Vulnerability index

Browse CVEs

3,273 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Integer OverflowCWE-190 × clear
Python MEDIUM 5.0
CVE-2010-1634

Multiple integer overflows in audioop.c in the audioop module in Python 2.6, 2.7, 3.1, and 3.2 allow context-dependent attackers to cause a denial of…

Fix: 2.5.6 / 2.6.6+
Fix from $1,600 2010-05-27
PHP CRITICAL 9.8
CVE-2010-1866EPSS 7%

The dechunk filter in PHP 5.3 through 5.3.2, when decoding an HTTP chunked encoding stream, allows context-dependent attackers to cause a denial of s…

Fix: after 5.3.2
Fix from $2,300 2010-05-07
Chrome HIGH 10.0
CVE-2010-1233

Multiple integer overflows in Google Chrome before 4.1.249.1036 allow remote attackers to have an unspecified impact via vectors involving WebKit Jav…

Fix: 4.1.249.1036+
Fix from $1,950 2010-04-01
Openoffice HIGH 9.3
CVE-2009-2949EPSS 14%

Integer overflow in the XPMReader::ReadXPM function in filter.vcl/ixpm/svt_xpmread.cxx in OpenOffice.org (OOo) before 3.2 allows remote attackers to …

Fix: 3.2.0+
Fix from $1,950 2010-02-16
Gimp HIGH 9.3
CVE-2009-3909EPSS 9%

Integer overflow in the read_channel_data function in plug-ins/file-psd/psd-load.c in GIMP 2.6.7 might allow remote attackers to execute arbitrary co…

Patch available
Fix from $1,950 2009-11-19
Gimp HIGH 9.3
CVE-2009-1570EPSS 8%

Integer overflow in the ReadImage function in plug-ins/file-bmp/bmp-read.c in GIMP 2.6.7 might allow remote attackers to execute arbitrary code via a…

Patch available
Fix from $1,950 2009-11-13
Debian Linux HIGH 7.5
CVE-2009-0946EPSS 9%

Multiple integer overflows in FreeType 2.3.9 and earlier allow remote attackers to execute arbitrary code via vectors related to large values in cert…

Fix: after 10.6.4
Fix from $1,950 2009-04-17
Firefox HIGH 9.3
CVE-2009-0723EPSS 5%

Multiple integer overflows in LittleCMS (aka lcms or liblcms) before 1.18beta2, as used in Firefox 3.1beta, OpenJDK, and GIMP, allow context-dependen…

Fix: 2.9.2+
Fix from $1,950 2009-03-23
Ubuntu Linux HIGH 7.5
CVE-2009-0586EPSS 6%

Integer overflow in the gst_vorbis_tag_add_coverart function (gst-libs/gst/tag/gstvorbistag.c) in vorbistag in gst-plugins-base (aka gstreamer-plugin…

Fix: 0.10.23+
Fix from $1,950 2009-03-14
Net Snmp HIGH 7.5
CVE-2008-4309

Integer overflow in the netsnmp_create_subtree_cache function in agent/snmp_agent.c in net-snmp 5.4 before 5.4.2.1, 5.3 before 5.3.2.3, and 5.2 befor…

Mitigation only
Fix from $1,950 2008-10-31
Internet Information Services HIGH 9.0
CVE-2008-1446EPSS 46%

Integer overflow in the Internet Printing Protocol (IPP) ISAPI extension in Microsoft Internet Information Services (IIS) 5.0 through 7.0 on Windows …

Fix: after 7.0
Fix from $1,950 2008-10-15
Excel HIGH 9.3
CVE-2008-4019EPSS 34%

Integer overflow in the REPT function in Microsoft Excel 2000 SP3, 2002 SP3, 2003 SP2 and SP3, and 2007 Gold and SP1; Office Excel Viewer 2003 SP3; O…

Patch available
Fix from $1,950 2008-10-15
Ruby HIGH 10.0
CVE-2008-2663

Multiple integer overflows in the rb_ary_store function in Ruby 1.8.4 and earlier, 1.8.5 before 1.8.5-p231, 1.8.6 before 1.8.6-p230, and 1.8.7 before…

Fix: 1.8.5.231 / 1.8.6.230+
Fix from $1,950 2008-06-24
Windows 2000 HIGH 8.1
CVE-2008-1083EPSS 57%

Heap-based buffer overflow in the CreateDIBPatternBrushPt function in GDI in Microsoft Windows 2000 SP4, XP SP2, Server 2003 SP1 and SP2, Vista, and …

Patch available
Fix from $1,950 2008-04-08
Cups MEDIUM 6.8
CVE-2008-1374

Integer overflow in pdftops filter in CUPS in Red Hat Enterprise Linux 3 and 4, when running on 64-bit platforms, allows remote attackers to execute …

