Vulnerability index

Browse CVEs

3,271 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Integer OverflowCWE-190 × clear
HIGH 7.5 CVE-2019-25005 An issue was discovered in the chacha20 crate before 0.2.3 for Rust. A ChaCha20 counter overflow makes it easier for attackers to determine plaintext. Chacha20 0.2.3+ Fix from $1,9502020-12-31 MEDIUM 6.1 CVE-2020-35738 WavPack 5.3.0 has an out-of-bounds write in WavpackPackSamples in pack_utils.c because of an integer overflow in a malloc argument. NOTE: some third-… Debian Linux Patch available Fix from $1,6002020-12-28 HIGH 7.5 CVE-2020-29361 An issue was discovered in p11-kit 0.21.1 through 0.23.21. Multiple integer overflows have been discovered in the array allocations in the p11-kit li… Debian Linux after 0.23.21 Fix from $1,9502020-12-16 HIGH 7.8 CVE-2020-27051 In NFA_RwI93WriteMultipleBlocks of nfa_rw_api.cc, there is a possible out of bounds write due to an integer overflow. This could lead to local escala… Android Patch available Fix from $1,9502020-12-15 MEDIUM 5.5 CVE-2020-0495 In decode_Huffman of JBig2_SddProc.cpp, there is a possible out of bounds write due to an integer overflow. This could lead to local information disc… Android Mitigation only Fix from $1,6002020-12-15 HIGH 7.8 CVE-2020-35457 GNOME GLib before 2.65.3 has an integer overflow, that might lead to an out-of-bounds write, in g_option_group_add_entries. NOTE: the vendor's positi… Glib 2.65.3+ Fix from $1,9502020-12-14 HIGH 7.8 CVE-2020-0458 In SPDIFEncoder::writeBurstBufferBytes and related methods of SPDIFEncoder.cpp, there is a possible out of bounds write due to an integer overflow. T… Android Patch available Fix from $1,9502020-12-14 HIGH 7.5 CVE-2020-17442 An issue was discovered in picoTCP 1.7.0. The code for parsing the hop-by-hop IPv6 extension headers does not validate the bounds of the extension he… Picotcp after 1.7.0 Fix from $1,9502020-12-11 HIGH 7.5 CVE-2020-17443 An issue was discovered in picoTCP 1.7.0. The code for creating an ICMPv6 echo replies doesn't check whether the ICMPv6 echo request packet's size is… Picotcp after 1.7.0 Fix from $1,9502020-12-11 HIGH 7.5 CVE-2020-17444 An issue was discovered in picoTCP 1.7.0. The routine for processing the next header field (and deducing whether the IPv6 extension headers are valid… Picotcp after 1.7.0 Fix from $1,9502020-12-11 HIGH 7.5 CVE-2020-13985 An issue was discovered in Contiki through 3.0. A memory corruption vulnerability exists in the uIP TCP/IP stack component when handling RPL extensio… Contiki after 3.0 Fix from $1,9502020-12-11 HIGH 7.5 CVE-2020-13988 An issue was discovered in Contiki through 3.0. An Integer Overflow exists in the uIP TCP/IP Stack component when parsing TCP MSS options of IPv4 net… Contiki Ng after 3.0 Fix from $1,9502020-12-11 MEDIUM 5.7 CVE-2020-27350 APT had several integer overflows and underflows while parsing .deb packages, aka GHSL-2020-168 GHSL-2020-169, in files apt-pkg/contrib/extracttar.cc… Advanced Package Tool 1.2.32ubuntu0.2 / 1.6.12ubuntu0.2+ Fix from $1,6002020-12-10 MEDIUM 5.5 CVE-2020-25676 In CatromWeights(), MeshInterpolate(), InterpolatePixelChannel(), InterpolatePixelChannels(), and InterpolatePixelInfo(), which are all functions in … Debian Linux 6.9.10-69 / 7.0.9-0+ Fix from $1,6002020-12-08 HIGH 8.8 CVE-2020-27906 Multiple integer overflows were addressed with improved input validation. This issue is fixed in macOS Big Sur 11.0.1. A remote attacker may be able … macOS 11.0.1+ Fix from $1,9502020-12-08 HIGH 7.8 CVE-2020-27911 An integer overflow was addressed through improved input validation. This issue is fixed in macOS Big Sur 11.0.1, watchOS 7.1, iOS 14.2 and iPadOS 14… Icloud 7.1 / 11.0.1+ Fix from $1,9502020-12-08 HIGH 7.8 CVE-2020-27766 A flaw was found in ImageMagick in MagickCore/statistic.c. An attacker who submits a crafted file that is processed by ImageMagick could trigger unde… Debian Linux 6.9.10-69 / 7.0.8-69+ Fix from $1,9502020-12-04 MEDIUM 5.5 CVE-2020-27770 Due to a missing check for 0 value of `replace_extent`, it is possible for offset `p` to overflow in SubstituteString(), causing potential impact to … Debian Linux 6.9.10-68 / 7.0.8-68+ Fix from $1,6002020-12-04 HIGH 8.1 CVE-2020-25693 A flaw was found in CImg in versions prior to 2.9.3. Integer overflows leading to heap buffer overflows in load_pnm() can be triggered by a specially… Fedora 2.9.3+ Fix from $1,9502020-12-03 MEDIUM 5.5 CVE-2020-27762 A flaw was found in ImageMagick in coders/hdr.c. An attacker who submits a crafted file that is processed by ImageMagick could trigger undefined beha… Debian Linux 6.9.10-68 / 7.0.8-68+ Fix from $1,6002020-12-03 HIGH 7.5 CVE-2020-27813 An integer overflow vulnerability exists with the length of websocket frames received via a websocket connection. An attacker would use this flaw to … Debian Linux 1.4.1+ Fix from $1,9502020-12-02 MEDIUM 5.5 CVE-2020-29384 An issue was discovered in PNGOUT 2020-01-15. When compressing a crafted PNG file, it encounters an integer overflow. Pngout No fix yet Fix from $1,6002020-11-30 MEDIUM 5.5 CVE-2019-14562 Integer overflow in DxeImageVerificationHandler() EDK II may allow an authenticated user to potentially enable denial of service via local access. Debian Linux Mitigation only Fix from $1,6002020-11-23 MEDIUM 6.5 CVE-2019-2392 A user authorized to perform database queries may trigger denial of service by issuing specially crafted queries, which use the $mod operator to over… MongoDB 3.6.20 / 4.0.20+ Fix from $1,6002020-11-23 CRITICAL 9.9 CVE-2020-27484 Garmin Forerunner 235 before 8.20 is affected by: Integer Overflow. The component is: ConnectIQ TVM. The attack vector is: To exploit the vulnerabili… Forerunner 235 Firmware 8.20+ Fix from $2,3002020-11-16 HIGH 7.8 CVE-2020-8760 Integer overflow in subsystem for Intel(R) AMT versions before 11.8.80, 11.12.80, 11.22.80, 12.0.70, 14.0.45 may allow a privileged user to potential… Active Management Technology Firmware 11.8.80 / 11.12.80+ Fix from $1,9502020-11-12 MEDIUM 6.5 CVE-2020-8746 Integer overflow in subsystem for Intel(R) AMT versions before 11.8.80, 11.12.80, 11.22.80, 12.0.70 and 14.0.45 may allow an unauthenticated user to … Active Management Technology Firmware 11.8.80 / 11.12.80+ Fix from $1,6002020-11-12 HIGH 7.8 CVE-2020-11127 u'Integer overflow can cause a buffer overflow due to lack of table length check in the extensible boot Loader during the validation of security meta… Mdm9205 Firmware Mitigation only Fix from $1,9502020-11-12 HIGH 7.8 CVE-2020-11131 u'Possible buffer overflow in WMA message processing due to integer overflow occurs when processing command received from user space' in Snapdragon A… Apq8009 Firmware Mitigation only Fix from $1,9502020-11-12 CRITICAL 9.8 CVE-2020-11184 u'Possible buffer overflow will occur in video while parsing mp4 clip with crafted esds atom size.' in Snapdragon Auto, Snapdragon Compute, Snapdrago… Qcm4290 Firmware Mitigation only Fix from $2,3002020-11-12