Vulnerability index

Browse CVEs

3,273 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Integer OverflowCWE-190 × clear
Internet Security 2018 HIGH 8.8
CVE-2017-10954

This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Bitdefender Internet Security Internet Security 2…

Fix: 7.72918+
Fix from $1,950 2017-10-31
Chrome HIGH 8.8
CVE-2017-5063

A numeric overflow in Skia in Google Chrome prior to 58.0.3029.81 for Linux, Windows, and Mac, and 58.0.3029.83 for Android, allowed a remote attacke…

Fix: 58.0.3029.81 / 58.0.3029.83+
Fix from $1,950 2017-10-27
Debian Linux MEDIUM 5.5
CVE-2017-15873

The get_next_block function in archival/libarchive/decompress_bunzip2.c in BusyBox 1.27.2 has an Integer Overflow that may lead to a write access vio…

Patch available
Fix from $1,600 2017-10-24
Mupdf HIGH 7.8
CVE-2017-15587

An integer overflow was discovered in pdf_read_new_xref_section in pdf/pdf-xref.c in Artifex MuPDF 1.11.

Mitigation only
Fix from $1,950 2017-10-18
Ubuntu Linux HIGH 8.8
CVE-2017-2888

An exploitable integer overflow vulnerability exists when creating a new RGB Surface in SDL 2.0.5. A specially crafted file can cause an integer over…

No fix yet
Fix from $1,950 2017-10-11
Android HIGH 7.8
CVE-2017-9683

In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, while flashing a meta image, an integ…

Mitigation only
Fix from $1,950 2017-10-10
Exiv2 MEDIUM 5.5
CVE-2017-14861

There is a stack consumption vulnerability in the Exiv2::Internal::stringFormat function of image.cpp in Exiv2 0.26. A Crafted input will lead to a r…

No fix yet
Fix from $1,600 2017-09-29
Android MEDIUM 5.5
CVE-2015-1526

The media_server component in Android allows remote attackers to cause a denial of service via a crafted application.

Fix: after 4.4.4
Fix from $1,600 2017-09-28
Android HIGH 7.8
CVE-2015-1537

Integer overflow in IHDCP.cpp in the media_server component in Android allows remote attackers to execute arbitrary code via a crafted application.

Fix: after 4.4.4
Fix from $1,950 2017-09-28
Binutils HIGH 7.8
CVE-2017-14745

The *_get_synthetic_symtab functions in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29, interpret a -1 va…

Patch available
Fix from $1,950 2017-09-26
Sam2p CRITICAL 9.8
CVE-2017-14636

Because of an integer overflow in sam2p 0.49.3, a loop executes 0xffffffff times, ending with an invalid read of size 1 in the Image::Indexed::sortPa…

Mitigation only
Fix from $2,300 2017-09-22
Visibroker HIGH 7.5
CVE-2017-9281

An integer overflow (CWE-190) potentially causing an out-of-bounds read (CWE-125) vulnerability in Micro Focus VisiBroker 8.5 can lead to a denial of…

Mitigation only
Fix from $1,950 2017-09-21
Visibroker CRITICAL 9.8
CVE-2017-9282

An integer overflow (CWE-190) led to an out-of-bounds write (CWE-787) on a heap-allocated area, leading to heap corruption in Micro Focus VisiBroker …

No fix yet
Fix from $2,300 2017-09-21
Android HIGH 7.8
CVE-2017-8250

In all Qualcomm products with Android releases from CAF using the Linux kernel, user controlled variables "nr_cmds" and "nr_bos" number are passed ac…

Fix: after 8.0
Fix from $1,950 2017-09-21
Android HIGH 7.8
CVE-2017-8278

In all Qualcomm products with Android releases from CAF using the Linux kernel, while reading audio data from an unspecified driver, a buffer overflo…

Fix: after 8.0
Fix from $1,950 2017-09-21
Sam2p HIGH 7.5
CVE-2017-14629

In sam2p 0.49.3, the in_xpm_reader function in in_xpm.cpp has an integer signedness error, leading to a crash when writing to an out-of-bounds array …

No fix yet
Fix from $1,950 2017-09-21
Sam2p CRITICAL 9.8
CVE-2017-14630

In sam2p 0.49.3, an integer overflow exists in the pcxLoadImage24 function of the file in_pcx.cpp, leading to an invalid write operation.

