2017 CVE Vulnerabilities
17,104 CVEs published in 2017.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2017-17881 | — | — | 1.3% | Dec 27, 2017 | In ImageMagick 7.0.7-12 Q16, a memory leak vulnerability was found in the function ReadMATImage in coders/mat.c, which a... |
| CVE-2017-17880 | — | — | 1.3% | Dec 27, 2017 | In ImageMagick 7.0.7-16 Q16 x86_64 2017-12-21, there is a stack-based buffer over-read in WriteWEBPImage in coders/webp.... |
| CVE-2017-17879 | — | — | 2.9% | Dec 27, 2017 | In ImageMagick 7.0.7-16 Q16 x86_64 2017-12-21, there is a heap-based buffer over-read in ReadOneMNGImage in coders/png.c... |
| CVE-2017-17878 | — | — | 1.6% | Dec 27, 2017 | An issue was discovered in Valve Steam Link build 643. Root passwords longer than 8 characters are truncated because of ... |
| CVE-2017-17877 | — | — | 4.1% | Dec 27, 2017 | An issue was discovered in Valve Steam Link build 643. When the SSH daemon is enabled for local development, the device ... |
| CVE-2017-17876 | — | — | 9.5% | Dec 27, 2017 | Biometric Shift Employee Management System 3.0 allows remote attackers to bypass intended file-read restrictions via a u... |
| CVE-2017-17875 | — | — | 2.7% | Dec 27, 2017 | The JEXTN FAQ Pro extension 4.0.0 for Joomla! has SQL Injection via the id parameter in a view=category action. |
| CVE-2017-17874 | — | — | 6.0% | Dec 27, 2017 | Vanguard Marketplace Digital Products PHP 1.4 allows arbitrary file upload via an "Add a new product" or "Add a product ... |
| CVE-2017-17873 | — | — | 2.7% | Dec 27, 2017 | Vanguard Marketplace Digital Products PHP 1.4 has SQL Injection via the PATH_INFO to the /p URI. |
| CVE-2017-17872 | — | — | 2.7% | Dec 27, 2017 | The JEXTN Video Gallery extension 3.0.5 for Joomla! has SQL Injection via the id parameter in a view=category action. |
| CVE-2017-17871 | — | — | 2.7% | Dec 27, 2017 | The "JEXTN Question And Answer" extension 3.1.0 for Joomla! has SQL Injection via the an parameter in a view=tags action... |
| CVE-2017-17870 | — | — | 3.0% | Dec 27, 2017 | The JBuildozer extension 1.4.1 for Joomla! has SQL Injection via the appid parameter in an entriessearch action. |
| CVE-2017-17869 | — | — | 0.8% | Dec 27, 2017 | The mgl-instagram-gallery plugin for WordPress has XSS via the single-gallery.php media parameter. |
| CVE-2017-17868 | — | — | 0.7% | Dec 27, 2017 | In Liferay Portal 6.1.0, the tags section has XSS via a Public Render Parameter (p_r_p) value, as demonstrated by p_r_p_... |
| CVE-2017-17866 | — | — | 1.6% | Dec 27, 2017 | pdf/pdf-write.c in Artifex MuPDF before 1.12.0 mishandles certain length changes when a repair operation occurs during a... |
| CVE-2017-17864 | — | — | 0.4% | Dec 27, 2017 | kernel/bpf/verifier.c in the Linux kernel through 4.14.8 mishandles states_equal comparisons between the pointer data ty... |
| CVE-2017-17863 | — | — | 0.4% | Dec 27, 2017 | kernel/bpf/verifier.c in the Linux kernel 4.9.x through 4.9.71 does not check the relationship between pointer values an... |
| CVE-2017-17862 | — | — | 0.4% | Dec 27, 2017 | kernel/bpf/verifier.c in the Linux kernel through 4.14.8 ignores unreachable code, even though it would still be process... |
| CVE-2017-17859 | — | — | 0.9% | Dec 27, 2017 | Samsung Internet Browser 6.2.01.12 allows remote attackers to bypass the Same Origin Policy, and conduct UXSS attacks to... |
| CVE-2017-17857 | HIGH | 7.8 | 0.4% | Dec 27, 2017 | The check_stack_boundary function in kernel/bpf/verifier.c in the Linux kernel through 4.14.8 allows local users to caus... |
| CVE-2017-17856 | HIGH | 7.8 | 0.4% | Dec 27, 2017 | kernel/bpf/verifier.c in the Linux kernel through 4.14.8 allows local users to cause a denial of service (memory corrupt... |
| CVE-2017-17855 | HIGH | 7.8 | 0.4% | Dec 27, 2017 | kernel/bpf/verifier.c in the Linux kernel through 4.14.8 allows local users to cause a denial of service (memory corrupt... |
| CVE-2017-17854 | HIGH | 7.8 | 0.4% | Dec 27, 2017 | kernel/bpf/verifier.c in the Linux kernel through 4.14.8 allows local users to cause a denial of service (integer overfl... |
| CVE-2017-17853 | HIGH | 7.8 | 0.4% | Dec 27, 2017 | kernel/bpf/verifier.c in the Linux kernel through 4.14.8 allows local users to cause a denial of service (memory corrupt... |
| CVE-2017-17852 | HIGH | 7.8 | 0.4% | Dec 27, 2017 | kernel/bpf/verifier.c in the Linux kernel through 4.14.8 allows local users to cause a denial of service (memory corrupt... |
Check if your code is affected by 2017 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now