2014 CVE Vulnerabilities

9,002 CVEs published in 2014.

CVE IDSeverityCVSSDescription
CVE-2014-9779——arch/arm/mach-msm/qdsp6v2/msm_audio_ion.c in the Qualcomm components in Android before 2016-07-05 on Nexus 5 devices all...
CVE-2014-9778——The vid_dec_set_h264_mv_buffers function in drivers/video/msm/vidc/common/dec/vdec.c in the Qualcomm components in Andro...
CVE-2014-9777——The vid_dec_set_meta_buffers function in drivers/video/msm/vidc/common/dec/vdec.c in the Qualcomm components in Android ...
CVE-2014-9904HIGH7.8The snd_compress_check_input function in sound/core/compress_offload.c in the ALSA subsystem in the Linux kernel before ...
CVE-2014-9903——The sched_read_attr function in kernel/sched/core.c in the Linux kernel 3.14-rc before 3.14-rc4 uses an incorrect size, ...
CVE-2014-9773——modules/chanserv/flags.c in Atheme before 7.2.7 allows remote attackers to modify the Anope FLAGS behavior by registerin...
CVE-2014-9747——The t42_parse_encoding function in type42/t42parse.c in FreeType before 2.5.4 does not properly update the current posit...
CVE-2014-9746——The (1) t1_parse_font_matrix function in type1/t1load.c, (2) cid_parse_font_matrix function in cid/cidload.c, (3) t42_pa...
CVE-2014-8177——The Red Hat gluster-swift package, as used in Red Hat Gluster Storage (formerly Red Hat Storage Server), allows remote a...
CVE-2014-2656——Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. ...
CVE-2014-3672——The qemu implementation in libvirt before 1.3.0 and Xen allows local guest OS users to cause a denial of service (host d...
CVE-2014-9767——Directory traversal vulnerability in the ZipArchive::extractTo function in ext/zip/php_zip.c in PHP before 5.4.45, 5.5.x...
CVE-2014-0236——file before 5.18, as used in the Fileinfo component in PHP before 5.6.0, allows remote attackers to cause a denial of se...
CVE-2014-9771——Integer overflow in imlib2 before 1.4.7 allows remote attackers to cause a denial of service (memory consumption or appl...
CVE-2014-9764——imlib2 before 1.4.7 allows remote attackers to cause a denial of service (segmentation fault) via a crafted GIF file.
CVE-2014-9763——imlib2 before 1.4.7 allows remote attackers to cause a denial of service (divide-by-zero error and application crash) vi...
CVE-2014-9762——imlib2 before 1.4.7 allows remote attackers to cause a denial of service (segmentation fault) via a GIF image without a ...
CVE-2014-9742——The Miller-Rabin primality check in Botan before 1.10.8 and 1.11.x before 1.11.9 improperly uses a single random base, w...
CVE-2014-9717——fs/namespace.c in the Linux kernel before 4.0.2 processes MNT_DETACH umount2 system calls without verifying that the MNT...
CVE-2014-8486——Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2014-8496. Reason: This candidate is a duplicate of...
CVE-2014-9770——tmpfiles.d/systemd.conf in systemd before 214 uses weak permissions for journal files under (1) /run/log/journal/%m and ...
CVE-2014-9765——Buffer overflow in the main_get_appheader function in xdelta3-main.h in xdelta3 before 3.0.9 allows remote attackers to ...
CVE-2014-9761——Multiple stack-based buffer overflows in the GNU C Library (aka glibc or libc6) before 2.23 allow context-dependent atta...
CVE-2014-9655——The (1) putcontig8bitYCbCr21tile function in tif_getimage.c or (2) NeXTDecode function in tif_next.c in LibTIFF allows r...
CVE-2014-9766——Integer overflow in the create_bits function in pixman-bits-image.c in Pixman before 0.32.6 allows remote attackers to c...

Check if your code is affected by 2014 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now