Vulnerability index

Browse CVEs

3,255 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Integer OverflowCWE-190 × clear
SQLite CRITICAL 9.1
CVE-2025-7458

An integer overflow in the sqlite3KeyInfoFromExprList function in SQLite versions 3.39.2 through 3.41.1 allows an attacker with the ability to execut…

Fix: 3.41.2+
Fix from $2,300 2025-07-29
Transpose MEDIUM 5.3
CVE-2023-53156

The transpose crate before 0.2.3 for Rust allows an integer overflow via input_width and input_height arguments.

Fix: 0.2.3+
Fix from $1,600 2025-07-27
Cosmwasm Std MEDIUM 5.3
CVE-2024-58263

The cosmwasm-std crate before 2.0.2 for Rust allows integer overflows that cause incorrect contract calculations.

Fix: 1.4.4 / 1.5.4+
Fix from $1,600 2025-07-27
Libssh MEDIUM 6.5
CVE-2025-5449

A flaw was found in the SFTP server message decoding logic of libssh. The issue occurs due to an incorrect packet length check that allows an integer…

Patch available
Fix from $1,600 2025-07-25
Unclassified MEDIUM 6.5
CVE-2025-48964

ping in iputils before 20250602 allows a denial of service (application error in adaptive ping mode or incorrect data collection) via a crafted ICMP …

Patch available
Fix from $1,600 2025-07-22
Tomcat HIGH 7.5
CVE-2025-52520

For some unlikely configurations of multipart upload, an Integer Overflow vulnerability in Apache Tomcat could lead to a DoS via bypassing of size li…

Fix: 9.0.107 / 10.1.43+
Fix from $1,950 2025-07-10
Illustrator HIGH 7.8
CVE-2025-49531

Illustrator versions 28.7.6, 29.5.1 and earlier are affected by an Integer Overflow or Wraparound vulnerability that could result in arbitrary code e…

Fix: 28.7.8 / 29.6+
Fix from $1,950 2025-07-08
Windows 10 1507 HIGH 7.8
CVE-2025-49742

Integer overflow or wraparound in Microsoft Graphics Component allows an authorized attacker to execute code locally.

Fix: 10.0.10240.21073 / 10.0.14393.8246+
Fix from $1,950 2025-07-08
Windows 10 1507 HIGH 7.8
CVE-2025-49689

Integer overflow or wraparound in Virtual Hard Disk (VHDX) allows an unauthorized attacker to elevate privileges locally.

Fix: 10.0.10240.21073 / 10.0.14393.8246+
Fix from $1,950 2025-07-08
Windows 10 1507 HIGH 7.8
CVE-2025-49683

Integer overflow or wraparound in Virtual Hard Disk (VHDX) allows an unauthorized attacker to execute code locally.

Fix: 10.0.10240.21073 / 10.0.14393.8246+
Fix from $1,950 2025-07-08
Windows 10 1507 HIGH 7.8
CVE-2025-48816

Integer overflow or wraparound in HID class driver allows an authorized attacker to elevate privileges locally.

Fix: 10.0.10240.21073 / 10.0.14393.8246+
Fix from $1,950 2025-07-08
Windows 11 24h2 MEDIUM 5.7
CVE-2025-48002

Integer overflow or wraparound in Windows Hyper-V allows an authorized attacker to disclose information over an adjacent network.

Fix: 10.0.26100.4652+
Fix from $1,600 2025-07-08
Windows Server 2008 HIGH 8.8
CVE-2025-47998

Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to execute code over a network.

Fix: 10.0.14393.8246 / 10.0.17763.7558+
Fix from $1,950 2025-07-08
Windows 10 1507 HIGH 7.8
CVE-2025-47987

Heap-based buffer overflow in Windows Cred SSProvider Protocol allows an authorized attacker to elevate privileges locally.

