2017 CVE Vulnerabilities

17,104 CVEs published in 2017.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2017-5443An out-of-bounds write vulnerability while decoding improperly formed BinHex format archives. This vulnerability affects...
CVE-2017-5442A use-after-free vulnerability during changes in style when manipulating DOM elements. This results in a potentially exp...
CVE-2017-5441A use-after-free vulnerability when holding a selection during scroll events. This results in a potentially exploitable ...
CVE-2017-5440A use-after-free vulnerability during XSLT processing due to a failure to propagate error conditions during matching whi...
CVE-2017-5439A use-after-free vulnerability during XSLT processing due to poor handling of template parameters. This results in a pot...
CVE-2017-5438A use-after-free vulnerability during XSLT processing due to the result handler being held by a freed handler during han...
CVE-2017-5436An out-of-bounds write in the Graphite 2 library triggered with a maliciously crafted Graphite font. This results in a p...
CVE-2017-5435A use-after-free vulnerability occurs during transaction processing in the editor during design mode interactions. This ...
CVE-2017-5434A use-after-free vulnerability occurs when redirecting focus handling which results in a potentially exploitable crash. ...
CVE-2017-5433A use-after-free vulnerability in SMIL animation functions occurs when pointers to animation elements in an array are dr...
CVE-2017-5432A use-after-free vulnerability occurs during certain text input selection resulting in a potentially exploitable crash. ...
CVE-2017-5430Memory safety bugs were reported in Firefox 52, Firefox ESR 52, and Thunderbird 52. Some of these bugs showed evidence o...
CVE-2017-5429Memory safety bugs were reported in Firefox 52, Firefox ESR 45.8, Firefox ESR 52, and Thunderbird 52. Some of these bugs...
CVE-2017-5428An integer overflow in "createImageBitmap()" was reported through the Pwn2Own contest. The fix for this vulnerability di...
CVE-2017-5427A non-existent chrome.manifest file will attempt to be loaded during startup from the primary installation directory. If...
CVE-2017-5426On Linux, if the secure computing mode BPF (seccomp-bpf) filter is running when the Gecko Media Plugin sandbox is starte...
CVE-2017-5425The Gecko Media Plugin sandbox allows access to local files that match specific regular expressions. On OS OX, this matc...
CVE-2017-5422If a malicious site uses the "view-source:" protocol in a series within a single hyperlink, it can trigger a non-exploit...
CVE-2017-5421A malicious site could spoof the contents of the print preview window if popup windows are enabled, resulting in user co...
CVE-2017-5420A "javascript:" url loaded by a malicious page can obfuscate its location by blanking the URL displayed in the addressba...
CVE-2017-5419If a malicious site repeatedly triggers a modal authentication prompt, eventually the browser UI will become non-respons...
CVE-2017-5418An out of bounds read error occurs when parsing some HTTP digest authorization responses, resulting in information leaka...
CVE-2017-5417When dragging content from the primary browser pane to the addressbar on a malicious site, it is possible to change the ...
CVE-2017-5416In certain circumstances a networking event listener can be prematurely released. This appears to result in a null deref...
CVE-2017-5415An attack can use a blob URL and script to spoof an arbitrary addressbar URL prefaced by "blob:" as the protocol, leadin...

Check if your code is affected by 2017 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now