Vulnerability index

Browse CVEs

3,271 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Integer OverflowCWE-190 × clear
Fedora MEDIUM 6.5
CVE-2019-13108

An integer overflow in Exiv2 through 0.27.1 allows an attacker to cause a denial of service (SIGSEGV) via a crafted PNG image file, because PngImage:…

Fix: after 0.27.1
Fix from $1,600 2019-06-30
Fedora CRITICAL 9.8
CVE-2019-13107

Multiple integer overflows exist in MATIO before 1.5.16, related to mat.c, mat4.c, mat5.c, mat73.c, and matvar_struct.c

Fix: 1.5.16+
Fix from $2,300 2019-06-30
Toaruos MEDIUM 5.5
CVE-2019-13048

kernel/sys/syscall.c in ToaruOS through 1.10.9 allows a denial of service upon a critical error in certain sys_sbrk allocation patterns (involving PA…

Fix: after 1.10.9
Fix from $1,600 2019-06-29
Toaruos HIGH 7.8
CVE-2019-13049

An integer wrap in kernel/sys/syscall.c in ToaruOS 1.10.10 allows users to map arbitrary kernel pages into userland process space via TOARU_SYS_FUNC_…

No fix yet
Fix from $1,950 2019-06-29
Chrome HIGH 8.8
CVE-2019-5829

Integer overflow in download manager in Google Chrome prior to 75.0.3770.80 allowed a remote attacker to potentially perform out of bounds memory acc…

Fix: 75.0.3770.80+
Fix from $1,950 2019-06-27
Chrome HIGH 8.8
CVE-2019-5820

Integer overflow in PDFium in Google Chrome prior to 74.0.3729.108 allowed a remote attacker to potentially exploit heap corruption via a crafted PDF…

Fix: 74.0.3729.108+
Fix from $1,950 2019-06-27
Chrome HIGH 8.8
CVE-2019-5821

Integer overflow in PDFium in Google Chrome prior to 74.0.3729.108 allowed a remote attacker to potentially exploit heap corruption via a crafted PDF…

Fix: 74.0.3729.108+
Fix from $1,950 2019-06-27
Chrome HIGH 8.8
CVE-2019-5827

Integer overflow in SQLite via WebSQL in Google Chrome prior to 74.0.3729.131 allowed a remote attacker to potentially exploit heap corruption via a …

Fix: 74.0.3729.131+
Fix from $1,950 2019-06-27
Chrome HIGH 8.8
CVE-2019-5806

Integer overflow in ANGLE in Google Chrome on Windows prior to 74.0.3729.108 allowed a remote attacker to potentially exploit heap corruption via a c…

Fix: 74.0.3729.108+
Fix from $1,950 2019-06-27
Chrome HIGH 8.8
CVE-2018-16070

Integer overflows in Skia in Google Chrome prior to 69.0.3497.81 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML …

Fix: 69.0.3497.81+
Fix from $1,950 2019-06-27
Debian Linux HIGH 8.8
CVE-2018-20847

An improper computation of p_tx0, p_tx1, p_ty0 and p_ty1 in the function opj_get_encoding_parameters in openjp2/pi.c in OpenJPEG through 2.3.0 can le…

Fix: after 2.3.0
Fix from $1,950 2019-06-26
Libming MEDIUM 6.5
CVE-2019-12980

In Ming (aka libming) 0.4.8, there is an integer overflow (caused by an out-of-range left shift) in the SWFInput_readSBits function in blocks/input.c…

Patch available
Fix from $1,600 2019-06-26
Android CRITICAL 9.8
CVE-2019-2007

In getReadIndex and getWriteIndex of FifoControllerBase.cpp, there is a possible out-of-bounds write due to an integer overflow. This could lead to l…

Mitigation only
Fix from $2,300 2019-06-19
Paintshop Pro 2019 HIGH 8.8
CVE-2019-6114

An issue was discovered in Corel PaintShop Pro 2019 21.0.0.119. An integer overflow in the jp2 parsing library allows an attacker to overwrite memory…

No fix yet
Fix from $1,950 2019-06-19
PHP CRITICAL 9.1
CVE-2019-11039

Function iconv_mime_decode_headers() in PHP versions 7.1.x below 7.1.30, 7.2.x below 7.2.19 and 7.3.x below 7.3.6 may perform out-of-buffer read due …

