Vulnerability index

Browse CVEs

3,271 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Integer OverflowCWE-190 × clear
Parallels Desktop HIGH 8.8
CVE-2021-31425

This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop 16.1.2-49151. An attacker must first …

Mitigation only
Fix from $1,950 2021-04-29
Parallels Desktop HIGH 8.8
CVE-2021-31426

This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop 16.1.2-49151. An attacker must first …

Mitigation only
Fix from $1,950 2021-04-29
Debian Linux CRITICAL 9.8
CVE-2019-25032

Unbound before 1.9.5 allows an integer overflow in the regional allocator via regional_alloc. NOTE: The vendor disputes that this is a vulnerability.…

Fix: 1.9.5+
Fix from $2,300 2021-04-27
Debian Linux CRITICAL 9.8
CVE-2019-25033

Unbound before 1.9.5 allows an integer overflow in the regional allocator via the ALIGN_UP macro. NOTE: The vendor disputes that this is a vulnerabil…

Fix: 1.9.5+
Fix from $2,300 2021-04-27
Debian Linux CRITICAL 9.8
CVE-2019-25034

Unbound before 1.9.5 allows an integer overflow in sldns_str2wire_dname_buf_origin, leading to an out-of-bounds write. NOTE: The vendor disputes that…

Fix: 1.9.5+
Fix from $2,300 2021-04-27
Debian Linux CRITICAL 9.8
CVE-2019-25038

Unbound before 1.9.5 allows an integer overflow in a size calculation in dnscrypt/dnscrypt.c. NOTE: The vendor disputes that this is a vulnerability.…

Fix: 1.9.5+
Fix from $2,300 2021-04-27
Debian Linux CRITICAL 9.8
CVE-2019-25039

Unbound before 1.9.5 allows an integer overflow in a size calculation in respip/respip.c. NOTE: The vendor disputes that this is a vulnerability. Alt…

Fix: 1.9.5+
Fix from $2,300 2021-04-27
Chrome CRITICAL 9.6
CVE-2021-21223

Integer overflow in Mojo in Google Chrome prior to 90.0.4430.85 allowed a remote attacker who had compromised the renderer process to potentially per…

Fix: 90.0.4430.85+
Fix from $2,300 2021-04-26
Freertos CRITICAL 9.8
CVE-2021-31571

The kernel in Amazon Web Services FreeRTOS before 10.4.3 has an integer overflow in queue.c for queue creation.

Fix: 10.4.3+
Fix from $2,300 2021-04-22
Freertos CRITICAL 9.8
CVE-2021-31572

The kernel in Amazon Web Services FreeRTOS before 10.4.3 has an integer overflow in stream_buffer.c for a stream buffer.

Fix: 10.4.3+
Fix from $2,300 2021-04-22
Gpac HIGH 7.8
CVE-2021-29279

There is a integer overflow in function filter_core/filter_props.c:gf_props_assign_value in GPAC 1.0.1. In which, the arg const GF_PropertyValue *val…

Patch available
Fix from $1,950 2021-04-19
Gpac MEDIUM 5.5
CVE-2021-30014

There is a integer overflow in media_tools/av_parsers.c in the hevc_parse_slice_segment function in GPAC from v0.9.0-preview to 1.0.1 which results i…

Fix: after 1.0.1
Fix from $1,600 2021-04-19
Gpac MEDIUM 5.5
CVE-2021-30022

There is a integer overflow in media_tools/av_parsers.c in the gf_avc_read_pps_bs_internal in GPAC from 0.5.2 to 1.0.1. pps_id may be a negative numb…

Fix: after 1.0.1
Fix from $1,600 2021-04-19
Parallels Desktop HIGH 7.8
CVE-2021-27259

This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop 16.0.1-48919. An attacker must first …

Mitigation only
Fix from $1,950 2021-04-14
Fedora MEDIUM 5.5
CVE-2021-29338

Integer Overflow in OpenJPEG v2.4.0 allows remote attackers to crash the application, causing a Denial of Service (DoS). This occurs when the attacke…

