2017 CVE Vulnerabilities

17,104 CVEs published in 2017.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2017-8913HIGH8.8The Visual Composer VC70RUNTIME component in SAP NetWeaver AS JAVA 7.5 allows remote authenticated users to conduct XML ...
CVE-2017-8309HIGH7.5Memory leak in the audio/audio.c in QEMU (aka Quick Emulator) allows remote attackers to cause a denial of service (memo...
CVE-2017-6891HIGH8.8Two errors in the "asn1_find_node()" function (lib/parser_aux.c) within GnuTLS libtasn1 version 4.10 can be exploited to...
CVE-2017-6632HIGH7.5A vulnerability in the logging configuration of Secure Sockets Layer (SSL) policies for Cisco FirePOWER System Software ...
CVE-2017-9024HIGH7.5Secure Bytes Cisco Configuration Manager, as bundled in Secure Bytes Secure Cisco Auditor (SCA) 3.0, has a Directory Tra...
CVE-2017-9100HIGH8.8login.cgi on D-Link DIR-600M devices with firmware 3.04 allows remote attackers to bypass authentication by entering mor...
CVE-2017-9098HIGH7.5ImageMagick before 7.0.5-2 and GraphicsMagick before 1.3.24 use uninitialized memory in the RLE decoder, allowing an att...
CVE-2017-9078HIGH8.8The server in Dropbear before 2017.75 might allow post-authentication root remote code execution because of a double fre...
CVE-2017-9077HIGH7.8The tcp_v6_syn_recv_sock function in net/ipv6/tcp_ipv6.c in the Linux kernel through 4.11.1 mishandles inheritance, whic...
CVE-2017-9076HIGH7.8The dccp_v6_request_recv_sock function in net/dccp/ipv6.c in the Linux kernel through 4.11.1 mishandles inheritance, whi...
CVE-2017-9075HIGH7.8The sctp_v6_create_accept_sk function in net/sctp/ipv6.c in the Linux kernel through 4.11.1 mishandles inheritance, whic...
CVE-2017-9074HIGH7.8The IPv6 fragmentation implementation in the Linux kernel through 4.11.1 does not consider that the nexthdr field may be...
CVE-2017-9050HIGH7.5libxml2 20904-GITv2.9.4-16-g0741801 is vulnerable to a heap-based buffer over-read in the xmlDictAddString function in d...
CVE-2017-9049HIGH7.5libxml2 20904-GITv2.9.4-16-g0741801 is vulnerable to a heap-based buffer over-read in the xmlDictComputeFastKey function...
CVE-2017-9048HIGH7.5libxml2 20904-GITv2.9.4-16-g0741801 is vulnerable to a stack-based buffer overflow. The function xmlSnprintfElementConte...
CVE-2017-7493HIGH7.8Quick Emulator (Qemu) built with the VirtFS, host directory sharing via Plan 9 File System(9pfs) support, is vulnerable ...
CVE-2017-8927HIGH7.8Buffer overflow in Larson VizEx Reader 9.7.5 allows attackers to cause a denial of service or possibly have unspecified ...
CVE-2017-8928HIGH8.8mailcow 0.14, as used in "mailcow: dockerized" and other products, has CSRF.
CVE-2017-7487HIGH7.8The ipxitf_ioctl function in net/ipx/af_ipx.c in the Linux kernel through 4.11.1 mishandles reference counts, which allo...
CVE-2017-8246HIGH7.8In function msm_pcm_playback_close() in all Android releases from CAF using the Linux kernel, prtd is assigned substream...
CVE-2017-8245HIGH7.8In all Android releases from CAF using the Linux kernel, while processing a voice SVC request which is nonstandard by sp...
CVE-2017-8244HIGH7In core_info_read and inst_info_read in all Android releases from CAF using the Linux kernel, variable "dbg_buf", "dbg_b...
CVE-2017-0263HIGH7.8The kernel-mode drivers in Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012...
CVE-2017-0262HIGH7.8Microsoft Office 2010 SP2, Office 2013 SP1, and Office 2016 allow a remote code execution vulnerability when the softwar...
CVE-2017-0261HIGH7.8Microsoft Office 2010 SP2, Office 2013 SP1, and Office 2016 allow a remote code execution vulnerability when the softwar...

Check if your code is affected by 2017 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now