Vulnerability index

Browse CVEs

3,271 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Integer OverflowCWE-190 × clear
Expressvpn HIGH 7.5
CVE-2020-29238EPSS 16%

An integer buffer overflow in the Nginx webserver of ExpressVPN Router version 1 allows remote attackers to obtain sensitive information when the ser…

No fix yet
Fix from $1,950 2021-03-10
Debian Linux HIGH 7.8
CVE-2020-35523

An integer overflow flaw was found in libtiff that exists in the tif_getimage.c file. This flaw allows an attacker to inject and execute arbitrary co…

Fix: 4.2.0+
Fix from $1,950 2021-03-09
Linux Kernel HIGH 7.8
CVE-2021-20268

An out-of-bounds access flaw was found in the Linux kernel's implementation of the eBPF code verifier in the way a user running the eBPF script calls…

Fix: 5.10.10+
Fix from $1,950 2021-03-09
Fedora CRITICAL 9.8
CVE-2021-3420

A flaw was found in newlib in versions prior to 4.0.0. Improper overflow validation in the memory allocation functions mEMALIGn, pvALLOc, nano_memali…

Fix: 4.0.0+
Fix from $2,300 2021-03-05
Redis HIGH 8.8
CVE-2021-21309

Redis is an open-source, in-memory database that persists on disk. In affected versions of Redis an integer overflow bug in 32-bit Redis version 4.0 …

Fix: 5.0.11 / 6.0.11+
Fix from $1,950 2021-02-26
Debian Linux HIGH 7.8
CVE-2021-3410

A flaw was found in libcaca v0.99.beta19. A buffer overflow issue in caca_resize function in libcaca/caca/canvas.c may lead to local execution of arb…

No fix yet
Fix from $1,950 2021-02-23
Apq8009 Firmware HIGH 8.8
CVE-2020-11269

Possible memory corruption while processing EAPOL frames due to lack of validation of key length before using it in Snapdragon Auto, Snapdragon Compu…

Mitigation only
Fix from $1,950 2021-02-22
Png Img HIGH 8.8
CVE-2020-28248

An integer overflow in the PngImg::InitStorage_() function of png-img before 3.1.0 leads to an under-allocation of heap memory and subsequently an ex…

Fix: 3.1.0+
Fix from $1,950 2021-02-20
Graphics Drivers HIGH 7.8
CVE-2020-12362

Integer overflow in the firmware for some Intel(R) Graphics Drivers for Windows * before version 26.20.100.7212 and before Linux kernel version 5.5 m…

Fix: 26.20.100.7212+
Fix from $1,950 2021-02-17
Graphics Drivers HIGH 7.8
CVE-2020-12367

Integer overflow in some Intel(R) Graphics Drivers before version 26.20.100.8476 may allow a privileged user to potentially enable an escalation of p…

Fix: 26.20.100.8476+
Fix from $1,950 2021-02-17
Graphics Drivers HIGH 7.8
CVE-2020-12368

Integer overflow in some Intel(R) Graphics Drivers before version 26.20.100.8141 may allow a privileged user to potentially enable an escalation of p…

Fix: 26.20.100.8141+
Fix from $1,950 2021-02-17
OpenSSL HIGH 7.5
CVE-2021-23840EPSS 51%

Calls to EVP_CipherUpdate, EVP_EncryptUpdate and EVP_DecryptUpdate may overflow the output length argument in some cases where the input length is cl…

Fix: 1.0.2y / 1.1.1j+
Fix from $1,950 2021-02-16
Acrobat HIGH 7.8
CVE-2021-21036

Acrobat Reader DC versions versions 2020.013.20074 (and earlier), 2020.001.30018 (and earlier) and 2017.011.30188 (and earlier) are affected by an In…

Fix: after 20.013.20074
Fix from $1,950 2021-02-11
Fedora CRITICAL 9.8
CVE-2020-13576EPSS 6%

A code execution vulnerability exists in the WS-Addressing plugin functionality of Genivia gSOAP 2.8.107. A specially crafted SOAP request can lead t…

No fix yet
Fix from $2,300 2021-02-10
Office Textmaker 2021 HIGH 7.8
CVE-2020-13546

