Top technology
Linux 13140
Google 12525
Microsoft 12378
Apple 6692
Oracle 6649
Adobe 6383
Ibm 6266
Cisco 5746
Debian 3919
Apache 2864
Mozilla 2857
Redhat 2581
HIGH 8.8
CVE-2015-8540EPSS 6%
Integer underflow in the png_check_keyword function in pngwutil.c in libpng 0.90 through 0.99, 1.0.x before 1.0.66, 1.1.x and 1.2.x before 1.2.56, 1.…
Enterprise Linux Desktop Supplementary
Patch available
HIGH 7.5
CVE-2015-1279
Integer overflow in the CJBig2_Image::expand function in fxcodec/jbig2/JBig2_Image.cpp in PDFium, as used in Google Chrome before 44.0.2403.89, allow…
Enterprise Linux Desktop Supplementary
after 43.0.2357.134
HIGH 7.5
CVE-2015-4022EPSS 21%
Integer overflow in the ftp_genlist function in ext/ftp/ftp.c in PHP before 5.4.41, 5.5.x before 5.5.25, and 5.6.x before 5.6.9 allows remote FTP ser…
Enterprise Linux Desktop
after 5.4.40
MEDIUM 5.0
CVE-2015-4021EPSS 21%
The phar_parse_tarfile function in ext/phar/tar.c in PHP before 5.4.41, 5.5.x before 5.5.25, and 5.6.x before 5.6.9 does not verify that the first ch…
Enterprise Linux Desktop
after 5.4.40
MEDIUM 5.0
CVE-2014-8767EPSS 5%
Integer underflow in the olsr_print function in tcpdump 3.9.6 through 4.6.2, when in verbose mode, allows remote attackers to cause a denial of servi…
Tcpdump
No fix yet
HIGH 7.5
CVE-2014-6051EPSS 8%
Integer overflow in the MallocFrameBuffer function in vncviewer.c in LibVNCServer 0.9.9 and earlier allows remote VNC servers to cause a denial of se…
Enterprise Linux Server Aus
after 0.9.9
MEDIUM 5.0
CVE-2012-3404
The vfprintf function in stdio-common/vfprintf.c in libc in GNU C Library (aka glibc) 2.12 and other versions does not properly calculate a buffer le…
Enterprise Virtualization
Patch available
MEDIUM 5.0
CVE-2012-3405
The vfprintf function in stdio-common/vfprintf.c in libc in GNU C Library (aka glibc) 2.14 and other versions does not properly calculate a buffer le…
Enterprise Virtualization
Mitigation only
MEDIUM 6.8
CVE-2013-4397EPSS 5%
Multiple integer overflows in the th_read function in lib/block.c in libtar before 1.2.20 allow remote attackers to cause a denial of service (crash)…
Enterprise Linux
after 1.2.19
MEDIUM 6.8
CVE-2012-4540
Off-by-one error in the invoke function in IcedTeaScriptablePluginObject.cc in IcedTea-Web 1.1.x before 1.1.7, 1.2.x before 1.2.2, 1.3.x before 1.3.1…
Icedtea Web
Mitigation only
HIGH 7.5
CVE-2012-2149EPSS 14%
The WPXContentListener::_closeTableRow function in WPXContentListener.cpp in libwpd 0.8.8, as used by OpenOffice.org (OOo) before 3.4, allows remote …
Enterprise Linux Optional Productivity Applications
after 3.4
HIGH 7.6
CVE-2010-2643EPSS 6%
Integer overflow in the TFM font parser in the dvi-backend component in Evince 2.32 and earlier allows remote attackers to execute arbitrary code via…
Evince
Patch available
MEDIUM 6.8
CVE-2007-5503EPSS 5%
Multiple integer overflows in Cairo before 1.4.12 might allow remote attackers to execute arbitrary code, as demonstrated using a crafted PNG image w…
Cairo
after 1.4.10
MEDIUM 6.8
CVE-2006-4811
Integer overflow in Qt 3.3 before 3.3.7, 4.1 before 4.1.5, and 4.2 before 4.2.1, as used in the KDE khtml library, kdelibs 3.1.3, and possibly other …
Kdelibs
Patch available