Vulnerability index

Browse CVEs

3,273 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Integer OverflowCWE-190 × clear
Firefox CRITICAL 9.8
CVE-2016-9063EPSS 5%

An integer overflow during the parsing of XML using the Expat library. This vulnerability affects Firefox < 50.

Fix: 2.7.15 / 3.3.7+
Fix from $2,300 2018-06-11
Apple Tv HIGH 7.8
CVE-2018-4249

An issue was discovered in certain Apple products. iOS before 11.4 is affected. macOS before 10.13.5 is affected. tvOS before 11.4 is affected. watch…

Fix: 4.3.1 / 10.13.5+
Fix from $1,950 2018-06-08
Android HIGH 7.8
CVE-2017-6290

In Android before the 2018-06-05 security patch level, NVIDIA TLK TrustZone contains a possible out of bounds write due to an integer overflow which …

Mitigation only
Fix from $1,950 2018-06-07
Espruino MEDIUM 5.5
CVE-2018-11590

Espruino before 1.99 allows attackers to cause a denial of service (application crash) with a user crafted input file via an integer overflow during …

Fix: 1.99+
Fix from $1,600 2018-05-31
Samsung Mobile MEDIUM 5.3
CVE-2018-10751EPSS 9%

A malformed OMACP WAP push message can cause memory corruption on a Samsung S7 Edge device when processing the String Extension portion of the WbXml …

No fix yet
Fix from $1,600 2018-05-29
Ubuntu Linux HIGH 7.8
CVE-2018-1124

procps-ng before version 3.3.15 is vulnerable to multiple integer overflows leading to a heap corruption in file2strvec function. This allows a privi…

Fix: 3.3.15 / 7.6.0+
Fix from $1,950 2018-05-23
Ubuntu Linux CRITICAL 9.8
CVE-2018-1126

procps-ng before version 3.3.15 is vulnerable to an incorrect integer size in proc/alloc.* leading to truncation/integer overflow issues. This flaw i…

No fix yet
Fix from $2,300 2018-05-23
Hexagon HIGH 7.5
CVE-2018-11239

An integer overflow in the _transfer function of a smart contract implementation for Hexagon (HXG), an Ethereum ERC20 token, allows attackers to acco…

No fix yet
Fix from $1,950 2018-05-19
Virtualization Host CRITICAL 9.8
CVE-2018-11236EPSS 7%

stdlib/canonicalize.c in the GNU C Library (aka glibc or libc6) 2.27 and earlier, when processing very long pathname arguments to the realpath functi…

Fix: after 2.27
Fix from $2,300 2018-05-18
Social Chain HIGH 7.5
CVE-2018-10706

An integer overflow in the transferMulti function of a smart contract implementation for Social Chain (SCA), an Ethereum ERC20 token, allows attacker…

No fix yet
Fix from $1,950 2018-05-10
Koreashow HIGH 7.5
CVE-2018-10973

An integer overflow in the transferMulti function of a smart contract implementation for KoreaShow, an Ethereum ERC20 token, allows attackers to acco…

No fix yet
Fix from $1,950 2018-05-10
Smartmesh HIGH 7.5
CVE-2018-10376

An integer overflow in the transferProxy function of a smart contract implementation for SmartMesh (aka SMT), an Ethereum ERC20 token, allows attacke…

No fix yet
Fix from $1,950 2018-04-25
Debian Linux HIGH 7.8
CVE-2017-2901

An exploitable integer overflow exists in the IRIS loading functionality of the Blender open-source 3d creation suite version 2.78c. A specially craf…

No fix yet
Fix from $1,950 2018-04-24
Debian Linux HIGH 7.8
CVE-2017-2902

An exploitable integer overflow exists in the DPX loading functionality of the Blender open-source 3d creation suite version 2.78c. A specially craft…

No fix yet
Fix from $1,950 2018-04-24
Debian Linux HIGH 7.8
CVE-2017-2903

An exploitable integer overflow exists in the DPX loading functionality of the Blender open-source 3d creation suite version 2.78c. A specially craft…

