Vulnerability index

Browse CVEs

3,919 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

HIGH 7.5 CVE-2019-18976EPSS 7% An issue was discovered in res_pjsip_t38.c in Sangoma Asterisk through 13.x and Certified Asterisk through 13.21-x. If it receives a re-invite initia… Debian Linux after 13.29.1 Fix from $1,9502019-11-22 MEDIUM 6.5 CVE-2019-18790 An issue was discovered in channels/chan_sip.c in Sangoma Asterisk 13.x before 13.29.2, 16.x before 16.6.2, and 17.x before 17.0.1, and Certified Ast… Debian Linux 13.29.2 / 16.6.2+ Fix from $1,6002019-11-22 MEDIUM 6.1 CVE-2012-0812 PostfixAdmin 2.3.4 has multiple XSS vulnerabilities Debian Linux Mitigation only Fix from $1,6002019-11-22 MEDIUM 5.5 CVE-2019-19221 In Libarchive 3.4.0, archive_wstring_append_from_mbs in archive_string.c has an out-of-bounds read because of an incorrect mbrtowc or mbtowc call. Fo… Debian Linux Patch available Fix from $1,6002019-11-21 HIGH 7.0 CVE-2014-5255 xcfa before 5.0.1 creates temporary files insecurely which could allow local users to launch a symlink attack and overwrite arbitrary files. Note: A … Debian Linux 5.0.1+ Fix from $1,9502019-11-21 HIGH 7.5 CVE-2019-19204EPSS 7% An issue was discovered in Oniguruma 6.x before 6.9.4_rc2. In the function fetch_interval_quantifier (formerly known as fetch_range_quantifier) in re… Debian Linux 6.9.4+ Fix from $1,9502019-11-21 MEDIUM 6.5 CVE-2019-18890 A SQL injection vulnerability in Redmine through 3.2.9 and 3.3.x before 3.3.10 allows Redmine users to access protected information via a crafted obj… Debian Linux 3.3.10+ Fix from $1,6002019-11-21 HIGH 8.8 CVE-2019-5087 An exploitable integer overflow vulnerability exists in the flattenIncrementally function in the xcf2png and xcf2pnm binaries of xcftools 1.0.7. An i… Debian Linux No fix yet Fix from $1,9502019-11-21 HIGH 8.8 CVE-2019-5086 An exploitable integer overflow vulnerability exists in the flattenIncrementally function in the xcf2png and xcf2pnm binaries of xcftools, version 1.… Debian Linux No fix yet Fix from $1,9502019-11-21 HIGH 7.5 CVE-2014-1936 rc before 1.7.1-5 insecurely creates temporary files. Debian Linux 1.7.1-5+ Fix from $1,9502019-11-21 MEDIUM 5.3 CVE-2014-1935 9base 1:6-6 and 1:6-7 insecurely creates temporary files which results in predictable filenames. Debian Linux No fix yet Fix from $1,6002019-11-21 HIGH 7.5 CVE-2012-2350 pam_shield before 0.9.4: Default configuration does not perform protective action Debian Linux 0.9.4+ Fix from $1,9502019-11-21 HIGH 7.5 CVE-2013-1817 MediaWiki before 1.19.4 and 1.20.x before 1.20.3 contains an error in the api.php script which allows remote attackers to obtain sensitive informatio… Debian Linux 1.19.4 / 1.20.3+ Fix from $1,9502019-11-20 HIGH 7.5 CVE-2013-1816 MediaWiki before 1.19.4 and 1.20.x before 1.20.3 allows remote attackers to cause a denial of service (application crash) by sending a specially craf… Debian Linux 1.19.4 / 1.20.3+ Fix from $1,9502019-11-20 MEDIUM 5.5 CVE-2015-1606 The keyring DB in GnuPG before 2.1.2 does not properly handle invalid packets, which allows remote attackers to cause a denial of service (invalid re… Debian Linux 2.1.2+ Fix from $1,6002019-11-20 HIGH 7.5 CVE-2011-0529 Weborf before 0.12.5 is affected by a Denial of Service (DOS) due to malformed fields in HTTP. Debian Linux 0.12.5+ Fix from $1,9502019-11-20 CRITICAL 9.8 CVE-2011-1028 The $smarty.template variable in Smarty3 allows attackers to possibly execute arbitrary PHP code via the sysplugins/smarty_internal_compile_private_s… Debian Linux 3.0.7+ Fix from $2,3002019-11-20 MEDIUM 5.5 CVE-2011-2924 foomatic-rip filter v4.0.12 and prior used insecurely creates temporary files for storage of PostScript data by rendering the data when the debug mod… Debian Linux after 4.0.12 Fix from $1,6002019-11-19 MEDIUM 5.5 CVE-2011-2923 foomatic-rip filter, all versions, used insecurely creates temporary files for storage of PostScript data by rendering the data when the debug mode w… Debian Linux Mitigation only Fix from $1,6002019-11-19 HIGH 7.5 CVE-2012-6071 nuSOAP before 0.7.3-5 does not properly check the hostname of a cert. Debian Linux 0.7.3-5+ Fix from $1,9502019-11-19 HIGH 7.8 CVE-2014-5439 Multiple Stack-based Buffer Overflow vulnerabilities exists in Sniffit prior to 0.3.7 via a crafted configuration file that will bypass Non-eXecutabl… Debian Linux after 0.3.7 Fix from $1,9502019-11-19 MEDIUM 5.5 CVE-2012-0843 uzbl: Information disclosure via world-readable cookies storage file Debian Linux Mitigation only Fix from $1,6002019-11-19 MEDIUM 5.5 CVE-2012-0842 surf: cookie jar has read access from other local user Debian Linux 0.5+ Fix from $1,6002019-11-19 CRITICAL 9.8 CVE-2019-19012EPSS 11% An integer overflow in the search_in_range function in regexec.c in Oniguruma 6.x before 6.9.4_rc2 leads to an out-of-bounds read, in which the offse… Debian Linux after 6.9.3 Fix from $2,3002019-11-17 CRITICAL 9.8 CVE-2011-0703 In gksu-polkit before 0.0.3, the source file for xauth may contain arbitrary commands that may allow an attacker to overtake an administrator X11 ses… Debian Linux 0.0.3+ Fix from $2,3002019-11-15 MEDIUM 6.7 CVE-2011-2910 The AX.25 daemon (ax25d) in ax25-tools before 0.0.8-13 does not check the return value of a setuid call. The setuid call is responsible for dropping … Debian Linux 0.0.8-13+ Fix from $1,6002019-11-15 HIGH 7.5 CVE-2016-5285 A Null pointer dereference vulnerability exists in Mozilla Network Security Services due to a missing NULL check in PK11_SignWithSymKey / ssl3_Comput… Debian Linux 3.26+ Fix from $1,9502019-11-15 CRITICAL 9.8 CVE-2013-7087 ClamAV before 0.97.7 has WWPack corrupt heap memory Debian Linux 0.97.7+ Fix from $2,3002019-11-15 CRITICAL 9.8 CVE-2013-7088 ClamAV before 0.97.7 has buffer overflow in the libclamav component Debian Linux 0.97.7+ Fix from $2,3002019-11-15 HIGH 7.5 CVE-2013-7089 ClamAV before 0.97.7: dbg_printhex possible information leak Debian Linux 0.97.7+ Fix from $1,9502019-11-15