14,642 vulnerabilities published in 2017
A remote code execution vulnerability in the Broadcom networking driver. Product: Android. Versions: Android kernel. And
A elevation of privilege vulnerability in the MediaTek gpu driver. Product: Android. Versions: Android kernel. Android I
A elevation of privilege vulnerability in the MediaTek video driver. Product: Android. Versions: Android kernel. Android
A remote code execution vulnerability in the Android media framework (avc decoder). Product: Android. Versions: 4.4.4, 5
A elevation of privilege vulnerability in the Qualcomm ipa driver. Product: Android. Versions: Android kernel. Android I
A elevation of privilege vulnerability in the Qualcomm proprietary component. Product: Android. Versions: Android kernel
A elevation of privilege vulnerability in the Upstream Linux linux kernel. Product: Android. Versions: Android kernel. A
A elevation of privilege vulnerability in the Upstream Linux file system. Product: Android. Versions: Android kernel. An
An unquoted service path vulnerability was identified in the driver for the ThinkPad Compact USB Keyboard with TrackPoin
Multiple buffer overflows in QEMU before 1.7.2 and 2.x before 2.0.0, allow local users to cause a denial of service (cra
The elf_read_notesfunction in bfd/elf.c in GNU Binutils 2.29 allows remote attackers to cause a denial of service (buffe
In the service locator in all Qualcomm products with Android releases from CAF using the Linux kernel, a buffer overflow
A userspace process can cause a Denial of Service in the camera driver in all Qualcomm products with Android releases fr
Out of bound memory write can happen in the MDSS Rotator driver in all Qualcomm products with Android releases from CAF
In all Qualcomm products with Android release from CAF using the Linux kernel, while processing fastboot boot command wh
An Uncontrolled Search Path Element issue was discovered in Solar Controls Heating Control Downloader (HCDownloader) Ver
An Uncontrolled Search Path Element issue was discovered in Solar Controls WATTConfig M Software Version 2.5.10.1 and pr
Command injection vulnerability in Document.php in Synology Office 2.2.0-1502 and 2.2.1-1506 allows remote authenticated
Synology Download Station 3.8.x before 3.8.5-3475 and 3.x before 3.5-2984 uses weak permissions (0777) for ui/dlm/btsear
IBM InfoSphere Information Server 9.1, 11.3, and 11.5 could allow a local user to gain elevated privileges by placing ar
The Xamarin.iOS update component on systems running macOS allows an attacker to run arbitrary code as root, aka "Xamarin
In an ioctl handler in all Qualcomm products with Android for MSM, Firefox OS for MSM, or QRD Android, several sanity ch
In an audio driver function in all Qualcomm products with Android for MSM, Firefox OS for MSM, or QRD Android, some para
A buffer overflow can occur in all Qualcomm products with Android for MSM, Firefox OS for MSM, or QRD Android when proce
Foxit PDF Compressor installers from versions from 7.0.0.183 to 7.7.2.10 contain a DLL preloading vulnerability, wherein
A vulnerability in the build procedure for certain executable system files installed at boot time on Cisco Application P
Untrusted search path vulnerability in Installer for Shin Kikan Toukei Houkoku Data Nyuryokuyou Program (program release
Untrusted search path vulnerability in Installer for Shin Sekiyu Yunyu Chousa Houkoku Data Nyuryoku Program (program rel
Untrusted search path vulnerability in Installer for Shin Kinkyuji Houkoku Data Nyuryoku Program (program released on 20
Untrusted search path vulnerability in TDB CA TypeA use software Version 5.2 and earlier, distributed until 10 August 20
Untrusted search path vulnerability in Teikihoukokusho Sakuseishien Tool v4.0 allows an attacker to gain privileges via
Untrusted search path vulnerability in Installer of Qua station connection tool for Windows version 1.00.03 allows an at
Directory traversal vulnerability in ajaxfileupload.php in Kayson Group Ltd. phpGrid before 7.2.5 allows remote attacker
The open-uri-cached rubygem allows local users to execute arbitrary Ruby code by creating a directory under /tmp contain
Razer Synapse 2.20.15.1104 and earlier uses weak permissions for the Devices directory, which allows local users to gain
In all Qualcomm products with Android releases from CAF using the Linux kernel, there is no size check for the images be
In all Qualcomm products with Android releases from CAF using the Linux kernel, kernel memory can potentially be overwri
In all Qualcomm products with Android releases from CAF using the Linux kernel, an integer overflow vulnerability exists
In all Qualcomm products with Android releases from CAF using the Linux kernel, array out of bounds access can occur if
In all Qualcomm products with Android releases from CAF using the Linux kernel, when accessing the sde_rotator debug int
In all Qualcomm products with Android releases from CAF using the Linux kernel, due to a type downcast, a value may impr
In all Qualcomm products with Android releases from CAF using the Linux kernel, in a camera driver ioctl, a kernel overw
In all Qualcomm products with Android releases from CAF using the Linux kernel, a kernel fault can occur when doing cert
In all Qualcomm products with Android releases from CAF using the Linux kernel, the camera application can possibly requ
In all Qualcomm products with Android releases from CAF using the Linux kernel, in a driver function, a value from users
Multiple untrusted search path vulnerabilities in installer in Synology Assistant before 6.1-15163 on Windows allows loc
A privilege escalation vulnerability was identified in Lenovo Active Protection System for ThinkPad systems versions ear
In all Qualcomm products with Android releases from CAF using the Linux kernel, in a video driver, memory corruption can
Stack-based buffer overflow in ESTsoft ALZip 8.51 and earlier allows remote attackers to execute arbitrary code via a cr
The sanity_check_raw_super function in fs/f2fs/super.c in the Linux kernel before 4.11.1 does not validate the segment c
Scan for 2017 Vulnerabilities
CyberStrike detects these CVEs across your infrastructure automatically.
Get Started