2017 CVE Vulnerabilities

17,105 CVEs published in 2017.

CVE IDSeverityCVSSDescription
CVE-2017-5698MEDIUM4.4Intel Active Management Technology, Intel Standard Manageability, and Intel Small Business Technology firmware versions ...
CVE-2017-2870HIGH7.8An exploitable integer overflow vulnerability exists in the tiff_image_parse functionality of Gdk-Pixbuf 2.36.6 when com...
CVE-2017-2862HIGH7.8An exploitable heap overflow vulnerability exists in the gdk_pixbuf__jpeg_image_load_increment functionality of Gdk-Pixb...
CVE-2017-2822HIGH7.5An exploitable code execution vulnerability exists in the image rendering functionality of Lexmark Perceptive Document F...
CVE-2017-2821HIGH8.8An exploitable use-after-free exists in the PDF parsing functionality of Lexmark Perspective Document Filters 11.3.0.240...
CVE-2017-2808HIGH7.5An exploitable use-after-free vulnerability exists in the account parsing component of the Ledger-CLI 3.1.1. A specially...
CVE-2017-2807HIGH7.5An exploitable buffer overflow vulnerability exists in the tag parsing functionality of Ledger-CLI 3.1.1. A specially cr...
CVE-2017-2779HIGH7.5An exploitable memory corruption vulnerability exists in the RSRC segment parsing functionality of LabVIEW 2017, LabVIEW...
CVE-2017-14159MEDIUM4.7slapd in OpenLDAP 2.4.45 and earlier creates a PID file after dropping privileges to a non-root account, which might all...
CVE-2017-14158Scrapy 1.4 allows remote attackers to cause a denial of service (memory consumption) via large files because arbitrarily...
CVE-2017-14156The atyfb_ioctl function in drivers/video/fbdev/aty/atyfb_base.c in the Linux kernel through 4.12.10 does not initialize...
CVE-2017-14152HIGH8.8A mishandled zero case was discovered in opj_j2k_set_cinema_parameters in lib/openjp2/j2k.c in OpenJPEG 2.2.0. The vulne...
CVE-2017-14151HIGH8.8An off-by-one error was discovered in opj_tcd_code_block_enc_allocate_data in lib/openjp2/tcd.c in OpenJPEG 2.2.0. The v...
CVE-2017-14149GoAhead 3.4.0 through 3.6.5 has a NULL Pointer Dereference in the websDecodeUrl function in http.c, leading to a crash f...
CVE-2017-14146HelpDEZk 1.1.1 allows remote authenticated users to execute arbitrary PHP code by uploading a .php attachment and then r...
CVE-2017-14145HelpDEZk 1.1.1 has SQL Injection in app\modules\admin\controllers\loginController.php via the admin/login/getWarningInfo...
CVE-2017-14140The move_pages system call in mm/migrate.c in the Linux kernel before 4.12.9 doesn't check the effective uid of the targ...
CVE-2017-14108libgedit.a in GNOME gedit through 3.22.1 allows remote attackers to cause a denial of service (CPU consumption) via a fi...
CVE-2017-1000083backend/comics/comics-document.c (aka the comic book backend) in GNOME Evince before 3.24.1 allows remote attackers to e...
CVE-2017-14139ImageMagick 7.0.6-2 has a memory leak vulnerability in WriteMSLImage in coders/msl.c.
CVE-2017-14138ImageMagick 7.0.6-5 has a memory leak vulnerability in ReadWEBPImage in coders/webp.c because memory is not freed in cer...
CVE-2017-14137ReadWEBPImage in coders/webp.c in ImageMagick 7.0.6-5 has an issue where memory allocation is excessive because it depen...
CVE-2017-14136OpenCV (Open Source Computer Vision Library) 3.3 has an out-of-bounds write error in the function FillColorRow1 in utils...
CVE-2017-14135enigma2-plugins/blob/master/webadmin/src/WebChilds/Script.py in the webadmin plugin for opendreambox 2.0.0 allows remote...
CVE-2017-14132JasPer 1.900.8, 1.900.9, 1.900.10, 1.900.11, 1.900.12, 1.900.13, 1.900.14, 1.900.15, 1.900.16, 1.900.17, 1.900.18, 1.900...

Check if your code is affected by 2017 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now