Vulnerability index

Browse CVEs

14 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Numeric ErrorsCWE-189 × clear
Enterprise Linux Desktop Supplementary HIGH 8.8
CVE-2015-8540EPSS 6%

Integer underflow in the png_check_keyword function in pngwutil.c in libpng 0.90 through 0.99, 1.0.x before 1.0.66, 1.1.x and 1.2.x before 1.2.56, 1.…

Patch available
Fix from $1,950 2016-04-14
Enterprise Linux Desktop Supplementary HIGH 7.5
CVE-2015-1279

Integer overflow in the CJBig2_Image::expand function in fxcodec/jbig2/JBig2_Image.cpp in PDFium, as used in Google Chrome before 44.0.2403.89, allow…

Fix: after 43.0.2357.134
Fix from $1,950 2015-07-23
Enterprise Linux Desktop HIGH 7.5
CVE-2015-4022EPSS 21%

Integer overflow in the ftp_genlist function in ext/ftp/ftp.c in PHP before 5.4.41, 5.5.x before 5.5.25, and 5.6.x before 5.6.9 allows remote FTP ser…

Fix: after 5.4.40
Fix from $1,950 2015-06-09
Enterprise Linux Desktop MEDIUM 5.0
CVE-2015-4021EPSS 21%

The phar_parse_tarfile function in ext/phar/tar.c in PHP before 5.4.41, 5.5.x before 5.5.25, and 5.6.x before 5.6.9 does not verify that the first ch…

Fix: after 5.4.40
Fix from $1,600 2015-06-09
Tcpdump MEDIUM 5.0
CVE-2014-8767EPSS 5%

Integer underflow in the olsr_print function in tcpdump 3.9.6 through 4.6.2, when in verbose mode, allows remote attackers to cause a denial of servi…

No fix yet
Fix from $1,600 2014-11-20
Enterprise Linux Server Aus HIGH 7.5
CVE-2014-6051EPSS 8%

Integer overflow in the MallocFrameBuffer function in vncviewer.c in LibVNCServer 0.9.9 and earlier allows remote VNC servers to cause a denial of se…

Fix: after 0.9.9
Fix from $1,950 2014-09-30
Enterprise Virtualization MEDIUM 5.0
CVE-2012-3404

The vfprintf function in stdio-common/vfprintf.c in libc in GNU C Library (aka glibc) 2.12 and other versions does not properly calculate a buffer le…

Patch available
Fix from $1,600 2014-02-10
Enterprise Virtualization MEDIUM 5.0
CVE-2012-3405

The vfprintf function in stdio-common/vfprintf.c in libc in GNU C Library (aka glibc) 2.14 and other versions does not properly calculate a buffer le…

Mitigation only
Fix from $1,600 2014-02-10
Enterprise Linux MEDIUM 6.8
CVE-2013-4397EPSS 5%

Multiple integer overflows in the th_read function in lib/block.c in libtar before 1.2.20 allow remote attackers to cause a denial of service (crash)…

Fix: after 1.2.19
Fix from $1,600 2013-10-17
Icedtea Web MEDIUM 6.8
CVE-2012-4540

Off-by-one error in the invoke function in IcedTeaScriptablePluginObject.cc in IcedTea-Web 1.1.x before 1.1.7, 1.2.x before 1.2.2, 1.3.x before 1.3.1…

Mitigation only
Fix from $1,600 2012-11-11
Enterprise Linux Optional Productivity Applications HIGH 7.5
CVE-2012-2149EPSS 14%

The WPXContentListener::_closeTableRow function in WPXContentListener.cpp in libwpd 0.8.8, as used by OpenOffice.org (OOo) before 3.4, allows remote …

Fix: after 3.4
Fix from $1,950 2012-06-21
Evince HIGH 7.6
CVE-2010-2643EPSS 6%

Integer overflow in the TFM font parser in the dvi-backend component in Evince 2.32 and earlier allows remote attackers to execute arbitrary code via…

Patch available
Fix from $1,950 2011-01-07
Cairo MEDIUM 6.8
CVE-2007-5503EPSS 5%

Multiple integer overflows in Cairo before 1.4.12 might allow remote attackers to execute arbitrary code, as demonstrated using a crafted PNG image w…

Fix: after 1.4.10
Fix from $1,600 2007-11-30
Kdelibs MEDIUM 6.8
CVE-2006-4811

Integer overflow in Qt 3.3 before 3.3.7, 4.1 before 4.1.5, and 4.2 before 4.2.1, as used in the KDE khtml library, kdelibs 3.1.3, and possibly other …

Patch available
Fix from $1,600 2006-10-18