2014 CVE Vulnerabilities
9,002 CVEs published in 2014.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2014-9821 | HIGH | 7.8 | 1.6% | Mar 30, 2017 | Heap-based buffer overflow in ImageMagick allows remote attackers to have unspecified impact via a crafted xpm file. |
| CVE-2014-9820 | HIGH | 7.8 | 1.6% | Mar 30, 2017 | Heap-based buffer overflow in ImageMagick allows remote attackers to have unspecified impact via a crafted pnm file. |
| CVE-2014-9819 | HIGH | 7.8 | 1.6% | Mar 30, 2017 | Heap-based buffer overflow in ImageMagick allows remote attackers to have unspecified impact via a crafted palm file, a ... |
| CVE-2014-9818 | MEDIUM | 5.5 | 1.4% | Mar 30, 2017 | ImageMagick allows remote attackers to cause a denial of service (out-of-bounds access) via a malformed sun file. |
| CVE-2014-9817 | HIGH | 7.8 | 1.6% | Mar 30, 2017 | Heap-based buffer overflow in ImageMagick allows remote attackers to have unspecified impact via a crafted pdb file. |
| CVE-2014-9816 | MEDIUM | 5.5 | 1.4% | Mar 30, 2017 | ImageMagick allows remote attackers to cause a denial of service (out-of-bounds access) via a crafted viff file. |
| CVE-2014-9815 | MEDIUM | 5.5 | 1.5% | Mar 30, 2017 | ImageMagick allows remote attackers to cause a denial of service (application crash) via a crafted wpg file. |
| CVE-2014-9814 | MEDIUM | 5.5 | 1.5% | Mar 30, 2017 | ImageMagick allows remote attackers to cause a denial of service (NULL pointer dereference) via a crafted wpg file. |
| CVE-2014-9813 | MEDIUM | 5.5 | 1.5% | Mar 30, 2017 | ImageMagick allows remote attackers to cause a denial of service (application crash) via a crafted viff file. |
| CVE-2014-9812 | MEDIUM | 5.5 | 1.5% | Mar 30, 2017 | ImageMagick allows remote attackers to cause a denial of service (NULL pointer dereference) via a crafted ps file. |
| CVE-2014-9811 | MEDIUM | 5.5 | 1.4% | Mar 30, 2017 | The xwd file handler in ImageMagick allows remote attackers to cause a denial of service (segmentation fault and applica... |
| CVE-2014-9810 | MEDIUM | 5.5 | 1.4% | Mar 30, 2017 | The dpx file handler in ImageMagick allows remote attackers to cause a denial of service (segmentation fault and applica... |
| CVE-2014-9809 | MEDIUM | 5.5 | 1.5% | Mar 30, 2017 | ImageMagick allows remote attackers to cause a denial of service (segmentation fault and application crash) via a crafte... |
| CVE-2014-9808 | MEDIUM | 5.5 | 1.4% | Mar 30, 2017 | ImageMagick allows remote attackers to cause a denial of service (segmentation fault and application crash) via a crafte... |
| CVE-2014-9807 | MEDIUM | 5.5 | 1.4% | Mar 30, 2017 | The pdb coder in ImageMagick allows remote attackers to cause a denial of service (double free) via unspecified vectors. |
| CVE-2014-9806 | MEDIUM | 5.5 | 1.4% | Mar 30, 2017 | ImageMagick allows remote attackers to cause a denial of service (file descriptor consumption) via a crafted file. |
| CVE-2014-9805 | MEDIUM | 5.5 | 1.4% | Mar 30, 2017 | ImageMagick allows remote attackers to cause a denial of service (segmentation fault and application crash) via a crafte... |
| CVE-2014-9804 | HIGH | 7.5 | 3.4% | Mar 30, 2017 | vision.c in ImageMagick allows remote attackers to cause a denial of service (infinite loop) via vectors related to "too... |
| CVE-2014-3582 | — | — | 1.6% | Mar 29, 2017 | In Ambari 1.2.0 through 2.2.2, it may be possible to execute arbitrary system commands on the Ambari Server host while g... |
| CVE-2014-6440 | — | — | 5.0% | Mar 28, 2017 | VideoLAN VLC media player before 2.1.5 allows remote attackers to execute arbitrary code or cause a denial of service. |
| CVE-2014-0229 | — | — | 1.6% | Mar 23, 2017 | Apache Hadoop 0.23.x before 0.23.11 and 2.x before 2.4.1, as used in Cloudera CDH 5.0.x before 5.0.2, do not check autho... |
| CVE-2014-9915 | — | — | 0.9% | Mar 23, 2017 | Off-by-one error in ImageMagick before 6.6.0-4 allows remote attackers to cause a denial of service (application crash) ... |
| CVE-2014-8731 | — | — | 11.8% | Mar 23, 2017 | PHPMemcachedAdmin 1.2.2 and earlier allows remote attackers to execute arbitrary PHP code via vectors related "serialize... |
| CVE-2014-7279 | — | — | 11.7% | Mar 23, 2017 | The Konke Smart Plug K does not require authentication for TELNET sessions, which allows remote attackers to obtain "equ... |
| CVE-2014-9840 | — | — | 1.2% | Mar 22, 2017 | ImageMagick 6.8.9-9 allows remote attackers to cause a denial of service (out-of-bounds access) via a crafted palm file. |
Check if your code is affected by 2014 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now