Vulnerability index

Browse CVEs

3,271 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Integer OverflowCWE-190 × clear
Daemon Tools CRITICAL 9.8
CVE-2021-21832

A memory corruption vulnerability exists in the ISO Parsing functionality of Disc Soft Ltd Deamon Tools Pro 8.3.0.0767. A specially crafted malformed…

No fix yet
Fix from $2,300 2021-08-17
Qnx Software Development Platform CRITICAL 9.8
CVE-2021-22156

An integer overflow vulnerability in the calloc() function of the C runtime library of affected versions of BlackBerry® QNX Software Development Plat…

Fix: 6.5.0+
Fix from $2,300 2021-08-17
Debian Linux HIGH 8.8
CVE-2021-21859

An exploitable integer truncation vulnerability exists within the MPEG-4 decoding functionality of the GPAC Project on Advanced Content library v1.0.…

No fix yet
Fix from $1,950 2021-08-16
Windows 10 HIGH 7.8
CVE-2021-34536

Windows Storage Spaces Controller Elevation of Privilege Vulnerability

Patch available
Fix from $1,950 2021-08-12
Cpio HIGH 7.8
CVE-2021-38185

GNU cpio through 2.13 allows attackers to execute arbitrary code via a crafted pattern file, because of a dstring.c ds_fgetstr integer overflow that …

Fix: after 2.13
Fix from $1,950 2021-08-08
Linux Kernel HIGH 7.8
CVE-2021-38166

In kernel/bpf/hashtab.c in the Linux kernel through 5.13.8, there is an integer overflow and out-of-bounds write when many elements are placed in a s…

Fix: 5.10.60 / 5.13.12+
Fix from $1,950 2021-08-07
Blocklancertoken HIGH 7.5
CVE-2021-33403

An integer overflow in the transfer function of a smart contract implementation for Lancer Token, an Ethereum ERC20 token, allows the owner to cause …

No fix yet
Fix from $1,950 2021-08-03
Doftcoin HIGH 7.5
CVE-2021-34270

An integer overflow in the mintToken function of a smart contract implementation for Doftcoin Token, an Ethereum ERC20 token, allows the owner to cau…

No fix yet
Fix from $1,950 2021-08-03
Harmonyos HIGH 7.8
CVE-2021-22418

A component of the HarmonyOS has a Integer Overflow or Wraparound vulnerability. Local attackers may exploit this vulnerability to cause memory overw…

Mitigation only
Fix from $1,950 2021-08-03
Harmonyos HIGH 7.8
CVE-2021-22422

A component of the HarmonyOS has a Integer Overflow or Wraparound vulnerability. Local attackers may exploit this vulnerability to cause memory overw…

Mitigation only
Fix from $1,950 2021-08-03
Emui HIGH 7.5
CVE-2021-22412

There is an Integer Overflow Vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may cause random kernel address access.

No fix yet
Fix from $1,950 2021-08-02
Emui HIGH 7.5
CVE-2021-22413

There is an Integer Overflow Vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may cause the system to reset.

No fix yet
Fix from $1,950 2021-08-02
Emui CRITICAL 9.8
CVE-2021-22388

There is an Integer Overflow Vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may cause certain codes to be executed.

No fix yet
Fix from $2,300 2021-08-02
Util Linux MEDIUM 5.5
CVE-2021-37600

An integer overflow in util-linux through 2.37.1 can potentially cause a buffer overflow if an attacker were able to use system resources in a way th…

Fix: after 2.37.1
Fix from $1,600 2021-07-30
Vlc Media Player HIGH 7.1
CVE-2021-25803

A buffer overflow vulnerability in the vlc_input_attachment_New component of VideoLAN VLC Media Player 3.0.11 allows attackers to cause an out-of-bou…

Mitigation only
Fix from $1,950 2021-07-26
Debian Linux HIGH 7.5
CVE-2021-31292

An integer overflow in CrwMap::encode0x1810 of Exiv2 0.27.3 allows attackers to trigger a heap-based buffer overflow and cause a denial of service (D…