In SoftMaker Software GmbH SoftMaker Office TextMaker 2021 (revision 1014), a specially crafted document can cause the document parser to miscalculat…

No fix yet
Fix from $1,950 2021-02-10
Issuer HIGH 7.5
CVE-2020-24838

An integer overflow has been found in the the latest version of Issuer. The total issuedCount can be zero if the parameter is overly large. An attack…

Patch available
Fix from $1,950 2021-02-10
Godot Engine HIGH 7.8
CVE-2021-26825

An integer overflow issue exists in Godot Engine up to v3.2 that can be triggered when loading specially crafted.TGA image files. The vulnerability e…

Fix: after 3.2
Fix from $1,950 2021-02-08
Cryptography CRITICAL 9.1
CVE-2020-36242EPSS 7%

In the cryptography package before 3.3.2 for Python, certain sequences of update calls to symmetrically encrypt multi-GB values could result in an in…

Fix: 3.3.2+
Fix from $2,300 2021-02-07
Planmaker 2021 HIGH 7.8
CVE-2020-13579EPSS 73%

An exploitable integer overflow vulnerability exists in the PlanMaker document parsing functionality of SoftMaker Office 2021’s PlanMaker application…

No fix yet
Fix from $1,950 2021-02-04
Vxworks HIGH 7.3
CVE-2020-28895

In Wind River VxWorks, memory allocator has a possible overflow in calculating the memory block's size to be allocated by calloc(). As a result, the …

Fix: 6.9.4.12+
Fix from $1,950 2021-02-03
Android MEDIUM 6.7
CVE-2021-0354

In ged, there is a possible out of bounds write due to an integer overflow. This could lead to local escalation of privilege with System execution pr…

Mitigation only
Fix from $1,600 2021-02-03
Android MEDIUM 6.7
CVE-2021-0355

In kisd, there is a possible out of bounds write due to an integer overflow. This could lead to local escalation of privilege with System execution p…

Mitigation only
Fix from $1,600 2021-02-03
Apq8009w CRITICAL 9.8
CVE-2020-11167

Memory corruption while calculating L2CAP packet length in reassembly logic when remote sends more data than expected in Snapdragon Auto, Snapdragon …

Patch available
Fix from $2,300 2021-01-21
Apq8009 CRITICAL 9.8
CVE-2020-11197

Possible integer overflow can occur when stream info update is called when total number of streams detected are zero while parsing TS clip with inval…

Mitigation only
Fix from $2,300 2021-01-21
Apq8009 CRITICAL 9.8
CVE-2020-11216

Buffer over read can happen in video driver when playing clip with atomsize having value UINT32_MAX in Snapdragon Auto, Snapdragon Compute, Snapdrago…

Mitigation only
Fix from $2,300 2021-01-21
Apq8009 CRITICAL 9.8
CVE-2020-11137

Integer multiplication overflow resulting in lower buffer size allocation than expected causes memory access out of bounds resulting in possible devi…

Mitigation only
Fix from $2,300 2021-01-21
Fedora HIGH 7.8
CVE-2020-14409

SDL (Simple DirectMedia Layer) through 2.0.12 has an Integer Overflow (and resultant SDL_memcpy heap corruption) in SDL_BlitCopy in video/SDL_blit_co…

Fix: after 2.0.20
Fix from $1,950 2021-01-19
Android MEDIUM 6.5
CVE-2021-0312

In WAVSource::read of WAVExtractor.cpp, there is a possible out of bounds write due to an integer overflow. This could lead to remote information dis…

Mitigation only
Fix from $1,600 2021-01-11
Chrome MEDIUM 6.5
CVE-2020-16040EPSS 100%

Insufficient data validation in V8 in Google Chrome prior to 87.0.4280.88 allowed a remote attacker to potentially exploit heap corruption via a craf…

Fix: 87.0.4280.88+
Fix from $1,600 2021-01-08
Virtual Gpu Manager HIGH 7.8
CVE-2021-1059

NVIDIA vGPU manager contains a vulnerability in the vGPU plugin, in which an input index is not validated, which may lead to integer overflow, which …

Fix: 8.6 / 11.3+
Fix from $1,950 2021-01-08