2017 CVE Vulnerabilities

17,104 CVEs published in 2017.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2017-18670HIGH7.5An issue was discovered on Samsung mobile devices with KK(4.4), L(5.0/5.1), and M(6.0) software. android.intent.action.S...
CVE-2017-18669HIGH7.5An issue was discovered on Samsung mobile devices with N(7.x) software. Persona has an unprotected API that allows launc...
CVE-2017-18668HIGH7.5An issue was discovered on Samsung mobile devices with M(6.0) software. Attackers can prevent users from making outbound...
CVE-2017-18666HIGH7.5An issue was discovered on Samsung mobile devices with KK(4.4), L(5.0/5.1), M(6.0), and N(7.x) software. Applications ca...
CVE-2017-18665HIGH8.8An issue was discovered on Samsung mobile devices with M(6.0) software. There is a NULL pointer exception in WifiService...
CVE-2017-18664HIGH7.5An issue was discovered on Samsung mobile devices with KK(4.4), L(5.0/5.1), and M(6.0) software. There is a NULL pointer...
CVE-2017-18663HIGH7.5An issue was discovered on Samsung mobile devices with N(7.x) software. Because of missing Intent exception handling, sy...
CVE-2017-18662HIGH7.5An issue was discovered on Samsung mobile devices with M(6.0) and N(7.x) software. Data outside of the rkp log buffer bo...
CVE-2017-18654HIGH7.5An issue was discovered on Samsung mobile devices with M(6.0) and N(7.0, 7.1) software. An unauthenticated attacker can ...
CVE-2017-18651HIGH7.5An issue was discovered on Samsung mobile devices with M(6.x) and N(7.x) software. There is an Integer Overflow in proce...
CVE-2017-18650HIGH7.5An issue was discovered on Samsung mobile devices with N(7.x) software. There is a WifiStateMachine IllegalArgumentExcep...
CVE-2017-18649HIGH7.2An issue was discovered on Samsung mobile devices with N(7.x) software. An attacker can boot a device with root privileg...
CVE-2017-18647HIGH8.1An issue was discovered on Samsung mobile devices with M(6,x) and N(7.0) software. The TA Scrypto v1.0 implementation in...
CVE-2017-18692HIGH8.1An issue was discovered on Samsung mobile devices with M(6.0) and N(7.0) (MSM8939, MSM8996, MSM8998, Exynos7580, Exynos8...
CVE-2017-12842HIGH7.5Bitcoin Core before 0.14 allows an attacker to create an ostensibly valid SPV proof for a payment to a victim who uses a...
CVE-2017-12580HIGH7.8An issue was discovered in IDM UltraEdit through 24.10.0.32. To exploit the vulnerability, on unpatched Windows systems,...
CVE-2017-6371HIGH7.5Synchronet BBS 3.16c for Windows allows remote attackers to cause a denial of service (service crash) via a long string ...
CVE-2017-6363HIGH8.1In the GD Graphics Library (aka LibGD) through 2.2.5, there is a heap-based buffer over-read in tiffWriter in gd_tiff.c....
CVE-2017-18641HIGH8.1In LXC 2.0, many template scripts download code over cleartext HTTP, and omit a digital-signature check, before running ...
CVE-2017-14807HIGH8.1An Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in susestudio-ui-s...
CVE-2017-18640HIGH7.5The Alias feature in SnakeYAML before 1.26 allows entity expansion during a load operation, a related issue to CVE-2003-...
CVE-2017-12945HIGH8.8Insufficient validation of user-supplied input for the Solstice Pod before 2.8.4 networking configuration enables authen...
CVE-2017-7399HIGH8.8Cloudera Manager 5.8.x before 5.8.5, 5.9.x before 5.9.2, and 5.10.x before 5.10.1 allows a read-only Cloudera Manager us...
CVE-2017-17224HIGH8.8Some Huawei smart phones with versions earlier than Harry-AL00C 9.1.0.206(C00E205R3P1) have a null pointer dereference v...
CVE-2017-5333HIGH7.8Integer overflow in the extract_group_icon_cursor_resource function in b/wrestool/extract.c in icoutils before 0.31.1 al...

Check if your code is affected by 2017 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now