2017 CVE Vulnerabilities
17,104 CVEs published in 2017.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2017-13196 | — | — | 2.2% | Jan 12, 2018 | In several places in ihevcd_decode.c, a dead loop could occur due to incomplete frames which could lead to memory leaks.... |
| CVE-2017-13195 | — | — | 1.7% | Jan 12, 2018 | In the ihevcd_parse_sps function of ihevcd_parse_headers.c, several parameter values could be negative which could lead ... |
| CVE-2017-13194 | — | — | 1.8% | Jan 12, 2018 | A vulnerability in the Android media framework (libvpx) related to odd frame width. Product: Android. Versions: 7.0, 7.1... |
| CVE-2017-13193 | — | — | 2.2% | Jan 12, 2018 | In ihevcd_decode.c there is a possible infinite loop due to bytes for an sps of unsupported resolution resulting in the ... |
| CVE-2017-13192 | — | — | 1.7% | Jan 12, 2018 | In the ihevcd_parse_slice_header function of ihevcd_parse_slice_header.c a slice address of zero after the first slice c... |
| CVE-2017-13191 | — | — | 1.7% | Jan 12, 2018 | In the ihevcd_decode function of ihevcd_decode.c, there is an infinite loop due to an incomplete frame error. This could... |
| CVE-2017-13190 | — | — | 0.5% | Jan 12, 2018 | A vulnerability in the Android media framework (libhevc) related to handling ps_codec_obj memory allocation failures. Pr... |
| CVE-2017-13189 | — | — | 0.5% | Jan 12, 2018 | A vulnerability in the Android media framework (libavc) related to handling dec_hdl memory allocation failures. Product:... |
| CVE-2017-13188 | — | — | 0.6% | Jan 12, 2018 | An information disclosure vulnerability in the Android media framework (aac). Product: Android. Versions: 7.0, 7.1.1, 7.... |
| CVE-2017-13187 | — | — | 0.5% | Jan 12, 2018 | An information disclosure vulnerability in the Android media framework (libhevc). Product: Android. Versions: 7.0, 7.1.1... |
| CVE-2017-13186 | — | — | 0.5% | Jan 12, 2018 | A vulnerability in the Android media framework (libavc) related to incorrect use of mmco parameters. Product: Android. V... |
| CVE-2017-13185 | — | — | 0.5% | Jan 12, 2018 | An information disclosure vulnerability in the Android media framework (libhevc). Product: Android. Versions: 7.0, 7.1.1... |
| CVE-2017-13184 | — | — | 0.2% | Jan 12, 2018 | In the enableVSyncInjections function of SurfaceFlinger, there is a possible use after free of mVSyncInjector. This coul... |
| CVE-2017-13183 | — | — | 0.1% | Jan 12, 2018 | In the OMXNodeInstance::useBuffer and IOMX::freeBuffer functions, there is a possible use after free due to a race condi... |
| CVE-2017-13182 | — | — | 0.2% | Jan 12, 2018 | In the sendFormatChange function of ACodec, there is a possible integer overflow which could lead to an out-of-bounds wr... |
| CVE-2017-13181 | — | — | 0.2% | Jan 12, 2018 | In the doGetThumb and getThumbnail functions of MtpServer, there is a possible double free due to not NULLing out a free... |
| CVE-2017-13180 | — | — | 0.2% | Jan 12, 2018 | In the onQueueFilled function of SoftAVCDec, there is a possible out-of-bounds write due to a use after free if a bad he... |
| CVE-2017-13179 | — | — | 2.4% | Jan 12, 2018 | In the ihevcd_allocate_static_bufs and ihevcd_create functions of SoftHEVC, there is a possible out-of-bounds write due ... |
| CVE-2017-13178 | — | — | 2.4% | Jan 12, 2018 | In the initDecoder function of SoftAVCDec, there is a possible out-of-bounds write to mCodecCtx due to a use after free ... |
| CVE-2017-13177 | — | — | 2.4% | Jan 12, 2018 | In several functions of libhevc, NEON registers are not preserved. This could lead to remote code execution as a privile... |
| CVE-2017-13176 | — | — | 1.2% | Jan 12, 2018 | In the parseURL function of URLStreamHandler, there is improper input validation of the host field. This could lead to a... |
| CVE-2017-0855 | — | — | 1.7% | Jan 12, 2018 | In MPEG4Extractor.cpp, there are several places where functions return early without cleaning up internal buffers which ... |
| CVE-2017-0846 | — | — | 0.4% | Jan 12, 2018 | An information disclosure vulnerability in the Android framework (clipboardservice). Product: Android. Versions: 5.1.1, ... |
| CVE-2017-18029 | — | — | 4.0% | Jan 12, 2018 | In ImageMagick 7.0.6-10 Q16, a memory leak vulnerability was found in the function ReadMATImage in coders/mat.c, which a... |
| CVE-2017-18028 | — | — | 1.7% | Jan 12, 2018 | In ImageMagick 7.0.7-1 Q16, a memory exhaustion vulnerability was found in the function ReadTIFFImage in coders/tiff.c, ... |
Check if your code is affected by 2017 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now