Fix: 7.1.30 / 7.2.19+
Fix from $2,300 2019-06-19
Linux Kernel HIGH 7.5
CVE-2019-11477EPSS 99%

Jonathan Looney discovered that the TCP_SKB_CB(skb)->tcp_gso_segs value was subject to an integer overflow in the Linux kernel when handling TCP Sele…

Fix: 3.16.69 / 4.4.182+
Fix from $1,950 2019-06-19
V Server HIGH 7.5
CVE-2019-3946

Fuji Electric V-Server before 6.0.33.0 is vulnerable to denial of service via a crafted UDP message sent to port 8005. An unauthenticated, remote att…

Fix: 6.0.33.0+
Fix from $1,950 2019-06-12
Foxit Reader MEDIUM 5.5
CVE-2019-6753EPSS 11%

This vulnerability allows remote attackers to disclose sensitive information on vulnerable installations of Foxit Reader 9.3.0.10826. User interactio…

Fix: after 9.4.1.16828
Fix from $1,600 2019-06-03
Vxworks HIGH 8.1
CVE-2019-9865

When RPC is enabled in Wind River VxWorks 6.9 prior to 6.9.1, a specially crafted RPC request can trigger an integer overflow leading to an out-of-bo…

Fix: 6.9.1+
Fix from $1,950 2019-05-29
Acrobat Dc HIGH 7.5
CVE-2019-7030

Adobe Acrobat and Reader versions 2019.010.20069 and earlier, 2019.010.20069 and earlier, 2017.011.30113 and earlier version, and 2015.006.30464 and …

Fix: after 19.010.20069
Fix from $1,950 2019-05-24
Mdm9150 Firmware HIGH 7.8
CVE-2018-11923

Improper buffer length check before copying can lead to integer overflow and then a buffer overflow in WMA event handler in Snapdragon Auto, Snapdrag…

Mitigation only
Fix from $1,950 2019-05-24
Mdm9150 Firmware HIGH 7.8
CVE-2018-11924

Improper buffer length validation in WLAN function can lead to a potential integer oveflow issue in Snapdragon Auto, Snapdragon Compute, Snapdragon C…

Patch available
Fix from $1,950 2019-05-24
Ipq4019 Firmware HIGH 7.8
CVE-2018-11925

Data length received from firmware is not validated against the max allowed size which can result in buffer overflow. in Snapdragon Auto, Snapdragon …

Patch available
Fix from $1,950 2019-05-24
Ipq4019 Firmware HIGH 7.8
CVE-2018-11968

Improper check before assigning value can lead to integer overflow in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consum…

Mitigation only
Fix from $1,950 2019-05-24
Mdm9150 Firmware CRITICAL 9.8
CVE-2018-13886

Unchecked OTA field in GNSS XTRA3 lead to integer overflow and then buffer overflow in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer Elect…

Mitigation only
Fix from $2,300 2019-05-24
Mdm9150 Firmware CRITICAL 9.8
CVE-2018-13887

Untrusted header fields in GNSS XTRA3 function can lead to integer overflow in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdrag…

Mitigation only
Fix from $2,300 2019-05-24
Chrome HIGH 8.8
CVE-2019-5788EPSS 9%

An integer overflow that leads to a use-after-free in Blink Storage in Google Chrome on Linux prior to 73.0.3683.75 allowed a remote attacker who had…

Fix: 73.0.3683.75+
Fix from $1,950 2019-05-23
Chrome HIGH 8.8
CVE-2019-5789EPSS 9%

An integer overflow that leads to a use-after-free in WebMIDI in Google Chrome on Windows prior to 73.0.3683.75 allowed a remote attacker who had com…

Fix: 73.0.3683.75+
Fix from $1,950 2019-05-23
Chrome HIGH 8.8
CVE-2019-5790

An integer overflow leading to an incorrect capacity of a buffer in JavaScript in Google Chrome prior to 73.0.3683.75 allowed a remote attacker to ex…

Fix: 73.0.3683.75+
Fix from $1,950 2019-05-23
Chrome HIGH 8.8
CVE-2019-5792

Integer overflow in PDFium in Google Chrome prior to 73.0.3683.75 allowed a remote attacker to potentially perform out of bounds memory access via a …

Fix: 73.0.3683.75+
Fix from $1,950 2019-05-23