14,642 vulnerabilities published in 2017
In lsx_aiffstartread in aiff.c in Sound eXchange (SoX) 14.4.2, there is a Use-After-Free vulnerability triggered by supp
An issue was discovered in certain Apple products. iOS before 11 is affected. The issue involves the "iBooks" component.
An issue was discovered in certain Apple products. macOS before 10.13 is affected. The issue involves the "AppSandbox" c
An issue was discovered in certain Apple products. iTunes before 12.7 is affected. The issue involves the "Data Sync" co
An issue was discovered in certain Apple products. iOS before 11 is affected. The issue involves the "Mail MessageUI" co
An issue was discovered in certain Apple products. iOS before 11 is affected. The issue involves the "Messages" componen
An issue was discovered in certain Apple products. macOS before 10.13 is affected. The issue involves the "IOFireWireFam
An issue was discovered in certain Apple products. iOS before 11 is affected. The issue involves the "Bluetooth" compone
An issue was discovered in certain Apple products. macOS before 10.13 is affected. The issue involves the "Captive Netwo
An issue was discovered in certain Apple products. macOS before 10.13 Supplemental Update is affected. The issue involve
foo2zjs before 20110722dfsg-3ubuntu1 as packaged in Ubuntu, 20110722dfsg-1 as packaged in Debian unstable, and 20090908d
The get_next_block function in archival/libarchive/decompress_bunzip2.c in BusyBox 1.27.2 has an Integer Overflow that m
In GNU Libextractor 1.4, there is an out-of-bounds read in the EXTRACTOR_dvi_extract_method function in plugins/dvi_extr
Failure to take advantage of available mitigations in credit card autofill in Google Chrome prior to 59.0.3071.92 for An
dwarf2.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29, mishandles NULL
bchunk (related to BinChunker) 1.2.0 and 1.2.1 is vulnerable to a heap-based buffer overflow and crash when processing a
bchunk (related to BinChunker) 1.2.0 and 1.2.1 is vulnerable to a heap-based buffer overflow (with a resultant invalid f
bchunk (related to BinChunker) 1.2.0 and 1.2.1 is vulnerable to an "Access violation near NULL on destination operand" a
The altivec_unavailable_exception function in arch/powerpc/kernel/traps.c in the Linux kernel before 2.6.19 on 64-bit sy
On Linux running on PowerPC hardware (Power8 or later) a user process can craft a signal frame and then do a sigreturn s
VIM version 8.0.1187 (and other versions most likely) ignores umask when creating a swap file ("[ORIGINAL_FILENAME].swp"
GNU Emacs version 25.3.1 (and other versions most likely) ignores umask when creating a backup save file ("[ORIGINAL_FIL
In radare 2.0.1, a pointer wraparound vulnerability exists in store_versioninfo_gnu_verdef() in libr/bin/format/elf/elf.
The kvm_vm_ioctl_check_extension function in arch/powerpc/kvm/powerpc.c in the Linux kernel before 4.13.11 allows local
An Improper Input Validation issue was discovered in ABB FOX515T release 1.0. An improper input validation vulnerability
Prior to SEP 12.1 RU6 MP9 & SEP 14 RU1 Symantec Endpoint Protection Windows endpoint can encounter a situation whereby a
In sam2p 0.49.4, there are integer overflows (with resultant heap-based buffer overflows) in input-bmp.ci in the functio
The swf_DefineLosslessBitsTagToImage function in lib/modules/swfbits.c in SWFTools 0.9.2 mishandles an uncompress failur
The png_load function in lib/png.c in SWFTools 0.9.2 does not properly validate a multiplication of width and bits-per-p
An issue was discovered in certain Apple products. macOS before 10.13.1 is affected. The issue involves the "Kernel" com
An issue was discovered in certain Apple products. iOS before 11.1 is affected. macOS before 10.13.1 is affected. tvOS b
An issue was discovered in certain Apple products. macOS before 10.13.1 is affected. The issue involves the "Kernel" com
An out-of-bounds read issue was discovered in certain Apple products. macOS before 10.13.1 is affected. The issue involv
An issue was discovered in certain Apple products. macOS before 10.13.1 is affected. The issue involves the "Kernel" com
An issue was discovered in certain Apple products. macOS before 10.13.1 is affected. The issue involves the "CFString" c
An issue was discovered in certain Apple products. macOS before 10.13.1 is affected. The issue involves the "Quick Look"
An issue was discovered in certain Apple products. macOS before 10.13.1 is affected. The issue involves the "QuickTime"
An issue was discovered in certain Apple products. macOS before 10.13.1 is affected. The issue involves the "Fonts" comp
An issue was discovered in certain Apple products. macOS before 10.13.1 is affected. The issue involves the "Kernel" com
An issue was discovered in certain Apple products. macOS before 10.13.1 is affected. The issue involves the "Kernel" com
An issue was discovered in certain Apple products. macOS before 10.13.1 is affected. The issue involves the "Kernel" com
An issue was discovered in certain Apple products. macOS before 10.13.1 is affected. The issue involves the "Kernel" com
An issue was discovered in certain Apple products. iOS before 11.1 is affected. tvOS before 11.1 is affected. watchOS be
An issue was discovered in certain Apple products. iOS before 11.1 is affected. The issue involves the "UIKit" component
The Debian pg_ctlcluster, pg_createcluster, and pg_upgradecluster scripts, as distributed in the Debian postgresql-commo
In radare2 2.0.1, libr/bin/dwarf.c allows remote attackers to cause a denial of service (invalid read and application cr
tcpdump before 4.9.3 has a heap-based buffer over-read related to aoe_print in print-aoe.c and lookup_emem in addrtoname
Apache CXF supports sending and receiving attachments via either the JAX-WS or JAX-RS specifications. It is possible to
Microsoft graphics in Windows 7 SP1 and Windows Server 2008 SP2 and R2 SP1 allows an attacker to potentially read data t
Windows kernel in Windows 7 SP1, Windows Server 2008 SP2 and R2 SP1, Windows 8.1 and RT 8.1, Server 2012 and R2, Windows
Scan for 2017 Vulnerabilities
CyberStrike detects these CVEs across your infrastructure automatically.
Get Started