Vulnerability index

Browse CVEs

3,271 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Integer OverflowCWE-190 × clear
Microweber HIGH 7.5
CVE-2022-0913

Integer Overflow or Wraparound in GitHub repository microweber/microweber prior to 1.3.

Fix: after 1.2.11
Fix from $1,950 2022-03-11
Fedora HIGH 8.8
CVE-2022-0204

A heap overflow vulnerability was found in bluez in versions prior to 5.63. An attacker with local network access could pass specially crafted files …

Fix: 5.63+
Fix from $1,950 2022-03-10
Ruggedcom Ros MEDIUM 5.9
CVE-2021-42019

A vulnerability has been identified in RUGGEDCOM i800, RUGGEDCOM i800NC, RUGGEDCOM i801, RUGGEDCOM i801NC, RUGGEDCOM i802, RUGGEDCOM i802NC, RUGGEDCO…

Fix: 5.6.0+
Fix from $1,600 2022-03-08
Debian Linux CRITICAL 9.8
CVE-2022-26495

In nbd-server in nbd before 3.24, there is an integer overflow with a resultant heap-based buffer overflow. A value of 0xffffffff in the name length …

Fix: 3.24+
Fix from $2,300 2022-03-06
Linux Kernel MEDIUM 5.5
CVE-2021-3428

A flaw was found in the Linux kernel. A denial of service problem is identified if an extent tree is corrupted in a crafted ext4 filesystem in fs/ext…

Fix: 5.9.0+
Fix from $1,600 2022-03-04
Debian Linux MEDIUM 5.5
CVE-2021-20300

A flaw was found in OpenEXR's hufUncompress functionality in OpenEXR/IlmImf/ImfHuf.cpp. This flaw allows an attacker who can submit a crafted file th…

Fix: 2.5.4+
Fix from $1,600 2022-03-04
Debian Linux MEDIUM 6.1
CVE-2021-20303

A flaw found in function dataWindowForTile() of IlmImf/ImfTiledMisc.cpp. An attacker who is able to submit a crafted file to be processed by OpenEXR …

Fix: 2.5.4+
Fix from $1,600 2022-03-04
Cmark Gfm CRITICAL 9.8
CVE-2022-24724

cmark-gfm is GitHub's extended version of the C reference implementation of CommonMark. Prior to versions 0.29.0.gfm.3 and 0.28.3.gfm.21, an integer …

Fix: 0.28.3.gfm.21 / 0.29.0.gfm.3+
Fix from $2,300 2022-03-03
Tsmuxer MEDIUM 5.5
CVE-2021-45860

An integer overflow in DTSStreamReader::findFrame() of tsMuxer git-2678966 allows attackers to cause a Denial of Service (DoS) via a crafted file.

Fix: 2021-12-21+
Fix from $1,600 2022-03-02
Tl Wr840n Firmware HIGH 7.5
CVE-2022-25062

TP-LINK TL-WR840N(ES)_V6.20_180709 was discovered to contain an integer overflow via the function dm_checkString. This vulnerability allows attackers…

Mitigation only
Fix from $1,950 2022-02-25
Harmonyos CRITICAL 9.8
CVE-2021-22480

The interface of a certain HarmonyOS module has an integer overflow vulnerability. Successful exploitation of this vulnerability may lead to heap mem…

Fix: 2.0+
Fix from $2,300 2022-02-25
Emui HIGH 7.0
CVE-2021-22437

There is a software integer overflow leading to a TOCTOU condition in smartphones. Successful exploitation of this vulnerability may cause random add…

No fix yet
Fix from $1,950 2022-02-25
Harmonyos MEDIUM 5.5
CVE-2021-22441

Some Huawei products have an integer overflow vulnerability. Successful exploitation of this vulnerability may lead to kernel crash.

Fix: 2.0+
Fix from $1,600 2022-02-25
Emui HIGH 7.5
CVE-2021-22319

There is an improper verification vulnerability in smartphones. Successful exploitation of this vulnerability may cause integer overflows.

