Vulnerability index

Browse CVEs

3,271 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Integer OverflowCWE-190 × clear
Android HIGH 7.8
CVE-2018-9498

In SkSampler::Fill of SkSampler.cpp, there is a possible out of bounds write due to an integer overflow. This could lead to remote code execution wit…

Patch available
Fix from $1,950 2018-10-02
Android HIGH 7.8
CVE-2018-9491

In AMediaCodecCryptoInfo_new of NdkMediaCodec.cpp, there is a possible out-of-bounds write due to an integer overflow. This could lead to remote code…

Patch available
Fix from $1,950 2018-10-02
Android HIGH 7.8
CVE-2018-9473

In ihevcd_parse_sei_payload of ihevcd_parse_headers.c, there is a possible out-of-bounds write due to an integer overflow. This could lead to remote …

Patch available
Fix from $1,950 2018-10-02
Viabtc Exchange Server CRITICAL 9.8
CVE-2018-17568

utils/ut_rpc.c in ViaBTC Exchange Server before 2018-08-21 has an integer overflow leading to memory corruption.

Fix: 2018-08-21+
Fix from $2,300 2018-09-26
Viabtc Exchange Server CRITICAL 9.8
CVE-2018-17569

network/nw_buf.c in ViaBTC Exchange Server before 2018-08-21 has an integer overflow leading to memory corruption.

Fix: 2018-08-21+
Fix from $2,300 2018-09-26
Viabtc Exchange Server CRITICAL 9.8
CVE-2018-17570

utils/ut_ws_svr.c in ViaBTC Exchange Server before 2018-08-21 has an integer overflow leading to memory corruption.

Fix: 2018-08-21+
Fix from $2,300 2018-09-26
Pan Os HIGH 7.8
CVE-2018-14634 KEVEPSS 15%

An integer overflow flaw was found in the Linux kernel's create_elf_tables() function. An unprivileged local user with access to SUID (or otherwise p…

Fix: 7.1.23 / 8.0.16+
Fix from $1,950 2018-09-25
Polyai HIGH 7.5
CVE-2018-17050

The mintToken function of a smart contract implementation for PolyAi (AI), an Ethereum token, has an integer overflow that allows the owner of the co…

No fix yet
Fix from $1,950 2018-09-21
Substratum HIGH 7.5
CVE-2018-12511

In the mintToken function of a smart contract implementation for Substratum (SUB), an Ethereum ERC20 token, the administrator can control mintedAmoun…

No fix yet
Fix from $1,950 2018-09-21
Mdm9206 Firmware HIGH 7.8
CVE-2018-11292

In Snapdragon (Automobile, Mobile, Wear) in version MDM9206, MDM9607, MDM9640, MDM9650, MSM8909W, MSM8996AU, QCA6574AU, QCA6584, SD 210/SD 212/SD 205…

Mitigation only
Fix from $1,950 2018-09-20
Android HIGH 7.8
CVE-2018-11894

In all android releases (Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, while processing preferred network offloa…

Patch available
Fix from $1,950 2018-09-19
Android HIGH 7.8
CVE-2018-11886

In all android releases (Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, lack of check while calculating the MPDU …

Patch available
Fix from $1,950 2018-09-19
Android HIGH 7.8
CVE-2018-11826

In all android releases (Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, lack of check on integer overflow while c…

Patch available
Fix from $1,950 2018-09-18
Android HIGH 7.8
CVE-2017-15818

In all android releases (Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, while loading a user application in qseec…

Patch available
Fix from $1,950 2018-09-18
Android HIGH 7.8
CVE-2017-15828

In all android releases (Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, while accessing the keystore in LK, an in…

Patch available
Fix from $1,950 2018-09-18
Argus HIGH 7.8
CVE-2017-2777

An exploitable heap overflow vulnerability exists in the ipStringCreate function of Iceni Argus Version 6.6.05. A specially crafted pdf file can caus…

