14,642 vulnerabilities published in 2017
Off-by-one error in the pipe_advance function in lib/iov_iter.c in the Linux kernel before 4.9.5 allows local users to o
The vc4_get_bcl function in drivers/gpu/drm/vc4/vc4_gem.c in the VideoCore DRM driver in the Linux kernel before 4.9.7 d
Buffer overflow in the readgifimage function in gif2tiff.c in the gif2tiff tool in LibTIFF 4.0.6 allows remote attackers
Integer overflow in the writeBufferToSeparateStrips function in tiffcrop.c in LibTIFF before 4.0.7 allows remote attacke
A file disclosure and inclusion vulnerability exists in web/views/file.php in ZoneMinder 1.x through v1.30.0 because of
bsnmpd, as used in FreeBSD 9.3, 10.1, and 10.2, uses world-readable permissions on the snmpd.config file, which allows l
IBM Security Access Manager for Web 7.0.0, 8.0.0, and 9.0.0 could allow a remote attacker to bypass security restriction
An information disclosure vulnerability in AOSP Messaging could enable a local malicious application to bypass operating
An information disclosure vulnerability in AOSP Messaging could enable a local malicious application to bypass operating
An information disclosure vulnerability in AOSP Mail could enable a local malicious application to bypass operating syst
An information disclosure vulnerability in the Framework APIs could enable a local malicious application to bypass opera
An information disclosure vulnerability in AOSP Messaging could enable a remote attacker using a special crafted file to
An information disclosure vulnerability in Audioserver could enable a local malicious application to access data outside
An information disclosure vulnerability in the Filesystem could enable a local malicious application to access data outs
An information disclosure vulnerability in the NVIDIA video driver could enable a local malicious application to access
The IBM Security Access Manager appliance includes configuration files that contain obfuscated plaintext-passwords which
IBM Security Directory Server could allow an authenticated user to execute commands into the web administration tool tha
A vulnerability has been identified in the IBM Cloud Orchestrator task API. The task API might allow an authenticated us
The gst_aac_parse_sink_setcaps function in gst/audioparsers/gstaacparse.c in gst-plugins-good in GStreamer before 1.10.3
The gst_riff_create_audio_caps function in gst-libs/gst/riff/riff-media.c in gst-plugins-base in GStreamer before 1.10.3
The html_context_handle_element function in gst/subparse/samiparse.c in gst-plugins-base in GStreamer before 1.10.3 allo
The gst_riff_create_audio_caps function in gst-libs/gst/riff/riff-media.c in gst-plugins-base in GStreamer before 1.10.3
The gst_asf_demux_process_ext_stream_props function in gst/asfdemux/gstasfdemux.c in gst-plugins-ugly in GStreamer befor
Samsung devices with Android KK(4.4) or L(5.0/5.1) allow local users to cause a denial of service (IAndroidShm service c
An issue was discovered in Moxa DACenter Versions 1.4 and older. A specially crafted project file may cause the program
Heap-based buffer overflow in the ff_audio_resample function in resample.c in libav before 11.4 allows remote attackers
The mtree bidder in libarchive 3.2.1 does not keep track of line sizes when extending the read-ahead, which allows remot
The bmp_getdata function in libjasper/bmp/bmp_dec.c in JasPer before 1.900.5 allows remote attackers to cause a denial o
The jpc_dec_process_siz function in libjasper/jpc/jpc_dec.c in JasPer before 1.900.4 allows remote attackers to cause a
The jpc_dec_process_siz function in libjasper/jpc/jpc_dec.c in JasPer before 1.900.4 allows remote attackers to cause a
IBM AIX 7.1 and 7.2 allows a local user to open a file with a specially crafted argument that would crash the system. IB
Heap-based buffer overflow in the fz_subsample_pixmap function in fitz/pixmap.c in MuPDF 1.10a allows remote attackers t
Heap-based buffer overflow in the pstoedit_suffix_table_init function in output-pstoedit.c in AutoTrace 0.31.1 allows re
Stack-based buffer overflow in the aac_sync function in aac_parser.c in Libav before 11.5 allows remote attackers to cau
The ff_put_pixels8_xy2_mmx function in rnd_template.c in Libav 11.7 allows remote attackers to cause a denial of service
The sbr_make_f_master function in aacsbr.c in Libav 11.7 allows remote attackers to cause a denial of service (divide-by
The pdf_to_num function in pdf-object.c in MuPDF before 1.10 allows remote attackers to cause a denial of service (use-a
The get_vlc2 function in get_bits.h in Libav before 11.9 allows remote attackers to cause a denial of service (NULL poin
The get_vlc2 function in get_bits.h in Libav 11.9 allows remote attackers to cause a denial of service (NULL pointer der
The IsPixelMonochrome function in MagickCore/pixel-accessor.h in ImageMagick 7.0.3.0 allows remote attackers to cause a
The _dwarf_get_abbrev_for_code function in dwarf_util.c in libdwarf 20161001 and earlier allows remote attackers to caus
All versions of NVIDIA Linux GPU Display Driver contain a vulnerability in the kernel mode layer handler where improper
All versions of NVIDIA Windows GPU Display Driver contain a vulnerability in the kernel mode layer handler where imprope
All versions of NVIDIA Windows GPU Display Driver contain a vulnerability in the kernel mode layer handler where imprope
An issue was discovered in icoutils 0.31.1. A buffer overflow was observed in the "decode_ne_resource_id" function in th
An issue was discovered in icoutils 0.31.1. A buffer overflow was observed in the "extract_icons" function in the "extra
An issue was discovered in icoutils 0.31.1. An out-of-bounds read leading to a buffer overflow was observed in the "simp
Heap-based buffer overflow in the IsPixelGray function in MagickCore/pixel-accessor.h in ImageMagick 7.0.3.8 allows remo
The _iprintf function in outputtxt.c in the listswf tool in libming 0.4.7 allows remote attackers to cause a denial of s
The dumpBuffer function in read.c in the listswf tool in libming 0.4.7 allows remote attackers to cause a denial of serv
Scan for 2017 Vulnerabilities
CyberStrike detects these CVEs across your infrastructure automatically.
Get Started