Top technology
Linux 13140
Google 12536
Microsoft 12379
Oracle 6843
Apple 6692
Adobe 6387
Ibm 6336
Cisco 5759
Debian 3919
Mozilla 2895
Apache 2864
Redhat 2592
HIGH 7.5
CVE-2019-25005
An issue was discovered in the chacha20 crate before 0.2.3 for Rust. A ChaCha20 counter overflow makes it easier for attackers to determine plaintext.
Chacha20
0.2.3+
MEDIUM 6.1
CVE-2020-35738
WavPack 5.3.0 has an out-of-bounds write in WavpackPackSamples in pack_utils.c because of an integer overflow in a malloc argument. NOTE: some third-…
Debian Linux
Patch available
HIGH 7.5
CVE-2020-29361
An issue was discovered in p11-kit 0.21.1 through 0.23.21. Multiple integer overflows have been discovered in the array allocations in the p11-kit li…
Debian Linux
after 0.23.21
HIGH 7.8
CVE-2020-27051
In NFA_RwI93WriteMultipleBlocks of nfa_rw_api.cc, there is a possible out of bounds write due to an integer overflow. This could lead to local escala…
Android
Patch available
MEDIUM 5.5
CVE-2020-0495
In decode_Huffman of JBig2_SddProc.cpp, there is a possible out of bounds write due to an integer overflow. This could lead to local information disc…
Android
Mitigation only
HIGH 7.8
CVE-2020-35457
GNOME GLib before 2.65.3 has an integer overflow, that might lead to an out-of-bounds write, in g_option_group_add_entries. NOTE: the vendor's positi…
Glib
2.65.3+
HIGH 7.8
CVE-2020-0458
In SPDIFEncoder::writeBurstBufferBytes and related methods of SPDIFEncoder.cpp, there is a possible out of bounds write due to an integer overflow. T…
Android
Patch available
HIGH 7.5
CVE-2020-17442
An issue was discovered in picoTCP 1.7.0. The code for parsing the hop-by-hop IPv6 extension headers does not validate the bounds of the extension he…
Picotcp
after 1.7.0
HIGH 7.5
CVE-2020-17443
An issue was discovered in picoTCP 1.7.0. The code for creating an ICMPv6 echo replies doesn't check whether the ICMPv6 echo request packet's size is…
Picotcp
after 1.7.0
HIGH 7.5
CVE-2020-17444
An issue was discovered in picoTCP 1.7.0. The routine for processing the next header field (and deducing whether the IPv6 extension headers are valid…
Picotcp
after 1.7.0
HIGH 7.5
CVE-2020-13985
An issue was discovered in Contiki through 3.0. A memory corruption vulnerability exists in the uIP TCP/IP stack component when handling RPL extensio…
Contiki
after 3.0
HIGH 7.5
CVE-2020-13988
An issue was discovered in Contiki through 3.0. An Integer Overflow exists in the uIP TCP/IP Stack component when parsing TCP MSS options of IPv4 net…
Contiki Ng
after 3.0
MEDIUM 5.7
CVE-2020-27350
APT had several integer overflows and underflows while parsing .deb packages, aka GHSL-2020-168 GHSL-2020-169, in files apt-pkg/contrib/extracttar.cc…
Advanced Package Tool
1.2.32ubuntu0.2 / 1.6.12ubuntu0.2+
MEDIUM 5.5
CVE-2020-25676
In CatromWeights(), MeshInterpolate(), InterpolatePixelChannel(), InterpolatePixelChannels(), and InterpolatePixelInfo(), which are all functions in …
Debian Linux
6.9.10-69 / 7.0.9-0+
HIGH 8.8
CVE-2020-27906
Multiple integer overflows were addressed with improved input validation. This issue is fixed in macOS Big Sur 11.0.1. A remote attacker may be able …
macOS
11.0.1+
HIGH 7.8
CVE-2020-27911
An integer overflow was addressed through improved input validation. This issue is fixed in macOS Big Sur 11.0.1, watchOS 7.1, iOS 14.2 and iPadOS 14…
Icloud
7.1 / 11.0.1+
HIGH 7.8
CVE-2020-27766
A flaw was found in ImageMagick in MagickCore/statistic.c. An attacker who submits a crafted file that is processed by ImageMagick could trigger unde…
Debian Linux
6.9.10-69 / 7.0.8-69+
MEDIUM 5.5
CVE-2020-27770
Due to a missing check for 0 value of `replace_extent`, it is possible for offset `p` to overflow in SubstituteString(), causing potential impact to …
Debian Linux
6.9.10-68 / 7.0.8-68+
HIGH 8.1
CVE-2020-25693
A flaw was found in CImg in versions prior to 2.9.3. Integer overflows leading to heap buffer overflows in load_pnm() can be triggered by a specially…
Fedora
2.9.3+
MEDIUM 5.5
CVE-2020-27762
A flaw was found in ImageMagick in coders/hdr.c. An attacker who submits a crafted file that is processed by ImageMagick could trigger undefined beha…
Debian Linux
6.9.10-68 / 7.0.8-68+
HIGH 7.5
CVE-2020-27813
An integer overflow vulnerability exists with the length of websocket frames received via a websocket connection. An attacker would use this flaw to …
Debian Linux
1.4.1+
MEDIUM 5.5
CVE-2020-29384
An issue was discovered in PNGOUT 2020-01-15. When compressing a crafted PNG file, it encounters an integer overflow.
Pngout
No fix yet
MEDIUM 5.5
CVE-2019-14562
Integer overflow in DxeImageVerificationHandler() EDK II may allow an authenticated user to potentially enable denial of service via local access.
Debian Linux
Mitigation only
MEDIUM 6.5
CVE-2019-2392
A user authorized to perform database queries may trigger denial of service by issuing specially crafted queries, which use the $mod operator to over…
MongoDB
3.6.20 / 4.0.20+
CRITICAL 9.9
CVE-2020-27484
Garmin Forerunner 235 before 8.20 is affected by: Integer Overflow. The component is: ConnectIQ TVM. The attack vector is: To exploit the vulnerabili…
Forerunner 235 Firmware
8.20+
HIGH 7.8
CVE-2020-8760
Integer overflow in subsystem for Intel(R) AMT versions before 11.8.80, 11.12.80, 11.22.80, 12.0.70, 14.0.45 may allow a privileged user to potential…
Active Management Technology Firmware
11.8.80 / 11.12.80+
MEDIUM 6.5
CVE-2020-8746
Integer overflow in subsystem for Intel(R) AMT versions before 11.8.80, 11.12.80, 11.22.80, 12.0.70 and 14.0.45 may allow an unauthenticated user to …
Active Management Technology Firmware
11.8.80 / 11.12.80+
HIGH 7.8
CVE-2020-11127
u'Integer overflow can cause a buffer overflow due to lack of table length check in the extensible boot Loader during the validation of security meta…
Mdm9205 Firmware
Mitigation only
HIGH 7.8
CVE-2020-11131
u'Possible buffer overflow in WMA message processing due to integer overflow occurs when processing command received from user space' in Snapdragon A…
Apq8009 Firmware
Mitigation only
CRITICAL 9.8
CVE-2020-11184
u'Possible buffer overflow will occur in video while parsing mp4 clip with crafted esds atom size.' in Snapdragon Auto, Snapdragon Compute, Snapdrago…
Qcm4290 Firmware
Mitigation only