CWE-680 · 98 records
Integer Overflow to Buffer Overflow
CVEs in this class
98 records
| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
44Plan | CVE-2021-40417No exploit | When parsing a file that is submitted to the DPDecoder service as a job, the service will use the combination of decoding parameters that weblackmagicdesign · davinci resolve · CWE-680 | Critical9.8 | — | 15.7% | Dec 22, 2021 |
42Plan | CVE-2018-8787No exploit | FreeRDP prior to version 2.0.0-rc4 contains an Integer Overflow that leads to a Heap-Based Buffer Overflow in function gdi_Bitmap_Decompressfreerdp · freerdp · CWE-680 | Critical9.8 | — | 8.4% | Nov 29, 2018 |
41Plan | CVE-2018-8786No exploit | FreeRDP prior to version 2.0.0-rc4 contains an Integer Truncation that leads to a Heap-Based Buffer Overflow in function update_read_bitmap_freerdp · freerdp · CWE-680 | Critical9.8 | — | 8.2% | Nov 29, 2018 |
41Plan | CVE-2018-8795No exploit | rdesktop versions up to and including v1.8.3 contain an Integer Overflow that leads to a Heap-Based Buffer Overflow in function process_bitmrdesktop · rdesktop · CWE-680 | Critical9.8 | — | 7.4% | Feb 5, 2019 |
41Plan | CVE-2018-8794No exploit | rdesktop versions up to and including v1.8.3 contain an Integer Overflow that leads to an Out-Of-Bounds Write in function process_bitmap_updrdesktop · rdesktop · CWE-680 | Critical9.8 | — | 6.7% | Feb 5, 2019 |
41Plan | CVE-2020-13576No exploit | A code execution vulnerability exists in the WS-Addressing plugin functionality of Genivia gSOAP 2.8.107.genivia · gsoap · CWE-680 | Critical9.8 | — | 5.9% | Feb 10, 2021 |
41Plan | CVE-2021-21783No exploit | A code execution vulnerability exists in the WS-Addressing plugin functionality of Genivia gSOAP 2.8.107.genivia · gsoap · CWE-680 | Critical9.8 | — | 5.3% | Mar 25, 2021 |
40Plan | CVE-2020-6116No exploit | An arbitrary code execution vulnerability exists in the rendering functionality of Nitro Software, Inc.’s Nitro Pro 13.13.2.242.gonitro · nitro pro · CWE-680 | High7.8 | — | 28.4% | Sep 17, 2020 |
39Monitor | CVE-2021-21832No exploit | A memory corruption vulnerability exists in the ISO Parsing functionality of Disc Soft Ltd Deamon Tools Pro 8.3.0.0767.disc-soft · daemon tools · CWE-680 | Critical9.8 | — | 1.2% | Aug 17, 2021 |
39Monitor | CVE-2024-33078No exploit | Tencent Libpag v4.3 is vulnerable to Buffer Overflow.tencent · libpag · CWE-680 | Critical9.8 | — | 1.1% | May 1, 2024 |
39Monitor | CVE-2022-35289No exploit | A write-what-where condition in hermes caused by an integer overflow, prior to commit 5b6255ae049fa4641791e47fad994e8e8c4da374 allows attackfacebook · hermes · CWE-680 | Critical9.8 | — | 1.0% | Oct 10, 2022 |
39Monitor | CVE-2025-54952No exploit | An integer overflow vulnerability in the loading of ExecuTorch models can cause smaller-than-expected memory regions to be allocated, potentmeta platforms, inc · executorch · CWE-680 | Critical9.8 | — | 0.6% | Aug 7, 2025 |
39Monitor | CVE-2026-8376No exploit | Perl versions before 5.40.5-RC1, from 5.41.0 before 5.42.3-RC1, from 5.43.0 before 5.43.11 have a heap buffer overflow when compiling regular expressions with aperl · perl · CWE-680 | Critical9.8 | — | 0.5% | May 25, 2026 |
37Monitor | CVE-2021-30354No exploit | Amazon Kindle e-reader prior to and including version 5.13.4 contains an Integer Overflow that leads to a Heap-Based Buffer Overflow in funcamazon · kindle firmware · CWE-680 | High8.6 | — | 8.4% | Sep 1, 2021 |
36Monitor | CVE-2021-32625No exploit | Redis vulnerability in STRALGO LCS on 32-bit systemsredislabs · redis · CWE-680 | High8.8 | — | 4.1% | Jun 2, 2021 |
36Monitor | CVE-2019-5087No exploit | An exploitable integer overflow vulnerability exists in the flattenIncrementally function in the xcf2png and xcf2pnm binaries of xcftools 1.xcftools project · xcftools · CWE-680 | High8.8 | — | 3.6% | Nov 21, 2019 |
