CVE Browser
Search and filter CVEs by severity, ecosystem, EPSS score, and more.
Page 1 (more results available)
OpenJDK8: insecure hsperfdata temporary file handling, CVE-2015-0383 regression (Hotspot)
ntp: MITM attacker can force ntpd to make a step larger than the panic threshold
libarchive: Denial of service using a crafted gzip file
libarchive: undefined behaviour (integer overflow) in iso parser
libarchive: Archive Entry with type 1 (hardlink), but has a non-zero data size file overwrite
libarchive: Memory allocate error with symbolic links in cpio archives
libarchive: Heap buffer overflow in the Rar decompression functionality
libarchive: Heap buffer overflow vulnerability in the 7zip read_SubStreamsInfo
Tomcat: CGI sets environmental variable based on user supplied Proxy request header
kernel: Uninitialized variable in request_key handling causes kernel crash in error handling path
kernel: tags with indefinite length can corrupt pointers in asn1_find_indefinite_length()
libndp: denial of service due to insufficient validation of source of NDP messages
spice: Host memory access from guest with invalid primary surface parameters
spice: heap-based memory corruption within smartcard handling
spice: host memory access from guest using crafted images
spice: insufficient validation of surface_id parameter can cause crash
php: denial of service when processing a crafted file with Fileinfo
php: denial of service when processing a crafted file with Fileinfo
php: exception:: getTraceAsString type confusion issue after unserialize
php: Incomplete Class unserialization type confusion
php: type confusion issue in unserialize() with various SOAP methods
php: type confusion issue in unserialize() with various SOAP methods
php: type confusion issue in unserialize() with various SOAP methods
php: missing null byte checks for paths in DOM and GD extensions
php: missing null byte checks for paths in various PHP extensions
Showing 1 to 25 CVEs · page 1 (more available)