Vulnerability index

Browse CVEs

725 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Libextractor HIGH 7.5
CVE-2017-15267

In GNU Libextractor 1.4, there is a NULL Pointer Dereference in flac_metadata in flac_extractor.c.

No fix yet
Fix from $1,950 2017-10-11
Libextractor MEDIUM 5.5
CVE-2017-15266

In GNU Libextractor 1.4, there is a Divide-By-Zero in EXTRACTOR_wav_extract_method in wav_extractor.c via a zero sample rate.

Patch available
Fix from $1,600 2017-10-11
Binutils MEDIUM 5.5
CVE-2017-15225

_bfd_dwarf2_cleanup_debug_info in dwarf2.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29, allows remo…

Patch available
Fix from $1,600 2017-10-10
Binutils HIGH 7.8
CVE-2017-15020

dwarf1.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29, mishandles pointers, which allows remote atta…

Patch available
Fix from $1,950 2017-10-05
Binutils MEDIUM 5.5
CVE-2017-15021

bfd_get_debug_link_info_1 in opncls.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29, allows remote at…

Patch available
Fix from $1,600 2017-10-05
Binutils MEDIUM 5.5
CVE-2017-15022

dwarf2.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29, does not validate the DW_AT_name data type, w…

Patch available
Fix from $1,600 2017-10-05
Binutils MEDIUM 5.5
CVE-2017-15023

read_formatted_entries in dwarf2.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29, does not properly v…

Patch available
Fix from $1,600 2017-10-05
Binutils MEDIUM 5.5
CVE-2017-15024

find_abstract_instance_name in dwarf2.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29, allows remote …

Patch available
Fix from $1,600 2017-10-05
Binutils MEDIUM 5.5
CVE-2017-15025

decode_line_info in dwarf2.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29, allows remote attackers t…

Patch available
Fix from $1,600 2017-10-05
Binutils MEDIUM 5.5
CVE-2017-14974

The *_get_synthetic_symtab functions in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29, mishandle the fai…

Patch available
Fix from $1,600 2017-10-02
Binutils MEDIUM 5.5
CVE-2017-14930

Memory leak in decode_line_info in dwarf2.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29, allows rem…

Patch available
Fix from $1,600 2017-09-30
Binutils MEDIUM 5.5
CVE-2017-14932

decode_line_info in dwarf2.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29, allows remote attackers t…

Patch available
Fix from $1,600 2017-09-30
Binutils MEDIUM 5.5
CVE-2017-14933

read_formatted_entries in dwarf2.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29, allows remote attac…

Patch available
Fix from $1,600 2017-09-30
Binutils MEDIUM 5.5
CVE-2017-14934

process_debug_info in dwarf.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29, allows remote attackers …

Patch available
Fix from $1,600 2017-09-30
Binutils MEDIUM 5.5
CVE-2017-14938

_bfd_elf_slurp_version_tables in elf.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29, allows remote a…

Patch available
Fix from $1,600 2017-09-30
Binutils MEDIUM 5.5
CVE-2017-14939EPSS 6%

decode_line_info in dwarf2.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29, mishandles a length calcu…

Patch available
Fix from $1,600 2017-09-30
Binutils MEDIUM 5.5
CVE-2017-14940

scan_unit_for_symbols in dwarf2.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29, allows remote attack…

Patch available
Fix from $1,600 2017-09-30
Binutils HIGH 7.8
CVE-2017-14745

The *_get_synthetic_symtab functions in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29, interpret a -1 va…

Patch available
Fix from $1,950 2017-09-26
Binutils HIGH 7.8
CVE-2017-14729

The *_get_synthetic_symtab functions in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29, do not ensure a u…

Patch available
Fix from $1,950 2017-09-25
Coreutils MEDIUM 5.1
CVE-2015-1865

fts.c in coreutils 8.4 allows local users to delete arbitrary files.

Mitigation only
Fix from $1,600 2017-09-20
Binutils MEDIUM 5.5
CVE-2017-14529

The pe_print_idata function in peXXigen.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29, mishandles H…

Patch available
Fix from $1,600 2017-09-18
Binutils HIGH 7.8
CVE-2017-14333

The process_version_sections function in readelf.c in GNU Binutils 2.29 allows attackers to cause a denial of service (Integer Overflow, and hang bec…

Mitigation only
Fix from $1,950 2017-09-12
Glibc MEDIUM 5.9
CVE-2017-12133

Use-after-free vulnerability in the clntudp_call function in sunrpc/clnt_udp.c in the GNU C Library (aka glibc or libc6) before 2.26 allows remote at…

Fix: after 2.25
Fix from $1,600 2017-09-07
Binutils MEDIUM 5.5
CVE-2017-14128

The decode_line_info function in dwarf2.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29, allows remot…

Patch available
Fix from $1,600 2017-09-04
Binutils MEDIUM 5.5
CVE-2017-14129

The read_section function in dwarf2.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29, allows remote at…

Patch available
Fix from $1,600 2017-09-04
Binutils MEDIUM 5.5
CVE-2017-14130

The _bfd_elf_parse_attributes function in elf-attrs.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29, …

Patch available
Fix from $1,600 2017-09-04
Libidn2 CRITICAL 9.8
CVE-2017-14061

Integer overflow in the _isBidi function in bidi.c in Libidn2 before 2.0.4 allows remote attackers to cause a denial of service or possibly have unsp…

Fix: after 2.0.3
Fix from $2,300 2017-08-31
Binutils MEDIUM 5.5
CVE-2017-13757

The Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29, does not validate the PLT section size, which allows remo…

Patch available
Fix from $1,600 2017-08-29
Binutils MEDIUM 5.5
CVE-2017-13716

The C++ symbol demangler routine in cplus-dem.c in libiberty, as distributed in GNU Binutils 2.29, allows remote attackers to cause a denial of servi…

Patch available
Fix from $1,600 2017-08-28
Bash HIGH 7.5
CVE-2016-0634EPSS 6%

The expansion of '\h' in the prompt string in bash 4.3 allows remote authenticated users to execute arbitrary code via shell metacharacters placed in…

Patch available
Fix from $1,950 2017-08-28