Vulnerability index

Browse CVEs

3,273 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Integer OverflowCWE-190 × clear
Qemu MEDIUM 5.5
CVE-2017-5898

Integer overflow in the emulated_apdu_from_guest function in usb/dev-smartcard-reader.c in Quick Emulator (Qemu), when built with the CCID Card devic…

Fix: after 2.8.1.1
Fix from $1,600 2017-03-15
Libgd HIGH 7.8
CVE-2016-10168

Integer overflow in gd_io.c in the GD Graphics Library (aka libgd) before 2.2.4 allows remote attackers to have unspecified impact via vectors involv…

Fix: after 2.2.3
Fix from $1,950 2017-03-15
Libplist MEDIUM 5.0
CVE-2017-6440

The parse_data_node function in bplist.c in libimobiledevice libplist 1.12 allows local users to cause a denial of service (memory allocation error) …

No fix yet
Fix from $1,600 2017-03-15
Jasper HIGH 7.8
CVE-2016-10249

Integer overflow in the jpc_dec_tiledecode function in jpc_dec.c in JasPer before 1.900.12 allows remote attackers to have unspecified impact via a c…

Fix: after 1.900.11
Fix from $1,950 2017-03-15
Jasper HIGH 7.8
CVE-2016-10251

Integer overflow in the jpc_pi_nextcprl function in jpc_t2cod.c in JasPer before 1.900.20 allows remote attackers to have unspecified impact via a cr…

Fix: after 1.900.19
Fix from $1,950 2017-03-15
Fedora MEDIUM 5.5
CVE-2017-6312

Integer overflow in io-ico.c in gdk-pixbuf allows context-dependent attackers to cause a denial of service (segmentation fault and application crash)…

Fix: 2.36.12+
Fix from $1,600 2017-03-10
Virglrenderer MEDIUM 5.5
CVE-2017-6355

Integer overflow in the vrend_create_shader function in vrend_renderer.c in virglrenderer before 0.6.0 allows local guest OS users to cause a denial …

Fix: after 0.5.0
Fix from $1,600 2017-03-10
Linux Kernel HIGH 7.0
CVE-2017-0521

An elevation of privilege vulnerability in the Qualcomm camera driver could enable a local malicious application to execute arbitrary code within the…

Patch available
Fix from $1,950 2017-03-08
Linux Kernel HIGH 7.8
CVE-2017-0307

An elevation of privilege vulnerability in the NVIDIA GPU driver could enable a local malicious application to execute arbitrary code within the cont…

Patch available
Fix from $1,950 2017-03-08
OpenBSD HIGH 7.8
CVE-2016-6241

Integer overflow in the amap_alloc1 function in OpenBSD 5.8 and 5.9 allows local users to execute arbitrary code with kernel privileges via a large s…

No fix yet
Fix from $1,950 2017-03-07
OpenBSD MEDIUM 5.5
CVE-2016-6522

Integer overflow in the uvm_map_isavail function in uvm/uvm_map.c in OpenBSD 5.9 allows local users to cause a denial of service (kernel panic) via a…

Patch available
Fix from $1,600 2017-03-07
Libtiff HIGH 7.8
CVE-2016-10093

Integer overflow in tools/tiffcp.c in LibTIFF 4.0.7, 3.9.3, 3.9.4, 3.9.5, 3.9.6, 3.9.7, 4.0.0alpha4, 4.0.0alpha5, 4.0.0alpha6, 4.0.0beta7, 4.0.0, 4.0…

Patch available
Fix from $1,950 2017-03-01
Libav MEDIUM 5.5
CVE-2016-9821

Integer overflow in libavcodec/mpegvideo_parser.c in libav 11.8 allows remote attackers to cause a denial of service (crash) via a crafted file.

No fix yet
Fix from $1,600 2017-03-01
Libav MEDIUM 5.5
CVE-2016-9822

Integer overflow in libavcodec/mpeg12dec.c in libav 11.8 allows remote attackers to cause a denial of service (crash) via a crafted file.

No fix yet
Fix from $1,600 2017-03-01
Libav MEDIUM 5.5
CVE-2016-9824

Integer overflow in libswscale/x86/swscale.c in libav 11.8 allows remote attackers to cause a denial of service (crash) via a crafted file.

