Vulnerability index

Browse CVEs

3,271 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Integer OverflowCWE-190 × clear
Chrome HIGH 8.8
CVE-2019-5795

Integer overflow in PDFium in Google Chrome prior to 73.0.3683.75 allowed a remote attacker to potentially perform out of bounds memory access via a …

Fix: 73.0.3683.75+
Fix from $1,950 2019-05-23
Qemu HIGH 7.5
CVE-2019-12247

QEMU 3.0.0 has an Integer Overflow because the qga/commands*.c files do not check the length of the argument list or the number of environment variab…

Patch available
Fix from $1,950 2019-05-22
Besder Ip20h1 Firmware MEDIUM 6.5
CVE-2019-11878

An issue was discovered on XiongMai Besder IP20H1 V4.02.R12.00035520.12012.047500.00200 cameras. An attacker on the same local network as the camera …

No fix yet
Fix from $1,600 2019-05-10
Android CRITICAL 9.8
CVE-2019-2046

In CalculateInstanceSizeForDerivedClass of objects.cc, there is possible memory corruption due to an integer overflow. This could lead to remote code…

Mitigation only
Fix from $2,300 2019-05-08
Sd 425 Firmware HIGH 7.8
CVE-2017-18173

In case of using an invalid android verified boot signature with very large length, an integer underflow occurs in Snapdragon Mobile in SD 425, SD 42…

Mitigation only
Fix from $1,950 2019-05-06
Fsm9055 Firmware HIGH 7.8
CVE-2017-18279

Lack of check of buffer length before copying can lead to buffer overflow in camera module in Small Cell SoC, Snapdragon Mobile, Snapdragon Wear in F…

Mitigation only
Fix from $1,950 2019-05-06
Daviewindy HIGH 7.8
CVE-2019-9137

DaviewIndy 8.98.7 and earlier versions have a Integer overflow vulnerability, triggered when the user opens a malformed Image file that is mishandled…

Fix: after 8.98.7
Fix from $1,950 2019-04-25
Daviewindy HIGH 7.8
CVE-2019-9138

DaviewIndy 8.98.7 and earlier versions have a Integer overflow vulnerability, triggered when the user opens a malformed PhotoShop file that is mishan…

Fix: after 8.98.7
Fix from $1,950 2019-04-25
Daviewindy HIGH 7.8
CVE-2019-9139

DaviewIndy 8.98.7 and earlier versions have a Integer overflow vulnerability, triggered when the user opens a malformed PDF file that is mishandled b…

Fix: after 8.98.7
Fix from $1,950 2019-04-25
Tensorflow CRITICAL 9.8
CVE-2018-7575

Google TensorFlow 1.7.x and earlier is affected by a Buffer Overflow vulnerability. The type of exploitation is context-dependent.

Fix: after 1.7.0
Fix from $2,300 2019-04-24
Vm Virtualbox HIGH 8.8
CVE-2019-2723

Vulnerability in the Oracle VM VirtualBox component of Oracle Virtualization (subcomponent: Core). Supported versions that are affected are Prior to …

Fix: 5.2.28 / 6.0.6+
Fix from $1,950 2019-04-23
Lepton MEDIUM 5.5
CVE-2018-20820

read_ujpg in jpgcoder.cc in Dropbox Lepton 1.2.1 allows attackers to cause a denial-of-service (application runtime crash because of an integer overf…

Patch available
Fix from $1,600 2019-04-23
Android HIGH 7.8
CVE-2019-2034

In rw_i93_sm_read_ndef of rw_i93.cc, there is a possible out-of-bounds write due to an integer overflow. This could lead to local escalation of privi…

Patch available
Fix from $1,950 2019-04-19
Lighttpd CRITICAL 9.8
CVE-2019-11072EPSS 74%

lighttpd before 1.4.54 has a signed integer overflow, which might allow remote attackers to cause a denial of service (application crash) or possibly…

Fix: after 1.4.53
Fix from $2,300 2019-04-10
Fedora MEDIUM 5.5
CVE-2019-9133

When processing subtitles format media file, KMPlayer version 2018.12.24.14 or lower doesn't check object size correctly, which leads to integer unde…

Fix: after 2018.12.24.14
Fix from $1,600 2019-04-09
Windows 10 HIGH 7.8
CVE-2019-0682

