CWE-680 · 98 записей
Integer Overflow to Buffer Overflow
CVE этого класса
98 записей
| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
44В плане | CVE-2021-40417Эксплойта нет | When parsing a file that is submitted to the DPDecoder service as a job, the service will use the combination of decoding parameters that weblackmagicdesign · davinci resolve · CWE-680 | Критическая9,8 | — | 15,7 % | 22 дек. 2021 г. |
42В плане | CVE-2018-8787Эксплойта нет | FreeRDP prior to version 2.0.0-rc4 contains an Integer Overflow that leads to a Heap-Based Buffer Overflow in function gdi_Bitmap_Decompressfreerdp · freerdp · CWE-680 | Критическая9,8 | — | 8,4 % | 29 нояб. 2018 г. |
41В плане | CVE-2018-8786Эксплойта нет | FreeRDP prior to version 2.0.0-rc4 contains an Integer Truncation that leads to a Heap-Based Buffer Overflow in function update_read_bitmap_freerdp · freerdp · CWE-680 | Критическая9,8 | — | 8,2 % | 29 нояб. 2018 г. |
41В плане | CVE-2018-8795Эксплойта нет | rdesktop versions up to and including v1.8.3 contain an Integer Overflow that leads to a Heap-Based Buffer Overflow in function process_bitmrdesktop · rdesktop · CWE-680 | Критическая9,8 | — | 7,4 % | 5 февр. 2019 г. |
41В плане | CVE-2018-8794Эксплойта нет | rdesktop versions up to and including v1.8.3 contain an Integer Overflow that leads to an Out-Of-Bounds Write in function process_bitmap_updrdesktop · rdesktop · CWE-680 | Критическая9,8 | — | 6,7 % | 5 февр. 2019 г. |
41В плане | CVE-2020-13576Эксплойта нет | A code execution vulnerability exists in the WS-Addressing plugin functionality of Genivia gSOAP 2.8.107.genivia · gsoap · CWE-680 | Критическая9,8 | — | 5,9 % | 10 февр. 2021 г. |
41В плане | CVE-2021-21783Эксплойта нет | A code execution vulnerability exists in the WS-Addressing plugin functionality of Genivia gSOAP 2.8.107.genivia · gsoap · CWE-680 | Критическая9,8 | — | 5,3 % | 25 мар. 2021 г. |
40В плане | CVE-2020-6116Эксплойта нет | An arbitrary code execution vulnerability exists in the rendering functionality of Nitro Software, Inc.’s Nitro Pro 13.13.2.242.gonitro · nitro pro · CWE-680 | Высокая7,8 | — | 28,4 % | 17 сент. 2020 г. |
39Наблюдать | CVE-2021-21832Эксплойта нет | A memory corruption vulnerability exists in the ISO Parsing functionality of Disc Soft Ltd Deamon Tools Pro 8.3.0.0767.disc-soft · daemon tools · CWE-680 | Критическая9,8 | — | 1,2 % | 17 авг. 2021 г. |
39Наблюдать | CVE-2024-33078Эксплойта нет | Tencent Libpag v4.3 is vulnerable to Buffer Overflow.tencent · libpag · CWE-680 | Критическая9,8 | — | 1,1 % | 1 мая 2024 г. |
39Наблюдать | CVE-2022-35289Эксплойта нет | A write-what-where condition in hermes caused by an integer overflow, prior to commit 5b6255ae049fa4641791e47fad994e8e8c4da374 allows attackfacebook · hermes · CWE-680 | Критическая9,8 | — | 1,0 % | 10 окт. 2022 г. |
39Наблюдать | CVE-2025-54952Эксплойта нет | An integer overflow vulnerability in the loading of ExecuTorch models can cause smaller-than-expected memory regions to be allocated, potentmeta platforms, inc · executorch · CWE-680 | Критическая9,8 | — | 0,6 % | 7 авг. 2025 г. |
39Наблюдать | CVE-2026-8376Эксплойта нет | Perl versions before 5.40.5-RC1, from 5.41.0 before 5.42.3-RC1, from 5.43.0 before 5.43.11 have a heap buffer overflow when compiling regular expressions with aperl · perl · CWE-680 | Критическая9,8 | — | 0,5 % | 25 мая 2026 г. |