No fix yet
Fix from $1,950 2018-09-17
Debian Linux HIGH 8.8
CVE-2018-17100

An issue was discovered in LibTIFF 4.0.9. There is a int32 overflow in multiply_ms in tools/ppm2tiff.c, which can cause a denial of service (crash) o…

Patch available
Fix from $1,950 2018-09-16
Jhead HIGH 7.8
CVE-2018-17088

The ProcessGpsInfo function of the gpsinfo.c file of jhead 3.00 may allow a remote attacker to cause a denial-of-service attack or unspecified other …

Patch available
Fix from $1,950 2018-09-16
Windows 10 HIGH 7.8
CVE-2018-8441

An elevation of privilege vulnerability exists due to an integer overflow in Windows Subsystem for Linux, aka "Windows Subsystem for Linux Elevation …

Patch available
Fix from $1,950 2018-09-13
Spice HIGH 8.8
CVE-2018-10893

Multiple integer overflow and buffer overflow issues were discovered in spice-client's handling of LZ compressed frames. A malicious server could cau…

Patch available
Fix from $1,950 2018-09-11
Ubuntu Linux CRITICAL 9.8
CVE-2018-14618EPSS 11%

curl before version 7.61.1 is vulnerable to a buffer overrun in the NTLM authentication code. The internal function Curl_ntlm_core_mk_nt_hash multipl…

Fix: 7.61.1+
Fix from $2,300 2018-09-05
Virtualization Host HIGH 7.5
CVE-2018-10911

A flaw was found in the way dic_unserialize function of glusterfs does not handle negative key length values. An attacker could use this flaw to read…

Fix: 3.12.14 / 4.1.8+
Fix from $1,950 2018-09-04
Ubuntu Linux MEDIUM 5.5
CVE-2018-16435

Little CMS (aka Little Color Management System) 2.9 has an integer overflow in the AllocateDataSet function in cmscgats.c, leading to a heap-based bu…

Patch available
Fix from $1,600 2018-09-04
Bsafe HIGH 7.5
CVE-2018-11054

RSA BSAFE Micro Edition Suite, version 4.1.6, contains an integer overflow vulnerability. A remote attacker could use maliciously constructed ASN.1 d…

Patch available
Fix from $1,950 2018-08-31
Chrome MEDIUM 6.5
CVE-2017-15422

Integer overflow in international date handling in International Components for Unicode (ICU) for C/C++ before 60.1, as used in V8 in Google Chrome p…

Fix: 60.1 / 63.0.3239.84+
Fix from $1,600 2018-08-28
Godot HIGH 7.5
CVE-2018-1000224

Godot Engine version All versions prior to 2.1.5, all 3.0 versions prior to 3.0.6. contains a Signed/unsigned comparison, wrong buffer size chackes, …

Fix: 2.1.5 / 3.0.6+
Fix from $1,950 2018-08-20
Pycryptodome HIGH 7.5
CVE-2018-15560

PyCryptodome before 3.6.6 has an integer overflow in the data_len variable in AESNI.c, related to the AESNI_encrypt and AESNI_decrypt functions, lead…

Fix: 3.6.6+
Fix from $1,950 2018-08-20
Bitcoin Red HIGH 7.5
CVE-2018-11687

An integer overflow in the distributeBTR function of a smart contract implementation for Bitcoin Red (BTCR), an Ethereum ERC20 token, allows the owne…

Mitigation only
Fix from $1,950 2018-08-15
Erc20token HIGH 7.5
CVE-2018-11561

An integer overflow in the unprotected distributeToken function of a smart contract implementation for EETHER (EETHER), an Ethereum ERC20 token, will…

No fix yet
Fix from $1,950 2018-08-08
Ubuntu Linux CRITICAL 9.1
CVE-2018-14938

An issue was discovered in wifipcap/wifipcap.cpp in TCPFLOW through 1.5.0-alpha. There is an integer overflow in the function handle_prism during cap…

Fix: after 1.4.5
Fix from $2,300 2018-08-05