Fix: after 1.3.11
Fix from $1,600 2008-04-04
Debian Linux HIGH 7.5
CVE-2007-6353

Integer overflow in exif.cpp in exiv2 library allows context-dependent attackers to execute arbitrary code via a crafted EXIF file that triggers a he…

Fix: 0.16+
Fix from $1,950 2007-12-20
Openoffice HIGH 9.3
CVE-2007-2834EPSS 12%

Integer overflow in the TIFF parser in OpenOffice.org (OOo) before 2.3; and Sun StarOffice 6, 7, and 8 Office Suite (StarSuite); allows remote attack…

Fix: 2.3.0+
Fix from $1,950 2007-09-18
Xml Core Services HIGH 9.3
CVE-2007-2223EPSS 49%

Microsoft XML Core Services (MSXML) 3.0 through 6.0 allows remote attackers to execute arbitrary code via the substringData method on a (1) TextNode …

Patch available
Fix from $1,950 2007-08-14
Debian Linux MEDIUM 6.8
CVE-2007-3387EPSS 9%

Integer overflow in the StreamPredictor::StreamPredictor function in xpdf 3.02, as used in (1) poppler before 0.5.91, (2) gpdf before 2.8.2, (3) kpdf…

Fix: 0.5.91 / 2.8.2+
Fix from $1,600 2007-07-30
Gimp MEDIUM 6.8
CVE-2006-4519EPSS 6%

Multiple integer overflows in the image loader plug-ins in GIMP before 2.2.16 allow user-assisted remote attackers to execute arbitrary code via craf…

Fix: 2.2.16+
Fix from $1,600 2007-07-10
Ubuntu Linux MEDIUM 6.8
CVE-2007-2949EPSS 7%

Integer overflow in the seek_to_and_unpack_pixeldata function in the psd.c plugin in Gimp 2.2.15 allows remote attackers to execute arbitrary code vi…

Fix: after 2.2.15
Fix from $1,600 2007-07-04
Exchange Server HIGH 7.8
CVE-2007-0221EPSS 37%

Integer overflow in the IMAP (IMAP4) support in Microsoft Exchange Server 2000 SP3 allows remote attackers to cause a denial of service (service hang…

Patch available
Fix from $1,950 2007-05-08
Avg Antivirus HIGH 7.5
CVE-2006-5937

Multiple integer overflows in Grisoft AVG Anti-Virus before 7.1.407 allow remote attackers to execute arbitrary code via crafted (1) CAB or (2) RAR a…

Patch available
Fix from $1,950 2006-11-16
Opera Browser HIGH 7.5
CVE-2006-3198EPSS 6%

Integer overflow in Opera 8.54 and earlier allows remote attackers to execute arbitrary code via a JPEG image with large height and width values, whi…

Fix: after 8.5.4
Fix from $1,950 2006-06-23
Gdkpixbuf HIGH 7.5
CVE-2005-2976

Integer overflow in io-xpm.c in gdk-pixbuf 0.22.0 in GTK+ before 2.8.7 allows attackers to cause a denial of service (crash) or execute arbitrary cod…

Fix: 2.8.7+
Fix from $1,950 2005-11-18
Ubuntu Linux CRITICAL 9.8
CVE-2005-1513EPSS 11%

Integer overflow in the stralloc_readyplus function in qmail, when running on 64 bit platforms with a large amount of virtual memory, allows remote a…

No fix yet
Fix from $2,300 2005-05-11
Optical Character Recognition CRITICAL 9.8
CVE-2005-1141

Integer overflow in the readpgm function in pnm.c for GOCR 0.40, when using the netpbm library, allows remote attackers to execute arbitrary code via…

No fix yet
Fix from $2,300 2005-04-15
Debian Linux CRITICAL 9.8
CVE-2005-0102

Integer overflow in camel-lock-helper in Evolution 2.0.2 and earlier allows local users or remote malicious POP3 servers to execute arbitrary code vi…

Fix: after 2.0.2
Fix from $2,300 2005-01-24
Linux Kernel HIGH 7.8
CVE-2004-2013

Integer overflow in the SCTP_SOCKOPT_DEBUG_NAME SCTP socket option in socket.c in the Linux kernel 2.4.25 and earlier allows local users to execute a…

Fix: after 2.4.25
Fix from $1,950 2004-12-31
Gdkpixbuf MEDIUM 5.0
CVE-2004-0788EPSS 6%

Integer overflow in the ICO image decoder for (1) gdk-pixbuf before 0.22 and (2) gtk2 before 2.2.4 allows remote attackers to cause a denial of servi…

Fix: 2.2.4+
Fix from $1,600 2004-10-20