Patch available
Fix from $1,950 2021-07-26
Folly CRITICAL 9.8
CVE-2021-24036

Passing an attacker controlled size when creating an IOBuf could cause integer overflow, leading to an out of bounds write on the heap with the possi…

Fix: 4.80.5 / 2021.07.22.00+
Fix from $2,300 2021-07-23
Debian Linux CRITICAL 9.1
CVE-2021-35942

The wordexp function in the GNU C Library (aka glibc) through 2.33 may crash or read arbitrary memory in parse_param (in posix/wordexp.c) when called…

Fix: 2.31+
Fix from $2,300 2021-07-22
Redis HIGH 7.5
CVE-2021-32761EPSS 31%

Redis is an in-memory database that persists on disk. A vulnerability involving out-of-bounds read and integer overflow to buffer overflow exists sta…

Fix: 5.0.13 / 6.0.15+
Fix from $1,950 2021-07-21
Matio HIGH 8.8
CVE-2020-19497

Integer overflow vulnerability in Mat_VarReadNextInfo5 in mat5.c in tbeu matio (aka MAT File I/O Library) 1.5.17, allows attackers to cause a Denial …

Patch available
Fix from $1,950 2021-07-21
Tinyexr MEDIUM 5.5
CVE-2020-19490

tinyexr 0.9.5 has a integer overflow over-write in tinyexr::DecodePixelData in tinyexr.h, related to OpenEXR code.

Patch available
Fix from $1,600 2021-07-21
Linux Kernel HIGH 7.8
CVE-2021-33909EPSS 10%

fs/seq_file.c in the Linux kernel 3.16 through 5.13.x before 5.13.4 does not properly restrict seq buffer allocations, leading to an integer overflow…

Fix: 3.13 / 4.4.276+
Fix from $1,950 2021-07-20
Manageengine Assetexplorer CRITICAL 9.8
CVE-2021-20110EPSS 7%

Due to Manage Engine Asset Explorer Agent 1.0.34 not validating HTTPS certificates, an attacker on the network can statically configure their IP addr…

Mitigation only
Fix from $2,300 2021-07-19
Windows 10 HIGH 7.8
CVE-2021-34512

Windows Storage Spaces Controller Elevation of Privilege Vulnerability

Patch available
Fix from $1,950 2021-07-14
Windows 10 HIGH 7.8
CVE-2021-34513

Windows Storage Spaces Controller Elevation of Privilege Vulnerability

Patch available
Fix from $1,950 2021-07-14
Windows 10 HIGH 7.8
CVE-2021-34510

Windows Storage Spaces Controller Elevation of Privilege Vulnerability

Patch available
Fix from $1,950 2021-07-14
Jsish CRITICAL 9.8
CVE-2020-22874

Integer overflow vulnerability in function Jsi_ObjArraySizer in jsish before 3.0.8, allows remote attackers to execute arbitrary code.

Fix: 3.0.8+
Fix from $2,300 2021-07-13
Jsish CRITICAL 9.8
CVE-2020-22875

Integer overflow vulnerability in function Jsi_ObjSetLength in jsish before 3.0.6, allows remote attackers to execute arbitrary code.

Fix: 3.0.6+
Fix from $2,300 2021-07-13
Daviewindy HIGH 7.8
CVE-2020-7872

DaviewIndy v8.98.7.0 and earlier versions have a Integer overflow vulnerability, triggered when the user opens a malformed format file that is mishan…

Fix: after 8.98.7
Fix from $1,950 2021-07-12
Imagegear CRITICAL 9.8
CVE-2021-21807

An integer overflow vulnerability exists in the DICOM parse_dicom_meta_info functionality of Accusoft ImageGear 19.9. A specially crafted malformed f…

No fix yet
Fix from $2,300 2021-07-07