CVEs (10,001)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
2Debian Tcpdump2Debian Linux TcpdumpMay 13, 2026 Sep 14, 2017 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 The IPv6 mobility parser in tcpdump before 4.9.2 has a buffer over-read in print-mobility.c:mobility_opt_print(). |
2Debian Tcpdump2Debian Linux TcpdumpMay 13, 2026 Sep 14, 2017 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 The VTP parser in tcpdump before 4.9.2 has a buffer over-read in print-vtp.c:vtp_print(). |
2Debian Tcpdump2Debian Linux TcpdumpMay 13, 2026 Sep 14, 2017 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 The Juniper protocols parser in tcpdump before 4.9.2 has a buffer over-read in print-juniper.c:juniper_parse_header(). |
3Debian RedhatTcpdump5Debian Linux Enterprise Linux DesktopEnterprise Linux Server+2 moreMay 13, 2026 Sep 14, 2017 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 The IEEE 802.11 parser in tcpdump before 4.9.2 has a buffer over-read in print-802_11.c:parse_elements(). |
3Debian RedhatTcpdump5Debian Linux Enterprise Linux DesktopEnterprise Linux Server+2 moreMay 13, 2026 Sep 14, 2017 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 The Zephyr parser in tcpdump before 4.9.2 has a buffer over-read in print-zephyr.c, several functions. |
3Debian RedhatTcpdump5Debian Linux Enterprise Linux DesktopEnterprise Linux Server+2 moreMay 13, 2026 Sep 14, 2017 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 The DECnet parser in tcpdump before 4.9.2 has a buffer over-read in print-decnet.c:decnet_print(). |
3Debian RedhatTcpdump5Debian Linux Enterprise Linux DesktopEnterprise Linux Server+2 moreMay 13, 2026 Sep 14, 2017 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 The ISAKMP parser in tcpdump before 4.9.2 has a buffer over-read in print-isakmp.c:isakmp_rfc3948_print(). |
2Debian Libofx Project2Debian Linux LibofxMay 13, 2026 Sep 13, 2017 N/A· v4 8.8 HIGH· v3 6.8 MEDIUM· v2 An exploitable buffer overflow vulnerability exists in the tag parsing functionality of LibOFX 0.9.11. A specially crafted OFX file can cause a write out of bounds resulting in a buffer overflow on the stack. An attacker...Show more |
2Debian Drupal2Debian Linux DrupalMay 13, 2026 Sep 13, 2017 N/A· v4 6.1 MEDIUM· v3 5.8 MEDIUM· v2 Open redirect vulnerability in URL-related API functions in Drupal 6.x before 6.35 and 7.x before 7.35 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via vectors involving t...Show more |
2Debian Drupal2Debian Linux DrupalMay 13, 2026 Sep 13, 2017 N/A· v4 6.1 MEDIUM· v3 5.8 MEDIUM· v2 Open redirect vulnerability in Drupal 6.x before 6.35 and 7.x before 7.35 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the destination parameter. |
3Canonical DebianImagemagick3Debian Linux ImagemagickUbuntu LinuxMay 13, 2026 Sep 12, 2017 N/A· v4 6.5 MEDIUM· v3 7.1 HIGH· v2 ImageMagick 7.0.6-6 has a large loop vulnerability in ReadWPGImage in coders/wpg.c, causing CPU exhaustion via a crafted wpg image file. |
4Debian LinuxNvidia+1 more10Debian Linux Enterprise Linux DesktopEnterprise Linux Server+7 moreMay 13, 2026 Sep 12, 2017 N/A· v4 8.0 HIGH· v3 7.7 HIGH· v2 The native Bluetooth stack in the Linux Kernel (BlueZ), starting at the Linux kernel version 2.6.32 and up to and including 4.13.1, are vulnerable to a stack overflow vulnerability in the processing of L2CAP configuratio...Show more |
2Debian Graphicsmagick2Debian Linux GraphicsmagickMay 13, 2026 Sep 12, 2017 N/A· v4 6.5 MEDIUM· v3 4.3 MEDIUM· v2 Off-by-one error in the DrawImage function in magick/render.c in GraphicsMagick 1.3.26 allows remote attackers to cause a denial of service (DrawDashPolygon heap-based buffer over-read and application crash) via a crafte...Show more |
2Debian Eclipse2Debian Linux MosquittoMay 13, 2026 Sep 11, 2017 N/A· v4 6.5 MEDIUM· v3 4.0 MEDIUM· v2 In Mosquitto before 1.4.12, pattern based ACLs can be bypassed by clients that set their username/client id to '#' or '+'. This allows locally or remotely connected clients to access MQTT topics that they do have the rig...Show more |
2Debian Ffmpeg2Debian Linux FfmpegMay 13, 2026 Sep 9, 2017 N/A· v4 6.5 MEDIUM· v3 7.1 HIGH· v2 In libavformat/asfdec_f.c in FFmpeg 3.3.3, a DoS in asf_build_simple_index() due to lack of an EOF (End of File) check might cause huge CPU consumption. When a crafted ASF file, which claims a large "ict" field in the he...Show more |
Integer overflow in the load_multiboot function in hw/i386/multiboot.c in QEMU (aka Quick Emulator) allows local guest OS users to execute arbitrary code on the host via crafted multiboot header address values, which tri...Show more |
4Canonical DebianFedoraproject+1 more4Debian Linux FedoraLibgd+1 moreMay 13, 2026 Sep 7, 2017 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 Double free vulnerability in the gdImagePngPtr function in libgd2 before 2.2.5 allows remote attackers to cause a denial of service via vectors related to a palette with no colors. |
3Canonical DebianImagemagick3Debian Linux ImagemagickUbuntu LinuxMay 13, 2026 Sep 7, 2017 N/A· v4 6.5 MEDIUM· v3 7.1 HIGH· v2 In coders/xbm.c in ImageMagick 7.0.6-1 Q16, a DoS in ReadXBMImage() due to lack of an EOF (End of File) check might cause huge CPU consumption. When a crafted XBM file, which claims large rows and columns fields in the h...Show more |
3Canonical DebianImagemagick3Debian Linux ImagemagickUbuntu LinuxMay 13, 2026 Sep 7, 2017 N/A· v4 6.5 MEDIUM· v3 7.1 HIGH· v2 In coders/psd.c in ImageMagick 7.0.7-0 Q16, a DoS in ReadPSDLayersInternal() due to lack of an EOF (End of File) check might cause huge CPU consumption. When a crafted PSD file, which claims a large "length" field in the...Show more |
3Canonical DebianImagemagick3Debian Linux ImagemagickUbuntu LinuxMay 13, 2026 Sep 7, 2017 N/A· v4 6.5 MEDIUM· v3 4.3 MEDIUM· v2 In the function ReadTXTImage() in coders/txt.c in ImageMagick 7.0.6-10, an integer overflow might occur for the addition operation "GetQuantumRange(depth)+1" when "depth" is large, producing a smaller value than expected...Show more |