CVE & Exploit Intelligence Database

Updated 4h ago

Search and track vulnerabilities with real-time exploit intelligence. Cross-reference CVEs against public exploits from ExploitDB, Metasploit, GitHub, and Nuclei — with CVSS and EPSS scoring, CISA KEV monitoring, and AI-powered exploit analysis.

338,223 CVEs tracked 53,271 with exploits 4,730 exploited in wild 1,542 CISA KEV 3,929 Nuclei templates 37,826 vendors 42,547 researchers
416 results Clear all
CVE-2017-17381 6.5 MEDIUM EPSS 0.00
QEMU - DoS
The Virtio Vring implementation in QEMU allows local OS guest users to cause a denial of service (divide-by-zero error and QEMU process crash) by unsetting vring alignment while updating Virtio rings.
CWE-369 Dec 07, 2017
CVE-2017-17054 5.5 MEDIUM EPSS 0.00
aubio <0.4.6 - DoS
In aubio 0.4.6, a divide-by-zero error exists in the function new_aubio_source_wavread() in source_wavread.c, which may lead to DoS when playing a crafted audio file.
CWE-369 Nov 29, 2017
CVE-2017-16942 6.5 MEDIUM EPSS 0.00
libsndfile <1.0.26 - DoS
In libsndfile 1.0.25 (fixed in 1.0.26), a divide-by-zero error exists in the function wav_w64_read_fmt_chunk() in wav_w64.c, which may lead to DoS when playing a crafted audio file.
CWE-369 Nov 25, 2017
CVE-2017-0857 7.5 HIGH EPSS 0.00
Android <8.0 - Info Disclosure
Another vulnerability in the Android media framework (n/a). Product: Android. Versions: 7.0, 7.1.1, 7.1.2, 8.0. Android ID: A-65122447.
CWE-681 Nov 16, 2017
CVE-2017-16650 6.6 MEDIUM EPSS 0.00
Linux kernel <4.13.11 - DoS
The qmi_wwan_bind function in drivers/net/usb/qmi_wwan.c in the Linux kernel through 4.13.11 allows local users to cause a denial of service (divide-by-zero error and system crash) or possibly have unspecified other impact via a crafted USB device.
CWE-369 Nov 07, 2017
CVE-2017-16649 6.6 MEDIUM EPSS 0.00
Linux kernel <4.13.11 - DoS
The usbnet_generic_cdc_bind function in drivers/net/usb/cdc_ether.c in the Linux kernel through 4.13.11 allows local users to cause a denial of service (divide-by-zero error and system crash) or possibly have unspecified other impact via a crafted USB device.
CWE-369 Nov 07, 2017
CVE-2017-15266 5.5 MEDIUM EPSS 0.00
GNU Libextractor - Divide By Zero
In GNU Libextractor 1.4, there is a Divide-By-Zero in EXTRACTOR_wav_extract_method in wav_extractor.c via a zero sample rate.
CWE-369 Oct 11, 2017
CVE-2017-15025 5.5 MEDIUM EPSS 0.00
GNU Binutils - Divide By Zero
decode_line_info in dwarf2.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29, allows remote attackers to cause a denial of service (divide-by-zero error and application crash) via a crafted ELF file.
CWE-369 Oct 05, 2017
CVE-2017-6271 5.5 MEDIUM EPSS 0.00
Nvidia Gpu Driver - Divide By Zero
NVIDIA Windows GPU Display Driver contains a vulnerability in the kernel mode layer handler for DxgkDdiCreateAllocation where untrusted user input is used as a divisor without validation while processing block linear information which may lead to a potential divide by zero and denial of service.
CWE-369 Sep 22, 2017
CVE-2017-6270 5.5 MEDIUM EPSS 0.00
Nvidia Gpu Driver - Divide By Zero