No fix yet
Fix from $1,600 2017-03-01
Jasper MEDIUM 5.5
CVE-2017-5499

Integer overflow in libjasper/jpc/jpc_dec.c in JasPer 1.900.17 allows remote attackers to cause a denial of service (crash) via a crafted file.

No fix yet
Fix from $1,600 2017-03-01
Jasper MEDIUM 5.5
CVE-2017-5501

Integer overflow in libjasper/jpc/jpc_tsfb.c in JasPer 1.900.17 allows remote attackers to cause a denial of service (crash) via a crafted file.

No fix yet
Fix from $1,600 2017-03-01
Podofo HIGH 7.8
CVE-2017-5853

Integer overflow in base/PdfParser.cpp in PoDoFo 0.9.4 allows remote attackers to have unspecified impact via a crafted file.

Mitigation only
Fix from $1,950 2017-03-01
Libdwarf CRITICAL 9.8
CVE-2016-9558EPSS 5%

(1) libdwarf/dwarf_leb.c and (2) dwarfdump/print_frames.c in libdwarf before 20161124 allow remote attackers to have unspecified impact via a crafted…

Fix: 2016-11-24+
Fix from $2,300 2017-02-28
Fedora CRITICAL 9.8
CVE-2017-5885

Multiple integer overflows in the (1) vnc_connection_server_message and (2) vnc_color_map_set functions in gtk-vnc before 0.7.0 allow remote servers …

Fix: after 0.6.0
Fix from $2,300 2017-02-28
Argus HIGH 7.8
CVE-2016-8389

An exploitable integer-overflow vulnerability exists within Iceni Argus. When it attempts to convert a malformed PDF to XML, it will attempt to conve…

No fix yet
Fix from $1,950 2017-02-28
Vim CRITICAL 9.8
CVE-2017-6349

An integer overflow at a u_read_undo memory allocation site would occur for vim before patch 8.0.0377, if it does not properly validate values for tr…

Fix: after 8.0.0376
Fix from $2,300 2017-02-27
Vim CRITICAL 9.8
CVE-2017-6350

An integer overflow at an unserialize_uep memory allocation site would occur for vim before patch 8.0.0378, if it does not properly validate values f…

Fix: after 8.0.0377
Fix from $2,300 2017-02-27
Libiberty HIGH 7.8
CVE-2016-2226EPSS 7%

Integer overflow in the string_appends function in cplus-dem.c in libiberty allows remote attackers to execute arbitrary code via a crafted executabl…

No fix yet
Fix from $1,950 2017-02-24
Libiberty MEDIUM 5.5
CVE-2016-4489

Integer overflow in the gnu_special function in libiberty allows remote attackers to cause a denial of service (segmentation fault and crash) via a c…

Mitigation only
Fix from $1,600 2017-02-24
Libiberty MEDIUM 5.5
CVE-2016-4490

Integer overflow in cp-demangle.c in libiberty allows remote attackers to cause a denial of service (segmentation fault and crash) via a crafted bina…

Mitigation only
Fix from $1,600 2017-02-24
Debian Linux HIGH 7.8
CVE-2017-6302

An issue was discovered in ytnef before 1.9.1. This is related to a patch described as "5 of 9. Integer Overflow."

Fix: after 1.9
Fix from $1,950 2017-02-24
Debian Linux HIGH 7.8
CVE-2017-6303

An issue was discovered in ytnef before 1.9.1. This is related to a patch described as "6 of 9. Invalid Write and Integer Overflow."

Fix: after 1.9
Fix from $1,950 2017-02-24
Debian Linux HIGH 7.8
CVE-2017-6308

An issue was discovered in tnef before 1.4.13. Several Integer Overflows, which can lead to Heap Overflows, have been identified in the functions tha…

Fix: after 1.4.12
Fix from $1,950 2017-02-24
Linux Kernel HIGH 7.8
CVE-2016-8636

Integer overflow in the mem_check_range function in drivers/infiniband/sw/rxe/rxe_mr.c in the Linux kernel before 4.9.10 allows local users to cause …

Fix: 4.9.10+
Fix from $1,950 2017-02-22