Vulnerability index

Browse CVEs

3,271 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Integer OverflowCWE-190 × clear
Chrome HIGH 8.8
CVE-2018-6071

An integer overflow in Skia in Google Chrome prior to 65.0.3325.146 allowed a remote attacker to perform an out of bounds memory read via a crafted H…

Fix: 65.0.3325.146+
Fix from $1,950 2018-11-14
Chrome HIGH 8.8
CVE-2018-6072

An integer overflow leading to use after free in PDFium in Google Chrome prior to 65.0.3325.146 allowed a remote attacker to potentially exploit heap…

Fix: 65.0.3325.146+
Fix from $1,950 2018-11-14
Debian Linux CRITICAL 9.8
CVE-2018-19199

An issue was discovered in uriparser before 0.9.0. UriQuery.c allows an integer overflow via a uriComposeQuery* or uriComposeQueryEx* function becaus…

Fix: 0.9.0+
Fix from $2,300 2018-11-12
Debian Linux MEDIUM 6.5
CVE-2018-19107

In Exiv2 0.26, Exiv2::IptcParser::decode in iptc.cpp (called from psdimage.cpp in the PSD image reader) may suffer from a denial of service (heap-bas…

Patch available
Fix from $1,600 2018-11-08
Ubuntu Linux HIGH 8.4
CVE-2018-9363

In the hidp_process_report in bluetooth, there is an integer overflow. This could lead to an out of bounds write with no additional execution privile…

Fix: 3.16.58 / 3.18.119+
Fix from $1,950 2018-11-06
International Components For Unicode CRITICAL 9.8
CVE-2018-18928

International Components for Unicode (ICU) for C/C++ 63.1 has an integer overflow in number::impl::DecimalQuantity::toScientificString() in i18n/numb…

Patch available
Fix from $2,300 2018-11-04
Debian Linux MEDIUM 6.5
CVE-2016-2120

An issue has been found in PowerDNS Authoritative Server versions up to and including 3.4.10, 4.0.1 allowing an authorized user to crash the server b…

Fix: after 4.0.1
Fix from $1,600 2018-11-01
Ubuntu Linux HIGH 8.1
CVE-2016-6328

A vulnerability was found in libexif. An integer overflow when parsing the MNOTE entry data of the input file. This can cause Denial-of-Service (DoS)…

Fix: 0.6.22+
Fix from $1,950 2018-10-31
Curl CRITICAL 9.8
CVE-2018-16839EPSS 6%

Curl versions 7.33.0 through 7.61.1 are vulnerable to a buffer overrun in the SASL authentication code that may lead to denial of service.

Fix: after 7.61.1
Fix from $2,300 2018-10-31
Sd 845 Firmware HIGH 7.8
CVE-2018-11879

When the buffer length passed is very large, bounds check could be bypassed leading to potential buffer overwrite in Snapdragon Mobile in version SD …

Mitigation only
Fix from $1,950 2018-10-29
Ipq8074 Firmware HIGH 7.8
CVE-2018-11866

Integer overflow may happen in WLAN when calculating an internal structure size due to lack of validation of the input length in Snapdragon Mobile, S…

Mitigation only
Fix from $1,950 2018-10-29
Mdm9206 Firmware HIGH 7.8
CVE-2018-11865

Integer overflow may happen when calculating an internal structure size due to lack of validation of the input length in Snapdragon Mobile, Snapdrago…

Mitigation only
Fix from $1,950 2018-10-29
Data Tools MEDIUM 5.5
CVE-2018-18749

data-tools through 2017-07-26 has an Integer Overflow leading to an incorrect end value for the write_wchars function.

Fix: after 2017-07-26
Fix from $1,600 2018-10-29
Ipq8074 Firmware HIGH 7.8
CVE-2018-11821

Possible integer overflow may happen in WLAN during memory allocation in Snapdragon Mobile, Snapdragon Wear in version IPQ8074, MDM9206, MDM9607, MDM…

Mitigation only
Fix from $1,950 2018-10-26
Sd 835 Firmware HIGH 7.8
CVE-2018-11822

A possible integer overflow may happen in WLAN during memory allocation in Snapdragon Mobile in version SD 835, SD 845, SD 850, SDA660