37Наблюдать | CVE-2021-30354Эксплойта нет | Amazon Kindle e-reader prior to and including version 5.13.4 contains an Integer Overflow that leads to a Heap-Based Buffer Overflow in funcamazon · kindle firmware · CWE-680 | Высокая8,6 | — | 8,4 % | 1 сент. 2021 г. |
36Наблюдать | CVE-2021-32625Эксплойта нет | Redis vulnerability in STRALGO LCS on 32-bit systemsredislabs · redis · CWE-680 | Высокая8,8 | — | 4,1 % | 2 июн. 2021 г. |
36Наблюдать | CVE-2019-5087Эксплойта нет | An exploitable integer overflow vulnerability exists in the flattenIncrementally function in the xcf2png and xcf2pnm binaries of xcftools 1.xcftools project · xcftools · CWE-680 | Высокая8,8 | — | 3,6 % | 21 нояб. 2019 г. |
36Наблюдать | CVE-2019-5086Эксплойта нет | An exploitable integer overflow vulnerability exists in the flattenIncrementally function in the xcf2png and xcf2pnm binaries of xcftools, vxcftools project · xcftools · CWE-680 | Высокая8,8 | — | 3,2 % | 21 нояб. 2019 г. |
36Наблюдать | CVE-2021-21843Эксплойта нет | Multiple exploitable integer overflow vulnerabilities exist within the MPEG-4 decoding functionality of the GPAC Project on Advanced Contentgpac · gpac · CWE-680 | Высокая8,8 | — | 2,0 % | 18 авг. 2021 г. |
36Наблюдать | CVE-2021-21845Эксплойта нет | Multiple exploitable integer overflow vulnerabilities exist within the MPEG-4 decoding functionality of the GPAC Project on Advanced Contentgpac · gpac · CWE-680 | Высокая8,8 | — | 2,0 % | 18 авг. 2021 г. |
36Наблюдать | CVE-2021-21838Эксплойта нет | Multiple exploitable integer overflow vulnerabilities exist within the MPEG-4 decoding functionality of the GPAC Project on Advanced Contentgpac · gpac · CWE-680 | Высокая8,8 | — | 2,0 % | 18 авг. 2021 г. |
36Наблюдать | CVE-2021-21839Эксплойта нет | Multiple exploitable integer overflow vulnerabilities exist within the MPEG-4 decoding functionality of the GPAC Project on Advanced Contentgpac · gpac · CWE-680 | Высокая8,8 | — | 2,0 % | 18 авг. 2021 г. |
36Наблюдать | CVE-2021-21846Эксплойта нет | Multiple exploitable integer overflow vulnerabilities exist within the MPEG-4 decoding functionality of the GPAC Project on Advanced Contentgpac · gpac · CWE-680 | Высокая8,8 | — | 2,0 % | 18 авг. 2021 г. |
36Наблюдать | CVE-2021-21837Эксплойта нет | Multiple exploitable integer overflow vulnerabilities exist within the MPEG-4 decoding functionality of the GPAC Project on Advanced Contentgpac · gpac · CWE-680 | Высокая8,8 | — | 2,0 % | 18 авг. 2021 г. |
36Наблюдать | CVE-2021-21852Эксплойта нет | Multiple exploitable integer overflow vulnerabilities exist within the MPEG-4 decoding functionality of the GPAC Project on Advanced Contentgpac · gpac · CWE-680 | Высокая8,8 | — | 2,0 % | 18 авг. 2021 г. |
36Наблюдать | CVE-2021-21847Эксплойта нет | Multiple exploitable integer overflow vulnerabilities exist within the MPEG-4 decoding functionality of the GPAC Project on Advanced Contentgpac · gpac · CWE-680 | Высокая8,8 | — | 2,0 % | 18 авг. 2021 г. |
- CVE-2021-4041744В плане
When parsing a file that is submitted to the DPDecoder service as a job, the service will use the combination of decoding parameters that we
КритическаяCVSS 9,8Эксплойта нетEPSS 16 %blackmagicdesign · davinci resolve22 дек. 2021 г.
