2017 CVE Vulnerabilities
17,105 CVEs published in 2017.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2017-7200 | — | — | 2.0% | Mar 21, 2017 | An SSRF issue was discovered in OpenStack Glance before Newton. The 'copy_from' feature in the Image Service API v1 allo... |
| CVE-2017-6839 | — | — | 3.0% | Mar 20, 2017 | Integer overflow in modules/MSADPCM.cpp in Audio File Library (aka audiofile) 0.3.6 allows remote attackers to cause a d... |
| CVE-2017-6838 | — | — | 3.0% | Mar 20, 2017 | Integer overflow in sfcommands/sfconvert.c in Audio File Library (aka audiofile) 0.3.6 allows remote attackers to cause ... |
| CVE-2017-6837 | — | — | 2.8% | Mar 20, 2017 | WAVE.cpp in Audio File Library (aka audiofile) 0.3.6 allows remote attackers to cause a denial of service (crash) via ve... |
| CVE-2017-6836 | MEDIUM | 5.5 | 2.9% | Mar 20, 2017 | Heap-based buffer overflow in the Expand3To4Module::run function in libaudiofile/modules/SimpleModule.h in Audio File Li... |
| CVE-2017-6835 | — | — | 2.8% | Mar 20, 2017 | The reset1 function in libaudiofile/modules/BlockCodec.cpp in Audio File Library (aka audiofile) 0.3.6 allows remote att... |
| CVE-2017-6834 | MEDIUM | 5.5 | 2.6% | Mar 20, 2017 | Heap-based buffer overflow in the ulaw2linear_buf function in G711.cpp in Audio File Library (aka audiofile) 0.3.6, 0.3.... |
| CVE-2017-6833 | — | — | 2.8% | Mar 20, 2017 | The runPull function in libaudiofile/modules/BlockCodec.cpp in Audio File Library (aka audiofile) 0.3.6 allows remote at... |
| CVE-2017-6832 | MEDIUM | 5.5 | 3.0% | Mar 20, 2017 | Heap-based buffer overflow in the decodeBlock in MSADPCM.cpp in Audio File Library (aka audiofile) 0.3.6, 0.3.5, 0.3.4, ... |
| CVE-2017-6831 | MEDIUM | 5.5 | 3.1% | Mar 20, 2017 | Heap-based buffer overflow in the decodeBlockWAVE function in IMA.cpp in Audio File Library (aka audiofile) 0.3.6, 0.3.5... |
| CVE-2017-6830 | — | — | 3.0% | Mar 20, 2017 | Heap-based buffer overflow in the alaw2linear_buf function in G711.cpp in Audio File Library (aka audiofile) 0.3.6 allow... |
| CVE-2017-6829 | — | — | 2.8% | Mar 20, 2017 | The decodeSample function in IMA.cpp in Audio File Library (aka audiofile) 0.3.6 allows remote attackers to cause a deni... |
| CVE-2017-6805 | — | — | 7.8% | Mar 20, 2017 | Directory traversal vulnerability in the TFTP server in MobaXterm Personal Edition 9.4 allows remote attackers to read a... |
| CVE-2017-6803 | — | — | 4.4% | Mar 20, 2017 | Multiple cross-site request forgery (CSRF) vulnerabilities in the web interface in the Scheduler in SolarWinds (formerly... |
| CVE-2017-6550 | — | — | 4.0% | Mar 20, 2017 | Multiple SQL injection vulnerabilities in Kinsey Infor-Lawson (formerly ESBUS) allow remote attackers to execute arbitra... |
| CVE-2017-6356 | MEDIUM | 5.3 | 1.0% | Mar 20, 2017 | Palo Alto Networks Terminal Services (aka TS) Agent 6.0, 7.0, and 8.0 before 8.0.1 uses weak permissions for unspecified... |
| CVE-2017-6318 | — | — | 3.0% | Mar 20, 2017 | saned in sane-backends 1.0.25 allows remote attackers to obtain sensitive memory information via a crafted SANE_NET_CONT... |
| CVE-2017-6178 | — | — | 1.0% | Mar 20, 2017 | The IofCallDriver function in USBPcap 1.1.0.0 allows local users to gain privileges via a crafted 0x00090028 IOCTL call,... |
| CVE-2017-6058 | HIGH | 7.5 | 3.9% | Mar 20, 2017 | Buffer overflow in NetRxPkt::ehdr_buf in hw/net/net_rx_pkt.c in QEMU (aka Quick Emulator), when the VLANSTRIP feature is... |
| CVE-2017-5987 | MEDIUM | 5.5 | 0.4% | Mar 20, 2017 | The sdhci_sdma_transfer_multi_blocks function in hw/sd/sdhci.c in QEMU (aka Quick Emulator) allows local OS guest privil... |
| CVE-2017-5956 | — | — | 0.4% | Mar 20, 2017 | The vrend_draw_vbo function in virglrenderer before 0.6.0 allows local guest OS users to cause a denial of service (out-... |
| CVE-2017-5930 | LOW | 2.7 | 15.0% | Mar 20, 2017 | The AliasHandler component in PostfixAdmin before 3.0.2 allows remote authenticated domain admins to delete protected al... |
| CVE-2017-5618 | — | — | 1.1% | Mar 20, 2017 | GNU screen before 4.5.1 allows local users to modify arbitrary files and consequently gain root privileges by leveraging... |
| CVE-2017-1155 | — | — | 1.3% | Mar 20, 2017 | IBM Algorithmics One-Algo Risk Application 4.9.1, 5.0, and 5.1.0 could allow a user to gain access to another user's rep... |
| CVE-2017-1151 | — | — | 2.2% | Mar 20, 2017 | IBM WebSphere Application Server 8.0, 8.5, 8.5.5, and 9.0 using OpenID Connect (OIDC) configured with a Trust Associatio... |
Check if your code is affected by 2017 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now