No fix yet
Fix from $1,950 2022-02-25
Debian Linux MEDIUM 6.0
CVE-2021-3607

An integer overflow was found in the QEMU implementation of VMWare's paravirtual RDMA device in versions prior to 6.1.0. The issue occurs while handl…

Fix: 6.1.0+
Fix from $1,600 2022-02-24
Debian Linux HIGH 7.8
CVE-2022-0545

An integer overflow in the processing of loaded 2D images leads to a write-what-where vulnerability and an out-of-bounds read vulnerability, allowing…

Fix: 2.83.19 / 2.93.8+
Fix from $1,950 2022-02-24
Fedora HIGH 7.8
CVE-2022-0546

A missing bounds check in the image loader used in Blender 3.x and 2.93.8 leads to out-of-bounds heap access, allowing an attacker to cause denial of…

Patch available
Fix from $1,950 2022-02-24
Fireware HIGH 8.8
CVE-2022-25291

An integer overflow in WatchGuard Firebox and XTM appliances allows an authenticated remote attacker to trigger a heap-based buffer overflow and pote…

Fix: 12.1.3 / 12.5.9+
Fix from $1,950 2022-02-24
Serverprotect CRITICAL 9.8
CVE-2022-25330EPSS 5%

Integer overflow conditions that exist in Trend Micro ServerProtect 6.0/5.8 Information Server could allow a remote attacker to crash the process or …

Patch available
Fix from $2,300 2022-02-24
Ac1750 Firmware HIGH 8.8
CVE-2022-24354

This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of TP-Link AC1750 prior to 1.1.4 Build 20211…

Fix: 211210+
Fix from $1,950 2022-02-18
Debian Linux HIGH 7.5
CVE-2022-25314

In Expat (aka libexpat) before 2.4.5, there is an integer overflow in copyString.

Fix: 2.4.5 / 3.1+
Fix from $1,950 2022-02-18
Debian Linux CRITICAL 9.8
CVE-2022-25315

In Expat (aka libexpat) before 2.4.5, there is an integer overflow in storeRawNames.

Fix: 2.4.5 / 3.1+
Fix from $2,300 2022-02-18
Linux Kernel HIGH 8.4
CVE-2022-0185 KEVEPSS 25%

A heap-based buffer overflow flaw was found in the way the legacy_parse_param function in the Filesystem Context functionality of the Linux kernel ve…

Fix: 5.4.173 / 5.10.93+
Fix from $1,950 2022-02-11
Apq8096au Firmware HIGH 7.8
CVE-2021-35069

Improper validation of data length received from DMA buffer can lead to memory corruption. in Snapdragon Auto, Snapdragon Compute, Snapdragon Connect…

Patch available
Fix from $1,950 2022-02-11
Ar8035 Firmware HIGH 7.8
CVE-2021-35074

Possible integer overflow due to improper fragment datatype while calculating number of fragments in a request message in Snapdragon Auto, Snapdragon…

Patch available
Fix from $1,950 2022-02-11
Go HIGH 7.5
CVE-2022-23772

Rat.SetString in math/big in Go before 1.16.14 and 1.17.x before 1.17.7 has an overflow that can lead to Uncontrolled Memory Consumption.

Fix: 1.16.14 / 1.17.7+
Fix from $1,950 2022-02-11
Stormshield Network Security MEDIUM 5.8
CVE-2021-3398

Stormshield Network Security (SNS) 3.x has an Integer Overflow in the high-availability component.

Fix: after 3.11.12
Fix from $1,600 2022-02-10
Swiftnio Http\/2 HIGH 7.5
CVE-2022-24667

A program using swift-nio-http2 is vulnerable to a denial of service attack, caused by a network peer sending a specially crafted HPACK-encoded heade…

Fix: 1.19.2+
Fix from $1,950 2022-02-09
Interactive Graphical Scada System Data Server CRITICAL 9.8
CVE-2022-24310

A CWE-190: Integer Overflow or Wraparound vulnerability exists that could cause heap-based buffer overflow, leading to denial of service and potentia…

Fix: after 15.0.0.22020
Fix from $2,300 2022-02-09
Android MEDIUM 6.7
CVE-2022-20039

In ccu driver, there is a possible memory corruption due to an integer overflow. This could lead to local escalation of privilege with System executi…

Mitigation only
Fix from $1,600 2022-02-09