Top technology
Linux 13140
Google 12525
Microsoft 12378
Apple 6692
Oracle 6649
Adobe 6383
Ibm 6266
Cisco 5746
Debian 3919
Apache 2864
Mozilla 2857
Redhat 2581
HIGH 7.8
CVE-2018-19214
Netwide Assembler (NASM) 2.14rc15 has a heap-based buffer over-read in expand_mmac_params in asm/preproc.c for insufficient input.
Enterprise Linux
Patch available
HIGH 7.8
CVE-2018-19215
Netwide Assembler (NASM) 2.14rc16 has a heap-based buffer over-read in expand_mmac_params in asm/preproc.c for the special cases of the % and $ and !…
Enterprise Linux
No fix yet
MEDIUM 6.5
CVE-2018-12366
An invalid grid size during QCMS (color profile) transformations can result in the out-of-bounds read interpreted as a float value. This could leak p…
Enterprise Linux Desktop
Mitigation only
HIGH 7.5
CVE-2018-12826EPSS 7%
Adobe Flash Player 30.0.0.134 and earlier have an out-of-bounds read vulnerability. Successful exploitation could lead to information disclosure.
Enterprise Linux Desktop
after 30.0.0.154
HIGH 7.5
CVE-2018-12827EPSS 32%
Adobe Flash Player 30.0.0.134 and earlier have an out-of-bounds read vulnerability. Successful exploitation could lead to information disclosure.
Enterprise Linux Desktop
after 30.0.0.154
MEDIUM 5.9
CVE-2018-12824EPSS 11%
Adobe Flash Player 30.0.0.134 and earlier have an out-of-bounds read vulnerability. Successful exploitation could lead to information disclosure.
Enterprise Linux Desktop
after 30.0.0.154
MEDIUM 6.5
CVE-2016-9598
libxml2, as used in Red Hat JBoss Core Services, allows context-dependent attackers to cause a denial of service (out-of-bounds read and application …
Jboss Core Services
2.9.4+
HIGH 7.8
CVE-2016-9583
An out-of-bounds heap read vulnerability was found in the jpc_pi_nextpcrl() function of jasper before 2.0.6 when processing crafted input.
Enterprise Linux Desktop
2.0.6+
HIGH 8.1
CVE-2016-9573
An out-of-bounds read vulnerability was found in OpenJPEG 2.1.2, in the j2k_to_image tool. Converting a specially crafted JPEG2000 file to another fo…
Enterprise Linux Desktop
Patch available
MEDIUM 6.5
CVE-2017-2633
An out-of-bounds memory access issue was found in Quick Emulator (QEMU) before 1.7.2 in the VNC display driver. This flaw could occur while refreshin…
Enterprise Linux Desktop
1.7.2+
HIGH 7.5
CVE-2018-5008EPSS 7%
Adobe Flash Player 30.0.0.113 and earlier versions have an Out-of-bounds read vulnerability. Successful exploitation could lead to information disclo…
Enterprise Linux Desktop
after 30.0.0.113
MEDIUM 6.5
CVE-2018-5001EPSS 13%
Adobe Flash Player versions 29.0.0.171 and earlier have an Out-of-bounds read vulnerability. Successful exploitation could lead to information disclo…
Enterprise Linux Desktop
after 29.0.0.171
CRITICAL 9.1
CVE-2017-7758
An out-of-bounds read vulnerability with the Opus encoder when the number of channels in an audio stream changes while the encoder is in use. This vu…
Enterprise Linux Desktop
52.2.0 / 54.0+
MEDIUM 6.5
CVE-2018-10767
There is a stack-based buffer over-read in calling GLib in the function gxps_images_guess_content_type of gxps-images.c in libgxps through 0.3.0 beca…
Ansible Tower
after 0.3.0
MEDIUM 6.5
CVE-2018-10733
There is a heap-based buffer over-read in the function ft_font_face_hash of gxps-fonts.c in libgxps through 0.3.0. A crafted input will lead to a rem…
Ansible Tower
after 0.3.0
HIGH 7.5
CVE-2017-2591
389-ds-base before version 1.3.6 is vulnerable to an improperly NULL terminated array in the uniqueness_entry_to_config() function in the "attribute …
Enterprise Linux
1.3.6+
MEDIUM 5.5
CVE-2018-10372
process_cu_tu_index in dwarf.c in GNU Binutils 2.30 allows remote attackers to cause a denial of service (heap-based buffer over-read and application…
Enterprise Linux Desktop
No fix yet
MEDIUM 5.5
CVE-2018-7858
Quick Emulator (aka QEMU), when built with the Cirrus CLGD 54xx VGA Emulator support, allows local guest OS privileged users to cause a denial of ser…
Enterprise Linux Desktop
after 2.11.2
HIGH 7.5
CVE-2018-1054
An out-of-bounds memory read flaw was found in the way 389-ds-base handled certain LDAP search filters, affecting all versions including 1.4.x. A rem…
Enterprise Linux Desktop
after 1.4.0.6
HIGH 7.5
CVE-2018-4871EPSS 6%
An Out-of-bounds Read issue was discovered in Adobe Flash Player before 28.0.0.137. This vulnerability occurs because of computation that reads data …
Enterprise Linux Desktop
after 28.0.0.126
CRITICAL 9.8
CVE-2017-3112EPSS 6%
An issue was discovered in Adobe Flash Player 27.0.0.183 and earlier versions. This vulnerability occurs as a result of a computation that reads data…
Enterprise Linux Desktop
after 27.0.0.183
CRITICAL 9.8
CVE-2017-3114EPSS 6%
An issue was discovered in Adobe Flash Player 27.0.0.183 and earlier versions. This vulnerability occurs as a result of a computation that reads data…
Enterprise Linux Desktop
after 27.0.0.183
CRITICAL 9.8
CVE-2017-11213EPSS 7%
An issue was discovered in Adobe Flash Player 27.0.0.183 and earlier versions. This vulnerability occurs as a result of a computation that reads data…
Enterprise Linux Desktop
after 27.0.0.183
HIGH 7.5
CVE-2014-9657EPSS 5%
The tt_face_load_hdmx function in truetype/ttpload.c in FreeType before 2.5.4 does not establish a minimum record size, which allows remote attackers…
Enterprise Linux Desktop
Patch available
MEDIUM 5.0
CVE-2014-3675
Shim allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted DHCPv6 packet.
Shim
0.8+
MEDIUM 5.0
CVE-2014-4341EPSS 7%
MIT Kerberos 5 (aka krb5) before 1.12.2 allows remote attackers to cause a denial of service (buffer over-read and application crash) by injecting in…
Enterprise Linux Desktop
Patch available
MEDIUM 5.0
CVE-2004-0421
The Portable Network Graphics library (libpng) 1.0.15 and earlier allows attackers to cause a denial of service (crash) via a malformed PNG image fil…
Libpng
Patch available