Latest CVE Feed
-
5.5
MEDIUMCVE-2017-0353
All versions of the NVIDIA GPU Display Driver contain a vulnerability in the kernel mode layer handler for DxgDdiEscape where due to improper locking on certain conditions may lead to a denial of service... Read more
- Published: May. 09, 2017
- Modified: Apr. 20, 2025
-
7.8
HIGHCVE-2017-0352
All versions of the NVIDIA GPU Display Driver contain a vulnerability in the GPU firmware where incorrect access control may allow CPU access sensitive GPU control registers, leading to an escalation of privileges... Read more
- Published: May. 09, 2017
- Modified: Apr. 20, 2025
-
7.8
HIGHCVE-2017-0351
All versions of the NVIDIA GPU Display Driver contain a vulnerability in the kernel mode layer handler where a NULL pointer dereference caused by invalid user input may lead to denial of service or potential escalation of privileges.... Read more
- Published: May. 09, 2017
- Modified: Apr. 20, 2025
-
7.8
HIGHCVE-2017-0350
All versions of the NVIDIA GPU Display Driver contain a vulnerability in the kernel mode layer handler where a value passed from a user to the driver is not correctly validated and used in an offset calculation may lead to denial of service or potential e... Read more
- Published: May. 09, 2017
- Modified: Apr. 20, 2025
-
7.8
HIGHCVE-2017-0349
All versions of the NVIDIA Windows GPU Display Driver contain a vulnerability in the kernel mode layer (nvlddmkm.sys) handler for DxgkDdiEscape where a pointer passed from a user to the driver is not correctly validated before it is dereferenced for a wri... Read more
- Published: May. 09, 2017
- Modified: Apr. 20, 2025
-
7.8
HIGHCVE-2017-0348
All versions of the NVIDIA Windows GPU Display Driver contain a vulnerability in the kernel mode layer (nvlddmkm.sys) handler where a NULL pointer dereference may lead to denial of service or potential escalation of privileges.... Read more
- Published: May. 09, 2017
- Modified: Apr. 20, 2025
-
7.8
HIGHCVE-2017-0347
All versions of the NVIDIA Windows GPU Display Driver contain a vulnerability in the kernel mode layer (nvlddmkm.sys) handler for DxgkDdiEscape where a value passed from a user to the driver is not correctly validated and used as the index to an array, wh... Read more
- Published: May. 09, 2017
- Modified: Apr. 20, 2025
-
7.8
HIGHCVE-2017-0346
All versions of the NVIDIA Windows GPU Display Driver contain a vulnerability in the kernel mode layer (nvlddmkm.sys) handler for DxgkDdiEscape where the size of an input buffer is not validated, leading to denial of service or potential escalation of pri... Read more
- Published: May. 09, 2017
- Modified: Apr. 20, 2025
-
7.8
HIGHCVE-2017-0345
All versions of the NVIDIA Windows GPU Display Driver contain a vulnerability in the kernel mode layer (nvlddmkm.sys) handler for DxgDdiEscape where user provided input used as an array size is not correctly validated allows out of bound access in kernel ... Read more
- Published: May. 09, 2017
- Modified: Apr. 20, 2025
-
7.8
HIGHCVE-2017-0344
All versions of the NVIDIA Windows GPU Display Driver contain a vulnerability in the kernel mode layer (nvlddmkm.sys) handler for DxgDdiEscape may allow users to gain access to arbitrary physical memory, leading to escalation of privileges.... Read more
- Published: May. 09, 2017
- Modified: Apr. 20, 2025
-
7.0
HIGHCVE-2017-0343
All versions of the NVIDIA Windows GPU Display Driver contain a vulnerability in the kernel mode layer (nvlddmkm.sys) where user can trigger a race condition due to lack of synchronization in two functions leading to a denial of service or potential escal... Read more
- Published: May. 09, 2017
- Modified: Apr. 20, 2025
-
7.8
HIGHCVE-2017-0342
All versions of the NVIDIA Windows GPU Display Driver contain a vulnerability in the kernel mode layer (nvlddmkm.sys) handler where incorrect calculation may cause an invalid address access leading to denial of service or potential escalation of privilege... Read more
- Published: May. 09, 2017
- Modified: Apr. 20, 2025
-
7.8
HIGHCVE-2017-0341
All versions of the NVIDIA Windows GPU Display Driver contain a vulnerability in the kernel mode layer (nvlddmkm.sys) handler for DxgDdiEscape where user provided input can trigger an access to a pointer that has not been initialized which may lead to den... Read more
- Published: May. 09, 2017
- Modified: Apr. 20, 2025
-
7.5
HIGHCVE-2017-8855
wolfSSL before 3.11.0 does not prevent wc_DhAgree from accepting a malformed DH key.... Read more
Affected Products : wolfssl- Published: May. 09, 2017
- Modified: Apr. 20, 2025
-
7.8
HIGHCVE-2017-8854
wolfSSL before 3.10.2 has an out-of-bounds memory access with loading crafted DH parameters, aka a buffer overflow triggered by a malformed temporary DH file.... Read more
Affected Products : wolfssl- Published: May. 09, 2017
- Modified: Apr. 20, 2025
-
6.5
MEDIUMCVE-2017-5527
TIBCO Spotfire Server 7.0.X before 7.0.2, 7.5.x before 7.5.1, 7.6.x before 7.6.1, 7.7.x before 7.7.1, and 7.8.x before 7.8.1 and Spotfire Analytics Platform for AWS Marketplace 7.8.0 and earlier contain multiple vulnerabilities which may allow authorized ... Read more
- Published: May. 09, 2017
- Modified: Apr. 20, 2025
-
5.5
MEDIUMCVE-2017-7967
All versions of VAMPSET software produced by Schneider Electric, prior to V2.2.189, are susceptible to a memory corruption vulnerability when a corrupted vf2 file is used. This vulnerability causes the software to halt or not start when trying to open the... Read more
Affected Products : vampset- Published: May. 09, 2017
- Modified: Apr. 20, 2025
-
7.5
HIGHCVE-2017-8853
Fiyo CMS v2.0.7 has an arbitrary file delete vulnerability in dapur/apps/app_config/controller/backuper.php via directory traversal in the file parameter during an act=db action.... Read more
Affected Products : fiyo_cms- Published: May. 09, 2017
- Modified: Apr. 20, 2025
-
9.3
HIGHCVE-2017-3074
Adobe Flash Player versions 25.0.0.148 and earlier have an exploitable memory corruption vulnerability in the Graphics class. Successful exploitation could lead to arbitrary code execution.... Read more
Affected Products : windows_10 windows_8.1 linux_kernel enterprise_linux enterprise_linux_desktop enterprise_linux_workstation flash_player_desktop_runtime flash_player mac_os_x chrome_os +1 more products- Published: May. 09, 2017
- Modified: Apr. 20, 2025
-
9.3
HIGHCVE-2017-3073
Adobe Flash Player versions 25.0.0.148 and earlier have an exploitable use after free vulnerability when handling multiple mask properties of display objects, aka memory corruption. Successful exploitation could lead to arbitrary code execution.... Read more
Affected Products : windows_10 windows_8.1 linux_kernel enterprise_linux enterprise_linux_desktop enterprise_linux_workstation flash_player_desktop_runtime flash_player mac_os_x chrome_os +1 more products- Published: May. 09, 2017
- Modified: Apr. 20, 2025