Vulnerability index

Browse CVEs

3,273 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Integer OverflowCWE-190 × clear
HIGH 8.8 CVE-2017-10954 This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Bitdefender Internet Security Internet Security 2… Internet Security 2018 7.72918+ Fix from $1,9502017-10-31 HIGH 8.8 CVE-2017-5063 A numeric overflow in Skia in Google Chrome prior to 58.0.3029.81 for Linux, Windows, and Mac, and 58.0.3029.83 for Android, allowed a remote attacke… Chrome 58.0.3029.81 / 58.0.3029.83+ Fix from $1,9502017-10-27 MEDIUM 5.5 CVE-2017-15873 The get_next_block function in archival/libarchive/decompress_bunzip2.c in BusyBox 1.27.2 has an Integer Overflow that may lead to a write access vio… Debian Linux Patch available Fix from $1,6002017-10-24 HIGH 7.8 CVE-2017-15587 An integer overflow was discovered in pdf_read_new_xref_section in pdf/pdf-xref.c in Artifex MuPDF 1.11. Mupdf Mitigation only Fix from $1,9502017-10-18 HIGH 8.8 CVE-2017-2888 An exploitable integer overflow vulnerability exists when creating a new RGB Surface in SDL 2.0.5. A specially crafted file can cause an integer over… Ubuntu Linux No fix yet Fix from $1,9502017-10-11 HIGH 7.8 CVE-2017-9683 In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, while flashing a meta image, an integ… Android Mitigation only Fix from $1,9502017-10-10 MEDIUM 5.5 CVE-2017-14861 There is a stack consumption vulnerability in the Exiv2::Internal::stringFormat function of image.cpp in Exiv2 0.26. A Crafted input will lead to a r… Exiv2 No fix yet Fix from $1,6002017-09-29 MEDIUM 5.5 CVE-2015-1526 The media_server component in Android allows remote attackers to cause a denial of service via a crafted application. Android after 4.4.4 Fix from $1,6002017-09-28 HIGH 7.8 CVE-2015-1537 Integer overflow in IHDCP.cpp in the media_server component in Android allows remote attackers to execute arbitrary code via a crafted application. Android after 4.4.4 Fix from $1,9502017-09-28 HIGH 7.8 CVE-2017-14745 The *_get_synthetic_symtab functions in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29, interpret a -1 va… Binutils Patch available Fix from $1,9502017-09-26 CRITICAL 9.8 CVE-2017-14636 Because of an integer overflow in sam2p 0.49.3, a loop executes 0xffffffff times, ending with an invalid read of size 1 in the Image::Indexed::sortPa… Sam2p Mitigation only Fix from $2,3002017-09-22 HIGH 7.5 CVE-2017-9281 An integer overflow (CWE-190) potentially causing an out-of-bounds read (CWE-125) vulnerability in Micro Focus VisiBroker 8.5 can lead to a denial of… Visibroker Mitigation only Fix from $1,9502017-09-21 CRITICAL 9.8 CVE-2017-9282 An integer overflow (CWE-190) led to an out-of-bounds write (CWE-787) on a heap-allocated area, leading to heap corruption in Micro Focus VisiBroker … Visibroker No fix yet Fix from $2,3002017-09-21 HIGH 7.8 CVE-2017-8250 In all Qualcomm products with Android releases from CAF using the Linux kernel, user controlled variables "nr_cmds" and "nr_bos" number are passed ac… Android after 8.0 Fix from $1,9502017-09-21 HIGH 7.8 CVE-2017-8278 In all Qualcomm products with Android releases from CAF using the Linux kernel, while reading audio data from an unspecified driver, a buffer overflo… Android after 8.0 Fix from $1,9502017-09-21 HIGH 7.5 CVE-2017-14629 In sam2p 0.49.3, the in_xpm_reader function in in_xpm.cpp has an integer signedness error, leading to a crash when writing to an out-of-bounds array … Sam2p No fix yet Fix from $1,9502017-09-21 CRITICAL 9.8 CVE-2017-14630 In sam2p 0.49.3, an integer overflow exists in the pcxLoadImage24 function of the file in_pcx.cpp, leading to an invalid write operation. Sam2p No fix yet Fix from $2,3002017-09-21 HIGH 7.0 CVE-2017-9607 The BL1 FWU SMC handling code in ARM Trusted Firmware before 1.4 might allow attackers to write arbitrary data to secure memory, bypass the bl1_plat_… Trusted Firmware A after 1.3 Fix from $1,9502017-09-20 HIGH 7.8 CVE-2015-1527 Integer overflow in IAudioPolicyService.cpp in Android allows local users to gain privileges via a crafted application, aka Android Bug ID 19261727. Android Patch available Fix from $1,9502017-09-15 HIGH 7.8 CVE-2017-14333 The process_version_sections function in readelf.c in GNU Binutils 2.29 allows attackers to cause a denial of service (Integer Overflow, and hang bec… Binutils Mitigation only Fix from $1,9502017-09-12 HIGH 8.8 CVE-2017-14167 Integer overflow in the load_multiboot function in hw/i386/multiboot.c in QEMU (aka Quick Emulator) allows local guest OS users to execute arbitrary … Debian Linux after 2.10.2 Fix from $1,9502017-09-08 MEDIUM 6.5 CVE-2017-14173 In the function ReadTXTImage() in coders/txt.c in ImageMagick 7.0.6-10, an integer overflow might occur for the addition operation "GetQuantumRange(d… Ubuntu Linux Patch available Fix from $1,6002017-09-07 HIGH 7.8 CVE-2017-2870 An exploitable integer overflow vulnerability exists in the tiff_image_parse functionality of Gdk-Pixbuf 2.36.6 when compiled with Clang. A specially… Debian Linux No fix yet Fix from $1,9502017-09-05 CRITICAL 9.8 CVE-2017-14061 Integer overflow in the _isBidi function in bidi.c in Libidn2 before 2.0.4 allows remote attackers to cause a denial of service or possibly have unsp… Libidn2 after 2.0.3 Fix from $2,3002017-08-31 CRITICAL 9.8 CVE-2017-14062 Integer overflow in the decode_digit function in puny_decode.c in Libidn2 before 2.0.4 allows remote attackers to cause a denial of service or possib… Debian Linux 2.0.4+ Fix from $2,3002017-08-31 MEDIUM 6.5 CVE-2016-10507 Integer overflow vulnerability in the bmp24toimage function in convertbmp.c in OpenJPEG before 2.2.0 allows remote attackers to cause a denial of ser… Openjpeg after 2.1.2 Fix from $1,6002017-08-30 MEDIUM 5.5 CVE-2017-12797 Integer overflow in the INT123_parse_new_id3 function in the ID3 parser in mpg123 before 1.25.5 on 32-bit platforms allows remote attackers to cause … Mpg123 after 1.25.4 Fix from $1,6002017-08-29 HIGH 8.8 CVE-2017-5208 Integer overflow in the wrestool program in icoutils before 0.31.1 allows remote attackers to cause a denial of service (memory corruption) via a cra… Debian Linux 0.31.1+ Fix from $1,9502017-08-22 CRITICAL 9.8 CVE-2016-5871 In all Qualcomm products with Android releases from CAF using the Linux kernel, an integer overflow to buffer overflow vulnerability exists when load… Android Mitigation only Fix from $2,3002017-08-18 HIGH 7.8 CVE-2017-8255 In all Qualcomm products with Android releases from CAF using the Linux kernel, an integer overflow vulnerability exists in boot. Android Patch available Fix from $1,9502017-08-18