2017 CVE Vulnerabilities

17,104 CVEs published in 2017.

CVE IDSeverityCVSSDescription
CVE-2017-13196In several places in ihevcd_decode.c, a dead loop could occur due to incomplete frames which could lead to memory leaks....
CVE-2017-13195In the ihevcd_parse_sps function of ihevcd_parse_headers.c, several parameter values could be negative which could lead ...
CVE-2017-13194A vulnerability in the Android media framework (libvpx) related to odd frame width. Product: Android. Versions: 7.0, 7.1...
CVE-2017-13193In ihevcd_decode.c there is a possible infinite loop due to bytes for an sps of unsupported resolution resulting in the ...
CVE-2017-13192In the ihevcd_parse_slice_header function of ihevcd_parse_slice_header.c a slice address of zero after the first slice c...
CVE-2017-13191In the ihevcd_decode function of ihevcd_decode.c, there is an infinite loop due to an incomplete frame error. This could...
CVE-2017-13190A vulnerability in the Android media framework (libhevc) related to handling ps_codec_obj memory allocation failures. Pr...
CVE-2017-13189A vulnerability in the Android media framework (libavc) related to handling dec_hdl memory allocation failures. Product:...
CVE-2017-13188An information disclosure vulnerability in the Android media framework (aac). Product: Android. Versions: 7.0, 7.1.1, 7....
CVE-2017-13187An information disclosure vulnerability in the Android media framework (libhevc). Product: Android. Versions: 7.0, 7.1.1...
CVE-2017-13186A vulnerability in the Android media framework (libavc) related to incorrect use of mmco parameters. Product: Android. V...
CVE-2017-13185An information disclosure vulnerability in the Android media framework (libhevc). Product: Android. Versions: 7.0, 7.1.1...
CVE-2017-13184In the enableVSyncInjections function of SurfaceFlinger, there is a possible use after free of mVSyncInjector. This coul...
CVE-2017-13183In the OMXNodeInstance::useBuffer and IOMX::freeBuffer functions, there is a possible use after free due to a race condi...
CVE-2017-13182In the sendFormatChange function of ACodec, there is a possible integer overflow which could lead to an out-of-bounds wr...
CVE-2017-13181In the doGetThumb and getThumbnail functions of MtpServer, there is a possible double free due to not NULLing out a free...
CVE-2017-13180In the onQueueFilled function of SoftAVCDec, there is a possible out-of-bounds write due to a use after free if a bad he...
CVE-2017-13179In the ihevcd_allocate_static_bufs and ihevcd_create functions of SoftHEVC, there is a possible out-of-bounds write due ...
CVE-2017-13178In the initDecoder function of SoftAVCDec, there is a possible out-of-bounds write to mCodecCtx due to a use after free ...
CVE-2017-13177In several functions of libhevc, NEON registers are not preserved. This could lead to remote code execution as a privile...
CVE-2017-13176In the parseURL function of URLStreamHandler, there is improper input validation of the host field. This could lead to a...
CVE-2017-0855In MPEG4Extractor.cpp, there are several places where functions return early without cleaning up internal buffers which ...
CVE-2017-0846An information disclosure vulnerability in the Android framework (clipboardservice). Product: Android. Versions: 5.1.1, ...
CVE-2017-18029In ImageMagick 7.0.6-10 Q16, a memory leak vulnerability was found in the function ReadMATImage in coders/mat.c, which a...
CVE-2017-18028In ImageMagick 7.0.7-1 Q16, a memory exhaustion vulnerability was found in the function ReadTIFFImage in coders/tiff.c, ...

Check if your code is affected by 2017 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now