CVE Feed

    Dashboard / CVE

    7.5
    High

    CVE-2017-3730

    Last Modified: 20 Apr 2025

    In OpenSSL 1.1.0 before 1.1.0d, if a malicious server supplies bad parameters for a DHE or ECDHE key exchange then this can result in the client attempting to dereference a NULL pointer leading to a client crash. This could be exploited in a Denial of Service attack.

    Published: 26 Jan 2017
    7.5
    High

    CVE-2017-3731

    Last Modified: 20 Apr 2025

    If an SSL/TLS server or client is running on a 32-bit host, and a specific cipher is being used, then a truncated packet can cause that server or client to perform an out-of-bounds read, usually resulting in a crash. For OpenSSL 1.1.0, the crash can be triggered when using CHACHA20/POLY1305; users should upgrade to 1.1.0d. For Openssl 1.0.2, the crash can be triggered when using RC4-MD5; users who have not disabled that algorithm should update to 1.0.2k.

    Published: 26 Jan 2017
    5.9
    Medium

    CVE-2017-3732

    Last Modified: 20 Apr 2025

    There is a carry propagating bug in the x86_64 Montgomery squaring procedure in OpenSSL 1.0.2 before 1.0.2k and 1.1.0 before 1.1.0d. No EC algorithms are affected. Analysis suggests that attacks against RSA and DSA as a result of this defect would be very difficult to perform and are not believed likely. Attacks against DH are considered just feasible (although very difficult) because most of the work necessary to deduce information about a private key may be performed offline. The amount of resources required for such an attack would be very significant and likely only accessible to a limited number of attackers. An attacker would additionally need online access to an unpatched system using the target private key in a scenario with persistent DH parameters and a private key that is shared between multiple clients. For example this can occur by default in OpenSSL DHE based SSL/TLS ciphersuites. Note: This issue is very similar to CVE-2015-3193 but must be treated as a separate problem.

    Published: 26 Jan 2017
    5.9
    Medium

    CVE-2017-2592

    Last Modified: 21 Nov 2024

    python-oslo-middleware before versions 3.8.1, 3.19.1, 3.23.1 is vulnerable to an information disclosure. Software using the CatchError class could include sensitive values in a traceback's error message. System users could exploit this flaw to obtain sensitive information from OpenStack component error logs (for example, keystone tokens).

    Published: 26 Jan 2017
    7.5
    High

    CVE-2017-5630

    Last Modified: 20 Apr 2025

    PECL in the download utility class in the Installer in PEAR Base System v1.10.1 does not validate file types and filenames after a redirect, which allows remote HTTP servers to overwrite files via crafted responses, as demonstrated by a .htaccess overwrite.

    Published: 26 Jan 2017
    9.8
    Critical

    CVE-2016-9306

    Last Modified: 20 Apr 2025

    Multiple buffer overflows in the Autodesk FBX-SDK before 2017.1 can allow attackers to execute arbitrary code when reading or converting malformed DAE format files.

    Published: 25 Jan 2017
    9.8
    Critical

    CVE-2016-9307

    Last Modified: 20 Apr 2025

    Multiple buffer overflows in the Autodesk FBX-SDK before 2017.1 can allow attackers to execute arbitrary code when reading or converting malformed 3DS format files.

    Published: 25 Jan 2017
    9.8
    Critical

    CVE-2016-9303

    Last Modified: 20 Apr 2025

    Multiple buffer overflows in the Autodesk FBX-SDK before 2017.1 can allow attackers to execute arbitrary code or cause an infinite loop condition when reading or converting malformed FBX format files.

    Published: 25 Jan 2017
    8.8
    High

    CVE-2016-9304

    Last Modified: 20 Apr 2025

    Multiple buffer overflows in the Autodesk FBX-SDK before 2017.1 can allow attackers to execute arbitrary code when reading or converting malformed DFX format files.

    Published: 25 Jan 2017
    9.8
    Critical

    CVE-2016-9305

    Last Modified: 20 Apr 2025

    Improper handling in the Autodesk FBX-SDK before 2017.1 of type mismatches and previously deleted objects related to reading and converting malformed FBX format files can allow attackers to gain access to uninitialized pointers.

    Published: 25 Jan 2017
    7.5
    High

    CVE-2017-5594

    Last Modified: 20 Apr 2025

    An issue was discovered in Pagekit CMS before 1.0.11. In this vulnerability the remote attacker is able to reset the registered user's password, when the debug toolbar is enabled. The password is successfully recovered using this exploit. The SecureLayer7 ID is SL7_PGKT_01.

