Vulnerability index

Browse CVEs

3,271 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Integer OverflowCWE-190 × clear
Debian Linux CRITICAL 9.8
CVE-2022-47629

Libksba before 1.6.3 is prone to an integer overflow vulnerability in the CRL signature parser.

Fix: 1.6.3+
Fix from $2,300 2022-12-20
Android HIGH 7.8
CVE-2022-20597

In ppmpu_set of ppmpu.c, there is a possible EoP due to an integer overflow. This could lead to local escalation of privilege with no additional exec…

Mitigation only
Fix from $1,950 2022-12-16
Android HIGH 7.8
CVE-2022-20598

In sec_media_protect of media.c, there is a possible EoP due to an integer overflow. This could lead to local escalation of privilege of secure mode …

Mitigation only
Fix from $1,950 2022-12-16
Ipados HIGH 7.8
CVE-2022-42805

An integer overflow was addressed with improved input validation. This issue is fixed in iOS 15.6 and iPadOS 15.6, macOS Monterey 12.5. An app may be…

Fix: 12.5 / 15.6+
Fix from $1,950 2022-12-15
Radare2 HIGH 7.8
CVE-2022-4398

Integer Overflow or Wraparound in GitHub repository radareorg/radare2 prior to 5.8.0.

Fix: 5.8.0+
Fix from $1,950 2022-12-10
Debian Linux CRITICAL 9.8
CVE-2022-23484

xrdp is an open source project which provides a graphical login to remote machines using Microsoft Remote Desktop Protocol (RDP). xrdp < v0.9.21 cont…

Fix: 0.9.21+
Fix from $2,300 2022-12-09
Android HIGH 7.8
CVE-2022-39907

Integer overflow vulnerability in Samsung decoding library for video thumbnails prior to SMR Dec-2022 Release 1 allows local attacker to perform Out-…

Mitigation only
Fix from $1,950 2022-12-08
Debian Linux HIGH 7.8
CVE-2022-41325

An integer overflow in the VNC module in VideoLAN VLC Media Player through 3.0.17.4 allows attackers, by tricking a user into opening a crafted playl…

Fix: after 3.0.17.4
Fix from $1,950 2022-12-06
Android MEDIUM 5.5
CVE-2022-42763

In wlan driver, there is a possible missing bounds check, This could lead to local denial of service in wlan services.

No fix yet
Fix from $1,600 2022-12-06
Android MEDIUM 5.5
CVE-2022-42764

In wlan driver, there is a possible missing bounds check, This could lead to local denial of service in wlan services.

Mitigation only
Fix from $1,600 2022-12-06
Android MEDIUM 5.5
CVE-2022-42765

In wlan driver, there is a possible missing bounds check, This could lead to local denial of service in wlan services.

No fix yet
Fix from $1,600 2022-12-06
Linux Kernel HIGH 7.8
CVE-2022-45934

An issue was discovered in the Linux kernel through 6.0.10. l2cap_config_req in net/bluetooth/l2cap_core.c has an integer wraparound via L2CAP_CONF_R…

Fix: 4.9.337 / 4.14.303+
Fix from $1,950 2022-11-27
Libxml2 HIGH 7.5
CVE-2022-40303EPSS 23%

An issue was discovered in libxml2 before 2.10.3. When parsing a multi-gigabyte XML document with the XML_PARSE_HUGE parser option enabled, several i…

Fix: 2.10.3 / 15.7.2+
Fix from $1,950 2022-11-23
Android HIGH 7.8
CVE-2022-42533

In shared_metadata_init of SharedMetadata.cpp, there is a possible out of bounds write due to an integer overflow. This could lead to local escalatio…

Mitigation only
Fix from $1,950 2022-11-17
PHP HIGH 7.1
CVE-2022-31630

In PHP versions prior to 7.4.33, 8.0.25 and 8.1.12, when using imageloadfont() function in gd extension, it is possible to supply a specially crafted…

