14,642 vulnerabilities published in 2017
The dump_block function in print_sections.c in libdwarf before 20160923 allows remote attackers to cause a denial of ser
The dwarf_get_macro_startend_file function in dwarf_macro5.c in libdwarf before 20160923 allows remote attackers to caus
The get_attr_value function in libdwarf before 20160923 allows remote attackers to cause a denial of service (out-of-bou
libdwarf before 20160923 allows remote attackers to cause a denial of service (out-of-bounds read and crash) via a large
The dwarf_get_aranges_list function in libdwarf before 20160923 allows remote attackers to cause a denial of service (in
The dwarf_dealloc function in libdwarf before 20160923 allows remote attackers to cause a denial of service (out-of-boun
The WRITE_UNALIGNED function in dwarf_elf_access.c in libdwarf before 20160923 allows remote attackers to cause a denial
An issue was discovered in certain Apple products. iOS before 10.2 is affected. The issue involves the "Mail" component,
An issue was discovered in certain Apple products. iOS before 10.2 is affected. macOS before 10.12.2 is affected. watchO
An issue was discovered in certain Apple products. iOS before 10.2 is affected. macOS before 10.12.2 is affected. watchO
An issue was discovered in certain Apple products. iOS before 10.2 is affected. macOS before 10.12.2 is affected. The is
Zyxel USG50 Security Appliance and NWA3560-N Access Point allow remote attackers to cause a denial of service (CPU consu
The "Plug-in for VMware vCenter" in VCE Vision Intelligent Operations before 2.6.5 sends a cleartext HTTP response upon
An exploitable denial-of-service vulnerability exists in the fabric-worker component of Aerospike Database Server 3.10.0
A vulnerability in an internal API of the Cisco Meeting Server (CMS) could allow an unauthenticated, remote attacker to
A vulnerability in the web interface of the Cisco Secure Access Control System (ACS) could allow an unauthenticated, rem
The route manager in FlightGear before 2016.4.4 allows remote attackers to write to arbitrary files via a crafted Nasal
D-Link DGS-1510-28XMP, DGS-1510-28X, DGS-1510-52X, DGS-1510-52, DGS-1510-28P, DGS-1510-28, and DGS-1510-20 Websmart devi
The tcp_splice_read function in net/ipv4/tcp.c in the Linux kernel before 4.9.11 allows remote attackers to cause a deni
tcpdf before 6.2.0 uploads files from the server generating PDF-files to an external FTP.
Use-after-free vulnerability in pcsc-lite before 1.8.20 allows a remote attackers to cause denial of service (crash) via
JustSystems Ichitaro 2016 Trial contains a vulnerability that exists when trying to open a specially crafted PowerPoint
Page table walks conducted by the MMU during virtual to physical address translation leave a trace in the last level cac
Page table walks conducted by the MMU during virtual to physical address translation leave a trace in the last level cac
Page table walks conducted by the MMU during virtual to physical address translation leave a trace in the last level cac
The Xvnc server in TigerVNC allows remote attackers to cause a denial of service (invalid memory access and crash) by te
Directory traversal vulnerability in the Chorus2 2.4.2 add-on for Kodi allows remote attackers to read arbitrary files v
The __construct function in Framework/Encryption/Crypt.php in Magento 2 uses the PHP rand function to generate a random
The NetApp ONTAP Select Deploy administration utility 2.0 through 2.2.1 might allow remote attackers to obtain sensitive
A vulnerability in the Stream Control Transmission Protocol (SCTP) decoder of the Cisco NetFlow Generation Appliance (NG
An issue was discovered in PHP 5.x and 7.x, when the configuration uses apache2handler/mod_php or php-fpm with OpCache e
Memory leak in the login_user function in saslserv/main.c in saslserv/main.so in Atheme 7.2.7 allows a remote unauthenti
An issue was discovered in Veritas NetBackup 8.0 and earlier and NetBackup Appliance 3.0 and earlier. Hostname-based sec
magick/memory.c in ImageMagick before 6.9.4-5 allows remote attackers to cause a denial of service (application crash) v
Remote file upload vulnerability in Wordpress Plugin Mobile App Native 3.0.
The nickcmp function in Irssi before 0.8.21 allows remote attackers to cause a denial of service (NULL pointer dereferen
Use-after-free vulnerability in Irssi before 0.8.21 allows remote attackers to cause a denial of service (crash) via an
Irssi 0.8.17 before 0.8.21 allows remote attackers to cause a denial of service (out-of-bounds read and crash) via a cra
Irssi 0.8.18 before 0.8.21 allows remote attackers to cause a denial of service (out-of-bounds read and crash) via vecto
Irssi before 0.8.21 allows remote attackers to cause a denial of service (out-of-bounds read and crash) via a string con
libplist allows attackers to cause a denial of service (large memory allocation and crash) via vectors involving an offs
The plist_free_data function in plist.c in libplist allows attackers to cause a denial of service (crash) via vectors in
The wrap_lines_smart function in ass_render.c in libass before 0.13.4 allows remote attackers to cause a denial of servi
Buffer overflow in the calc_coeff function in libass/ass_blur.c in libass before 0.13.4 allows remote attackers to cause
The check_allocations function in libass/ass_shaper.c in libass before 0.13.4 allows remote attackers to cause a denial
An information disclosure vulnerability in the logging implementation of BlackBerry Good Control Server versions earlier
Reset to default settings may occur in Lenovo ThinkServer TSM RD350, RD450, RD550, RD650, TD350 during a prolonged broad
In Wireshark 2.2.0 to 2.2.4 and 2.0.0 to 2.0.10, there is a Netscaler file parser infinite loop, triggered by a malforme
In Wireshark 2.2.0 to 2.2.4 and 2.0.0 to 2.0.10, there is a NetScaler file parser crash, triggered by a malformed captur
In Wireshark 2.2.0 to 2.2.4 and 2.0.0 to 2.0.10, there is an LDSS dissector crash, triggered by packet injection or a ma
Scan for 2017 Vulnerabilities
CyberStrike detects these CVEs across your infrastructure automatically.
Get Started