- CVE-2018-878742В плане
FreeRDP prior to version 2.0.0-rc4 contains an Integer Overflow that leads to a Heap-Based Buffer Overflow in function gdi_Bitmap_Decompress
КритическаяCVSS 9,8Эксплойта нетEPSS 8 %freerdp · freerdp29 нояб. 2018 г.
- CVE-2018-878641В плане
FreeRDP prior to version 2.0.0-rc4 contains an Integer Truncation that leads to a Heap-Based Buffer Overflow in function update_read_bitmap_
КритическаяCVSS 9,8Эксплойта нетEPSS 8 %freerdp · freerdp29 нояб. 2018 г.
- CVE-2018-879541В плане
rdesktop versions up to and including v1.8.3 contain an Integer Overflow that leads to a Heap-Based Buffer Overflow in function process_bitm
КритическаяCVSS 9,8Эксплойта нетEPSS 7 %rdesktop · rdesktop5 февр. 2019 г.
- CVE-2018-879441В плане
rdesktop versions up to and including v1.8.3 contain an Integer Overflow that leads to an Out-Of-Bounds Write in function process_bitmap_upd
КритическаяCVSS 9,8Эксплойта нетEPSS 7 %rdesktop · rdesktop5 февр. 2019 г.
- CVE-2020-1357641В плане
A code execution vulnerability exists in the WS-Addressing plugin functionality of Genivia gSOAP 2.8.107.
КритическаяCVSS 9,8Эксплойта нетEPSS 6 %genivia · gsoap10 февр. 2021 г.
- CVE-2021-2178341В плане
A code execution vulnerability exists in the WS-Addressing plugin functionality of Genivia gSOAP 2.8.107.
КритическаяCVSS 9,8Эксплойта нетEPSS 5 %genivia · gsoap25 мар. 2021 г.
- CVE-2020-611640В плане
An arbitrary code execution vulnerability exists in the rendering functionality of Nitro Software, Inc.’s Nitro Pro 13.13.2.242.
ВысокаяCVSS 7,8Эксплойта нетEPSS 28 %gonitro · nitro pro17 сент. 2020 г.
- CVE-2021-2183239Наблюдать
A memory corruption vulnerability exists in the ISO Parsing functionality of Disc Soft Ltd Deamon Tools Pro 8.3.0.0767.
КритическаяCVSS 9,8Эксплойта нетEPSS 1 %disc-soft · daemon tools17 авг. 2021 г.
- CVE-2024-3307839Наблюдать
Tencent Libpag v4.3 is vulnerable to Buffer Overflow.
КритическаяCVSS 9,8Эксплойта нетEPSS 1 %tencent · libpag1 мая 2024 г.
- CVE-2022-3528939Наблюдать
A write-what-where condition in hermes caused by an integer overflow, prior to commit 5b6255ae049fa4641791e47fad994e8e8c4da374 allows attack
КритическаяCVSS 9,8Эксплойта нетEPSS 1 %facebook · hermes10 окт. 2022 г.
- CVE-2025-5495239Наблюдать
An integer overflow vulnerability in the loading of ExecuTorch models can cause smaller-than-expected memory regions to be allocated, potent
КритическаяCVSS 9,8Эксплойта нетEPSS 1 %meta platforms, inc · executorch7 авг. 2025 г.