NVIDIA Windows GPU Display Driver contains a vulnerability in the kernel mode layer handler for DxgkDdiCreateAllocation where untrusted user input is used as a divisor without validation during a calculation which may lead to a potential divide by zero and denial of service.
CWE-369 Sep 22, 2017
CVE-2017-14634 6.5 MEDIUM EPSS 0.01
libsndfile 1.0.28 - DoS
In libsndfile 1.0.28, a divide-by-zero error exists in the function double64_init() in double64.c, which may lead to DoS when playing a crafted audio file.
CWE-369 Sep 21, 2017
CVE-2017-14249 6.5 MEDIUM EPSS 0.01
ImageMagick 7.0.6-8 - DoS
ImageMagick 7.0.6-8 Q16 mishandles EOF checks in ReadMPCImage in coders/mpc.c, leading to division by zero in GetPixelCacheTileSize in MagickCore/cache.c, allowing remote attackers to cause a denial of service via a crafted file.
CWE-369 Sep 11, 2017
CVE-2017-14106 5.5 MEDIUM 1 Writeup EPSS 0.00
Linux kernel <4.12 - DoS
The tcp_disconnect function in net/ipv4/tcp.c in the Linux kernel before 4.12 allows local users to cause a denial of service (__tcp_select_window divide-by-zero error and system crash) by triggering a disconnect within a certain tcp_recvmsg code path.
CWE-369 Sep 01, 2017
CVE-2016-10506 6.5 MEDIUM EPSS 0.04
Uclouvain Openjpeg < 2.1.2 - Divide By Zero
Division-by-zero vulnerabilities in the functions opj_pi_next_cprl, opj_pi_next_pcrl, and opj_pi_next_rpcl in pi.c in OpenJPEG before 2.2.0 allow remote attackers to cause a denial of service (application crash) via crafted j2k files.
CWE-369 Aug 30, 2017
CVE-2017-12924 6.5 MEDIUM EPSS 0.00
Libfpx - Divide By Zero
CDirVector::GetTable in dirfunc.hxx in libfpx 1.3.1_p6 allows remote attackers to cause a denial of service (divide-by-zero error) via a crafted fpx image.
CWE-369 Aug 28, 2017
CVE-2014-0142 5.5 MEDIUM EPSS 0.00
QEMU <2.0.0 - DoS
QEMU, possibly before 2.0.0, allows local users to cause a denial of service (divide-by-zero error and crash) via a zero value in the (1) tracks field to the seek_to_sector function in block/parallels.c or (2) extent_size field in the bochs function in block/bochs.c.
CWE-369 Aug 10, 2017
CVE-2017-11546 5.5 MEDIUM EPSS 0.00
TiMidity++ 2.14.0 - DoS
The insert_note_steps function in readmidi.c in TiMidity++ 2.14.0 allows remote attackers to cause a denial of service (divide-by-zero error and application crash) via a crafted mid file. NOTE: a crash might be relevant when using the --background option.
CWE-369 Jul 31, 2017
CVE-2017-11359 5.5 MEDIUM 1 PoC Analysis EPSS 0.04
Sound Exchange - Divide By Zero
The wavwritehdr function in wav.c in Sound eXchange (SoX) 14.4.2 allows remote attackers to cause a denial of service (divide-by-zero error and application crash) via a crafted snd file, during conversion to a wav file.
CWE-369 Jul 31, 2017
CVE-2017-11332 5.5 MEDIUM 1 PoC Analysis EPSS 0.05
Sound Exchange - Divide By Zero
The startread function in wav.c in Sound eXchange (SoX) 14.4.2 allows remote attackers to cause a denial of service (divide-by-zero error and application crash) via a crafted wav file.
CWE-369 Jul 31, 2017
CVE-2017-11720 9.8 CRITICAL EPSS 0.00
LAME 3.99.5 - Info Disclosure
There is a division-by-zero vulnerability in LAME 3.99.5, caused by a malformed input file.
CWE-369 Jul 28, 2017