Vulnerability index

Browse CVEs

3,273 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Integer OverflowCWE-190 × clear
HIGH 7.8 CVE-2017-0383 An elevation of privilege vulnerability in the Framework APIs could enable a local malicious application to execute arbitrary code within the context… Android Mitigation only Fix from $1,9502017-01-12 HIGH 7.8 CVE-2017-0381 An information disclosure vulnerability in silk/NLSF_stabilize.c in libopus in Mediaserver could enable a local malicious application to access data … Android Patch available Fix from $1,9502017-01-12 CRITICAL 9.8 CVE-2016-8438 Integer overflow leading to a TOCTOU condition in hypervisor PIL. An integer overflow exposes a race condition that may be used to bypass (Peripheral… Linux Kernel Mitigation only Fix from $2,3002017-01-12 CRITICAL 9.8 CVE-2017-5340EPSS 17% Zend/zend_hash.c in PHP before 7.0.15 and 7.1.x before 7.1.1 mishandles certain cases that require large array allocations, which allows remote attac… PHP 7.0.15 / 7.1.1+ Fix from $2,3002017-01-11 HIGH 7.8 CVE-2016-4290 When opening a Hangul HShow Document (.hpt) and processing a structure within the document, Hancom Office 2014 will attempt to allocate space for a b… Hancom Office 2014 after 9.1.0.2176 Fix from $1,9502017-01-06 HIGH 7.8 CVE-2016-4291 When opening a Hangul HShow Document (.hpt) and processing a structure within the document, Hancom Office 2014 will use a field from the structure in… Hancom Office 2014 after 9.1.0.2176 Fix from $1,9502017-01-06 HIGH 7.8 CVE-2016-4298 When opening a Hangul HShow Document (.hpt) and processing a structure within the document, Hancom Office 2014 will attempt to allocate space for a l… Hancom Office 2014 after 9.1.0.2176 Fix from $1,9502017-01-06 CRITICAL 9.8 CVE-2016-8704EPSS 23% An integer overflow in the process_bin_append_prepend function in Memcached, which is responsible for processing multiple commands of Memcached binar… Memcached after 1.4.31 Fix from $2,3002017-01-06 CRITICAL 9.8 CVE-2016-8705EPSS 20% Multiple integer overflows in process_bin_update function in Memcached, which is responsible for processing multiple commands of Memcached binary pro… Memcached after 1.4.31 Fix from $2,3002017-01-06 HIGH 8.1 CVE-2016-8706EPSS 46% An integer overflow in process_bin_sasl_auth function in Memcached, which is responsible for authentication commands of Memcached binary protocol, ca… Memcached after 1.4.31 Fix from $1,9502017-01-06 HIGH 7.5 CVE-2015-7848EPSS 6% An integer overflow can occur in NTP-dev.4.3.70 leading to an out-of-bounds memory copy operation when processing a specially crafted private mode pa… Clustered Data Ontap 4.2.8 / 4.3.77+ Fix from $1,9502017-01-06 HIGH 7.8 CVE-2016-9754 The ring_buffer_resize function in kernel/trace/ring_buffer.c in the profiling subsystem in the Linux kernel before 4.6.1 mishandles certain integer … Linux Kernel 3.10.102 / 3.12.61+ Fix from $1,9502017-01-05 HIGH 7.8 CVE-2016-9031 An exploitable integer overflow exists in the Joyent SmartOS 20161110T013148Z Hyprlofs file system. The vulnerability is present in the Ioctl system … Smartos No fix yet Fix from $1,9502016-12-14 HIGH 8.8 CVE-2016-8733 An exploitable integer overflow exists in the Joyent SmartOS 20161110T013148Z Hyprlofs file system. The vulnerability is present in the Ioctl system … Smartos after 20161110t013148z Fix from $1,9502016-12-14 CRITICAL 9.8 CVE-2016-7951 Multiple integer overflows in X.org libXtst before 1.2.3 allow remote X servers to