Fix: 10.0.10240.21073 / 10.0.14393.8246+
Fix from $1,950 2025-07-08
Linux Kernel MEDIUM 5.5
CVE-2025-38222

In the Linux kernel, the following vulnerability has been resolved: ext4: inline: fix len overflow in ext4_prepare_inline_data When running the fol…

Fix: 5.4.295 / 5.10.239+
Fix from $1,600 2025-07-04
Linux Kernel MEDIUM 5.5
CVE-2025-38193

In the Linux kernel, the following vulnerability has been resolved: net_sched: sch_sfq: reject invalid perturb period Gerrard Tai reported that SFQ…

Fix: 5.4.297 / 5.10.240+
Fix from $1,600 2025-07-04
Unclassified MEDIUM 5.6
CVE-2025-48172

CHMLib through 2bef8d0, as used in SumatraPDF and other products, has a chm_lib.c _chm_decompress_block integer overflow. There is a resultant heap-b…

Patch available
Fix from $1,600 2025-07-04
Rx 1500 Firmware MEDIUM 5.3
CVE-2025-50404EPSS 7%

Intelbras RX1500 Router v2.2.17 and before is vulnerable to Integer Overflow. The websReadEvent function incorrectly uses the int type when processin…

Fix: after 2.2.17
Fix from $1,600 2025-07-01
Unclassified HIGH 8.0
CVE-2023-28909

A specific flaw exists within the Bluetooth stack of the MIB3 unit. The issue results from the lack of proper validation of user-supplied data, which…

Mitigation only
Fix from $1,950 2025-06-28
Unclassified MEDIUM 5.4
CVE-2023-28908

A specific flaw exists within the Bluetooth stack of the MIB3 infotainment. The issue results from the lack of proper validation of user-supplied dat…

Mitigation only
Fix from $1,600 2025-06-28
Unclassified MEDIUM 5.3
CVE-2025-6603

A vulnerability was found in coldfunction qCUDA up to db0085400c2f2011eed46fbc04fdc0873141688e. It has been rated as problematic. Affected by this is…

Mitigation only
Fix from $1,600 2025-06-25
Unclassified CRITICAL 9.4
CVE-2025-52935

Integer Overflow or Wraparound vulnerability in dragonflydb dragonfly (src/redis/lua/struct modules). This vulnerability is associated with program f…

Patch available
Fix from $2,300 2025-06-23
Xav Ax8500 Firmware HIGH 7.5
CVE-2025-5475

Sony XAV-AX8500 Bluetooth Packet Handling Integer Overflow Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers …

Fix: 3.02.00+
Fix from $1,950 2025-06-21
Xav Ax8500 Firmware HIGH 8.8
CVE-2025-5478

Sony XAV-AX8500 Bluetooth SDP Protocol Integer Overflow Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to …

Fix: 3.02.00+
Fix from $1,950 2025-06-21
Chrome HIGH 8.8
CVE-2025-6191EPSS 10%

Integer overflow in V8 in Google Chrome prior to 137.0.7151.119 allowed a remote attacker to potentially perform out of bounds memory access via a cr…

Fix: 137.0.7151.119+
Fix from $1,950 2025-06-18
Linux Kernel MEDIUM 5.5
CVE-2022-50167

In the Linux kernel, the following vulnerability has been resolved: bpf: fix potential 32-bit overflow when accessing ARRAY map element If BPF arra…

Fix: 5.18.18 / 5.19.2+
Fix from $1,600 2025-06-18
Libgepub MEDIUM 5.5
CVE-2025-6196

A flaw was found in libgepub, a library used to read EPUB files. The software mishandles file size calculations when opening specially crafted EPUB f…

No fix yet
Fix from $1,600 2025-06-17
Unclassified HIGH 7.3
CVE-2025-49179

A flaw was found in the X Record extension. The RecordSanityCheckRegisterClients function does not check for an integer overflow when computing reque…

Mitigation only
Fix from $1,950 2025-06-17
Unclassified HIGH 7.8
CVE-2025-49180

A flaw was found in the RandR extension, where the RRChangeProviderProperty function does not properly validate input. This issue leads to an integer…

Mitigation only
Fix from $1,950 2025-06-17
Unclassified HIGH 7.3
CVE-2025-49176

A flaw was found in the Big Requests extension. The request length is multiplied by 4 before checking against the maximum allowed size, potentially c…

Mitigation only
Fix from $1,950 2025-06-17