36Monitor | CVE-2019-5086No exploit | An exploitable integer overflow vulnerability exists in the flattenIncrementally function in the xcf2png and xcf2pnm binaries of xcftools, vxcftools project · xcftools · CWE-680 | High8.8 | — | 3.2% | Nov 21, 2019 |
36Monitor | CVE-2021-21843No exploit | Multiple exploitable integer overflow vulnerabilities exist within the MPEG-4 decoding functionality of the GPAC Project on Advanced Contentgpac · gpac · CWE-680 | High8.8 | — | 2.0% | Aug 18, 2021 |
36Monitor | CVE-2021-21845No exploit | Multiple exploitable integer overflow vulnerabilities exist within the MPEG-4 decoding functionality of the GPAC Project on Advanced Contentgpac · gpac · CWE-680 | High8.8 | — | 2.0% | Aug 18, 2021 |
36Monitor | CVE-2021-21838No exploit | Multiple exploitable integer overflow vulnerabilities exist within the MPEG-4 decoding functionality of the GPAC Project on Advanced Contentgpac · gpac · CWE-680 | High8.8 | — | 2.0% | Aug 18, 2021 |
36Monitor | CVE-2021-21839No exploit | Multiple exploitable integer overflow vulnerabilities exist within the MPEG-4 decoding functionality of the GPAC Project on Advanced Contentgpac · gpac · CWE-680 | High8.8 | — | 2.0% | Aug 18, 2021 |
36Monitor | CVE-2021-21846No exploit | Multiple exploitable integer overflow vulnerabilities exist within the MPEG-4 decoding functionality of the GPAC Project on Advanced Contentgpac · gpac · CWE-680 | High8.8 | — | 2.0% | Aug 18, 2021 |
36Monitor | CVE-2021-21837No exploit | Multiple exploitable integer overflow vulnerabilities exist within the MPEG-4 decoding functionality of the GPAC Project on Advanced Contentgpac · gpac · CWE-680 | High8.8 | — | 2.0% | Aug 18, 2021 |
36Monitor | CVE-2021-21852No exploit | Multiple exploitable integer overflow vulnerabilities exist within the MPEG-4 decoding functionality of the GPAC Project on Advanced Contentgpac · gpac · CWE-680 | High8.8 | — | 2.0% | Aug 18, 2021 |
36Monitor | CVE-2021-21847No exploit | Multiple exploitable integer overflow vulnerabilities exist within the MPEG-4 decoding functionality of the GPAC Project on Advanced Contentgpac · gpac · CWE-680 | High8.8 | — | 2.0% | Aug 18, 2021 |
- CVE-2021-4041744Plan
When parsing a file that is submitted to the DPDecoder service as a job, the service will use the combination of decoding parameters that we
CriticalCVSS 9.8No exploitEPSS 16%blackmagicdesign · davinci resolveDec 22, 2021
- CVE-2018-878742Plan
FreeRDP prior to version 2.0.0-rc4 contains an Integer Overflow that leads to a Heap-Based Buffer Overflow in function gdi_Bitmap_Decompress
CriticalCVSS 9.8No exploitEPSS 8%freerdp · freerdpNov 29, 2018
- CVE-2018-878641Plan
FreeRDP prior to version 2.0.0-rc4 contains an Integer Truncation that leads to a Heap-Based Buffer Overflow in function update_read_bitmap_
CriticalCVSS 9.8No exploitEPSS 8%freerdp · freerdpNov 29, 2018
- CVE-2018-879541Plan
rdesktop versions up to and including v1.8.3 contain an Integer Overflow that leads to a Heap-Based Buffer Overflow in function process_bitm
CriticalCVSS 9.8No exploitEPSS 7%rdesktop · rdesktopFeb 5, 2019
- CVE-2018-879441Plan
rdesktop versions up to and including v1.8.3 contain an Integer Overflow that leads to an Out-Of-Bounds Write in function process_bitmap_upd
CriticalCVSS 9.8No exploitEPSS 7%rdesktop · rdesktopFeb 5, 2019
- CVE-2020-1357641Plan
A code execution vulnerability exists in the WS-Addressing plugin functionality of Genivia gSOAP 2.8.107.
CriticalCVSS 9.8No exploitEPSS 6%genivia · gsoapFeb 10, 2021
- CVE-2021-2178341Plan
A code execution vulnerability exists in the WS-Addressing plugin functionality of Genivia gSOAP 2.8.107.
CriticalCVSS 9.8No exploitEPSS 5%genivia · gsoapMar 25, 2021
- CVE-2020-611640Plan
An arbitrary code execution vulnerability exists in the rendering functionality of Nitro Software, Inc.’s Nitro Pro 13.13.2.242.
