Vulnerability index

Browse CVEs

3,271 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Integer OverflowCWE-190 × clear
Alyac HIGH 7.8
CVE-2022-29886

An integer overflow vulnerability exists in the way ESTsoft Alyac 2.5.8.544 parses OLE files. A specially-crafted OLE file can lead to a heap buffer …

No fix yet
Fix from $1,950 2022-08-05
Alyac HIGH 7.8
CVE-2022-32543

An integer overflow vulnerability exists in the way ESTsoft Alyac 2.5.8.544 parses OLE files. A specially-crafted OLE file can lead to a heap buffer …

No fix yet
Fix from $1,950 2022-08-05
Android CRITICAL 9.8
CVE-2022-33719

Improper input validation in baseband prior to SMR Aug-2022 Release 1 allows attackers to cause integer overflow to heap overflow.

Mitigation only
Fix from $2,300 2022-08-05
Rizin MEDIUM 5.5
CVE-2022-34612

Rizin v0.4.0 and below was discovered to contain an integer overflow via the function get_long_object(). This vulnerability allows attackers to cause…

Fix: after 0.4.0
Fix from $1,600 2022-07-27
Mjs MEDIUM 5.5
CVE-2021-33439

An issue was discovered in mjs (mJS: Restricted JavaScript engine), ES6 (JavaScript version 6). There is Integer overflow in gc_compact_strings() in …

Fix: 2.20.0+
Fix from $1,600 2022-07-26
Fedora HIGH 7.8
CVE-2021-46829

GNOME GdkPixbuf (aka GDK-PixBuf) before 2.42.8 allows a heap-based buffer overflow when compositing or clearing frames in GIF files, as demonstrated …

Fix: 2.42.8+
Fix from $1,950 2022-07-24
Debian Linux HIGH 7.8
CVE-2022-1924

DOS / potential heap overwrite in mkv demuxing using lzo decompression. Integer overflow in matroskademux element in lzo decompression function which…

Fix: 1.20.3+
Fix from $1,950 2022-07-19
Debian Linux HIGH 7.8
CVE-2022-1925

DOS / potential heap overwrite in mkv demuxing using HEADERSTRIP decompression. Integer overflow in matroskaparse element in gst_matroska_decompress_…

Fix: 1.20.3+
Fix from $1,950 2022-07-19
Debian Linux HIGH 7.8
CVE-2022-2122

DOS / potential heap overwrite in qtdemux using zlib decompression. Integer overflow in qtdemux element in qtdemux_inflate function which causes a se…

Fix: 1.20.3+
Fix from $1,950 2022-07-19
Debian Linux HIGH 7.8
CVE-2022-1920

Integer overflow in matroskademux element in gst_matroska_demux_add_wvpk_header function which allows a heap overwrite while parsing matroska files. …

Fix: 1.20.3+
Fix from $1,950 2022-07-19
Debian Linux HIGH 7.8
CVE-2022-1921

Integer overflow in avidemux element in gst_avi_demux_invert function which allows a heap overwrite while parsing avi files. Potential for arbitrary …

Fix: 1.20.3+
Fix from $1,950 2022-07-19
Debian Linux HIGH 7.8
CVE-2022-1922

DOS / potential heap overwrite in mkv demuxing using zlib decompression. Integer overflow in matroskademux element in gst_matroska_decompress_data fu…

Fix: 1.20.3+
Fix from $1,950 2022-07-19
Debian Linux HIGH 7.8
CVE-2022-1923

DOS / potential heap overwrite in mkv demuxing using bzip decompression. Integer overflow in matroskademux element in bzip decompression function whi…

Fix: 1.20.3+
Fix from $1,950 2022-07-19
Gpac HIGH 7.8
CVE-2022-2454

Integer Overflow or Wraparound in GitHub repository gpac/gpac prior to 2.1-DEV.

Fix: after 2.0.0
Fix from $1,950 2022-07-19
Wolfssh CRITICAL 9.8
CVE-2022-32073

WolfSSH v1.4.7 was discovered to contain an integer overflow via the function wolfSSH_SFTP_RecvRMDIR.

