Vulnerability index

Browse CVEs

3,271 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Integer OverflowCWE-190 × clear
Ubuntu Linux MEDIUM 6.6
CVE-2020-11523

libfreerdp/gdi/region.c in FreeRDP versions > 1.0 through 2.0.0-rc4 has an Integer Overflow.

Fix: 2.0.0+
Fix from $1,600 2020-05-15
Linux Kernel MEDIUM 5.3
CVE-2020-12826

A signal access-control issue was discovered in the Linux kernel before 5.6.5, aka CID-7395ea4e65c2. Because exec_id in include/linux/sched.h is only…

Fix: 5.6.5+
Fix from $1,600 2020-05-12
Zephyr HIGH 7.8
CVE-2020-10067

A malicious userspace application can cause a integer overflow and bypass security checks performed by system call handlers. The impact would depend …

Patch available
Fix from $1,950 2020-05-11
Imlib2 CRITICAL 9.1
CVE-2020-12761

modules/loaders/loader_ico.c in imlib2 1.6.0 has an integer overflow (with resultant invalid memory allocations and out-of-bounds reads) via an icon …

Patch available
Fix from $2,300 2020-05-09
Fedora HIGH 7.8
CVE-2020-12762

json-c through 0.14 has an integer overflow and out-of-bounds write via a large JSON file, as demonstrated by printbuf_memappend.

Fix: 0.15-20200726+
Fix from $1,950 2020-05-09
Imagegear HIGH 8.8
CVE-2020-6094

An exploitable code execution vulnerability exists in the TIFF fillinraster function of the igcore19d.dll library of Accusoft ImageGear 19.4, 19.5 an…

No fix yet
Fix from $1,950 2020-05-06
C Driver MEDIUM 5.5
CVE-2020-12135

bson before 0.8 incorrectly uses int rather than size_t for many variables, parameters, and return values. In particular, the bson_ensure_space() par…

Fix: 0.8+
Fix from $1,600 2020-04-24
Ubuntu Linux CRITICAL 9.8
CVE-2019-20788

libvncclient/cursor.c in LibVNCServer through 0.9.12 has a HandleCursorShape integer overflow and heap-based buffer overflow via a large height or wi…

Fix: 3.2.1.0+
Fix from $2,300 2020-04-23
Ndpi CRITICAL 9.8
CVE-2020-11939

In nDPI through 3.2 Stable, the SSH protocol dissector has multiple KEXINIT integer overflows that result in a controlled remote heap overflow in con…

Fix: after 3.2
Fix from $2,300 2020-04-23
Debian Linux CRITICAL 9.8
CVE-2020-11945EPSS 27%

An issue was discovered in Squid before 5.0.2. A remote attacker can replay a sniffed Digest Authentication nonce to gain access to resources that ar…

Fix: 4.11 / 5.0.2+
Fix from $2,300 2020-04-23
Teeworlds CRITICAL 9.8
CVE-2019-20787

Teeworlds before 0.7.4 has an integer overflow when computing a tilemap size.

Fix: 0.7.4+
Fix from $2,300 2020-04-22
Fbx Software Development Kit MEDIUM 6.5
CVE-2020-7083

An intager overflow vulnerability in the Autodesk FBX-SDK versions 2019.0 and earlier may lead to denial of service of the application.

Fix: after 2019.0
Fix from $1,600 2020-04-17
Apq8009 Firmware CRITICAL 9.8
CVE-2019-14113

Buffer overflow can occur in In WLAN firmware while unwraping data using CCMP cipher suite during parsing of EAPOL handshake frame in Snapdragon Auto…

Mitigation only
Fix from $2,300 2020-04-16
Apq8009 Firmware CRITICAL 9.8
CVE-2019-14114

Buffer overflow in WLAN firmware while parsing GTK IE containing GTK key having length more than the buffer size in Snapdragon Auto, Snapdragon Compu…

Mitigation only
Fix from $2,300 2020-04-16
Apq8009 Firmware HIGH 7.8
CVE-2019-14135

Possible integer overflow to buffer overflow in WLAN while parsing nonstandard NAN IE messages. in Snapdragon Auto, Snapdragon Compute, Snapdragon Co…