HighCVSS 7.8No exploitEPSS 28%gonitro · nitro proSep 17, 2020
- CVE-2021-2183239Monitor
A memory corruption vulnerability exists in the ISO Parsing functionality of Disc Soft Ltd Deamon Tools Pro 8.3.0.0767.
CriticalCVSS 9.8No exploitEPSS 1%disc-soft · daemon toolsAug 17, 2021
- CVE-2024-3307839Monitor
Tencent Libpag v4.3 is vulnerable to Buffer Overflow.
CriticalCVSS 9.8No exploitEPSS 1%tencent · libpagMay 1, 2024
- CVE-2022-3528939Monitor
A write-what-where condition in hermes caused by an integer overflow, prior to commit 5b6255ae049fa4641791e47fad994e8e8c4da374 allows attack
CriticalCVSS 9.8No exploitEPSS 1%facebook · hermesOct 10, 2022
- CVE-2025-5495239Monitor
An integer overflow vulnerability in the loading of ExecuTorch models can cause smaller-than-expected memory regions to be allocated, potent
CriticalCVSS 9.8No exploitEPSS 1%meta platforms, inc · executorchAug 7, 2025
- CVE-2026-837639Monitor
Perl versions before 5.40.5-RC1, from 5.41.0 before 5.42.3-RC1, from 5.43.0 before 5.43.11 have a heap buffer overflow when compiling regular expressions with a
CriticalCVSS 9.8No exploitEPSS 0%perl · perlMay 25, 2026
- CVE-2021-3035437Monitor
Amazon Kindle e-reader prior to and including version 5.13.4 contains an Integer Overflow that leads to a Heap-Based Buffer Overflow in func
HighCVSS 8.6No exploitEPSS 8%amazon · kindle firmwareSep 1, 2021
- CVE-2021-3262536Monitor
Redis vulnerability in STRALGO LCS on 32-bit systems
HighCVSS 8.8No exploitEPSS 4%redislabs · redisJun 2, 2021
- CVE-2019-508736Monitor
An exploitable integer overflow vulnerability exists in the flattenIncrementally function in the xcf2png and xcf2pnm binaries of xcftools 1.
HighCVSS 8.8No exploitEPSS 4%xcftools project · xcftoolsNov 21, 2019
- CVE-2019-508636Monitor
An exploitable integer overflow vulnerability exists in the flattenIncrementally function in the xcf2png and xcf2pnm binaries of xcftools, v
HighCVSS 8.8No exploitEPSS 3%xcftools project · xcftoolsNov 21, 2019
- CVE-2021-2184336Monitor
Multiple exploitable integer overflow vulnerabilities exist within the MPEG-4 decoding functionality of the GPAC Project on Advanced Content
HighCVSS 8.8No exploitEPSS 2%gpac · gpacAug 18, 2021
- CVE-2021-2184536Monitor
Multiple exploitable integer overflow vulnerabilities exist within the MPEG-4 decoding functionality of the GPAC Project on Advanced Content
HighCVSS 8.8No exploitEPSS 2%gpac · gpacAug 18, 2021
- CVE-2021-2183836Monitor
Multiple exploitable integer overflow vulnerabilities exist within the MPEG-4 decoding functionality of the GPAC Project on Advanced Content
HighCVSS 8.8No exploitEPSS 2%gpac · gpacAug 18, 2021
- CVE-2021-2183936Monitor
Multiple exploitable integer overflow vulnerabilities exist within the MPEG-4 decoding functionality of the GPAC Project on Advanced Content
HighCVSS 8.8No exploitEPSS 2%gpac · gpacAug 18, 2021
- CVE-2021-2184636Monitor
Multiple exploitable integer overflow vulnerabilities exist within the MPEG-4 decoding functionality of the GPAC Project on Advanced Content
HighCVSS 8.8No exploitEPSS 2%gpac · gpacAug 18, 2021
- CVE-2021-2183736Monitor
Multiple exploitable integer overflow vulnerabilities exist within the MPEG-4 decoding functionality of the GPAC Project on Advanced Content
HighCVSS 8.8No exploitEPSS 2%gpac · gpacAug 18, 2021
- CVE-2021-2185236Monitor
Multiple exploitable integer overflow vulnerabilities exist within the MPEG-4 decoding functionality of the GPAC Project on Advanced Content
HighCVSS 8.8No exploitEPSS 2%gpac · gpacAug 18, 2021
- CVE-2021-2184736Monitor
Multiple exploitable integer overflow vulnerabilities exist within the MPEG-4 decoding functionality of the GPAC Project on Advanced Content
HighCVSS 8.8No exploitEPSS 2%gpac · gpacAug 18, 2021