No fix yet
Fix from $2,300 2017-09-21
Trusted Firmware A HIGH 7.0
CVE-2017-9607

The BL1 FWU SMC handling code in ARM Trusted Firmware before 1.4 might allow attackers to write arbitrary data to secure memory, bypass the bl1_plat_…

Fix: after 1.3
Fix from $1,950 2017-09-20
Android HIGH 7.8
CVE-2015-1527

Integer overflow in IAudioPolicyService.cpp in Android allows local users to gain privileges via a crafted application, aka Android Bug ID 19261727.

Patch available
Fix from $1,950 2017-09-15
Binutils HIGH 7.8
CVE-2017-14333

The process_version_sections function in readelf.c in GNU Binutils 2.29 allows attackers to cause a denial of service (Integer Overflow, and hang bec…

Mitigation only
Fix from $1,950 2017-09-12
Debian Linux HIGH 8.8
CVE-2017-14167

Integer overflow in the load_multiboot function in hw/i386/multiboot.c in QEMU (aka Quick Emulator) allows local guest OS users to execute arbitrary …

Fix: after 2.10.2
Fix from $1,950 2017-09-08
Ubuntu Linux MEDIUM 6.5
CVE-2017-14173

In the function ReadTXTImage() in coders/txt.c in ImageMagick 7.0.6-10, an integer overflow might occur for the addition operation "GetQuantumRange(d…

Patch available
Fix from $1,600 2017-09-07
Debian Linux HIGH 7.8
CVE-2017-2870

An exploitable integer overflow vulnerability exists in the tiff_image_parse functionality of Gdk-Pixbuf 2.36.6 when compiled with Clang. A specially…

No fix yet
Fix from $1,950 2017-09-05
Libidn2 CRITICAL 9.8
CVE-2017-14061

Integer overflow in the _isBidi function in bidi.c in Libidn2 before 2.0.4 allows remote attackers to cause a denial of service or possibly have unsp…

Fix: after 2.0.3
Fix from $2,300 2017-08-31
Debian Linux CRITICAL 9.8
CVE-2017-14062

Integer overflow in the decode_digit function in puny_decode.c in Libidn2 before 2.0.4 allows remote attackers to cause a denial of service or possib…

Fix: 2.0.4+
Fix from $2,300 2017-08-31
Openjpeg MEDIUM 6.5
CVE-2016-10507

Integer overflow vulnerability in the bmp24toimage function in convertbmp.c in OpenJPEG before 2.2.0 allows remote attackers to cause a denial of ser…

Fix: after 2.1.2
Fix from $1,600 2017-08-30
Mpg123 MEDIUM 5.5
CVE-2017-12797

Integer overflow in the INT123_parse_new_id3 function in the ID3 parser in mpg123 before 1.25.5 on 32-bit platforms allows remote attackers to cause …

Fix: after 1.25.4
Fix from $1,600 2017-08-29
Debian Linux HIGH 8.8
CVE-2017-5208

Integer overflow in the wrestool program in icoutils before 0.31.1 allows remote attackers to cause a denial of service (memory corruption) via a cra…

Fix: 0.31.1+
Fix from $1,950 2017-08-22
Android CRITICAL 9.8
CVE-2016-5871

In all Qualcomm products with Android releases from CAF using the Linux kernel, an integer overflow to buffer overflow vulnerability exists when load…

Mitigation only
Fix from $2,300 2017-08-18
Android HIGH 7.8
CVE-2017-8255

In all Qualcomm products with Android releases from CAF using the Linux kernel, an integer overflow vulnerability exists in boot.

Patch available
Fix from $1,950 2017-08-18