Vulnerability index

Browse CVEs

54 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Integer OverflowCWE-190 × clear
HIGH 8.8 CVE-2018-12362 An integer overflow can occur during graphics operations done by the Supplemental Streaming SIMD Extensions 3 (SSSE3) scaler, resulting in a potentia… Enterprise Linux Desktop Mitigation only Fix from $1,9502018-10-18 HIGH 7.5 CVE-2018-10911 A flaw was found in the way dic_unserialize function of glusterfs does not handle negative key length values. An attacker could use this flaw to read… Virtualization Host 3.12.14 / 4.1.8+ Fix from $1,9502018-09-04 HIGH 7.8 CVE-2016-9583 An out-of-bounds heap read vulnerability was found in the jpc_pi_nextpcrl() function of jasper before 2.0.6 when processing crafted input. Enterprise Linux Desktop 2.0.6+ Fix from $1,9502018-08-01 MEDIUM 6.5 CVE-2018-5000EPSS 14% Adobe Flash Player versions 29.0.0.171 and earlier have an Integer Overflow vulnerability. Successful exploitation could lead to information disclosu… Enterprise Linux Desktop after 29.0.0.171 Fix from $1,6002018-07-09 HIGH 7.8 CVE-2018-5848 In the function wmi_set_ie(), the length validation code does not handle unsigned integer overflow properly. As a result, a large value of the 'ie_le… Virtualization Host Patch available Fix from $1,9502018-06-12 HIGH 7.3 CVE-2018-5144 An integer overflow can occur during conversion of text to some Unicode character sets due to an unchecked length parameter. This vulnerability affec… Enterprise Linux Desktop 52.7.0+ Fix from $1,9502018-06-11 CRITICAL 9.8 CVE-2017-5428 An integer overflow in "createImageBitmap()" was reported through the Pwn2Own contest. The fix for this vulnerability disables the experimental exten… Enterprise Linux 52.0.1+ Fix from $2,3002018-06-11 CRITICAL 9.8 CVE-2018-11236EPSS 7% stdlib/canonicalize.c in the GNU C Library (aka glibc or libc6) 2.27 and earlier, when processing very long pathname arguments to the realpath functi… Virtualization Host after 2.27 Fix from $2,3002018-05-18 HIGH 7.8 CVE-2018-7643 The display_debug_ranges function in dwarf.c in GNU Binutils 2.30 allows remote attackers to cause a denial of service (integer overflow and applicat… Enterprise Linux Desktop Mitigation only Fix from $1,9502018-03-02 MEDIUM 5.5 CVE-2018-7568 The parse_die function in dwarf1.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.30, allows remote attac… Enterprise Linux Desktop Patch available Fix from $1,6002018-02-28 MEDIUM 5.5 CVE-2018-7569 dwarf2.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.30, allows remote attackers to cause a denial of … Enterprise Linux Desktop Patch available Fix from $1,6002018-02-28 CRITICAL 9.8 CVE-2018-6485 An integer overflow in the implementation of the posix_memalign in memalign functions in the GNU C Library (aka glibc or libc6) 2.26 and earlier coul… Virtualization Host after 2.26 Fix from $2,3002018-02-01 HIGH 7.0 CVE-2014-0143 Multiple integer overflows in the block drivers in QEMU, possibly before 2.0.0, allow local users to cause a denial of service (crash) via a crafted … Enterprise Linux after 1.7.1 Fix from $1,9502017-08-10 MEDIUM 6.5 CVE-2016-5844 Integer overflow in the ISO parser in libarchive before 3.2.1 allows remote attackers to cause a denial of service (application crash) via a crafted … Enterprise Linux Desktop Patch available Fix from $1,6002016-09-21 HIGH 7.8 CVE-2016-4300 Integer overflow in the read_SubStreamsInfo function in archive_read_support_format_7zip.c in libarchive before 3.2.1 allows remote attackers to exec… Enterprise Linux Desktop after 3.2.0 Fix from $1,9502016-09-21 HIGH 8.8 CVE-2016-5766EPSS 7% Integer overflow in the _gd2GetHeader function in gd_gd2.c in the GD Graphics Library (aka libgd) before 2.2.3, as used in PHP before 5.5.37, 5.6.x b… Openshift Patch available Fix from $1,9502016-08-07 HIGH 7.5 CVE-2016-2105EPSS 40% Integer overflow in the EVP_EncodeUpdate function in crypto/evp/encode.c in OpenSSL before 1.0.1t and 1.0.2 before 1.0.2h allows remote attackers to … Enterprise Linux Desktop after 5.7.12 Fix from $1,9502016-05-05 HIGH 8.8 CVE-2015-8651 KEVEPSS 68% Integer overflow in Adobe Flash Player before 18.0.0.324 and 19.x and 20.x before 20.0.0.267 on Windows and OS X and before 11.2.202.559 on Linux, Ad… Enterprise Linux Desktop 11.2.202.559 / 18.0.0.324+ Fix from $1,9502015-12-28 HIGH 7.5 CVE-2015-1214 Integer overflow in the SkAutoSTArray implementation in include/core/SkTemplates.h in the filters implementation in Skia, as used in Google Chrome be… Enterprise Linux Desktop Supplementary after 40.0.2214.115 Fix from $1,9502015-03-09 MEDIUM 6.8 CVE-2013-1913 Integer overflow in the load_image function in file-xwd.c in the X Window Dump (XWD) plug-in in GIMP 2.6.9 and earlier, when used with glib before 2.… Enterprise Linux after 2.6.9 Fix from $1,6002013-12-12 CRITICAL 9.8 CVE-2013-2729 KEVEPSS 67% Integer overflow in Adobe Reader and Acrobat 9.x before 9.5.5, 10.x before 10.1.7, and 11.x before 11.0.03 allows attackers to execute arbitrary code… Enterprise Linux Desktop 9.5.5 / 10.1.7+ Fix from $2,3002013-05-16 HIGH 10.0 CVE-2013-2555EPSS 8% Integer overflow in Adobe Flash Player before 10.3.183.75 and 11.x before 11.7.700.169 on Windows and Mac OS X, before 10.3.183.75 and 11.x before 11… Enterprise Linux Desktop 10.3.183.75+ Fix from $1,9502013-03-11 CRITICAL 9.8 CVE-2013-1591 Stack-based buffer overflow in libpixman, as used in Pale Moon before 15.4 and possibly other products, has unspecified impact and context-dependent … Enterprise Virtualization 15.4+ Fix from $2,3002013-01-31 HIGH 9.3 CVE-2012-2036 Integer overflow in Adobe Flash Player before 10.3.183.20 and 11.x before 11.3.300.257 on Windows and Mac OS X; before 10.3.183.20 and 11.x before 11… Enterprise Linux Desktop after 11.2.202.235 Fix from $1,9502012-06-09