CVE & Exploit Intelligence Database

Updated 4h ago

Search and track vulnerabilities with real-time exploit intelligence. Cross-reference CVEs against public exploits from ExploitDB, Metasploit, GitHub, and Nuclei — with CVSS and EPSS scoring, CISA KEV monitoring, and AI-powered exploit analysis.

337,847 CVEs tracked 53,242 with exploits 4,725 exploited in wild 1,540 CISA KEV 3,918 Nuclei templates 37,802 vendors 42,493 researchers
415 results Clear all
CVE-2016-3623 7.5 HIGH EPSS 0.02
LibTIFF <4.0.6 - DoS
The rgb2ycbcr tool in LibTIFF 4.0.6 and earlier allows remote attackers to cause a denial of service (divide-by-zero) by setting the (1) v or (2) h parameter to 0.
CWE-369 Oct 03, 2016
CVE-2016-3622 6.5 MEDIUM EPSS 0.01
LibTIFF <4.0.6 - DoS
The fpAcc function in tif_predict.c in the tiff2rgba tool in LibTIFF 4.0.6 and earlier allows remote attackers to cause a denial of service (divide-by-zero error) via a crafted TIFF image.
CWE-369 Oct 03, 2016
CVE-2016-6505 5.9 MEDIUM 1 PoC Analysis EPSS 0.02
Wireshark <1.12.13, <2.0.5 - DoS
epan/dissectors/packet-packetbb.c in the PacketBB dissector in Wireshark 1.12.x before 1.12.13 and 2.x before 2.0.5 allows remote attackers to cause a denial of service (divide-by-zero error and application crash) via a crafted packet.
CWE-369 Aug 06, 2016
CVE-2015-7513 6.5 MEDIUM EPSS 0.00
Linux kernel <4.4 - DoS
arch/x86/kvm/x86.c in the Linux kernel before 4.4 does not reset the PIT counter values during state restoration, which allows guest OS users to cause a denial of service (divide-by-zero error and host OS crash) via a zero value, related to the kvm_vm_ioctl_set_pit and kvm_vm_ioctl_set_pit2 functions.
CWE-369 Feb 08, 2016
CVE-2014-9756 EPSS 0.01
libsndfile - DoS
The psf_fwrite function in file_io.c in libsndfile allows attackers to cause a denial of service (divide-by-zero error and application crash) via unspecified vectors related to the headindex variable.
CWE-369 Nov 19, 2015
CVE-2015-6855 7.5 HIGH EPSS 0.06
Qemu < 2.4.1 - Divide By Zero
hw/ide/core.c in QEMU does not properly restrict the commands accepted by an ATAPI device, which allows guest users to cause a denial of service or possibly have unspecified other impact via certain IDE commands, as demonstrated by a WIN_READ_NATIVE_MAX command to an empty drive, which triggers a divide-by-zero error and instance crash.
CWE-369 Nov 06, 2015
CVE-2012-0207 7.5 HIGH 1 PoC Analysis EPSS 0.16
Linux Kernel < 3.0.17 - Divide By Zero
The igmp_heard_query function in net/ipv4/igmp.c in the Linux kernel before 3.2.1 allows remote attackers to cause a denial of service (divide-by-zero error and panic) via IGMP packets.
CWE-369 May 17, 2012
CVE-2011-1012 EPSS 0.00
Linux Kernel < 2.6.38 - Divide By Zero
The ldm_parse_vmdb function in fs/partitions/ldm.c in the Linux kernel before 2.6.38-rc6-git6 does not validate the VBLK size value in the VMDB structure in an LDM partition table, which allows local users to cause a denial of service (divide-by-zero error and OOPS) via a crafted partition table.
CWE-369 Mar 01, 2011
CVE-2010-4165 2 PoCs Analysis EPSS 0.00
Linux Kernel < 2.6.37 - Divide By Zero
The do_tcp_setsockopt function in net/ipv4/tcp.c in the Linux kernel before 2.6.37-rc2 does not properly restrict TCP_MAXSEG (aka MSS) values, which allows local users to cause a denial of service (OOPS) via a setsockopt call that specifies a small value, leading to a divide-by-zero error or incorrect use of a signed integer.
CWE-369 Nov 22, 2010
CVE-2009-1887 EPSS 0.01
Red Hat Enterprise Linux (RHEL) 3 - DoS
agent/snmp_agent.c in snmpd in net-snmp 5.0.9 in Red Hat Enterprise Linux (RHEL) 3 allows remote attackers to cause a denial of service (daemon crash) via a crafted SNMP GETBULK request that triggers a divide-by-zero error. NOTE: this vulnerability exists because of an incorrect fix for CVE-2008-4309.
CWE-369 Jun 26, 2009
CVE-2007-3268 7.5 HIGH EPSS 0.03
IBM Tivoli Provisioning Manager OS Deployment - Divide By Zero
The TFTP implementation in IBM Tivoli Provisioning Manager for OS Deployment 5.1 before Fix Pack 3 allows remote attackers to cause a denial of service (rembo.exe crash and multiple service outage) via a read (RRQ) request with an invalid blksize (blocksize), which triggers a divide-by-zero error.
CWE-369 Jul 18, 2007
CVE-2007-2237 5.5 MEDIUM 2 PoCs Analysis EPSS 0.61
Microsoft Windows XP - Divide By Zero
Microsoft Windows Graphics Device Interface (GDI+, GdiPlus.dll) allows context-dependent attackers to cause a denial of service (crash) via an ICO file with an InfoHeader containing a Height of zero, which triggers a divide-by-zero error.
CWE-369 Jun 06, 2007
CVE-2007-2723 5.5 MEDIUM EPSS 0.01
Media Player Classic 6.4.9.0 - DoS
Media Player Classic 6.4.9.0 allows user-assisted remote attackers to cause a denial of service (web browser crash) via an "empty" .MPA file, which triggers a divide-by-zero error.
CWE-369 May 16, 2007
CVE-2006-5939 EPSS 0.01
Grisoft Avg Antivirus - Divide By Zero
Grisoft AVG Anti-Virus before 7.1.407 allows remote attackers to cause a denial of service (crash) via a crafted DOC file that triggers a divide-by-zero error. NOTE: some of these details are obtained from third party information.
CWE-369 Nov 16, 2006
CVE-2004-0804 EPSS 0.19
libtiff - DoS
Vulnerability in tif_dirread.c for libtiff allows remote attackers to cause a denial of service (application crash) via a TIFF image that causes a divide-by-zero error when the number of row bytes is zero, a different vulnerability than CVE-2005-2452.
CWE-369 Nov 03, 2004