trigger out-of-bounds memory access operations by leveraging the l… Fedora after 1.2.2 Fix from $2,3002016-12-13 CRITICAL 9.8 CVE-2016-7947 Multiple integer overflows in X.org libXrandr before 1.5.1 allow remote X servers to trigger out-of-bounds write operations via a crafted response. Fedora after 1.5.0 Fix from $2,3002016-12-13 HIGH 7.5 CVE-2016-7945 Multiple integer overflows in X.org libXi before 1.7.7 allow remote X servers to cause a denial of service (out-of-bounds memory access or infinite l… Fedora after 1.7.6 Fix from $1,9502016-12-13 CRITICAL 9.8 CVE-2016-7944 Integer overflow in X.org libXfixes before 5.0.3 on 32-bit platforms might allow remote X servers to gain privileges via a length value of INT_MAX, w… Fedora after 5.0.2 Fix from $2,3002016-12-13 CRITICAL 9.8 CVE-2016-5841EPSS 13% Integer overflow in MagickCore/profile.c in ImageMagick before 7.0.2-1 allows remote attackers to cause a denial of service (segmentation fault) or p… Imagemagick after 7.0.2-0 Fix from $2,3002016-12-13 CRITICAL 9.8 CVE-2016-9427 Integer overflow vulnerability in bdwgc before 2016-09-27 allows attackers to cause client of bdwgc denial of service (heap buffer overflow crash) an… Debian Linux after 7.4.4 Fix from $2,3002016-12-12 HIGH 8.8 CVE-2016-9426 An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-31. Integer overflow vulnerability in the renderTable function in w3m allows r… W3m after 0.5.3-30 Fix from $1,9502016-12-12 HIGH 7.4 CVE-2015-8870 Integer overflow in tools/bmp2tiff.c in LibTIFF before 4.0.4 allows remote attackers to cause a denial of service (heap-based buffer over-read), or p… Libtiff after 4.0.3 Fix from $1,9502016-12-06 HIGH 7.8 CVE-2016-9084 drivers/vfio/pci/vfio_pci_intrs.c in the Linux kernel through 4.8.11 misuses the kzalloc function, which allows local users to cause a denial of serv… Linux Kernel after 4.8.11 Fix from $1,9502016-11-28 HIGH 7.8 CVE-2016-9083 drivers/vfio/pci/vfio_pci.c in the Linux kernel through 4.8.11 allows local users to bypass integer overflow checks, and cause a denial of service (m… Linux Kernel 3.10.107 / 3.12.70+ Fix from $1,9502016-11-28 CRITICAL 9.8 CVE-2016-9538 tools/tiffcrop.c in libtiff 4.0.6 reads an undefined buffer in readContigStripsIntoBuffer() because of a uint16 integer overflow. Reported as MSVR 35… Libtiff Patch available Fix from $2,3002016-11-22 HIGH 7.5 CVE-2016-9277 Integer overflow in SystemUI in KK(4.4) and L(5.0/5.1) on Samsung Note devices allows attackers to cause a denial of service (UI restart) via vectors… Samsung Mobile Mitigation only Fix from $1,9502016-11-11 MEDIUM 5.5 CVE-2016-9189 Pillow before 3.3.2 allows context-dependent attackers to obtain sensitive information by using the "crafted image file" approach, related to an "Int… Pillow after 3.3.1 Fix from $1,6002016-11-04 CRITICAL 9.8 CVE-2016-7990 On Samsung Galaxy S4 through S7 devices, an integer overflow condition exists within libomacp.so when parsing OMACP messages (within WAP Push SMS mes… Android Mitigation only Fix from $2,3002016-10-31 CRITICAL 9.8 CVE-2016-6999EPSS 6% Integer overflow in Adobe Reader and Acrobat before 11.0.18, Acrobat and Acrobat Reader DC Classic before 15.006.30243, and Acrobat and Acrobat Reade… Acrobat after 15.017.20053 Fix from $2,3002016-10-13 HIGH 7.8 CVE-2016-3935 Multiple integer overflows in drivers/crypto/msm/qcedev.c in the Qualcomm cryptographic engine driver in Android before 2016-10-05 on Nexus 5X, Nexus… Android after 7.0 Fix from $1,9502016-10-10