Vulnerability index

Browse CVEs

3,255 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Integer OverflowCWE-190 × clear
HIGH 8.8 CVE-2023-40474 GStreamer MXF File Parsing Integer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code… Gstreamer 1.22.6+ Fix from $1,9502024-05-03 HIGH 8.8 CVE-2023-38103 GStreamer RealMedia File Parsing Integer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrar… Gstreamer Patch available Fix from $1,9502024-05-03 HIGH 8.8 CVE-2023-38104 GStreamer RealMedia File Parsing Integer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrar… Gstreamer Patch available Fix from $1,9502024-05-03 HIGH 8.8 CVE-2023-37327 GStreamer FLAC File Parsing Integer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary cod… Gstreamer 1.20.7 / 1.22.4+ Fix from $1,9502024-05-03 HIGH 8.6 CVE-2024-34402 An issue was discovered in uriparser through 0.9.7. ComposeQueryEngine in UriQuery.c has an integer overflow via long keys or values, with a resultan… Fedora after 0.9.7 Fix from $1,9502024-05-03 MEDIUM 5.9 CVE-2024-34403 An issue was discovered in uriparser through 0.9.7. ComposeQueryMallocExMm in UriQuery.c has an integer overflow via a long string. Fedora after 0.9.7 Fix from $1,6002024-05-03 CRITICAL 9.8 CVE-2023-47212 A heap-based buffer overflow vulnerability exists in the comment functionality of stb _vorbis.c v1.22. A specially crafted .ogg file can lead to an o… Fedora No fix yet Fix from $2,3002024-05-01 HIGH 8.2 CVE-2024-21905 An integer overflow or wraparound vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability c… Qts 5.1.3.2578+ Fix from $1,9502024-04-26 CRITICAL 9.8 CVE-2024-32039 FreeRDP is a free implementation of the Remote Desktop Protocol. FreeRDP based clients using a version of FreeRDP prior to 3.5.0 or 2.11.6 are vulner… Fedora 2.11.6 / 3.5.0+ Fix from $2,3002024-04-22 HIGH 7.5 CVE-2024-23531 An Integer Overflow vulnerability in WLInfoRailService component of Ivanti Avalanche before 6.4.3 allows an unauthenticated remote attacker to perfor… Avalanche 6.4.3.528+ Fix from $1,9502024-04-19 HIGH 7.5 CVE-2024-31031 An issue in `coap_pdu.c` in libcoap 4.3.4 allows attackers to cause undefined behavior via a sequence of messages leading to unsigned integer overflo… Fedora No fix yet Fix from $1,9502024-04-17 HIGH 7.8 CVE-2024-26884 In the Linux kernel, the following vulnerability has been resolved: bpf: Fix hashtab overflow check on 32-bit arches The hashtab code relies on rou… Linux Kernel 4.19.311 / 5.4.273+ Fix from $1,9502024-04-17 MEDIUM 5.9 CVE-2024-3859 On 32-bit versions there were integer-overflows that led to an out-of-bounds-read that potentially could be triggered by a malformed OpenType font. T… Firefox 115.10 / 125.0+ Fix from $1,6002024-04-16 MEDIUM 5.5 CVE-2024-26817 In the Linux kernel, the following vulnerability has been resolved: amdkfd: use calloc instead of kzalloc to avoid integer overflow This uses callo… Linux Kernel 4.19.312 / 5.4.274+ Fix from $1,6002024-04-13 HIGH 7.8 CVE-2024-20795 Animate versions 23.0.4, 24.0.1 and earlier are affected by an Integer Overflow or Wraparound vulnerability that could result in arbitrary code execu… Animate 23.0.5 / 24.0.2+ Fix from $1,9502024-04-11 HIGH 8.8 CVE-2024-28942 Microsoft OLE DB Driver for SQL Server Remote Code Execution Vulnerability Ole Db Driver For Sql Server 15.0.2110.4 / 15.0.4360.2+ Fix from $1,9502024-04-09 HIGH 8.8 CVE-2024-28936 Microsoft ODBC Driver for SQL Server Remote Code Execution Vulnerability Odbc Driver For Sql Server 15.0.2110.4 / 15.0.4360.2+ Fix from $1,9502024-04-09 HIGH 8.8 CVE-2024-28931 Microsoft ODBC Driver for SQL Server Remote Code Execution Vulnerability Odbc Driver For Sql Server 15.0.2110.4 / 15.0.4360.2+ Fix from $1,9502024-04-09 HIGH 8.8 CVE-2024-28929 Microsoft ODBC Driver for SQL Server Remote Code Execution Vulnerability Odbc Driver For Sql Server 15.0.2110.4 / 15.0.4360.2+ Fix from $1,9502024-04-09 MEDIUM 6.4 CVE-2024-28923 Secure Boot Security Feature Bypass Vulnerability Windows 10 1507 10.0.10240.20596 / 10.0.14393.6897+ Fix from $1,6002024-04-09 MEDIUM 6.7 CVE-2024-26171 Secure Boot Security Feature Bypass Vulnerability Windows 10 1507 10.0.10240.20596 / 10.0.14393.6897+ Fix from $1,6002024-04-09 MEDIUM 5.5 CVE-2024-26668 In the Linux kernel, the following vulnerability has been resolved: netfilter: nft_limit: reject configurations that cause integer overflow Reject … Linux Kernel 5.15.149 / 6.1.76+ Fix from $1,6002024-04-02 HIGH 7.8 CVE-2024-21470 Memory corruption while allocating memory for graphics. Aqt1000 Firmware No fix yet Fix from $1,9502024-04-01 HIGH 7.5 CVE-2024-21454 Transient DOS while decoding the ToBeSignedMessage in Automotive Telematics. C V2x 9150 Firmware No fix yet Fix from $1,9502024-04-01 MEDIUM 6.6 CVE-2024-20046 In battery, there is a possible escalation of privilege due to an integer overflow. This could lead to local escalation of privilege with System exec… Android Mitigation only Fix from $1,6002024-04-01 MEDIUM 5.4 CVE-2024-20047 In battery, there is a possible out of bounds read due to an integer overflow. This could lead to local information disclosure with System execution … Android Mitigation only Fix from $1,6002024-04-01 MEDIUM 6.5 CVE-2024-3077 An malicious BLE device can crash BLE victim device by sending malformed gatt packet Zephyr after 3.6.0 Fix from $1,6002024-03-29 HIGH 7.8 CVE-2024-2212 In Eclipse ThreadX before 6.4.0, xQueueCreate() and xQueueCreateSet() functions from the FreeRTOS compatibility API (utility/rtos_compatibility_la… Threadx 6.4.0+ Fix from $1,9502024-03-26 CRITICAL 9.8 CVE-2024-2452 In Eclipse ThreadX NetX Duo before 6.4.0, if an attacker can control parameters of __portable_aligned_alloc() could cause an integer wrap-around an… Threadx Netx Duo 6.4.0+ Fix from $2,3002024-03-26 MEDIUM 5.5 CVE-2021-47109 In the Linux kernel, the following vulnerability has been resolved: neighbour: allow NUD_NOARP entries to be forced GCed IFF_POINTOPOINT interfaces… Linux Kernel 5.4.125 / 5.10.43+ Fix from $1,6002024-03-15