2017 CVE Vulnerabilities
17,104 CVEs published in 2017.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2017-18307 | MEDIUM | 5.5 | 0.1% | Nov 26, 2024 | Information disclosure possible while audio playback. |
| CVE-2017-18306 | MEDIUM | 5.5 | 0.1% | Nov 26, 2024 | Information disclosure due to uninitialized variable. |
| CVE-2017-18153 | HIGH | 7 | 0.1% | Nov 26, 2024 | A race condition exists in a driver potentially leading to a use-after-free condition. |
| CVE-2017-17772 | CRITICAL | 9.8 | 0.3% | Nov 26, 2024 | In multiple functions that process 802.11 frames, out-of-bounds reads can occur due to insufficient validation. |
| CVE-2017-15832 | HIGH | 7.8 | 0.1% | Nov 26, 2024 | Buffer overwrite in the WLAN host driver by leveraging a compromised WLAN FW |
| CVE-2017-11076 | CRITICAL | 9.8 | 0.3% | Nov 26, 2024 | On some hardware revisions where VP9 decoding is hardware-accelerated, the frame size is not programmed correctly into t... |
| CVE-2017-9711 | HIGH | 7.8 | 0.1% | Nov 22, 2024 | Certain unprivileged processes are able to perform IOCTL calls. |
| CVE-2017-13315 | HIGH | 7.8 | 0.1% | Nov 19, 2024 | In writeToParcel and createFromParcel of DcParamObject.java, there is a permission bypass due to a write size mismatch. ... |
| CVE-2017-13314 | HIGH | 7.8 | 0.1% | Nov 15, 2024 | In setAllowOnlyVpnForUids of NetworkManagementService.java, there is a possible security settings bypass due to a missin... |
| CVE-2017-13313 | MEDIUM | 6.5 | 0.2% | Nov 15, 2024 | In ElementaryStreamQueue::dequeueAccessUnitMPEG4Video of ESQueue.cpp, there is a possible infinite loop leading to resou... |
| CVE-2017-13312 | HIGH | 7.8 | 0.1% | Nov 15, 2024 | In createFromParcel of MediaCas.java, there is a possible parcel read/write mismatch due to improper input validation. T... |
| CVE-2017-13311 | MEDIUM | 6.7 | 0.1% | Nov 15, 2024 | In the read() function of ProcessStats.java, there is a possible read/write serialization issue leading to a permissions... |
| CVE-2017-13310 | HIGH | 7.8 | 0.1% | Nov 15, 2024 | In createFromParcel of ViewPager.java, there is a possible read/write serialization issue leading to a permissions bypas... |
| CVE-2017-13309 | MEDIUM | 5.5 | 0.1% | Nov 15, 2024 | In readEncryptedData of ConscryptEngine.java, there is a possible plaintext leak due to improperly used crypto. This cou... |
| CVE-2017-13227 | MEDIUM | 5.5 | 0.1% | Nov 14, 2024 | In the autofill service, the package name that is provided by the app process is trusted inappropriately. This could le... |
| CVE-2017-20195 | MEDIUM | 5.5 | 0.3% | Oct 29, 2024 | A vulnerability was found in LUNAD3v AreaLoad up to 1a1103182ed63a06dde63d1712f3262eda19c3ec. It has been rated as criti... |
| CVE-2017-20194 | MEDIUM | 5.3 | 1.1% | Oct 16, 2024 | The Formidable Form Builder plugin for WordPress is vulnerable to Sensitive Data Exposure in versions up to, and includi... |
| CVE-2017-20193 | MEDIUM | 6.1 | 0.4% | Oct 16, 2024 | The Product Vendors is vulnerable to Reflected Cross-Site Scripting via the 'vendor_description' parameter in versions u... |
| CVE-2017-20192 | MEDIUM | 6.1 | 1.0% | Oct 16, 2024 | The Formidable Form Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via multiple parameters su... |
| CVE-2017-3772 | MEDIUM | 5.5 | 0.1% | Jul 31, 2024 | A vulnerability was reported in Lenovo PC Manager versions prior to 2.6.40.3154 that could allow an attacker to cause a ... |
| CVE-2017-3769 | — | — | — | Jul 29, 2024 | Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. |
| CVE-2017-3766 | — | — | — | Jul 29, 2024 | Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. |
| CVE-2017-3755 | — | — | — | Jul 29, 2024 | Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. |
| CVE-2017-20191 | LOW | 3.5 | 0.5% | Mar 31, 2024 | A vulnerability was found in Zimbra zm-admin-ajax up to 8.8.1. It has been classified as problematic. This affects the f... |
| CVE-2017-20190 | — | — | 0.3% | Mar 27, 2024 | Some Microsoft technologies as used in Windows 8 through 11 allow a temporary client-side performance degradation during... |
Check if your code is affected by 2017 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now