14,642 vulnerabilities published in 2017
The OS Installation Management component in CA Client Automation r12.9, r14.0, and r14.0 SP1 places an encrypted passwor
The bufRead::get() function in libzpaq/libzpaq.h in liblrzip.so in lrzip 0.631 allows remote attackers to cause a denial
The join_pthread function in stream.c in liblrzip.so in lrzip 0.631 allows remote attackers to cause a denial of service
The lzo1x_decompress function in lzo1x_d.ch in LZO 2.08, as used in lrzip 0.631, allows remote attackers to cause a deni
The read_stream function in stream.c in liblrzip.so in lrzip 0.631 allows remote attackers to cause a denial of service
The bufRead::get() function in libzpaq/libzpaq.h in liblrzip.so in lrzip 0.631 allows remote attackers to cause a denial
All versions of VAMPSET software produced by Schneider Electric, prior to V2.2.189, are susceptible to a memory corrupti
All versions of the NVIDIA GPU Display Driver contain a vulnerability in the kernel mode layer handler for DxgDdiEscape
All versions of the NVIDIA Windows GPU Display Driver contain a vulnerability in the kernel mode layer handler for DxgkD
The TIFFWriteDirectoryTagCheckedRational function in tif_dirwrite.c in LibTIFF 4.0.6 allows remote attackers to cause a
Dropbox Lepton 1.2.1 allows DoS (SEGV and application crash) via a malformed lepton file because the code does not ensur
The KEYS subsystem in the Linux kernel before 4.10.13 allows local users to cause a denial of service (memory consumptio
An integer underflow vulnerability exists in pixel-a.asm, the x86 assembly code for planeClipAndMax() in MulticoreWare x
Conexant Systems mictray64 task, as used on HP Elite, EliteBook, ProBook, and ZBook systems, leaks sensitive data (keyst
The mark_line_tr function in gxscanc.c in Artifex Ghostscript 9.21 allows remote attackers to cause a denial of service
An information disclosure vulnerability exists in the way some ActiveX objects are instantiated, aka "Microsoft ActiveX
A denial of service vulnerability in the Qualcomm Wi-Fi driver could enable a proximate attacker to cause a denial of se
An information disclosure vulnerability in File-Based Encryption could enable a local malicious attacker to bypass opera
An information disclosure vulnerability in the Framework APIs could enable a local malicious application to bypass opera
A remote denial of service vulnerability in libhevc in Mediaserver could enable an attacker to use a specially crafted f
A remote denial of service vulnerability in libstagefright in Mediaserver could enable an attacker to use a specially cr
An Elevation of Privilege vulnerability in Bluetooth could potentially enable a local malicious application to accept ha
An information disclosure vulnerability in Bluetooth could allow a local malicious application to bypass operating syste
An information disclosure vulnerability in the Qualcomm Wi-Fi driver could enable a local malicious application to acces
An information disclosure vulnerability in the MediaTek command queue driver could enable a local malicious application
An information disclosure vulnerability in the Qualcomm crypto engine driver could enable a local malicious application
A remote denial of service vulnerability in HevcUtils.cpp in libstagefright in Mediaserver could enable an attacker to u
The Android Apps Money Forward (prior to v7.18.0), Money Forward for The Gunma Bank (prior to v1.2.0), Money Forward for
The omninet_open function in drivers/usb/serial/omninet.c in the Linux kernel before 4.10.4 allows local users to cause
PCManFM 1.2.5 insecurely uses /tmp for a socket file, allowing a local user to cause a denial of service (application un
fs/ext4/inode.c in the Linux kernel before 4.6.2, when ext4 data=ordered mode is used, mishandles a needs-flushing-befor
In TrustZone an information exposure vulnerability can potentially occur in all Android releases from CAF using the Linu
perltidy through 20160302, as used by perlcritic, check-all-the-things, and other software, relies on the current workin
GNU Binutils 2.28 allows remote attackers to cause a denial of service (heap-based buffer over-read and application cras
GNU Binutils 2.28 allows remote attackers to cause a denial of service (memory consumption) via a crafted ELF file with
GNU Binutils 2017-04-03 allows remote attackers to cause a denial of service (NULL pointer dereference and application c
GNU Binutils 2.28 allows remote attackers to cause a denial of service (heap-based buffer over-read and application cras
The print_symbol_for_build_attribute function in readelf.c in GNU Binutils 2017-04-12 allows remote attackers to cause a
The NFSv4 implementation in the Linux kernel through 4.11.1 allows local users to cause a denial of service (resource co
Cairo version 1.15.4 is vulnerable to a NULL pointer dereference related to the FT_Load_Glyph and FT_Render_Glyph result
An issue was discovered in certain Apple products. iOS before 10.3.2 is affected. macOS before 10.12.5 is affected. tvOS
An issue was discovered in certain Apple products. iOS before 10.3.2 is affected. macOS before 10.12.5 is affected. tvOS
An issue was discovered in certain Apple products. macOS before 10.12.5 is affected. The issue involves the "Kernel" com
An issue was discovered in certain Apple products. macOS before 10.12.5 is affected. The issue involves the "WindowServe
An issue was discovered in certain Apple products. iOS before 10.3.2 is affected. The issue involves the "Notifications"
An issue was discovered in certain Apple products. iOS before 10.3.2 is affected. macOS before 10.12.5 is affected. tvOS
An issue was discovered in certain Apple products. macOS before 10.12.5 is affected. The issue involves the "HFS" compon
The do_check function in kernel/bpf/verifier.c in the Linux kernel before 4.11.1 does not make the allow_ptr_leaks value
Ghostscript before 9.21 might allow remote attackers to bypass the SAFER mode protection mechanism and consequently read
libqpdf.a in QPDF 6.0.0 allows remote attackers to cause a denial of service (infinite recursion and stack consumption)
Scan for 2017 Vulnerabilities
CyberStrike detects these CVEs across your infrastructure automatically.
Get Started