2014 CVE Vulnerabilities

9,002 CVEs published in 2014.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2014-9822HIGH7.8Heap-based buffer overflow in ImageMagick allows remote attackers to have unspecified impact via a crafted quantum file.
CVE-2014-9821HIGH7.8Heap-based buffer overflow in ImageMagick allows remote attackers to have unspecified impact via a crafted xpm file.
CVE-2014-9820HIGH7.8Heap-based buffer overflow in ImageMagick allows remote attackers to have unspecified impact via a crafted pnm file.
CVE-2014-9819HIGH7.8Heap-based buffer overflow in ImageMagick allows remote attackers to have unspecified impact via a crafted palm file, a ...
CVE-2014-9817HIGH7.8Heap-based buffer overflow in ImageMagick allows remote attackers to have unspecified impact via a crafted pdb file.
CVE-2014-9804HIGH7.5vision.c in ImageMagick allows remote attackers to cause a denial of service (infinite loop) via vectors related to "too...
CVE-2014-9848HIGH7.5Memory leak in ImageMagick allows remote attackers to cause a denial of service (memory consumption).
CVE-2014-9938HIGH8.8contrib/completion/git-prompt.sh in Git before 1.9.3 does not sanitize branch names in the PS1 variable, allowing a mali...
CVE-2014-9854HIGH7.5coders/tiff.c in ImageMagick allows remote attackers to cause a denial of service (application crash) via vectors relate...
CVE-2014-8688HIGH7.5An issue was discovered in Telegram Messenger 2.6 for iOS and 1.8.2 for Android. Secret chat messages are available in c...
CVE-2014-9914HIGH7.8Race condition in the ip4_datagram_release_cb function in net/ipv4/datagram.c in the Linux kernel before 3.15.2 allows l...
CVE-2014-9904HIGH7.8The snd_compress_check_input function in sound/core/compress_offload.c in the ALSA subsystem in the Linux kernel before ...
CVE-2014-100005HIGH8Multiple cross-site request forgery (CSRF) vulnerabilities in D-Link DIR-600 router (rev. Bx) with firmware before 2.17b...
CVE-2014-9495HIGH8.8Heap-based buffer overflow in the png_combine_row function in libpng before 1.5.21 and 1.6.x before 1.6.16, when running...
CVE-2014-9426HIGH7.3The apprentice_load function in libmagic/apprentice.c in the Fileinfo component in PHP through 5.6.4 attempts to perform...
CVE-2014-9322HIGH7.8arch/x86/kernel/entry_64.S in the Linux kernel before 3.17.5 does not properly handle faults associated with the Stack S...
CVE-2014-9163HIGH7.8Stack-based buffer overflow in Adobe Flash Player before 13.0.0.259 and 14.x and 15.x before 15.0.0.246 on Windows and O...
CVE-2014-7255HIGH7.5Internet Initiative Japan Inc. SEIL Series routers SEIL/X1 2.50 through 4.62, SEIL/X2 2.50 through 4.62, SEIL/B1 2.50 th...
CVE-2014-8439HIGH8.8Adobe Flash Player before 13.0.0.258 and 14.x and 15.x before 15.0.0.239 on Windows and OS X and before 11.2.202.424 on ...
CVE-2014-6324HIGH8.8The Kerberos Key Distribution Center (KDC) in Microsoft Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 ...
CVE-2014-6332HIGH8.8OleAut32.dll in OLE in Microsoft Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows...
CVE-2014-4077HIGH7.8Microsoft Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, and Office 2007...
CVE-2014-8369HIGH7.8The kvm_iommu_map_pages function in virt/kvm/iommu.c in the Linux kernel through 3.17.2 miscalculates the number of page...
CVE-2014-7826HIGH7.8kernel/trace/trace_syscalls.c in the Linux kernel through 3.17.2 does not properly handle private syscall numbers during...
CVE-2014-7825HIGH7.8kernel/trace/trace_syscalls.c in the Linux kernel through 3.17.2 does not properly handle private syscall numbers during...

Check if your code is affected by 2014 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now