- CVE-2026-837639Наблюдать
Perl versions before 5.40.5-RC1, from 5.41.0 before 5.42.3-RC1, from 5.43.0 before 5.43.11 have a heap buffer overflow when compiling regular expressions with a
КритическаяCVSS 9,8Эксплойта нетEPSS 0 %perl · perl25 мая 2026 г.
- CVE-2021-3035437Наблюдать
Amazon Kindle e-reader prior to and including version 5.13.4 contains an Integer Overflow that leads to a Heap-Based Buffer Overflow in func
ВысокаяCVSS 8,6Эксплойта нетEPSS 8 %amazon · kindle firmware1 сент. 2021 г.
- CVE-2021-3262536Наблюдать
Redis vulnerability in STRALGO LCS on 32-bit systems
ВысокаяCVSS 8,8Эксплойта нетEPSS 4 %redislabs · redis2 июн. 2021 г.
- CVE-2019-508736Наблюдать
An exploitable integer overflow vulnerability exists in the flattenIncrementally function in the xcf2png and xcf2pnm binaries of xcftools 1.
ВысокаяCVSS 8,8Эксплойта нетEPSS 4 %xcftools project · xcftools21 нояб. 2019 г.
- CVE-2019-508636Наблюдать
An exploitable integer overflow vulnerability exists in the flattenIncrementally function in the xcf2png and xcf2pnm binaries of xcftools, v
ВысокаяCVSS 8,8Эксплойта нетEPSS 3 %xcftools project · xcftools21 нояб. 2019 г.
- CVE-2021-2184336Наблюдать
Multiple exploitable integer overflow vulnerabilities exist within the MPEG-4 decoding functionality of the GPAC Project on Advanced Content
ВысокаяCVSS 8,8Эксплойта нетEPSS 2 %gpac · gpac18 авг. 2021 г.
- CVE-2021-2184536Наблюдать
Multiple exploitable integer overflow vulnerabilities exist within the MPEG-4 decoding functionality of the GPAC Project on Advanced Content
ВысокаяCVSS 8,8Эксплойта нетEPSS 2 %gpac · gpac18 авг. 2021 г.
- CVE-2021-2183836Наблюдать
Multiple exploitable integer overflow vulnerabilities exist within the MPEG-4 decoding functionality of the GPAC Project on Advanced Content
ВысокаяCVSS 8,8Эксплойта нетEPSS 2 %gpac · gpac18 авг. 2021 г.
- CVE-2021-2183936Наблюдать
Multiple exploitable integer overflow vulnerabilities exist within the MPEG-4 decoding functionality of the GPAC Project on Advanced Content
ВысокаяCVSS 8,8Эксплойта нетEPSS 2 %gpac · gpac18 авг. 2021 г.
- CVE-2021-2184636Наблюдать
Multiple exploitable integer overflow vulnerabilities exist within the MPEG-4 decoding functionality of the GPAC Project on Advanced Content
ВысокаяCVSS 8,8Эксплойта нетEPSS 2 %gpac · gpac18 авг. 2021 г.
- CVE-2021-2183736Наблюдать
Multiple exploitable integer overflow vulnerabilities exist within the MPEG-4 decoding functionality of the GPAC Project on Advanced Content
ВысокаяCVSS 8,8Эксплойта нетEPSS 2 %gpac · gpac18 авг. 2021 г.
- CVE-2021-2185236Наблюдать
Multiple exploitable integer overflow vulnerabilities exist within the MPEG-4 decoding functionality of the GPAC Project on Advanced Content
ВысокаяCVSS 8,8Эксплойта нетEPSS 2 %gpac · gpac18 авг. 2021 г.
- CVE-2021-2184736Наблюдать
Multiple exploitable integer overflow vulnerabilities exist within the MPEG-4 decoding functionality of the GPAC Project on Advanced Content
ВысокаяCVSS 8,8Эксплойта нетEPSS 2 %gpac · gpac18 авг. 2021 г.