Vulnerability index

Browse CVEs

3,271 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Integer OverflowCWE-190 × clear
Binutils MEDIUM 5.5
CVE-2018-20671

load_specific_debug_section in objdump.c in GNU Binutils through 2.31.1 contains an integer overflow vulnerability that can trigger a heap-based buff…

Fix: after 2.31.1
Fix from $1,600 2019-01-04
Nexxustoken HIGH 7.5
CVE-2018-18665

The mintToken function of Nexxus (NXX) aka NexxusToken, an Ethereum token, has an integer overflow that allows the owner of the contract to set the b…

No fix yet
Fix from $1,950 2018-12-28
Swftcoin HIGH 7.5
CVE-2018-18666

The mintToken function of SwftCoin (SWFTC) aka SwftCoin, an Ethereum token, has an integer overflow that allows the owner of the contract to set the …

No fix yet
Fix from $1,950 2018-12-28
Pylontoken HIGH 7.5
CVE-2018-18667

The mintToken function of Pylon (PYLNT) aka PylonToken, an Ethereum token, has an integer overflow that allows the owner of the contract to set the b…

No fix yet
Fix from $1,950 2018-12-28
Ubuntu Linux HIGH 8.8
CVE-2018-20545

There is an illegal WRITE memory access at common-image.c (function load_image) in libcaca 0.99.beta19 for 4bpp data.

Patch available
Fix from $1,950 2018-12-28
Ubuntu Linux HIGH 8.1
CVE-2018-20546

There is an illegal READ memory access at caca/dither.c (function get_rgba_default) in libcaca 0.99.beta19 for the default bpp case.

Patch available
Fix from $1,950 2018-12-28
Python HIGH 7.5
CVE-2018-20406EPSS 6%

Modules/_pickle.c in Python before 3.7.1 has an integer overflow via a large LONG_BINPUT value that is mishandled during a "resize to twice the size"…

Fix: 3.7.1+
Fix from $1,950 2018-12-23
SQLite HIGH 8.1
CVE-2018-20346EPSS 10%

SQLite before 3.25.3, when the FTS3 extension is enabled, encounters an integer overflow (and resultant buffer overflow) for FTS3 queries that occur …

Fix: 3.25.3 / 71.0.3578.80+
Fix from $1,950 2018-12-21
Libjpeg Turbo HIGH 8.8
CVE-2018-20330

The tjLoadImage function in libjpeg-turbo 2.0.1 has an integer overflow with a resultant heap-based buffer overflow via a BMP image because multiplic…

Patch available
Fix from $1,950 2018-12-21
Ubuntu Linux HIGH 7.8
CVE-2018-1000876

binutils version 2.32 and earlier contains a Integer Overflow vulnerability in objdump, bfd_get_dynamic_reloc_upper_bound,bfd_canonicalize_dynamic_re…

Fix: 2.32+
Fix from $1,950 2018-12-20
Android HIGH 7.8
CVE-2018-11985

In all android releases(Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, When allocating heap using user supplied s…

Patch available
Fix from $1,950 2018-12-20
Sinumerik 828d V4.7 Firmware HIGH 8.1
CVE-2018-11458

A vulnerability has been identified in SINUMERIK 828D V4.7 (All versions < V4.7 SP6 HF1), SINUMERIK 840D sl V4.7 (All versions < V4.7 SP6 HF5), SINUM…

Fix: after 4.8
Fix from $1,950 2018-12-12
Chrome HIGH 8.8
CVE-2018-18341

An integer overflow leading to a heap buffer overflow in Blink in Google Chrome prior to 71.0.3578.80 allowed a remote attacker to potentially exploi…

Fix: 71.0.3578.80+
Fix from $1,950 2018-12-11
Chrome HIGH 8.8
CVE-2018-18356

An integer overflow in path handling lead to a use after free in Skia in Google Chrome prior to 71.0.3578.80 allowed a remote attacker to potentially…

Fix: 71.0.3578.80+
Fix from $1,950 2018-12-11
Mdm9206 Firmware CRITICAL 9.8
CVE-2016-10502

While generating trusted application id, An integer overflow can occur giving the trusted application an invalid identity in Snapdragon Mobile and Sn…