Mitigation only
Fix from $1,950 2018-10-26
Xpdf MEDIUM 5.5
CVE-2018-18650

An issue was discovered in Xpdf 4.00. XRef::readXRefStream in XRef.cc allows attackers to launch a denial of service (Integer Overflow) via a crafted…

No fix yet
Fix from $1,600 2018-10-25
Mdm9635m Firmware HIGH 7.8
CVE-2017-18172

In a device, with screen size 1440x2560, the check of contiguous buffer will overflow on certain buffer size resulting in an Integer Overflow or Wrap…

Mitigation only
Fix from $1,950 2018-10-23
Enterprise Linux MEDIUM 5.5
CVE-2018-18438

Qemu has integer overflows because IOReadHandler and its associated functions use a signed integer data type for a size value.

Patch available
Fix from $1,600 2018-10-19
Binutils HIGH 7.8
CVE-2018-18483

The get_count function in cplus-dem.c in GNU libiberty, as distributed in GNU Binutils 2.31, allows remote attackers to cause a denial of service (ma…

No fix yet
Fix from $1,950 2018-10-18
Firefox HIGH 8.8
CVE-2018-12361

An integer overflow can occur in the SwizzleData code while calculating buffer sizes. The overflowed value is used for subsequent graphics computatio…

Fix: 60.0 / 60.1+
Fix from $1,950 2018-10-18
Enterprise Linux Desktop HIGH 8.8
CVE-2018-12362

An integer overflow can occur during graphics operations done by the Supplemental Streaming SIMD Extensions 3 (SSSE3) scaler, resulting in a potentia…

Mitigation only
Fix from $1,950 2018-10-18
Laquis Scada CRITICAL 9.8
CVE-2018-17897EPSS 6%

LAquis SCADA Versions 4.1.0.3870 and prior has several integer overflow to buffer overflow vulnerabilities, which may allow remote code execution.

Fix: after 4.1.0.3870
Fix from $2,300 2018-10-17
Ubuntu Linux MEDIUM 6.5
CVE-2018-10839

Qemu emulator <= 3.0.0 built with the NE2000 NIC emulation support is vulnerable to an integer overflow, which could lead to buffer overflow issue. I…

Fix: after 3.0.0
Fix from $1,600 2018-10-16
Acrobat Dc MEDIUM 5.5
CVE-2018-12881EPSS 5%

Adobe Acrobat and Reader versions 2018.011.20063 and earlier, 2017.011.30102 and earlier, and 2015.006.30452 and earlier have an integer overflow vul…

Fix: after 18.011.20063
Fix from $1,600 2018-10-12
Acrobat Dc MEDIUM 5.5
CVE-2018-12842

Adobe Acrobat and Reader versions 2018.011.20063 and earlier, 2017.011.30102 and earlier, and 2015.006.30452 and earlier have an integer overflow vul…

Fix: after 18.011.20063
Fix from $1,600 2018-10-12
Bytom HIGH 7.5
CVE-2018-18206

In the client in Bytom before 1.0.6, checkTopicRegister in p2p/discover/net.go does not prevent negative idx values, leading to a crash.

Fix: 1.0.6+
Fix from $1,950 2018-10-10
Debian Linux CRITICAL 9.8
CVE-2018-17963

qemu_deliver_packet_iov in net/net.c in Qemu accepts packet sizes greater than INT_MAX, which allows attackers to cause a denial of service or possib…

Fix: after 3.0.0
Fix from $2,300 2018-10-09
Ubuntu Linux HIGH 7.5
CVE-2018-17958EPSS 6%

Qemu has a Buffer Overflow in rtl8139_do_receive in hw/net/rtl8139.c because an incorrect integer data type is used.

Fix: after 3.0.1
Fix from $1,950 2018-10-09
Ubuntu Linux HIGH 7.5
CVE-2018-17962

Qemu has a Buffer Overflow in pcnet_receive in hw/net/pcnet.c because an incorrect integer data type is used.

No fix yet
Fix from $1,950 2018-10-09
Rust CRITICAL 9.8
CVE-2018-1000810

The Rust Programming Language Standard Library version 1.29.0, 1.28.0, 1.27.2, 1.27.1, 127.0, 126.2, 126.1, 126.0 contains a CWE-680: Integer Overflo…

Mitigation only
Fix from $2,300 2018-10-08