İçeriğe atla
Noroxi

CWE-682 · 122 kayıt

Incorrect Calculation

Bu sınıftaki CVE’ler

122 kayıt

  • CVE-2022-30780
    47Planlayın

    Lighttpd 1.4.56 through 1.4.58 allows a remote attacker to cause a denial of service (CPU consumption from stuck connections) because connec

    YüksekCVSS 7,5Kavram kanıtıEPSS %57

    lighttpd · lighttpd11 Haz 2022

  • CVE-2018-8319
    41Planlayın

    A Security Feature Bypass vulnerability exists in MSR JavaScript Cryptography Library that is caused by incorrect arithmetic computations, a

    KritikCVSS 9,8İstismar yokEPSS %8

    microsoft · research javascript cryptography library10 Tem 2018

  • CVE-2022-30600
    41Planlayın

    A flaw was found in moodle where logic used to count failed login attempts could result in the account lockout threshold being bypassed.

    KritikCVSS 9,8Kavram kanıtıEPSS %5

    moodle · moodle18 May 2022

  • CVE-2021-44847
    40Planlayın

    A stack-based buffer overflow in handle_request function in DHT.c in toxcore 0.1.9 through 0.1.11 and 0.2.0 through 0.2.12 (caused by an imp

    KritikCVSS 9,8İstismar yokEPSS %4

    toktok · toxcore12 Ara 2021

  • CVE-2024-36736
    39İzleyin

    An issue in the oneflow.permute component of OneFlow-Inc.

    KritikCVSS 9,8İstismar yokEPSS %1

    oneflow · oneflow6 Haz 2024

  • CVE-2020-0221
    39İzleyin

    Airbrush FW's scratch memory allocator is susceptible to numeric overflow.

    KritikCVSS 9,8İstismar yokEPSS %0

    google · android14 May 2020

  • CVE-2026-16363
    39İzleyin

    JIT miscompilation in the JavaScript: WebAssembly component

    KritikCVSS 9,8İstismar yokEPSS %0

    mozilla · firefox21 Tem 2026

  • CVE-2023-35641
    37İzleyin

    Internet Connection Sharing (ICS) Remote Code Execution Vulnerability

    YüksekCVSS 8,8İstismar yokEPSS %7

    microsoft · windows 10 150712 Ara 2023

  • CVE-2020-0022
    37İzleyin

    In reassemble_and_dispatch of packet_fragmenter.cc, there is possible out of bounds write due to an incorrect bounds calculation.

    YüksekCVSS 8,8Kavram kanıtıEPSS %6

    google · android13 Şub 2020

  • CVE-2022-23066
    37İzleyin

    Solana rBPF - Incorrect Calculation in sdiv instruction

    KritikCVSS 9,1İstismar yokEPSS %3

    solana · rbpf9 May 2022

  • CVE-2026-53670
    37İzleyin

    PREVAIL: Non-singleton typeset in add() skips offset update, allowing OOB access to pass eBPF verification

    KritikCVSS 9,3İstismar yokEPSS %1

    vbpf · prevail2 Eyl 2026

  • CVE-2026-53671
    37İzleyin

    PREVAIL: Context-write no-op in do_mem_store allows unsafe eBPF programs to pass verification

    KritikCVSS 9,3İstismar yokEPSS %1

    vbpf · prevail2 Eyl 2026

  • CVE-2021-45960
    36İzleyin

    In Expat (aka libexpat) before 2.4.3, a left shift by 29 (or more) places in the storeAtts function in xmlparse.c can lead to realloc misbeh

    YüksekCVSS 8,8Kavram kanıtıEPSS %4

    libexpat project · libexpat1 Oca 2022

  • CVE-2023-2163
    36İzleyin

    Incorrect Verifier Branch Pruning Logic Leads To Arbitrary Read/Write In Linux Kernel and Lateral Privilege Escalation

    YüksekCVSS 8,8Kavram kanıtıEPSS %4

    linux · linux kernel20 Eyl 2023

  • CVE-2017-8326
    36İzleyin

    libimageworsener.a in ImageWorsener before 1.3.1 has "left shift cannot be represented in type int" undefined behavior issues, which might a

    YüksekCVSS 8,8İstismar yokEPSS %2

    entropymine · imageworsener29 Nis 2017

  • CVE-2026-44498
    36İzleyin

    ZEBRA: Block Validator Undercounts Coinbase and P2SH Sigops

    KritikCVSS 9,2İstismar yokEPSS %0

    zfnd · zebrad8 May 2026

  • CVE-2019-16346
    35İzleyin

    ngiflib 0.4 has a heap-based buffer overflow in WritePixel() in ngiflib.c when called from DecodeGifImg, because deinterlacing for small pic

    YüksekCVSS 8,8İstismar yokEPSS %2

    miniupnp project · ngiflib16 Eyl 2019

  • CVE-2022-28048
    35İzleyin

    STB v2.27 was discovered to contain an integer shift of invalid size in the component stbi__jpeg_decode_block_prog_ac.

    YüksekCVSS 8,8İstismar yokEPSS %2

    stb project · stb15 Nis 2022

  • CVE-2019-16347
    35İzleyin

    ngiflib 0.4 has a heap-based buffer overflow in WritePixels() in ngiflib.c when called from DecodeGifImg, because deinterlacing for small pi

    YüksekCVSS 8,8İstismar yokEPSS %1

    miniupnp project · ngiflib16 Eyl 2019

  • CVE-2017-13151
    35İzleyin

    A remote code execution vulnerability in the Android media framework (libmpeg2).

    YüksekCVSS 8,8İstismar yokEPSS %1

    google · android6 Ara 2017

  • CVE-2019-5853
    35İzleyin

    Inappropriate implementation in JavaScript in Google Chrome prior to 76.0.3809.87 allowed a remote attacker to potentially exploit heap corr

    YüksekCVSS 8,8İstismar yokEPSS %1

    google · chrome25 Kas 2019

  • CVE-2026-53706
    35İzleyin

    PREVAIL: ALU32 pointer arithmetic accepted without is64 gate — verifier emits false PASS for pointer-corrupting programs

    YüksekCVSS 8,8İstismar yokEPSS %1

    vbpf · prevail2 Eyl 2026

  • CVE-2017-12134
    35İzleyin

    The xen_biovec_phys_mergeable function in drivers/xen/biomerge.c in Xen might allow local OS guest users to corrupt block device data stream

    YüksekCVSS 8,8İstismar yokEPSS %0

    xen · xen24 Ağu 2017

  • CVE-2025-5372
    35İzleyin

    Libssh: incorrect return code handling in ssh_kdf() in libssh

    YüksekCVSS 8,8İstismar yokEPSS %0

    libssh · libssh4 Tem 2025

  • CVE-2017-12135
    35İzleyin

    Xen allows local OS guest users to cause a denial of service (crash) or possibly obtain sensitive information or gain privileges via vectors

    YüksekCVSS 8,8İstismar yokEPSS %0

    xen · xen24 Ağu 2017

Tüm zafiyet sınıfları