Mitigation only
Fix from $2,300 2018-12-10
Ubuntu Linux MEDIUM 6.5
CVE-2018-5815

An integer overflow error within the "parse_qt()" function (internal/dcraw_common.cpp) in LibRaw versions prior to 0.18.12 can be exploited to trigge…

Fix: 0.18.12+
Fix from $1,600 2018-12-07
Ubuntu Linux MEDIUM 6.5
CVE-2018-5816

An integer overflow error within the "identify()" function (internal/dcraw_common.cpp) in LibRaw versions prior to 0.18.12 can be exploited to trigge…

Fix: 0.18.12+
Fix from $1,600 2018-12-07
Perl CRITICAL 9.8
CVE-2018-18311EPSS 12%

Perl before 5.26.3 and 5.28.x before 5.28.1 has a buffer overflow via a crafted regular expression that triggers invalid write operations.

Fix: 5.26.3 / 5.28.1+
Fix from $2,300 2018-12-07
Binutils MEDIUM 5.5
CVE-2018-19932

An issue was discovered in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils through 2.31. There is an integer ov…

Fix: after 2.31
Fix from $1,600 2018-12-07
Qemu MEDIUM 5.7
CVE-2018-19665

The Bluetooth subsystem in QEMU mishandles negative values for length variables, leading to memory corruption.

Fix: after 3.0.1
Fix from $1,600 2018-12-06
Android CRITICAL 9.8
CVE-2018-9556

In ParsePayloadHeader of payload_metadata.cc, there is a possible out of bounds write due to an integer overflow. This could lead to remote escalatio…

Patch available
Fix from $2,300 2018-12-06
Android HIGH 7.5
CVE-2018-9565

In readBytes of xltdecwbxml.c, there is a possible out of bounds read due to an integer overflow. This could lead to remote information disclosure wi…

Mitigation only
Fix from $1,950 2018-12-06
Chrome HIGH 8.8
CVE-2018-6090

An integer overflow that lead to a heap buffer-overflow in Skia in Google Chrome prior to 66.0.3359.117 allowed a remote attacker to execute arbitrar…

Fix: 66.0.3359.117+
Fix from $1,950 2018-12-04
Chrome HIGH 8.8
CVE-2018-6092EPSS 9%

An integer overflow on 32-bit systems in WebAssembly in Google Chrome prior to 66.0.3359.117 allowed a remote attacker to execute arbitrary code insi…

Fix: 66.0.3359.117+
Fix from $1,950 2018-12-04
FreeBSD CRITICAL 9.8
CVE-2018-17157EPSS 24%

In FreeBSD before 11.2-STABLE(r340854) and 11.2-RELEASE-p5, an integer overflow error when handling opcodes can cause memory corruption by sending a …

Fix: 11.2+
Fix from $2,300 2018-12-04
FreeBSD HIGH 7.5
CVE-2018-17158

In FreeBSD before 11.2-STABLE(r340854) and 11.2-RELEASE-p5, an integer overflow error can occur when handling the client address length field in an N…

Fix: 11.2+
Fix from $1,950 2018-12-04
Ubuntu Linux CRITICAL 9.8
CVE-2018-8787EPSS 8%

FreeRDP prior to version 2.0.0-rc4 contains an Integer Overflow that leads to a Heap-Based Buffer Overflow in function gdi_Bitmap_Decompress() and re…

Patch available
Fix from $2,300 2018-11-29
Workstation HIGH 8.8
CVE-2018-6983

VMware Workstation (15.x before 15.0.2 and 14.x before 14.1.5) and Fusion (11.x before 11.0.2 and 10.x before 10.1.5) contain an integer overflow vul…

Fix: 10.1.5 / 11.0.2+
Fix from $1,950 2018-11-27
Android HIGH 7.8
CVE-2018-11260

In all android releases(Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, while processing a fast Initial link setup…

Patch available
Fix from $1,950 2018-11-27
Chrome HIGH 8.8
CVE-2018-6065 KEVEPSS 60%

Integer overflow in computing the required allocation size when instantiating a new javascript object in V8 in Google Chrome prior to 65.0.3325.146 a…

Fix: 65.0.3325.146+
Fix from $1,950 2018-11-14