16,510 vulnerabilities published in 2018
The function DCTStream::readScan in Stream.cc in Xpdf 4.00 allows remote attackers to cause a denial of service (NULL po
The function DCTStream::decodeImage in Stream.cc in Xpdf 4.00 allows remote attackers to cause a denial of service (NULL
The function DCTStream::getBlock in Stream.cc in Xpdf 4.00 allows remote attackers to cause a denial of service (NULL po
If a user saved passwords before Firefox 58 and then later set a master password, an unencrypted copy of these passwords
An issue was discovered in cp-demangle.c in GNU libiberty, as distributed in GNU Binutils 2.31. Stack Exhaustion occurs
Dell EMC Secure Remote Services, versions prior to 3.32.00.08, contains a Plaintext Password Storage vulnerability. Data
In F5 BIG-IP APM 13.0.0-13.1.1.1, APM Client 7.1.5-7.1.6, and/or Edge Client 7101-7160, the BIG-IP APM Edge Client compo
Divide-by-zero vulnerabilities in the function arlib_add_symbols() in arlib.c in elfutils 0.174 allow remote attackers t
Qemu has integer overflows because IOReadHandler and its associated functions use a signed integer data type for a size
When dynamic memory allocation fails, currently the process sleeps for one second and continues with infinite loop witho
Secure app running in non secure space can restart TZ by calling Widevine app API repeatedly in Snapdragon Automobile, S
Improper translation table consolidation logic leads to resource exhaustion and QSEE error in Snapdragon Automobile, Sna
Secure display content could be accessed by third party trusted application after creating a fault in other trusted appl
A heap-based buffer over-read issue was discovered in the function sec_merge_hash_lookup in merge.c in the Binary File D
An issue was discovered in the merge_strings function in merge.c in the Binary File Descriptor (BFD) library (aka libbfd
An issue was discovered in elf_link_input_bfd in elflink.c in the Binary File Descriptor (BFD) library (aka libbfd), as
An issue was discovered in Xpdf 4.00. XRef::readXRefStream in XRef.cc allows attackers to launch a denial of service (In
An issue was discovered in Xpdf 4.00. catalog->getNumPages() in AcroForm.cc allows attackers to launch a denial of servi
An exploitable memory disclosure vulnerability exists in the 0x222000 IOCTL handler functionality of Sophos HitmanPro.Al
Improper access control in core module lead XBL_LOADER performs the ZI region clear for QTEE instead of XBL_SEC in Snapd
There is an out-of-bounds read in fz_run_t3_glyph in fitz/font.c in Artifex MuPDF 1.14.0, as demonstrated by mutool.
In the Linux kernel before 4.17, a local attacker able to set attributes on an xfs filesystem could make this filesystem
An issue was discovered in cp-demangle.c in GNU libiberty, as distributed in GNU Binutils 2.31. There is a stack consump
An issue was discovered in cp-demangle.c in GNU libiberty, as distributed in GNU Binutils 2.31. There is a stack consump
An issue was discovered in the Linux kernel through 4.19. An information leak in cdrom_ioctl_select_disc in drivers/cdro
data-tools through 2017-07-26 has an Integer Overflow leading to an incorrect end value for the write_wchars function.
A bool variable in Video function, which gets typecasted to int before being read could result in an out of bound read a
An issue was discovered in JasPer 2.0.14. There is a NULL pointer dereference in the function ras_putdatastd in ras/ras_
IBM Robotic Process Automation with Automation Anywhere 10.0 and 11.0 allows a remote attacker to execute arbitrary code
In getstring of ID3.cpp there is a possible out-of-bounds read due to a missing bounds check. This could lead to remote
In ih264d_video_decode of ih264d_api.c there is a possible resource exhaustion due to an infinite loop. This could lead
In DynamicRefTable::load of ResourceTypes.cpp, there is a possible out of bounds read due to a missing bounds check. Thi
In avdt_msg_prs_cfg of avdt_msg.cc, there is a possible out of bounds read due to a missing bounds check. This could lea
In bnep_data_ind of bnep_main.cc, there is a possible out of bounds read due to a missing bounds check. This could lead
An issue was discovered on Foscam C2 devices with System Firmware 1.11.1.8 and Application Firmware 2.72.1.32, and Optic
A vulnerability in the secryptocfg export command of Brocade Fabric OS versions before 8.2.1, 8.1.2f, 8.0.2f, 7.4.2d cou
A vulnerability in the system scanning component of Cisco Immunet and Cisco Advanced Malware Protection (AMP) for Endpoi
An issue has been found in JasPer 2.0.14. There is a memory leak in jas_malloc.c when called from jpc_unk_getparms in jp
Netwide Assembler (NASM) 2.14rc15 has a NULL pointer dereference in the function find_label in asm/labels.c that will le
In ncurses 6.1, there is a NULL pointer dereference at function _nc_parse_entry in parse_entry.c that will lead to a den
Netwide Assembler (NASM) through 2.14rc16 has memory leaks that may lead to DoS, related to nasm_malloc in nasmlib/mallo
A vulnerability in the DLL loading component of Cisco Advanced Malware Protection (AMP) for Endpoints on Windows could a
Dell EMC RecoverPoint versions prior to 5.1.2.1 and RecoverPoint for VMs versions prior to 5.2.0.2 contain an informatio
NVIDIA graphics driver contains a vulnerability that may allow access to application data processed on the GPU through a
An information disclosure vulnerability exists when "Kernel Remote Procedure Call Provider" driver improperly initialize
An information disclosure vulnerability exists when the Windows kernel improperly initializes objects in memory, aka "Wi
An information disclosure vulnerability exists when Windows Audio Service fails to properly handle objects in memory, ak
A security feature bypass exists when Windows incorrectly validates kernel driver signatures, aka "Windows Security Feat
An information disclosure vulnerability exists when DirectX improperly handles objects in memory, aka "DirectX Informati
An information disclosure vulnerability exists when the win32k component improperly provides kernel information, aka "Wi
Scan for 2018 Vulnerabilities
CyberStrike detects these CVEs across your infrastructure automatically.
Get Started