Vulnerabilities > High

DATE CVE VULNERABILITY TITLE RISK
2017-04-24 CVE-2017-5030 Out-of-bounds Read vulnerability in multiple products
Incorrect handling of complex species in V8 in Google Chrome prior to 57.0.2987.98 for Linux, Windows, and Mac and 57.0.2987.108 for Android allowed a remote attacker to execute arbitrary code via a crafted HTML page.
network
low complexity
google debian redhat CWE-125
8.8
2017-04-24 CVE-2017-5029 Out-of-bounds Write vulnerability in multiple products
The xsltAddTextString function in transform.c in libxslt 1.1.29, as used in Blink in Google Chrome prior to 57.0.2987.98 for Mac, Windows, and Linux and 57.0.2987.108 for Android, lacked a check for integer overflow during a size calculation, which allowed a remote attacker to perform an out of bounds memory write via a crafted HTML page.
network
low complexity
google xmlsoft debian redhat CWE-787
8.8
2017-04-24 CVE-2016-6915 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Nvidia products
Stack-based buffer overflow in nvhost_job.c in the NVIDIA video driver for Android, Shield TV before OTA 3.3, Shield Table before OTA 4.4, and Shield Table TK1 before OTA 1.5.
local
low complexity
nvidia CWE-119
7.8
2017-04-24 CVE-2017-3625 Unspecified vulnerability in Oracle Webcenter Content
Vulnerability in the Oracle WebCenter Content component of Oracle Fusion Middleware (subcomponent: Content Server).
network
low complexity
oracle
8.2
2017-04-24 CVE-2017-3622 Unspecified vulnerability in Oracle Solaris 10
Vulnerability in the Solaris component of Oracle Sun Systems Products Suite (subcomponent: Common Desktop Environment (CDE)).
local
low complexity
oracle
7.8
2017-04-24 CVE-2017-3621 Unspecified vulnerability in Oracle SUN ZFS Storage Appliance KIT Ak2013
Vulnerability in the Sun ZFS Storage Appliance Kit (AK) component of Oracle Sun Systems Products Suite (subcomponent: IPC Frameworks).
network
low complexity
oracle
7.5
2017-04-24 CVE-2017-3620 Unspecified vulnerability in Oracle Automatic Service Request
Vulnerability in the Automatic Service Request (ASR) component of Oracle Support Tools (subcomponent: ASR Manager).
local
low complexity
oracle
7.8
2017-04-24 CVE-2017-3618 Unspecified vulnerability in Oracle Automatic Service Request
Vulnerability in the Automatic Service Request (ASR) component of Oracle Support Tools (subcomponent: ASR Manager).
local
low complexity
oracle
7.1
2017-04-24 CVE-2017-3617 Unspecified vulnerability in Oracle Berkeley DB
Vulnerability in the Data Store component of Oracle Berkeley DB.
local
high complexity
oracle
7.0
2017-04-24 CVE-2017-3616 Unspecified vulnerability in Oracle Berkeley DB
Vulnerability in the Data Store component of Oracle Berkeley DB.
local
high complexity
oracle
7.0