Fix: 7.4.33 / 8.0.25+
Fix from $1,950 2022-11-14
Android MEDIUM 6.7
CVE-2022-20454

In fdt_next_tag of fdt.c, there is a possible out of bounds write due to an integer overflow. This could lead to local escalation of privilege with S…

Mitigation only
Fix from $1,600 2022-11-08
Azure Rtos Filex HIGH 7.8
CVE-2022-39343

Azure RTOS FileX is a FAT-compatible file system that’s fully integrated with Azure RTOS ThreadX. In versions before 6.2.0, the Fault Tolerant featur…

Fix: 6.2.0+
Fix from $1,950 2022-11-08
Debian Linux HIGH 8.8
CVE-2022-44638

In libpixman in Pixman before 0.42.2, there is an out-of-bounds write (aka heap-based buffer overflow) in rasterize_edges_8 due to an integer overflo…

Fix: 0.42.2+
Fix from $1,950 2022-11-03
Iota All In One Security Kit Firmware HIGH 8.8
CVE-2022-32775

An integer overflow vulnerability exists in the web interface /action/ipcamRecordPost functionality of Abode Systems, Inc. iota All-In-One Security K…

No fix yet
Fix from $1,950 2022-10-25
Debian Linux CRITICAL 9.8
CVE-2022-37454EPSS 5%

The Keccak XKCP SHA-3 reference implementation before fdc6fef has an integer overflow and resultant buffer overflow that allows attackers to execute …

Fix: 1.0.5 / 3.7.16+
Fix from $2,300 2022-10-21
Apq8009 Firmware CRITICAL 9.8
CVE-2022-25748

Memory corruption in WLAN due to integer overflow to buffer overflow while parsing GTK frames. in Snapdragon Auto, Snapdragon Compute, Snapdragon Con…

Mitigation only
Fix from $2,300 2022-10-19
Android MEDIUM 5.5
CVE-2022-39105

In sensor driver, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service in kernel.

No fix yet
Fix from $1,600 2022-10-14
Osip MEDIUM 6.5
CVE-2022-41550

GNU oSIP v5.3.0 was discovered to contain an integer overflow via the component osip_body_parse_header.

No fix yet
Fix from $1,600 2022-10-11
Android HIGH 7.5
CVE-2022-20410

In avrc_ctrl_pars_vendor_rsp of avrc_pars_ct.cc, there is a possible out of bounds read due to an integer overflow. This could lead to remote informa…

Patch available
Fix from $1,950 2022-10-11
Android HIGH 7.8
CVE-2021-0951

In DevmemIntHeapAcquire of TBD, there is a possible arbitrary code execution due to an integer overflow. This could lead to local escalation of privi…

Mitigation only
Fix from $1,950 2022-10-11
Hermes CRITICAL 9.8
CVE-2022-35289

A write-what-where condition in hermes caused by an integer overflow, prior to commit 5b6255ae049fa4641791e47fad994e8e8c4da374 allows attackers to po…

Fix: 0.12.0+
Fix from $2,300 2022-10-11
Trudesk HIGH 7.5
CVE-2022-1718

The trudesk application allows large characters to insert in the input field "Full Name" on the signup field which can allow attackers to cause a Den…

Fix: 1.2.2+
Fix from $1,950 2022-09-29
Fedora MEDIUM 6.2
CVE-2014-0147

Qemu before 1.6.2 block diver for the various disk image formats used by Bochs and for the QCOW version 2 format, are vulnerable to a possible crash …

Patch available
Fix from $1,600 2022-09-29
Wayland MEDIUM 6.6
CVE-2021-3782

An internal reference count is held on the buffer pool, incremented every time a new buffer is created from the pool. The reference count is maintain…

Fix: 1.20.91+
Fix from $1,600 2022-09-23
Ffmpeg HIGH 7.8
CVE-2022-2566

A heap out-of-bounds memory write exists in FFMPEG since version 5.1. The size calculation in `build_open_gop_key_points()` goes through all entries …

Patch available
Fix from $1,950 2022-09-23