Vulnerability index

Browse CVEs

3,271 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Integer OverflowCWE-190 × clear
Gtkwave HIGH 7.8
CVE-2023-35057

An integer overflow vulnerability exists in the LXT2 lxt2_rd_trace value elements allocation functionality of GTKWave 3.3.115. A specially crafted .l…

No fix yet
Fix from $1,950 2024-01-08
Gtkwave HIGH 7.8
CVE-2023-35128

An integer overflow vulnerability exists in the fstReaderIterBlocks2 time_table tsec_nitems functionality of GTKWave 3.3.115. A specially crafted .fs…

No fix yet
Fix from $1,950 2024-01-08
Gtkwave HIGH 7.8
CVE-2023-32650

An integer overflow vulnerability exists in the FST_BL_GEOM parsing maxhandle functionality of GTKWave 3.3.115, when compiled as a 32-bit binary. A s…

No fix yet
Fix from $1,950 2024-01-08
Cmark Gfm CRITICAL 9.8
CVE-2024-22051

CommonMarker versions prior to 0.23.4 are at risk of an integer overflow vulnerability. This vulnerability can result in possibly unauthenticated rem…

Fix: 0.23.4 / 0.28.3.gfm.21+
Fix from $2,300 2024-01-04
Vapor MEDIUM 6.5
CVE-2024-21631

Vapor is an HTTP web framework for Swift. Prior to version 4.90.0, Vapor's `vapor_urlparser_parse` function uses `uint16_t` indexes when parsing a UR…

Fix: 4.90.0+
Fix from $1,600 2024-01-03
315 5g Iot Modem Firmware HIGH 7.8
CVE-2023-33038

Memory corruption while receiving a message in Bus Socket Transport Server.

No fix yet
Fix from $1,950 2024-01-02
9205 Lte Modem Firmware HIGH 7.8
CVE-2023-33032

Memory corruption in TZ Secure OS while requesting a memory allocation from TA region.

Mitigation only
Fix from $1,950 2024-01-02
Debian Linux CRITICAL 9.8
CVE-2023-51714

An issue was discovered in the HTTP2 implementation in Qt before 5.15.17, 6.x before 6.2.11, 6.3.x through 6.5.x before 6.5.4, and 6.6.x before 6.6.2…

Fix: 5.15.17 / 6.2.11+
Fix from $2,300 2023-12-24
Matrixssl HIGH 7.5
CVE-2023-24609

Matrix SSL 4.x through 4.6.0 and Rambus TLS Toolkit have a length-subtraction integer overflow for Client Hello Pre-Shared Key extension parsing in t…

Fix: after 4.6.0
Fix from $1,950 2023-12-22
Guacamole HIGH 8.8
CVE-2023-43826

Apache Guacamole 1.5.3 and older do not consistently ensure that values received from a VNC server will not result in integer overflow. If a user con…

Fix: after 1.5.3
Fix from $1,950 2023-12-19
Plutosvg CRITICAL 9.8
CVE-2023-44709

PlutoSVG commit 336c02997277a1888e6ccbbbe674551a0582e5c4 and before was discovered to contain an integer overflow via the component plutosvg_load_fro…

No fix yet
Fix from $2,300 2023-12-14
Enterprise Linux Eus HIGH 7.5
CVE-2023-6478

A flaw was found in xorg-server. A specially crafted request to RRChangeProviderProperty or RRChangeOutputProperty can trigger an integer overflow wh…

Fix: 21.1.10 / 23.2.3+
Fix from $1,950 2023-12-13
Windows 10 1809 HIGH 7.8
CVE-2023-35644EPSS 6%

Windows Sysmain Service Elevation of Privilege Vulnerability

Fix: 10.0.17763.5206 / 10.0.19041.3803+
Fix from $1,950 2023-12-12
Windows 10 1507 HIGH 7.8
CVE-2023-35632EPSS 7%

Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability

Fix: 10.0.10240.20345 / 10.0.14393.6529+
Fix from $1,950 2023-12-12
PostgreSQL HIGH 8.8
CVE-2023-5869

A flaw was found in PostgreSQL that allows authenticated database users to execute arbitrary code through missing overflow checks during SQL array va…