Patch available
Fix from $1,600 2021-04-14
Android MEDIUM 5.5
CVE-2021-0436

In CryptoPlugin::decrypt of CryptoPlugin.cpp, there is a possible out of bounds read due to integer overflow. This could lead to local information di…

Patch available
Fix from $1,600 2021-04-13
Android MEDIUM 5.5
CVE-2021-0471

In decrypt_1_2 of CryptoPlugin.cpp, there is a possible out of bounds read due to an integer overflow. This could lead to local information disclosur…

Patch available
Fix from $1,600 2021-04-13
Rust CRITICAL 9.8
CVE-2021-28879

In the standard library in Rust before 1.52.0, the Zip implementation can report an incorrect size due to an integer overflow. This bug can lead to a…

Fix: 1.52.0+
Fix from $2,300 2021-04-11
Aqt1000 Firmware HIGH 7.8
CVE-2020-11245

Unintended reads and writes by NS EL2 in access control driver due to lack of check of input validation in Snapdragon Auto, Snapdragon Compute, Snapd…

Mitigation only
Fix from $1,950 2021-04-07
Debian Linux CRITICAL 9.8
CVE-2021-20308

Integer overflow in the htmldoc 1.9.11 and before may allow attackers to execute arbitrary code and cause a denial of service that is similar to CVE-…

Fix: after 1.9.11
Fix from $2,300 2021-04-05
Mac Os X HIGH 7.8
CVE-2020-27945

An integer overflow was addressed with improved input validation. This issue is fixed in macOS Big Sur 11.2, Security Update 2021-001 Catalina, Secur…

Fix: 10.14.6 / 10.15.7+
Fix from $1,950 2021-04-02
Debian Linux MEDIUM 5.5
CVE-2021-3477

There's a flaw in OpenEXR's deep tile sample size calculations in versions before 3.0.0-beta. An attacker who is able to submit a crafted file to be …

Fix: 2.4.3 / 2.5.4+
Fix from $1,600 2021-03-31
Debian Linux MEDIUM 5.3
CVE-2021-3475

There is a flaw in OpenEXR in versions before 3.0.0-beta. An attacker who can submit a crafted file to be processed by OpenEXR could cause an integer…

Fix: 2.4.3 / 2.5.4+
Fix from $1,600 2021-03-30
Debian Linux MEDIUM 5.3
CVE-2021-3476

A flaw was found in OpenEXR's B44 uncompression functionality in versions before 3.0.0-beta. An attacker who is able to submit a crafted file to Open…

Fix: 2.4.3 / 2.5.4+
Fix from $1,600 2021-03-30
Debian Linux MEDIUM 5.3
CVE-2021-3474

There's a flaw in OpenEXR in versions before 3.0.0-beta. A crafted input file that is processed by OpenEXR could cause a shift overflow in the FastHu…

Fix: 2.4.3 / 2.5.4+
Fix from $1,600 2021-03-30
Parallels Desktop HIGH 8.8
CVE-2021-27243

This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop 16.0.1-48919. An attacker must first …

Mitigation only
Fix from $1,950 2021-03-29
Gsoap CRITICAL 9.8
CVE-2021-21783

A code execution vulnerability exists in the WS-Addressing plugin functionality of Genivia gSOAP 2.8.107. A specially crafted SOAP request can lead t…

Fix: after 16.4.0
Fix from $2,300 2021-03-25
Gs116e Firmware MEDIUM 6.8
CVE-2020-35230

Multiple integer overflow parameters were found in the web administration panel on NETGEAR JGS516PE/GS116Ev2 v2.6.0.43 devices. Most of the integer p…

Mitigation only
Fix from $1,600 2021-03-10
Android HIGH 7.8
CVE-2021-0393

In Scanner::LiteralBuffer::NewCapacity of scanner.cc, there is a possible out of bounds write due to an integer overflow. This could lead to remote c…

Mitigation only
Fix from $1,950 2021-03-10
Hhvm CRITICAL 9.8
CVE-2021-24025

Due to incorrect string size calculations inside the preg_quote function, a large input string passed to the function can trigger an integer overflow…

Fix: 4.56.3+
Fix from $2,300 2021-03-10