Vulnerability index

Browse CVEs

54 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Integer OverflowCWE-190 × clear
Enterprise Linux Desktop HIGH 8.8
CVE-2018-12362

An integer overflow can occur during graphics operations done by the Supplemental Streaming SIMD Extensions 3 (SSSE3) scaler, resulting in a potentia…

Mitigation only
Fix from $1,950 2018-10-18
Virtualization Host HIGH 7.5
CVE-2018-10911

A flaw was found in the way dic_unserialize function of glusterfs does not handle negative key length values. An attacker could use this flaw to read…

Fix: 3.12.14 / 4.1.8+
Fix from $1,950 2018-09-04
Enterprise Linux Desktop HIGH 7.8
CVE-2016-9583

An out-of-bounds heap read vulnerability was found in the jpc_pi_nextpcrl() function of jasper before 2.0.6 when processing crafted input.

Fix: 2.0.6+
Fix from $1,950 2018-08-01
Enterprise Linux Desktop MEDIUM 6.5
CVE-2018-5000EPSS 14%

Adobe Flash Player versions 29.0.0.171 and earlier have an Integer Overflow vulnerability. Successful exploitation could lead to information disclosu…

Fix: after 29.0.0.171
Fix from $1,600 2018-07-09
Virtualization Host HIGH 7.8
CVE-2018-5848

In the function wmi_set_ie(), the length validation code does not handle unsigned integer overflow properly. As a result, a large value of the 'ie_le…

Patch available
Fix from $1,950 2018-06-12
Enterprise Linux Desktop HIGH 7.3
CVE-2018-5144

An integer overflow can occur during conversion of text to some Unicode character sets due to an unchecked length parameter. This vulnerability affec…

Fix: 52.7.0+
Fix from $1,950 2018-06-11
Enterprise Linux CRITICAL 9.8
CVE-2017-5428

An integer overflow in "createImageBitmap()" was reported through the Pwn2Own contest. The fix for this vulnerability disables the experimental exten…

Fix: 52.0.1+
Fix from $2,300 2018-06-11
Virtualization Host CRITICAL 9.8
CVE-2018-11236EPSS 7%

stdlib/canonicalize.c in the GNU C Library (aka glibc or libc6) 2.27 and earlier, when processing very long pathname arguments to the realpath functi…

Fix: after 2.27
Fix from $2,300 2018-05-18
Enterprise Linux Desktop HIGH 7.8
CVE-2018-7643

The display_debug_ranges function in dwarf.c in GNU Binutils 2.30 allows remote attackers to cause a denial of service (integer overflow and applicat…

Mitigation only
Fix from $1,950 2018-03-02
Enterprise Linux Desktop MEDIUM 5.5
CVE-2018-7568

The parse_die function in dwarf1.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.30, allows remote attac…

Patch available
Fix from $1,600 2018-02-28
Enterprise Linux Desktop MEDIUM 5.5
CVE-2018-7569

dwarf2.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.30, allows remote attackers to cause a denial of …

Patch available
Fix from $1,600 2018-02-28
Virtualization Host CRITICAL 9.8
CVE-2018-6485

An integer overflow in the implementation of the posix_memalign in memalign functions in the GNU C Library (aka glibc or libc6) 2.26 and earlier coul…

Fix: after 2.26
Fix from $2,300 2018-02-01
Enterprise Linux HIGH 7.0
CVE-2014-0143

Multiple integer overflows in the block drivers in QEMU, possibly before 2.0.0, allow local users to cause a denial of service (crash) via a crafted …

Fix: after 1.7.1
Fix from $1,950 2017-08-10
Enterprise Linux Desktop MEDIUM 6.5
CVE-2016-5844

Integer overflow in the ISO parser in libarchive before 3.2.1 allows remote attackers to cause a denial of service (application crash) via a crafted …

Patch available
Fix from $1,600 2016-09-21
Enterprise Linux Desktop HIGH 7.8
CVE-2016-4300

Integer overflow in the read_SubStreamsInfo function in archive_read_support_format_7zip.c in libarchive before 3.2.1 allows remote attackers to exec…

Fix: after 3.2.0
Fix from $1,950 2016-09-21
Openshift HIGH 8.8
CVE-2016-5766EPSS 7%

Integer overflow in the _gd2GetHeader function in gd_gd2.c in the GD Graphics Library (aka libgd) before 2.2.3, as used in PHP before 5.5.37, 5.6.x b…

Patch available
Fix from $1,950 2016-08-07
Enterprise Linux Desktop HIGH 7.5
CVE-2016-2105EPSS 40%

Integer overflow in the EVP_EncodeUpdate function in crypto/evp/encode.c in OpenSSL before 1.0.1t and 1.0.2 before 1.0.2h allows remote attackers to …

Fix: after 5.7.12
Fix from $1,950 2016-05-05
Enterprise Linux Desktop HIGH 8.8
CVE-2015-8651 KEVEPSS 68%

Integer overflow in Adobe Flash Player before 18.0.0.324 and 19.x and 20.x before 20.0.0.267 on Windows and OS X and before 11.2.202.559 on Linux, Ad…

Fix: 11.2.202.559 / 18.0.0.324+
Fix from $1,950 2015-12-28
Enterprise Linux Desktop Supplementary HIGH 7.5
CVE-2015-1214

Integer overflow in the SkAutoSTArray implementation in include/core/SkTemplates.h in the filters implementation in Skia, as used in Google Chrome be…

Fix: after 40.0.2214.115
Fix from $1,950 2015-03-09
Enterprise Linux MEDIUM 6.8
CVE-2013-1913

Integer overflow in the load_image function in file-xwd.c in the X Window Dump (XWD) plug-in in GIMP 2.6.9 and earlier, when used with glib before 2.…

Fix: after 2.6.9
Fix from $1,600 2013-12-12
Enterprise Linux Desktop CRITICAL 9.8
CVE-2013-2729 KEVEPSS 67%

Integer overflow in Adobe Reader and Acrobat 9.x before 9.5.5, 10.x before 10.1.7, and 11.x before 11.0.03 allows attackers to execute arbitrary code…

Fix: 9.5.5 / 10.1.7+
Fix from $2,300 2013-05-16
Enterprise Linux Desktop HIGH 10.0
CVE-2013-2555EPSS 8%

Integer overflow in Adobe Flash Player before 10.3.183.75 and 11.x before 11.7.700.169 on Windows and Mac OS X, before 10.3.183.75 and 11.x before 11…

Fix: 10.3.183.75+
Fix from $1,950 2013-03-11
Enterprise Virtualization CRITICAL 9.8
CVE-2013-1591

Stack-based buffer overflow in libpixman, as used in Pale Moon before 15.4 and possibly other products, has unspecified impact and context-dependent …

Fix: 15.4+
Fix from $2,300 2013-01-31
Enterprise Linux Desktop HIGH 9.3
CVE-2012-2036

Integer overflow in Adobe Flash Player before 10.3.183.20 and 11.x before 11.3.300.257 on Windows and Mac OS X; before 10.3.183.20 and 11.x before 11…

Fix: after 11.2.202.235
Fix from $1,950 2012-06-09