Vulnerability index

Browse CVEs

3,271 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Integer OverflowCWE-190 × clear
Chacha20 HIGH 7.5
CVE-2019-25005

An issue was discovered in the chacha20 crate before 0.2.3 for Rust. A ChaCha20 counter overflow makes it easier for attackers to determine plaintext.

Fix: 0.2.3+
Fix from $1,950 2020-12-31
Debian Linux MEDIUM 6.1
CVE-2020-35738

WavPack 5.3.0 has an out-of-bounds write in WavpackPackSamples in pack_utils.c because of an integer overflow in a malloc argument. NOTE: some third-…

Patch available
Fix from $1,600 2020-12-28
Debian Linux HIGH 7.5
CVE-2020-29361

An issue was discovered in p11-kit 0.21.1 through 0.23.21. Multiple integer overflows have been discovered in the array allocations in the p11-kit li…

Fix: after 0.23.21
Fix from $1,950 2020-12-16
Android HIGH 7.8
CVE-2020-27051

In NFA_RwI93WriteMultipleBlocks of nfa_rw_api.cc, there is a possible out of bounds write due to an integer overflow. This could lead to local escala…

Patch available
Fix from $1,950 2020-12-15
Android MEDIUM 5.5
CVE-2020-0495

In decode_Huffman of JBig2_SddProc.cpp, there is a possible out of bounds write due to an integer overflow. This could lead to local information disc…

Mitigation only
Fix from $1,600 2020-12-15
Glib HIGH 7.8
CVE-2020-35457

GNOME GLib before 2.65.3 has an integer overflow, that might lead to an out-of-bounds write, in g_option_group_add_entries. NOTE: the vendor's positi…

Fix: 2.65.3+
Fix from $1,950 2020-12-14
Android HIGH 7.8
CVE-2020-0458

In SPDIFEncoder::writeBurstBufferBytes and related methods of SPDIFEncoder.cpp, there is a possible out of bounds write due to an integer overflow. T…

Patch available
Fix from $1,950 2020-12-14
Picotcp HIGH 7.5
CVE-2020-17442

An issue was discovered in picoTCP 1.7.0. The code for parsing the hop-by-hop IPv6 extension headers does not validate the bounds of the extension he…

Fix: after 1.7.0
Fix from $1,950 2020-12-11
Picotcp HIGH 7.5
CVE-2020-17443

An issue was discovered in picoTCP 1.7.0. The code for creating an ICMPv6 echo replies doesn't check whether the ICMPv6 echo request packet's size is…

Fix: after 1.7.0
Fix from $1,950 2020-12-11
Picotcp HIGH 7.5
CVE-2020-17444

An issue was discovered in picoTCP 1.7.0. The routine for processing the next header field (and deducing whether the IPv6 extension headers are valid…

Fix: after 1.7.0
Fix from $1,950 2020-12-11
Contiki HIGH 7.5
CVE-2020-13985

An issue was discovered in Contiki through 3.0. A memory corruption vulnerability exists in the uIP TCP/IP stack component when handling RPL extensio…

Fix: after 3.0
Fix from $1,950 2020-12-11
Contiki Ng HIGH 7.5
CVE-2020-13988

An issue was discovered in Contiki through 3.0. An Integer Overflow exists in the uIP TCP/IP Stack component when parsing TCP MSS options of IPv4 net…

Fix: after 3.0
Fix from $1,950 2020-12-11
Advanced Package Tool MEDIUM 5.7
CVE-2020-27350

APT had several integer overflows and underflows while parsing .deb packages, aka GHSL-2020-168 GHSL-2020-169, in files apt-pkg/contrib/extracttar.cc…

Fix: 1.2.32ubuntu0.2 / 1.6.12ubuntu0.2+
Fix from $1,600 2020-12-10
Debian Linux MEDIUM 5.5
CVE-2020-25676

In CatromWeights(), MeshInterpolate(), InterpolatePixelChannel(), InterpolatePixelChannels(), and InterpolatePixelInfo(), which are all functions in …

Fix: 6.9.10-69 / 7.0.9-0+
Fix from $1,600 2020-12-08
macOS HIGH 8.8
CVE-2020-27906

Multiple integer overflows were addressed with improved input validation. This issue is fixed in macOS Big Sur 11.0.1. A remote attacker may be able …