    Published: 25 Jan 2017
    6.7
    Medium

    CVE-2016-8214

    Last Modified: 20 Apr 2025

    EMC Avamar Data Store (ADS) and Avamar Virtual Edition (AVE) versions 7.3.0 and 7.3.1 contain a vulnerability that may allow malicious administrators to compromise Avamar servers.

    Published: 25 Jan 2017
    6.1
    Medium

    CVE-2016-8215

    Last Modified: 20 Apr 2025

    EMC RSA Security Analytics 10.5.3 and 10.6.2 contains fixes for a Reflected Cross-Site Scripting vulnerability that could potentially be exploited by malicious users to compromise the affected system.

    Published: 25 Jan 2017
    4.4
    Medium

    CVE-2017-18030

    Last Modified: 21 Nov 2024

    The cirrus_invalidate_region function in hw/display/cirrus_vga.c in Qemu allows local OS guest privileged users to cause a denial of service (out-of-bounds array access and QEMU process crash) via vectors related to negative pitch.

    Published: 25 Jan 2017
    6.1
    Medium

    CVE-2017-5007

    Last Modified: 20 Apr 2025

    Blink in Google Chrome prior to 56.0.2924.76 for Linux, Windows and Mac, and 56.0.2924.87 for Android, incorrectly handled the sequence of events when closing a page, which allowed a remote attacker to inject arbitrary scripts or HTML (UXSS) via a crafted HTML page.

    Published: 25 Jan 2017
    6.5
    Medium

    CVE-2017-5015

    Last Modified: 20 Apr 2025

    Google Chrome prior to 56.0.2924.76 for Linux, Windows and Mac, and 56.0.2924.87 for Android, incorrectly handled Unicode glyphs, which allowed a remote attacker to perform domain spoofing via IDN homographs in a crafted domain name.

    Published: 25 Jan 2017
    6.5
    Medium

    CVE-2017-5016

    Last Modified: 20 Apr 2025

    Blink in Google Chrome prior to 56.0.2924.76 for Linux, Windows and Mac, and 56.0.2924.87 for Android, failed to prevent certain UI elements from being displayed by non-visible pages, which allowed a remote attacker to show certain UI elements on a page they don't control via a crafted HTML page.

    Published: 25 Jan 2017
    4.3
    Medium

    CVE-2017-5023

    Last Modified: 20 Apr 2025

    Type confusion in Histogram in Google Chrome prior to 56.0.2924.76 for Linux, Windows and Mac, and 56.0.2924.87 for Android, allowed a remote attacker to potentially exploit a near null dereference via a crafted HTML page.

    Published: 25 Jan 2017
    6.1
    Medium

    CVE-2017-5006

    Last Modified: 20 Apr 2025

    Blink in Google Chrome prior to 56.0.2924.76 for Linux, Windows and Mac, and 56.0.2924.87 for Android, incorrectly handled object owner relationships, which allowed a remote attacker to inject arbitrary scripts or HTML (UXSS) via a crafted HTML page.

    Published: 25 Jan 2017
    6.5
    Medium

    CVE-2017-5013

    Last Modified: 20 Apr 2025

    Google Chrome prior to 56.0.2924.76 for Linux incorrectly handled new tab page navigations in non-selected tabs, which allowed a remote attacker to spoof the contents of the Omnibox (URL bar) via a crafted HTML page.

    Published: 25 Jan 2017
    6.3
    Medium

    CVE-2017-5014

    Last Modified: 20 Apr 2025

    Heap buffer overflow during image processing in Skia in Google Chrome prior to 56.0.2924.76 for Linux, Windows and Mac, and 56.0.2924.87 for Android, allowed a remote attacker to perform an out of bounds memory read via a crafted HTML page.

    Published: 25 Jan 2017
    4.3
    Medium

    CVE-2017-5022

    Last Modified: 20 Apr 2025

    Blink in Google Chrome prior to 56.0.2924.76 for Linux, Windows and Mac, and 56.0.2924.87 for Android, failed to properly enforce unsafe-inline content security policy, which allowed a remote attacker to bypass content security policy via a crafted HTML page.

    Published: 25 Jan 2017
    5.5
    Medium

    CVE-2017-6850

    Last Modified: 20 Apr 2025

    The jp2_cdef_destroy function in jp2_cod.c in JasPer before 2.0.13 allows remote attackers to cause a denial of service (NULL pointer dereference) via a crafted image.

    Published: 25 Jan 2017
    7.8
    High

    CVE-2017-6852

    Last Modified: 20 Apr 2025

    Heap-based buffer overflow in the jpc_dec_decodepkt function in jpc_t2dec.c in JasPer 2.0.10 allows remote attackers to have unspecified impact via a crafted image.

