Vulnerability index

Browse CVEs

245 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Fedora HIGH 7.5
CVE-2020-7238

Netty 4.1.43.Final allows HTTP Request Smuggling because it mishandles Transfer-Encoding whitespace (such as a [space]Transfer-Encoding:chunked line)…

No fix yet
Fix from $1,950 2020-01-27
Fedora HIGH 8.8
CVE-2020-6860

libmysofa 0.9.1 has a stack-based buffer overflow in readDataVar in hdf/dataobject.c during the reading of a header message attribute.

No fix yet
Fix from $1,950 2020-01-13
Fedora HIGH 7.8
CVE-2013-4161

gksu-polkit-0.0.3-6.fc18 was reported as fixing the issue in CVE-2012-5617 but the patch was improperly applied and it did not fixed the security iss…

Mitigation only
Fix from $1,950 2019-12-31
Fedora MEDIUM 5.5
CVE-2019-20093

The PoDoFo::PdfVariant::DelayedLoad function in PdfVariant.h in PoDoFo 0.9.6 allows remote attackers to cause a denial of service (NULL pointer deref…

No fix yet
Fix from $1,600 2019-12-30
Fedora MEDIUM 5.5
CVE-2019-20051

A floating-point exception was discovered in PackLinuxElf::elf_hash in p_lx_elf.cpp in UPX 3.95. The vulnerability causes an application crash, which…

No fix yet
Fix from $1,600 2019-12-27
Fedora MEDIUM 5.5
CVE-2019-20021

A heap-based buffer over-read was discovered in canUnpack in p_mach.cpp in UPX 3.95 via a crafted Mach-O file.

No fix yet
Fix from $1,600 2019-12-27
Fedora HIGH 7.8
CVE-2019-19917

Lout 3.40 has a buffer overflow in the StringQuotedWord() function in z39.c.

No fix yet
Fix from $1,950 2019-12-20
Fedora HIGH 7.8
CVE-2019-19918

Lout 3.40 has a heap-based buffer overflow in the srcnext() function in z02.c.

No fix yet
Fix from $1,950 2019-12-20
Fedora MEDIUM 5.5
CVE-2019-19797

read_colordef in read.c in Xfig fig2dev 3.2.7b has an out-of-bounds write.

No fix yet
Fix from $1,600 2019-12-15
Fedora HIGH 7.8
CVE-2019-19785

ATasm 1.06 has a stack-based buffer overflow in the to_comma() function in asm.c via a crafted .m65 file.

No fix yet
Fix from $1,950 2019-12-13
Fedora HIGH 7.8
CVE-2019-19786

ATasm 1.06 has a stack-based buffer overflow in the parse_expr() function in setparse.c via a crafted .m65 file.

No fix yet
Fix from $1,950 2019-12-13
Fedora HIGH 7.8
CVE-2019-19787

ATasm 1.06 has a stack-based buffer overflow in the get_signed_expression() function in setparse.c via a crafted .m65 file.

No fix yet
Fix from $1,950 2019-12-13
Fedora MEDIUM 5.5
CVE-2019-19746

make_arrow in arrow.c in Xfig fig2dev 3.2.7b allows a segmentation fault and out-of-bounds write because of an integer overflow via a large arrow typ…

No fix yet
Fix from $1,600 2019-12-12
Fedora HIGH 7.8
CVE-2019-19648

In the macho_parse_file functionality in macho/macho.c of YARA 3.11.0, command_size may be inconsistent with the real size. A specially crafted MachO…

No fix yet
Fix from $1,950 2019-12-09
Fedora HIGH 7.8
CVE-2012-5617

gksu-polkit: permissive PolicyKit policy configuration file allows privilege escalation

Mitigation only
Fix from $1,950 2019-11-25
Fedora HIGH 7.5
CVE-2012-5535

gnome-system-log polkit policy allows arbitrary files on the system to be read

No fix yet
Fix from $1,950 2019-11-25
Fedora MEDIUM 6.3
CVE-2012-5630

libuser 0.56 and 0.57 has a TOCTOU (time-of-check time-of-use) race condition when copying and removing directory trees.

Mitigation only
Fix from $1,600 2019-11-25
Fedora MEDIUM 5.5
CVE-2010-4178

MySQL-GUI-tools (mysql-administrator) leaks passwords into process list after with launch of mysql text console

Mitigation only
Fix from $1,600 2019-11-06
Fedora MEDIUM 6.5
CVE-2019-9433

In libvpx, there is a possible information disclosure due to improper input validation. This could lead to remote information disclosure with no addi…

Mitigation only
Fix from $1,600 2019-09-27
Fedora MEDIUM 6.5
CVE-2019-9371

In libvpx, there is a possible resource exhaustion due to improper input validation. This could lead to remote denial of service with no additional e…

Mitigation only
Fix from $1,600 2019-09-27
Fedora MEDIUM 6.5
CVE-2019-16707

Hunspell 1.7.0 has an invalid read operation in SuggestMgr::leftcommonsubstring in suggestmgr.cxx.

No fix yet
Fix from $1,600 2019-09-23
Fedora HIGH 8.8
CVE-2019-2126EPSS 6%

In ParseContentEncodingEntry of mkvparser.cc, there is a possible double free due to a missing reset of a freed pointer. This could lead to remote co…

Mitigation only
Fix from $1,950 2019-08-20
Fedora HIGH 8.8
CVE-2019-14732

AdPlug 2.3.1 has multiple heap-based buffer overflows in Ca2mLoader::load() in a2m.cpp.

No fix yet
Fix from $1,950 2019-08-07
Fedora HIGH 8.8
CVE-2019-14733

AdPlug 2.3.1 has multiple heap-based buffer overflows in CradLoader::load() in rad.cpp.

No fix yet
Fix from $1,950 2019-08-07
Fedora HIGH 8.8
CVE-2019-14734

AdPlug 2.3.1 has multiple heap-based buffer overflows in CmtkLoader::load() in mtk.cpp.

No fix yet
Fix from $1,950 2019-08-07
Fedora HIGH 8.8
CVE-2019-14690

AdPlug 2.3.1 has a heap-based buffer overflow in CxadbmfPlayer::__bmf_convert_stream() in bmf.cpp.

No fix yet
Fix from $1,950 2019-08-06
Fedora HIGH 8.8
CVE-2019-14691

AdPlug 2.3.1 has a heap-based buffer overflow in CdtmLoader::load() in dtm.cpp.

No fix yet
Fix from $1,950 2019-08-06
Fedora HIGH 8.8
CVE-2019-14692

AdPlug 2.3.1 has a heap-based buffer overflow in CmkjPlayer::load() in mkj.cpp.

No fix yet
Fix from $1,950 2019-08-06
Fedora CRITICAL 9.8
CVE-2019-14532

An issue was discovered in The Sleuth Kit (TSK) 4.6.6. There is an off-by-one overwrite due to an underflow on tools/hashtools/hfind.cpp while using …

No fix yet
Fix from $2,300 2019-08-02
Fedora HIGH 7.8
CVE-2019-14267EPSS 7%

PDFResurrect 0.15 has a buffer overflow via a crafted PDF file because data associated with startxref and %%EOF is mishandled.

No fix yet
Fix from $1,950 2019-07-29