Fix: 11.0.1+
Fix from $1,950 2020-12-08
Icloud HIGH 7.8
CVE-2020-27911

An integer overflow was addressed through improved input validation. This issue is fixed in macOS Big Sur 11.0.1, watchOS 7.1, iOS 14.2 and iPadOS 14…

Fix: 7.1 / 11.0.1+
Fix from $1,950 2020-12-08
Debian Linux HIGH 7.8
CVE-2020-27766

A flaw was found in ImageMagick in MagickCore/statistic.c. An attacker who submits a crafted file that is processed by ImageMagick could trigger unde…

Fix: 6.9.10-69 / 7.0.8-69+
Fix from $1,950 2020-12-04
Debian Linux MEDIUM 5.5
CVE-2020-27770

Due to a missing check for 0 value of `replace_extent`, it is possible for offset `p` to overflow in SubstituteString(), causing potential impact to …

Fix: 6.9.10-68 / 7.0.8-68+
Fix from $1,600 2020-12-04
Fedora HIGH 8.1
CVE-2020-25693

A flaw was found in CImg in versions prior to 2.9.3. Integer overflows leading to heap buffer overflows in load_pnm() can be triggered by a specially…

Fix: 2.9.3+
Fix from $1,950 2020-12-03
Debian Linux MEDIUM 5.5
CVE-2020-27762

A flaw was found in ImageMagick in coders/hdr.c. An attacker who submits a crafted file that is processed by ImageMagick could trigger undefined beha…

Fix: 6.9.10-68 / 7.0.8-68+
Fix from $1,600 2020-12-03
Debian Linux HIGH 7.5
CVE-2020-27813

An integer overflow vulnerability exists with the length of websocket frames received via a websocket connection. An attacker would use this flaw to …

Fix: 1.4.1+
Fix from $1,950 2020-12-02
Pngout MEDIUM 5.5
CVE-2020-29384

An issue was discovered in PNGOUT 2020-01-15. When compressing a crafted PNG file, it encounters an integer overflow.

No fix yet
Fix from $1,600 2020-11-30
Debian Linux MEDIUM 5.5
CVE-2019-14562

Integer overflow in DxeImageVerificationHandler() EDK II may allow an authenticated user to potentially enable denial of service via local access.

Mitigation only
Fix from $1,600 2020-11-23
MongoDB MEDIUM 6.5
CVE-2019-2392

A user authorized to perform database queries may trigger denial of service by issuing specially crafted queries, which use the $mod operator to over…

Fix: 3.6.20 / 4.0.20+
Fix from $1,600 2020-11-23
Forerunner 235 Firmware CRITICAL 9.9
CVE-2020-27484

Garmin Forerunner 235 before 8.20 is affected by: Integer Overflow. The component is: ConnectIQ TVM. The attack vector is: To exploit the vulnerabili…

Fix: 8.20+
Fix from $2,300 2020-11-16
Active Management Technology Firmware HIGH 7.8
CVE-2020-8760

Integer overflow in subsystem for Intel(R) AMT versions before 11.8.80, 11.12.80, 11.22.80, 12.0.70, 14.0.45 may allow a privileged user to potential…

Fix: 11.8.80 / 11.12.80+
Fix from $1,950 2020-11-12
Active Management Technology Firmware MEDIUM 6.5
CVE-2020-8746

Integer overflow in subsystem for Intel(R) AMT versions before 11.8.80, 11.12.80, 11.22.80, 12.0.70 and 14.0.45 may allow an unauthenticated user to …

Fix: 11.8.80 / 11.12.80+
Fix from $1,600 2020-11-12
Mdm9205 Firmware HIGH 7.8
CVE-2020-11127

u'Integer overflow can cause a buffer overflow due to lack of table length check in the extensible boot Loader during the validation of security meta…

Mitigation only
Fix from $1,950 2020-11-12
Apq8009 Firmware HIGH 7.8
CVE-2020-11131

u'Possible buffer overflow in WMA message processing due to integer overflow occurs when processing command received from user space' in Snapdragon A…

Mitigation only
Fix from $1,950 2020-11-12
Qcm4290 Firmware CRITICAL 9.8
CVE-2020-11184

u'Possible buffer overflow will occur in video while parsing mp4 clip with crafted esds atom size.' in Snapdragon Auto, Snapdragon Compute, Snapdrago…

Mitigation only
Fix from $2,300 2020-11-12