    Published: 25 Jan 2017
    5.9
    Medium

    CVE-2016-10228

    Last Modified: 20 Apr 2025

    The iconv program in the GNU C Library (aka glibc or libc6) 2.31 and earlier, when invoked with multiple suffixes in the destination encoding (TRANSLATE or IGNORE) along with the -c option, enters an infinite loop when processing invalid multi-byte input sequences, leading to a denial of service.

    Published: 25 Jan 2017
    6.1
    Medium

    CVE-2017-5008

    Last Modified: 20 Apr 2025

    Blink in Google Chrome prior to 56.0.2924.76 for Linux, Windows and Mac, and 56.0.2924.87 for Android, allowed attacker controlled JavaScript to be run during the invocation of a private script method, which allowed a remote attacker to inject arbitrary scripts or HTML (UXSS) via a crafted HTML page.

    Published: 25 Jan 2017
    8.8
    High

    CVE-2017-5009

    Last Modified: 20 Apr 2025

    WebRTC in Google Chrome prior to 56.0.2924.76 for Linux, Windows and Mac, and 56.0.2924.87 for Android, failed to perform proper bounds checking, which allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

    Published: 25 Jan 2017
    6.1
    Medium

    CVE-2017-5010

    Last Modified: 20 Apr 2025

    Blink in Google Chrome prior to 56.0.2924.76 for Linux, Windows and Mac, and 56.0.2924.87 for Android, resolved promises in an inappropriate context, which allowed a remote attacker to inject arbitrary scripts or HTML (UXSS) via a crafted HTML page.

    Published: 25 Jan 2017
    6.5
    Medium

    CVE-2017-5011

    Last Modified: 20 Apr 2025

    Google Chrome prior to 56.0.2924.76 for Windows insufficiently sanitized DevTools URLs, which allowed a remote attacker who convinced a user to install a malicious extension to read filesystem contents via a crafted HTML page.

    Published: 25 Jan 2017
    8.8
    High

    CVE-2017-5012

    Last Modified: 20 Apr 2025

    A heap buffer overflow in V8 in Google Chrome prior to 56.0.2924.76 for Linux, Windows and Mac, and 56.0.2924.87 for Android, allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

    Published: 25 Jan 2017
    4.3
    Medium

    CVE-2017-5017

    Last Modified: 20 Apr 2025

    Interactions with the OS in Google Chrome prior to 56.0.2924.76 for Mac insufficiently cleared video memory, which allowed a remote attacker to possibly extract image fragments on systems with GeForce 8600M graphics chips via a crafted HTML page.

    Published: 25 Jan 2017
    6.1
    Medium

    CVE-2017-5018

    Last Modified: 20 Apr 2025

    Google Chrome prior to 56.0.2924.76 for Linux, Windows and Mac, and 56.0.2924.87 for Android, had an insufficiently strict content security policy on the Chrome app launcher page, which allowed a remote attacker to inject scripts or HTML into a privileged page via a crafted HTML page.

    Published: 25 Jan 2017
    6.3
    Medium

    CVE-2017-5019

    Last Modified: 20 Apr 2025

    A use after free in Google Chrome prior to 56.0.2924.76 for Linux, Windows and Mac, and 56.0.2924.87 for Android, allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

    Published: 25 Jan 2017
    6.1
    Medium

    CVE-2017-5020

    Last Modified: 20 Apr 2025

    Google Chrome prior to 56.0.2924.76 for Linux, Windows and Mac, and 56.0.2924.87 for Android, failed to require a user gesture for powerful download operations, which allowed a remote attacker who convinced a user to install a malicious extension to execute arbitrary code via a crafted HTML page.

    Published: 25 Jan 2017
    4.3
    Medium

    CVE-2017-5021

    Last Modified: 20 Apr 2025

    A use after free in Google Chrome prior to 56.0.2924.76 for Linux, Windows and Mac, and 56.0.2924.87 for Android, allowed a remote attacker to perform an out of bounds memory read via a crafted HTML page.

    Published: 25 Jan 2017
    5.5
    Medium

    CVE-2017-5024

    Last Modified: 20 Apr 2025

    FFmpeg in Google Chrome prior to 56.0.2924.76 for Linux, Windows and Mac, failed to perform proper bounds checking, which allowed a remote attacker to potentially exploit heap corruption via a crafted video file.

    Published: 25 Jan 2017
    5.5
    Medium

    CVE-2017-5025

    Last Modified: 20 Apr 2025

    FFmpeg in Google Chrome prior to 56.0.2924.76 for Linux, Windows and Mac, failed to perform proper bounds checking, which allowed a remote attacker to potentially exploit heap corruption via a crafted video file.