No fix yet
Fix from $1,950 2018-04-24
Debian Linux HIGH 7.8
CVE-2017-2904

An exploitable integer overflow exists in the RADIANCE loading functionality of the Blender open-source 3d creation suite version 2.78c. A specially …

No fix yet
Fix from $1,950 2018-04-24
Debian Linux HIGH 7.8
CVE-2017-2905

An exploitable integer overflow exists in the bmp loading functionality of the Blender open-source 3d creation suite version 2.78c. A specially craft…

No fix yet
Fix from $1,950 2018-04-24
Debian Linux HIGH 7.8
CVE-2017-2906

An exploitable integer overflow exists in the animation playing functionality of the Blender open-source 3d creation suite version 2.78c. A specially…

No fix yet
Fix from $1,950 2018-04-24
Debian Linux HIGH 7.8
CVE-2017-2907

An exploitable integer overflow exists in the animation playing functionality of the Blender open-source 3d creation suite version 2.78c. A specially…

No fix yet
Fix from $1,950 2018-04-24
Debian Linux HIGH 7.8
CVE-2017-2908

An exploitable integer overflow exists in the thumbnail functionality of the Blender open-source 3d creation suite version 2.78c. A specially crafted…

No fix yet
Fix from $1,950 2018-04-24
Debian Linux HIGH 7.8
CVE-2017-2918

An exploitable integer overflow exists in the Image loading functionality of the Blender open-source 3d creation suite v2.78c. A specially crafted .b…

No fix yet
Fix from $1,950 2018-04-24
Debian Linux MEDIUM 5.9
CVE-2017-2837

An exploitable denial of service vulnerability exists within the handling of security data in FreeRDP 2.0.0-beta1+android11. A specially crafted chal…

Mitigation only
Fix from $1,600 2018-04-24
Debian Linux MEDIUM 5.9
CVE-2017-2838

An exploitable denial of service vulnerability exists within the handling of challenge packets in FreeRDP 2.0.0-beta1+android11. A specially crafted …

Mitigation only
Fix from $1,600 2018-04-24
Debian Linux HIGH 7.8
CVE-2017-2899

An exploitable integer overflow exists in the TIFF loading functionality of the Blender open-source 3d creation suite version 2.78c. A specially craf…

No fix yet
Fix from $1,950 2018-04-24
Debian Linux HIGH 7.8
CVE-2017-2900

An exploitable integer overflow exists in the PNG loading functionality of the Blender open-source 3d creation suite version 2.78c. A specially craft…

No fix yet
Fix from $1,950 2018-04-24
Debian Linux HIGH 7.8
CVE-2017-12099

An exploitable integer overflow exists in the upgrade of the legacy Mesh attribute 'tface' of the Blender open-source 3d creation suite v2.78c. A spe…

No fix yet
Fix from $1,950 2018-04-24
Debian Linux HIGH 7.8
CVE-2017-12100

An exploitable integer overflow exists in the 'multires_load_old_dm' functionality of the Blender open-source 3d creation suite v2.78c. A specially c…

No fix yet
Fix from $1,950 2018-04-24
Debian Linux HIGH 7.8
CVE-2017-12101

An exploitable integer overflow exists in the 'modifier_mdef_compact_influences' functionality of the Blender open-source 3d creation suite v2.78c. A…

No fix yet
Fix from $1,950 2018-04-24
Debian Linux HIGH 7.8
CVE-2017-12102

An exploitable integer overflow exists in the way that the Blender open-source 3d creation suite v2.78c converts curves to polygons. A specially craf…

No fix yet
Fix from $1,950 2018-04-24
Debian Linux HIGH 7.8
CVE-2017-12103

An exploitable integer overflow exists in the way that the Blender open-source 3d creation suite v2.78c converts text rendered as a font into a curve…

No fix yet
Fix from $1,950 2018-04-24