Mitigation only
Fix from $1,950 2020-04-16
Qcn7605 Firmware HIGH 7.1
CVE-2019-10623

Possible integer overflow can happen in host driver while processing user controlled string due to improper validation on data received. in Snapdrago…

Patch available
Fix from $1,950 2020-04-16
Vm Virtualbox HIGH 8.2
CVE-2020-2742

Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are Prior to 5.2.3…

Fix: 5.2.36 / 6.0.16+
Fix from $1,950 2020-04-15
Fedora MEDIUM 5.5
CVE-2020-11759

An issue was discovered in OpenEXR before 2.4.1. Because of integer overflows in CompositeDeepScanLine::Data::handleDeepFrameBuffer and readSampleCou…

Fix: 2.4.1 / 7.20+
Fix from $1,600 2020-04-14
Instagram HIGH 7.8
CVE-2020-1895

A large heap overflow could occur in Instagram for Android when attempting to upload an image with specially crafted dimensions. This affects version…

Fix: 128.0.0.26.128+
Fix from $1,950 2020-04-09
Junos HIGH 7.5
CVE-2020-1634

On High-End SRX Series devices, in specific configurations and when specific networking events or operator actions occur, an SPC receiving genuine mu…

Mitigation only
Fix from $1,950 2020-04-08
Android CRITICAL 9.8
CVE-2018-21054

An issue was discovered on Samsung mobile devices with M(6.0), N(7.x) and O(8.x) except exynos9610/9820 in all Platforms, M(6.0) except MSM8909 SC77x…

Mitigation only
Fix from $2,300 2020-04-08
Android CRITICAL 9.8
CVE-2018-21089

An issue was discovered on Samsung mobile devices with N(7.x) (MT6755/MT6757 Mediatek models) software. Bootloader has an integer overflow that leads…

Mitigation only
Fix from $2,300 2020-04-08
Android HIGH 7.5
CVE-2017-18651

An issue was discovered on Samsung mobile devices with M(6.x) and N(7.x) software. There is an Integer Overflow in process_M_SetTokenTUIPasswd during…

Mitigation only
Fix from $1,950 2020-04-07
Debian Linux HIGH 7.5
CVE-2020-6073

An exploitable denial-of-service vulnerability exists in the TXT record-parsing functionality of Videolabs libmicrodns 0.1.0. When parsing the RDATA …

No fix yet
Fix from $1,950 2020-03-24
Android CRITICAL 9.8
CVE-2019-20561

An issue was discovered on Samsung mobile devices with N(7.x), O(8.x), and P(9.0) (Exynos chipsets) software. The bootloader has an integer signednes…

Mitigation only
Fix from $2,300 2020-03-24
Debian Linux CRITICAL 9.8
CVE-2020-10938EPSS 5%

GraphicsMagick before 1.3.35 has an integer overflow and resultant heap-based buffer overflow in HuffmanDecodeImage in magick/compress.c.

Fix: 1.3.35+
Fix from $2,300 2020-03-24
Parallels Desktop MEDIUM 6.7
CVE-2020-8874

This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop 15.1.2-47123. An attacker must first …

Fix: 15.1.3+
Fix from $1,600 2020-03-23
Android CRITICAL 9.8
CVE-2020-0086

In readCString of Parcel.cpp, there is a possible out of bounds write due to an integer overflow. This could lead to arbitrary code execution if IntS…

Mitigation only
Fix from $2,300 2020-03-15
Ecosys M5526cdw Firmware HIGH 8.8
CVE-2019-13203

Some Kyocera printers (such as the ECOSYS M5526cdw 2R7_2000.001.701) were affected by an integer overflow vulnerability in the arg3 parameter of seve…

Mitigation only
Fix from $1,950 2020-03-13
Enterprise Linux Desktop HIGH 8.8
CVE-2020-10531

An issue was discovered in International Components for Unicode (ICU) for C/C++ through 66.1. An integer overflow, leading to a heap-based buffer ove…

Fix: 10.21.0 / 80.0.3987.122+
Fix from $1,950 2020-03-12