    Published: 25 Jan 2017
    4.3
    Medium

    CVE-2017-5026

    Last Modified: 20 Apr 2025

    Google Chrome prior to 56.0.2924.76 for Linux, Windows and Mac, failed to prevent alerts from being displayed by swapped out frames, which allowed a remote attacker to show alerts on a page they don't control via a crafted HTML page.

    Published: 25 Jan 2017
    Unknown

    CVE-2016-9041

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2017-2971. Reason: This candidate is a reservation duplicate of CVE-2017-2971. Notes: All CVE users should reference CVE-2017-2971 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage

    Published: 24 Jan 2017
    6.1
    Medium

    CVE-2017-2929

    Last Modified: 20 Apr 2025

    Adobe Acrobat Chrome extension version 15.1.0.3 and earlier have a DOM-based cross-site scripting vulnerability. Successful exploitation could lead to JavaScript code execution.

    Published: 24 Jan 2017
    7.8
    High

    CVE-2017-2971

    Last Modified: 20 Apr 2025

    Adobe Acrobat Reader versions 15.020.20042 and earlier, 15.006.30244 and earlier, 11.0.18 and earlier have an exploitable heap overflow vulnerability in the JPEG decoder routine. Successful exploitation could lead to arbitrary code execution.

    Published: 24 Jan 2017
    7.8
    High

    CVE-2017-2970

    Last Modified: 20 Apr 2025

    Adobe Acrobat Reader versions 15.020.20042 and earlier, 15.006.30244 and earlier, 11.0.18 and earlier have an exploitable heap overflow vulnerability in the XSLT engine related to template manipulation. Successful exploitation could lead to arbitrary code execution.

    Published: 24 Jan 2017
    7.8
    High

    CVE-2017-2972

    Last Modified: 20 Apr 2025

    Adobe Acrobat Reader versions 15.020.20042 and earlier, 15.006.30244 and earlier, 11.0.18 and earlier have an exploitable memory corruption vulnerability in the image conversion module related to JPEG parsing. Successful exploitation could lead to arbitrary code execution.

    Published: 24 Jan 2017
    9.8
    Critical

    CVE-2017-5396

    Last Modified: 25 Nov 2025

    A use-after-free vulnerability in the Media Decoder when working with media files when some events are fired after the media elements are freed from memory. This vulnerability affects Thunderbird < 45.7, Firefox ESR < 45.7, and Firefox < 51.

    Published: 24 Jan 2017
    9.8
    Critical

    CVE-2017-5390

    Last Modified: 25 Nov 2025

    The JSON viewer in the Developer Tools uses insecure methods to create a communication channel for copying and viewing JSON or HTTP headers data, allowing for potential privilege escalation. This vulnerability affects Thunderbird < 45.7, Firefox ESR < 45.7, and Firefox < 51.

    Published: 24 Jan 2017
    7.3
    High

    CVE-2017-5386

    Last Modified: 25 Nov 2025

    WebExtension scripts can use the "data:" protocol to affect pages loaded by other web extensions using this protocol, leading to potential data disclosure or privilege escalation in affected extensions. This vulnerability affects Firefox ESR < 45.7 and Firefox < 51.

    Published: 24 Jan 2017
    9.8
    Critical

    CVE-2017-5380

    Last Modified: 25 Nov 2025

    A potential use-after-free found through fuzzing during DOM manipulation of SVG content. This vulnerability affects Thunderbird < 45.7, Firefox ESR < 45.7, and Firefox < 51.

    Published: 24 Jan 2017
    7.5
    High

    CVE-2017-5378

    Last Modified: 25 Nov 2025

    Hashed codes of JavaScript objects are shared between pages. This allows for pointer leaks because an object's address can be discovered through hash codes, and also allows for data leakage of an object's content using these hash codes. This vulnerability affects Thunderbird < 45.7, Firefox ESR < 45.7, and Firefox < 51.

    Published: 24 Jan 2017
    9.8
    Critical

    CVE-2017-5376

    Last Modified: 25 Nov 2025

    Use-after-free while manipulating XSL in XSLT documents. This vulnerability affects Thunderbird < 45.7, Firefox ESR < 45.7, and Firefox < 51.

    Published: 24 Jan 2017
    9.8
    Critical

    CVE-2017-5375

    Last Modified: 25 Nov 2025

    JIT code allocation can allow for a bypass of ASLR and DEP protections leading to potential memory corruption attacks. This vulnerability affects Thunderbird < 45.7, Firefox ESR < 45.7, and Firefox < 51.

    Published: 24 Jan 2017