allows remote attackers to cause a denial of service (stack corruption) or possibly execute arbitrary code via a crafted sector …
Debian Linux
after 1.0.0h
HIGH 7.5
CVE-2015-0838
Buffer overflow in the C implementation of the apply_delta function in _pack.c in Dulwich before 0.9.9 allows remote attackers to execute arbitrary c…
Debian Linux
after 0.9.8