Vulnerability index

Browse CVEs

3,273 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Integer OverflowCWE-190 × clear
Debian Linux HIGH 7.5
CVE-2018-1084

corosync before version 2.4.4 is vulnerable to an integer overflow in exec/totemcrypto.c.

Fix: 2.4.4+
Fix from $1,950 2018-04-12
Sd 210 Firmware CRITICAL 9.8
CVE-2017-8275

In Android before security patch level 2018-04-05 on Qualcomm Snapdragon Mobile SD 210/SD 212/SD 205, SD 400, SD 430, SD 450, SD 617, SD 625, SD 650/…

Mitigation only
Fix from $2,300 2018-04-11
Ocaml CRITICAL 9.8
CVE-2018-9838

The caml_ba_deserialize function in byterun/bigarray.c in the standard library in OCaml 4.06.0 has an integer overflow which, in situations where mar…

Mitigation only
Fix from $2,300 2018-04-06
Linux Kernel MEDIUM 5.5
CVE-2017-18257

The __get_data_block function in fs/f2fs/data.c in the Linux kernel before 4.11 allows local users to cause a denial of service (integer overflow and…

Fix: 4.11+
Fix from $1,600 2018-04-04
FreeBSD HIGH 7.5
CVE-2018-6917

In FreeBSD before 11.1-STABLE, 11.1-RELEASE-p9, 10.4-STABLE, 10.4-RELEASE-p8 and 10.3-RELEASE-p28, insufficient validation of user-provided font para…

Fix: 10.4 / 11.1+
Fix from $1,950 2018-04-04
Android HIGH 7.3
CVE-2018-5820

In Qualcomm Android for MSM, Firefox OS for MSM, and QRD Android with all Android releases from CAF using the Linux kernel before security patch leve…

Mitigation only
Fix from $1,950 2018-04-03
Android HIGH 7.3
CVE-2017-15836

In Qualcomm Android for MSM, Firefox OS for MSM, and QRD Android with all Android releases from CAF using the Linux kernel before security patch leve…

Mitigation only
Fix from $1,950 2018-04-03
Linux Kernel HIGH 7.8
CVE-2017-18255

The perf_cpu_time_max_percent_handler function in kernel/events/core.c in the Linux kernel before 4.11 allows local users to cause a denial of servic…

Fix: 4.11+
Fix from $1,950 2018-03-31
Android CRITICAL 9.8
CVE-2017-17766

In wma_peer_info_event_handler() in Android for MSM, Firefox OS for MSM, and QRD Android before 2017-10-03, the value of num_peers received from firm…

Patch available
Fix from $2,300 2018-03-30
Prague Al00a Firmware HIGH 7.8
CVE-2017-15325

The Bdat driver of Prague smart phones with software versions earlier than Prague-AL00AC00B211, versions earlier than Prague-AL00BC00B211, versions e…

Mitigation only
Fix from $1,950 2018-03-23
Truecrypt HIGH 7.1
CVE-2014-2885

Multiple integer overflows in TrueCrypt 7.1a allow local users to (1) obtain sensitive information via vectors involving a crafted item->OriginalLeng…

Mitigation only
Fix from $1,950 2018-03-19
Android HIGH 7.8
CVE-2017-14887

In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, in the processing of messages of type…

Patch available
Fix from $1,950 2018-03-16
Android HIGH 7.8
CVE-2017-15831

In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, in the function wma_ndp_end_indicatio…

Patch available
Fix from $1,950 2018-03-16
Android CRITICAL 9.8
CVE-2016-10393

In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, when processing a clip with large siz…

Mitigation only
Fix from $2,300 2018-03-15
Debian Linux MEDIUM 5.5
CVE-2017-18233

An issue was discovered in Exempi before 2.4.4. Integer overflow in the Chunk class in XMPFiles/source/FormatSupport/RIFF.cpp allows remote attackers…

