2018 CVE Vulnerabilities

17,817 CVEs published in 2018.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2018-9568HIGH7.8In sk_clone_lock of sock.c, there is a possible memory corruption due to type confusion. This could lead to local escala...
CVE-2018-9565HIGH7.5In readBytes of xltdecwbxml.c, there is a possible out of bounds read due to an integer overflow. This could lead to rem...
CVE-2018-9562HIGH7.5In bta_ag_do_disc of bta_ag_sdp.cc, there is a possible out-of-bound read due to an incorrect parameter size. This could...
CVE-2018-9560HIGH7.8In HID_DevAddRecord of hidd_api.cc, there is a possible out-of-bounds write due to a missing bounds check. This could le...
CVE-2018-9558HIGH7.8In rw_t2t_handle_tlv_detect of rw_t2t_ndef.cc, there is a possible out-of-bounds write due to a missing bounds check. Th...
CVE-2018-9555HIGH8.8In l2c_lcc_proc_pdu of l2c_fcr.cc, there is a possible out of bounds write due to a missing bounds check. This could lea...
CVE-2018-9553HIGH7.8In MasteringMetadata::Parse of mkvparser.cc there is a possible double free due to an insecure default value. This could...
CVE-2018-9551HIGH7.8In CAacDecoder_Init of aacdecoder.cpp, there is a possible out-of-bound write due to a missing bounds check. This could ...
CVE-2018-9550HIGH7.8In CAacDecoder_Init of aacdecoder.cpp, there is a possible out of bounds write due to a missing bounds check. This could...
CVE-2018-9549HIGH7.8In lppTransposer of lpp_tran.cpp there is a possible out of bounds write due to missing bounds check. This could lead to...
CVE-2018-9547HIGH7.8In unflatten of GraphicBuffer.cpp, there is a possible bad fd close due to improper input validation. This could lead to...
CVE-2018-9538HIGH7.8In V4L2SliceVideoDecodeAccelerator::Dequeue of v4l2_slice_video_decode_accelerator.cc, there is a possible out of bounds...
CVE-2018-1002103HIGH8.1In Minikube versions 0.3.0-0.29.0, minikube exposes the Kubernetes Dashboard listening on the VM IP at port 30000. In VM...
CVE-2018-15797HIGH8.4Cloud Foundry NFS volume release, 1.2.x prior to 1.2.5, 1.5.x prior to 1.5.4, 1.7.x prior to 1.7.3, logs the cf admin us...
CVE-2018-1941HIGH8.4IBM Campaign 9.1.0 and 9.1.2 could allow a local user to obtain admini privileges due to the application not validating ...
CVE-2018-1730HIGH7.1IBM QRadar SIEM 7.2 and 7.3 is vulnerable to a XML External Entity Injection (XXE) attack when processing XML data. A re...
CVE-2018-18993HIGH7.8Two stack-based buffer overflow vulnerabilities have been discovered in CX-One Versions 4.42 and prior (CX-Programmer Ve...
CVE-2018-19591HIGH7.5In the GNU C Library (aka glibc or libc6) through 2.28, attempting to resolve a crafted hostname via getaddrinfo() leads...
CVE-2018-6981HIGH8.8VMware ESXi 6.7 without ESXi670-201811401-BG and VMware ESXi 6.5 without ESXi650-201811301-BG, VMware ESXi 6.0 without E...
CVE-2018-4021HIGH7.2An exploitable command injection vulnerability exists in the way Netgate pfSense CE 2.4.4-RELEASE processes the paramete...
CVE-2018-4020HIGH7.2An exploitable command injection vulnerability exists in the way Netgate pfSense CE 2.4.4-RELEASE processes the paramete...
CVE-2018-4019HIGH7.2An exploitable command injection vulnerability exists in the way Netgate pfSense CE 2.4.4-RELEASE processes the paramete...
CVE-2018-3854HIGH7.1An exploitable information disclosure vulnerability exists in the password protection functionality of Quicken Deluxe 20...
CVE-2018-6439HIGH7.8A Vulnerability in the configdownload command of Brocade Fabric OS command line interface (CLI) versions before 8.2.1, 8...
CVE-2018-16863HIGH7.3It was found that RHSA-2018:2918 did not fully fix CVE-2018-16509. An attacker could possibly exploit another variant of...

Check if your code is affected by 2018 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now