Fix: 11.22 / 12.17+
Fix from $1,950 2023-12-10
Android HIGH 7.8
CVE-2023-48409

In gpu_pixel_handle_buffer_liveness_update_ioctl of private/google-modules/gpu/mali_kbase/mali_kbase_core_linux.c, there is a possible out of bounds …

Mitigation only
Fix from $1,950 2023-12-08
Android HIGH 7.8
CVE-2023-42562

Integer overflow vulnerability in detectionFindFaceSupportMultiInstance of libFacePreProcessingjni.camera.samsung.so prior to SMR Dec-2023 Release 1 …

Fix: 14.0+
Fix from $1,950 2023-12-05
Android HIGH 7.8
CVE-2023-42563

Integer overflow vulnerability in landmarkCopyImageToNative of libFacePreProcessingjni.camera.samsung.so prior to SMR Dec-2023 Release 1 allows attac…

Fix: 14.0+
Fix from $1,950 2023-12-05
315 5g Iot Modem Firmware HIGH 7.8
CVE-2023-33107 KEV

Memory corruption in Graphics Linux while assigning shared virtual memory region during IOCTL call.

Patch available
Fix from $1,950 2023-12-05
Apq8017 Firmware HIGH 7.5
CVE-2023-28588

Transient DOS in Bluetooth Host while rfc slot allocation.

Patch available
Fix from $1,950 2023-12-05
315 5g Iot Modem Firmware HIGH 7.8
CVE-2023-33018

Memory corruption while using the UIM diag command to get the operators name.

Mitigation only
Fix from $1,950 2023-12-05
315 5g Iot Modem Firmware HIGH 7.8
CVE-2023-33022

Memory corruption in HLOS while invoking IOCTL calls from user-space.

Mitigation only
Fix from $1,950 2023-12-05
Chrome CRITICAL 9.6
CVE-2023-6345 KEVEPSS 16%

Integer overflow in Skia in Google Chrome prior to 119.0.6045.199 allowed a remote attacker who had compromised the renderer process to potentially p…

Fix: 119.0.2151.97 / 119.0.6045.199+
Fix from $2,300 2023-11-29
Zld HIGH 7.5
CVE-2023-4398

An integer overflow vulnerability in the source code of the QuickSec IPSec toolkit used in the VPN feature of the Zyxel ATP series firmware versions …

Fix: after 5.37
Fix from $1,950 2023-11-28
Real Time Operating System HIGH 7.8
CVE-2021-27502

Texas Instruments TI-RTOS, when configured to use HeapMem heap(default), malloc returns a valid pointer to a small buffer on extremely large values…

Fix: 4.10.03 / 4.40.00+
Fix from $1,950 2023-11-21
Freertos HIGH 7.8
CVE-2021-27504

Texas Instruments devices running FREERTOS, malloc returns a valid pointer to a small buffer on extremely large values, which can trigger an intege…

Fix: 4.10.03 / 4.40.00+
Fix from $1,950 2023-11-21
Zephyr HIGH 8.8
CVE-2023-4424

An malicious BLE device can cause buffer overflow by sending malformed advertising packet BLE device using Zephyr OS, leading to DoS or potential RCE…

Fix: after 3.4.0
Fix from $1,950 2023-11-21
Real Time Operating System HIGH 7.8
CVE-2021-22636

Texas Instruments TI-RTOS, when configured to use HeapMem heap(default), malloc returns a valid pointer to a small buffer on extremely large values, …

Fix: 4.10.03 / 4.40.00+
Fix from $1,950 2023-11-20
Real Time Operating System HIGH 7.8
CVE-2021-27429

Texas Instruments TI-RTOS returns a valid pointer to a small buffer on extremely large values. This can trigger an integer overflow vulnerability in …

Fix: 4.10.03 / 4.40.00+
Fix from $1,950 2023-11-20
Aptio V Uefi Firmware Integrator Tools MEDIUM 5.5
CVE-2023-22305

Integer overflow in some Intel(R) Aptio* V UEFI Firmware Integrator Tools may allow an authenticated user to potentially enable denial of service via…

Mitigation only
Fix from $1,600 2023-11-14