Fix: 2.4.4+
Fix from $1,600 2018-03-15
Debian Linux MEDIUM 6.5
CVE-2018-8098

Integer overflow in the index.c:read_entry() function while decompressing a compressed prefix length in libgit2 before v0.26.2 allows an attacker to …

Fix: 0.26.2+
Fix from $1,600 2018-03-14
Debian Linux HIGH 7.5
CVE-2018-1000127

memcached version prior to 1.4.37 contains an Integer Overflow vulnerability in items.c:item_free() that can result in data corruption and deadlocks …

Fix: 1.4.37+
Fix from $1,950 2018-03-13
Debian Linux HIGH 7.5
CVE-2018-1000098

Teluu PJSIP version 2.7.1 and earlier contains a Integer Overflow vulnerability in pjmedia SDP parsing that can result in Crash. This attack appear t…

Fix: after 2.7.1
Fix from $1,950 2018-03-13
Mate 9 Pro Firmware HIGH 7.8
CVE-2017-17324

Huawei Mate 9 Pro smartphones with software LON-AL00BC00B139D; LON-AL00BC00B229 have an integer overflow vulnerability. The camera driver does not va…

Mitigation only
Fix from $1,950 2018-03-09
Mha Al00a Firmware MEDIUM 5.5
CVE-2017-17328

Huawei smartphones with software of MHA-AL00AC00B125 have an integer overflow vulnerability. The software does not process certain variable properly …

No fix yet
Fix from $1,600 2018-03-09
Dp300 Firmware MEDIUM 5.5
CVE-2017-17147

Huawei DP300 V500R002C00 have an integer overflow vulnerability due to the lack of validation. An authenticated local attacker can craft specific XML…

Mitigation only
Fix from $1,600 2018-03-09
Libgfortran CRITICAL 9.8
CVE-2014-5044EPSS 6%

Multiple integer overflows in libgfortran might allow remote attackers to execute arbitrary code or cause a denial of service (Fortran application cr…

Fix: 4.8+
Fix from $2,300 2018-03-07
Enterprise Linux Desktop HIGH 7.8
CVE-2018-7643

The display_debug_ranges function in dwarf.c in GNU Binutils 2.30 allows remote attackers to cause a denial of service (integer overflow and applicat…

Mitigation only
Fix from $1,950 2018-03-02
Enterprise Linux Desktop MEDIUM 5.5
CVE-2018-7568

The parse_die function in dwarf1.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.30, allows remote attac…

Patch available
Fix from $1,600 2018-02-28
Enterprise Linux Desktop MEDIUM 5.5
CVE-2018-7569

dwarf2.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.30, allows remote attackers to cause a denial of …

Patch available
Fix from $1,600 2018-02-28
Kingview HIGH 7.8
CVE-2018-7471

KingView 7.5SP1 has an integer overflow during stgopenstorage API read operations.

Mitigation only
Fix from $1,950 2018-02-25
Android HIGH 7.8
CVE-2017-15862

In all Qualcomm products with Android releases from CAF using the Linux kernel, in wma_unified_link_radio_stats_event_handler(), the number of radio …

Mitigation only
Fix from $1,950 2018-02-23
Android HIGH 7.8
CVE-2017-17764

In all Qualcomm products with Android releases from CAF using the Linux kernel, the num_failure_info value from firmware is not properly validated in…

Mitigation only
Fix from $1,950 2018-02-23
Android HIGH 7.8
CVE-2017-17765

In all Qualcomm products with Android releases from CAF using the Linux kernel, multiple values received from firmware are not properly validated in …

Mitigation only
Fix from $1,950 2018-02-23
Vncterm CRITICAL 9.8
CVE-2018-7226

An issue was discovered in vcSetXCutTextProc() in VNConsole.c in LinuxVNC and VNCommand from the LibVNC/vncterm distribution through 0.9.10. Missing …

Fix: after 0.9.10
Fix from $2,300 2018-02-19