Patch available
Fix from $2,300 2022-07-13
Dgx A100 Firmware HIGH 8.2
CVE-2022-31600

NVIDIA DGX A100 contains a vulnerability in SBIOS in the SmmCore, where a user with high privileges can chain another vulnerability to this vulnerabi…

Fix: 22.5.5+
Fix from $1,950 2022-07-04
Fedora HIGH 7.8
CVE-2022-2285

Integer Overflow or Wraparound in GitHub repository vim/vim prior to 9.0.

Fix: 9.0.0018+
Fix from $1,950 2022-07-02
Fedora MEDIUM 5.5
CVE-2022-33068

An integer overflow in the component hb-ot-shape-fallback.cc of Harfbuzz v4.3.0 allows attackers to cause a Denial of Service (DoS) via unspecified v…

Patch available
Fix from $1,600 2022-06-23
Fedora HIGH 7.8
CVE-2022-32545

A vulnerability was found in ImageMagick, causing an outside the range of representable values of type 'unsigned char' at coders/psd.c, when crafted …

Fix: 6.9.12-43 / 7.1.0-28+
Fix from $1,950 2022-06-16
Fedora HIGH 7.8
CVE-2022-32546

A vulnerability was found in ImageMagick, causing an outside the range of representable values of type 'unsigned long' at coders/pcl.c, when crafted …

Fix: 6.9.12-44 / 7.1.0-29+
Fix from $1,950 2022-06-16
Android MEDIUM 6.7
CVE-2022-20178

In ioctl_dpm_qos_update and ioctl_event_control_set of (TBD), there is a possible out of bounds write due to an integer overflow. This could lead to …

Mitigation only
Fix from $1,600 2022-06-15
Apq8009 Firmware CRITICAL 9.8
CVE-2022-25651

Memory corruption in bluetooth host due to integer overflow while processing BT HFP-UNIT profile in Snapdragon Auto, Snapdragon Consumer IOT, Snapdra…

Mitigation only
Fix from $2,300 2022-06-14
HTTP Server MEDIUM 5.3
CVE-2022-28614

The ap_rwrite() function in Apache HTTP Server 2.4.53 and earlier may read unintended memory if an attacker can cause the server to reflect very larg…

Fix: after 2.4.53
Fix from $1,600 2022-06-09
HTTP Server CRITICAL 9.1
CVE-2022-28615EPSS 6%

Apache HTTP Server 2.4.53 and earlier may crash or disclose information due to a read beyond bounds in ap_strcmp_match() when provided with an extrem…

Fix: 2.4.54+
Fix from $2,300 2022-06-09
Vapor HIGH 7.5
CVE-2022-31005

Vapor is an HTTP web framework for Swift. Users of Vapor prior to version 4.60.3 with FileMiddleware enabled are vulnerable to an integer overflow vu…

Fix: 4.60.3+
Fix from $1,950 2022-05-31
Mac Os X CRITICAL 9.8
CVE-2022-26775

An integer overflow was addressed with improved input validation. This issue is fixed in Security Update 2022-004 Catalina, macOS Monterey 12.4. An a…

Fix: 10.15.7 / 12.4+
Fix from $2,300 2022-05-26
Itunes CRITICAL 9.8
CVE-2022-26711

An integer overflow issue was addressed with improved input validation. This issue is fixed in tvOS 15.5, iTunes 12.12.4 for Windows, iOS 15.5 and iP…

Fix: 8.6 / 12.4+
Fix from $2,300 2022-05-26
Epub2txt2 MEDIUM 5.5
CVE-2022-29358

epub2txt2 v2.04 was discovered to contain an integer overflow via the function bug in _parse_special_tag at sxmlc.c. This vulnerability allows attack…

No fix yet
Fix from $1,600 2022-05-25
Lodestar HIGH 7.5
CVE-2022-29219

Lodestar is a TypeScript implementation of the Ethereum Consensus specification. Prior to version 0.36.0, there is a possible consensus split given m…

Fix: 0.36.0+
Fix from $1,950 2022-05-24
Rbpf HIGH 7.5
CVE-2022-31264

Solana solana_rbpf before 0.2.29 has an addition integer overflow via invalid ELF program headers. elf.rs has a panic via a malformed eBPF program.

Fix: 0.2.29+
Fix from $1,950 2022-05-21