Skip to main content

CWE archive

CWE-787 CVEs

Programmatic archive

14,359 CVEs tagged with CWE-7872,492 Critical, 8,815 High, 2,875 Medium, 174 Low, 3 Unrated.

CVE-2016-9054

Published Jan 26, 2017

An exploitable stack-based buffer overflow vulnerability exists in the querying functionality of Aerospike Database Server 3.10.0.3. A specially crafted packet can cause a stack-b…

CVSS 9.8 · Critical
evidence mentions
2
Buzz score
17.5
Vendor/product tagsBeta · best-effort

CVE-2016-9052

Published Jan 26, 2017

An exploitable stack-based buffer overflow vulnerability exists in the querying functionality of Aerospike Database Server 3.10.0.3. A specially crafted packet can cause a stack-b…

CVSS 9.8 · Critical
evidence mentions
2
Buzz score
17.5
Vendor/product tagsBeta · best-effort

CVE-2016-8710

Published Jan 26, 2017

An exploitable heap write out of bounds vulnerability exists in the decoding of BPG images in Libbpg library. A crafted BPG image decoded by libbpg can cause an integer underflow…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2016-9447

Published Jan 23, 2017

The ROM mappings in the NSF decoder in gstreamer 0.10.x allow remote attackers to cause a denial of service (out-of-bounds read or write) and possibly execute arbitrary code via a…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2016-5210

Published Jan 19, 2017

Heap buffer overflow during TIFF image parsing in PDFium in Google Chrome prior to 55.0.2883.75 for Mac, Windows and Linux, and 55.0.2883.84 for Android allowed a remote attacker…

CVSS 8.8 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2016-5209

Published Jan 19, 2017

Bad casting in bitmap manipulation in Blink in Google Chrome prior to 55.0.2883.75 for Mac, Windows and Linux, and 55.0.2883.84 for Android allowed a remote attacker to potentiall…

CVSS 8.8 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2016-9808

Published Jan 13, 2017

The FLIC decoder in GStreamer before 1.10.2 allows remote attackers to cause a denial of service (out-of-bounds write and crash) via a crafted series of skip and count pairs.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2016-5684

Published Jan 6, 2017

An exploitable out-of-bounds write vulnerability exists in the XMP image handling functionality of the FreeImage library. A specially crafted XMP file can cause an arbitrary memor…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2016-4336

Published Jan 6, 2017

An exploitable out-of-bounds write exists in the Bzip2 parsing of the Lexmark Perspective Document Filters conversion functionality. A crafted Bzip2 document can lead to a stack-b…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2015-8817

Published Dec 29, 2016

QEMU (aka Quick Emulator) built to use 'address_space_translate' to map an address to a MemoryRegionSection is vulnerable to an OOB r/w access issue. It could occur while doing pc…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2015-8743

Published Dec 29, 2016

QEMU (aka Quick Emulator) built with the NE2000 device emulation support is vulnerable to an OOB r/w access issue. It could occur while performing 'ioport' r/w operations. A privi…

CVSS 7.1 · High
Vendor/product tagsBeta · best-effort

CVE-2016-9755

Published Dec 28, 2016

The netfilter subsystem in the Linux kernel before 4.9 mishandles IPv6 reassembly, which allows local users to cause a denial of service (integer overflow, out-of-bounds write, an…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort
Showing 13,976-14,000 of 14,359 CVEsPage 560 of 575