An elevation of privilege vulnerability exists due to an integer overflow in Windows Subsystem for Linux, aka 'Windows Subsystem for Linux Elevation …

Patch available
Fix from $1,950 2019-04-09
Windows 10 HIGH 7.8
CVE-2019-0689

An elevation of privilege vulnerability exists due to an integer overflow in Windows Subsystem for Linux, aka 'Windows Subsystem for Linux Elevation …

Patch available
Fix from $1,950 2019-04-09
Windows 10 HIGH 7.8
CVE-2019-0692

An elevation of privilege vulnerability exists due to an integer overflow in Windows Subsystem for Linux, aka 'Windows Subsystem for Linux Elevation …

Patch available
Fix from $1,950 2019-04-09
Windows 10 HIGH 7.8
CVE-2019-0693

An elevation of privilege vulnerability exists due to an integer overflow in Windows Subsystem for Linux, aka 'Windows Subsystem for Linux Elevation …

Patch available
Fix from $1,950 2019-04-09
Windows 10 HIGH 7.8
CVE-2019-0694

An elevation of privilege vulnerability exists due to an integer overflow in Windows Subsystem for Linux, aka 'Windows Subsystem for Linux Elevation …

Patch available
Fix from $1,950 2019-04-09
Teeworlds CRITICAL 9.8
CVE-2019-10877

In Teeworlds 0.7.2, there is an integer overflow in CMap::Load() in engine/shared/map.cpp that can lead to a buffer overflow, because multiplication …

Patch available
Fix from $2,300 2019-04-05
Teeworlds CRITICAL 9.8
CVE-2019-10879

In Teeworlds 0.7.2, there is an integer overflow in CDataFileReader::Open() in engine/shared/datafile.cpp that can lead to a buffer overflow and poss…

No fix yet
Fix from $2,300 2019-04-05
Suricata CRITICAL 9.8
CVE-2018-10244

Suricata version 4.0.4 incorrectly handles the parsing of an EtherNet/IP PDU. A malformed PDU can cause the parsing code to read beyond the allocated…

Mitigation only
Fix from $2,300 2019-04-04
SQLite HIGH 8.1
CVE-2018-20506EPSS 8%

SQLite before 3.25.3, when the FTS3 extension is enabled, encounters an integer overflow (and resultant buffer overflow) for FTS3 queries in a "merge…

Fix: 3.25.3 / 5.1.3+
Fix from $1,950 2019-04-03
Asterisk MEDIUM 6.5
CVE-2019-7251

An Integer Signedness issue (for a return code) in the res_pjsip_sdp_rtp module in Digium Asterisk versions 15.7.1 and earlier and 16.1.1 and earlier…

Fix: 15.7.2 / 16.2.1+
Fix from $1,600 2019-03-28
Rslinx Enterprise HIGH 7.5
CVE-2013-2806

Rockwell Automation RSLinx Enterprise Software (LogReceiver.exe) CPR9, CPR9-SR1, CPR9-SR2, CPR9-SR3, CPR9-SR4, CPR9-SR5, CPR9-SR5.1, and CPR9-SR6 doe…

Mitigation only
Fix from $1,950 2019-03-26
Rslinx Enterprise HIGH 7.5
CVE-2013-2807

Rockwell Automation RSLinx Enterprise Software (LogReceiver.exe) CPR9, CPR9-SR1, CPR9-SR2, CPR9-SR3, CPR9-SR4, CPR9-SR5, CPR9-SR5.1, and CPR9-SR6 doe…

Mitigation only
Fix from $1,950 2019-03-26
Debian Linux HIGH 8.8
CVE-2019-3856EPSS 6%

An integer overflow flaw, which could lead to an out of bounds write, was discovered in libssh2 before 1.8.1 in the way keyboard prompt requests are …

Patch available
Fix from $1,950 2019-03-25
Debian Linux HIGH 8.8
CVE-2019-3857EPSS 6%

An integer overflow flaw which could lead to an out of bounds write was discovered in libssh2 before 1.8.1 in the way SSH_MSG_CHANNEL_REQUEST packets…

Patch available
Fix from $1,950 2019-03-25
Debian Linux HIGH 8.8
CVE-2019-3863

A flaw was found in libssh2 before 1.8.1 creating a vulnerability on the SSH client side. A server could send a multiple keyboard interactive respons…

Fix: 1.8.1+
Fix from $1,950 2019-03-25