2017 CVE Vulnerabilities

17,104 CVEs published in 2017.

CVE IDSeverityCVSSDescription
CVE-2017-1720IBM Notes 8.5 and 9.0 could allow a local attacker to execute arbitrary commands by carefully crafting a command line se...
CVE-2017-1714IBM Notes and Domino NSD 8.5 and 9.0 could allow an authenticated local user without administrative privileges to gain S...
CVE-2017-1711IBM iNotes 8.5 and 9.0 SUService can be misguided into running malicious code from a DLL masquerading as a windows DLL i...
CVE-2017-15709When using the OpenWire protocol in ActiveMQ versions 5.14.0 to 5.15.2 it was found that certain system details (such as...
CVE-2017-18186An issue was discovered in QPDF before 7.0.0. There is an infinite loop due to looping xref tables in QPDF.cc.
CVE-2017-18185An issue was discovered in QPDF before 7.0.0. There is a large heap-based out-of-bounds read in the Pl_Buffer::write fun...
CVE-2017-18184An issue was discovered in QPDF before 7.0.0. There is a stack-based out-of-bounds read in the function iterate_rc4 in Q...
CVE-2017-18183An issue was discovered in QPDF before 7.0.0. There is an infinite loop in the QPDFWriter::enqueueObject() function in l...
CVE-2017-9970A remote code execution vulnerability exists in Schneider Electric's StruxureOn Gateway versions 1.1.3 and prior. Upload...
CVE-2017-9969An information disclosure vulnerability exists in Schneider Electric's IGSS Mobile application version 3.01 and prior. P...
CVE-2017-9968A security misconfiguration vulnerability exists in Schneider Electric's IGSS Mobile application versions 3.01 and prior...
CVE-2017-9967A security misconfiguration vulnerability exists in Schneider Electric's IGSS SCADA Software versions 12 and prior. Secu...
CVE-2017-9963A cross-site request forgery vulnerability exists on the Secure Gateway component of Schneider Electric's PowerSCADA Any...
CVE-2017-17725In Exiv2 0.26, there is an integer overflow leading to a heap-based buffer over-read in the Exiv2::getULong function in ...
CVE-2017-17724In Exiv2 0.26, there is a heap-based buffer over-read in the Exiv2::IptcData::printStructure function in iptc.cpp, relat...
CVE-2017-17723In Exiv2 0.26, there is a heap-based buffer over-read in the Exiv2::Image::byteSwap4 function in image.cpp. Remote attac...
CVE-2017-17722In Exiv2 0.26, there is a reachable assertion in the readHeader function in bigtiffimage.cpp, which will lead to a remot...
CVE-2017-13247In the Pixel 2 bootloader, there is a missing permission check which bypasses carrier bootloader lock. This could lead t...
CVE-2017-13246A information disclosure vulnerability in the Upstream kernel network driver. Product: Android. Versions: Android kernel...
CVE-2017-13245A elevation of privilege vulnerability in the Upstream kernel audio driver. Product: Android. Versions: Android kernel. ...
CVE-2017-13244A elevation of privilege vulnerability in the Upstream kernel easel. Product: Android. Versions: Android kernel. ID: A-6...
CVE-2017-13243A information disclosure vulnerability in the Android system (ui). Product: Android. Versions: 5.1.1, 6.0, 6.0.1, 7.0, 7...
CVE-2017-13242A information disclosure vulnerability in the Android system (bluetooth). Product: Android. Versions: 6.0, 6.0.1, 7.0, 7...
CVE-2017-13241A information disclosure vulnerability in the Android media framework (libstagefright_soft_avcenc). Product: Android. Ve...
CVE-2017-13240A information disclosure vulnerability in the Android framework (crypto framework). Product: Android. Versions: 8.0, 8.1...

Check if your code is affected by 2017 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now