İçeriğe atla
Noroxi

CWE-189 · 1.236 kayıt

Numeric Errors

Bu sınıftaki CVE’ler

1.238 kayıt

  • CVE-2013-2094
    77Bu hafta

    The perf_swevent_init function in kernel/events/core.c in the Linux kernel before 3.8.9 uses an incorrect integer data type, which allows lo

    YüksekCVSS 8,4KEVSilahlaştırılmışEPSS %48

    linux · linux kernel14 May 2013

  • CVE-2015-1538
    70Bu hafta

    Integer overflow in the SampleTable::setSampleToChunkParams function in SampleTable.cpp in libstagefright in Android before 5.1.1 LMY48I all

    KritikCVSS 10,0Kavram kanıtıEPSS %99

    google · android30 Eyl 2015

  • CVE-2015-3829
    67Bu hafta

    Off-by-one error in the MPEG4Extractor::parseChunk function in MPEG4Extractor.cpp in libstagefright in Android before 5.1.1 LMY48I allows re

    KritikCVSS 10,0İstismar yokEPSS %90

    google · android30 Eyl 2015

  • CVE-2015-3864
    66Bu hafta

    Integer underflow in the MPEG4Extractor::parseChunk function in MPEG4Extractor.cpp in libstagefright in mediaserver in Android before 5.1.1

    KritikCVSS 10,0SilahlaştırılmışEPSS %87

    google · android30 Eyl 2015

  • CVE-2015-1539
    66Bu hafta

    Multiple integer underflows in the ESDS::parseESDescriptor function in ESDS.cpp in libstagefright in Android before 5.1.1 LMY48I allow remot

    KritikCVSS 10,0İstismar yokEPSS %86

    google · android30 Eyl 2015

  • CVE-2007-0071
    65Bu hafta

    Integer overflow in Adobe Flash Player 9.0.115.0 and earlier, and 8.0.39.0 and earlier, allows remote attackers to execute arbitrary code vi

    KritikCVSS 9,3İstismar yokEPSS %93

    adobe · flash player9 Nis 2008

  • CVE-2011-2371
    63Bu hafta

    Integer overflow in the Array.reduceRight method in Mozilla Firefox before 3.6.18 and 4.x through 4.0.1, Thunderbird before 3.1.11, and SeaM

    KritikCVSS 10,0SilahlaştırılmışEPSS %76

    mozilla · seamonkey30 Haz 2011

  • CVE-2012-1182
    62Bu hafta

    The RPC code generator in Samba 3.x before 3.4.16, 3.5.x before 3.5.14, and 3.6.x before 3.6.4 does not implement validation of an array len

    KritikCVSS 10,0SilahlaştırılmışEPSS %74

    samba · samba10 Nis 2012

  • CVE-2015-3087
    62Bu hafta

    Integer overflow in Adobe Flash Player before 13.0.0.289 and 14.x through 17.x before 17.0.0.188 on Windows and OS X and before 11.2.202.460

    KritikCVSS 10,0Kavram kanıtıEPSS %74

    adobe · air13 May 2015

  • CVE-2015-5560
    60Bu hafta

    Integer overflow in Adobe Flash Player before 18.0.0.232 on Windows and OS X and before 11.2.202.508 on Linux, Adobe AIR before 18.0.0.199,

    KritikCVSS 10,0Kavram kanıtıEPSS %66

    adobe · flash player13 Ağu 2015

  • CVE-2006-3747
    59Planlayın

    Off-by-one error in the ldap scheme handling in the Rewrite module (mod_rewrite) in Apache 1.3 from 1.3.28, 2.0.46 and other versions before

    YüksekCVSS 7,6SilahlaştırılmışEPSS %97

    apache · http server28 Tem 2006

  • CVE-2009-2990
    58Planlayın

    Array index error in Adobe Reader and Acrobat 9.x before 9.2, 8.x before 8.1.7, and possibly 7.x through 7.1.4 might allow attackers to exec

    KritikCVSS 9,3SilahlaştırılmışEPSS %69

    adobe · acrobat19 Eki 2009

  • CVE-2008-5159
    58Planlayın

    Integer overflow in the remote administration protocol processing in Client Software WinCom LPD Total 3.0.2.623 and earlier allows remote at

    KritikCVSS 10,0SilahlaştırılmışEPSS %60

    clientsoftware · wincome mpd total18 Kas 2008

  • CVE-2008-0550
    56Planlayın

    Off-by-one error in Steamcast 0.9.75 and earlier allows remote attackers to cause a denial of service (daemon crash) or execute arbitrary co

    KritikCVSS 10,0SilahlaştırılmışEPSS %54

    radio toolbox · steamcast1 Şub 2008

  • CVE-2011-0257
    55Planlayın

    Integer signedness error in Apple QuickTime before 7.7 allows remote attackers to execute arbitrary code or cause a denial of service (appli

    KritikCVSS 9,3SilahlaştırılmışEPSS %60

    apple · quicktime15 Ağu 2011

  • CVE-2007-3456
    54Planlayın

    Integer overflow in Adobe Flash Player 9.0.45.0 and earlier might allow remote attackers to execute arbitrary code via a large length value

    KritikCVSS 9,3Kavram kanıtıEPSS %56

    adobe · flash player11 Tem 2007

  • CVE-2007-5348
    53Planlayın

    Integer overflow in GDI+ in Microsoft Internet Explorer 6 SP1, Windows XP SP2 and SP3, Server 2003 SP1 and SP2, Vista Gold and SP1, Server 2

    KritikCVSS 9,3Kavram kanıtıEPSS %53

    microsoft · digital image suite10 Eyl 2008

  • CVE-2007-3034
    53Planlayın

    Integer overflow in the AttemptWrite function in Graphics Rendering Engine (GDI) on Microsoft Windows 2000 SP4, XP SP2, and Server 2003 SP1

    KritikCVSS 9,3Kavram kanıtıEPSS %52

    microsoft · windows 200014 Ağu 2007

  • CVE-2009-2754
    52Planlayın

    Integer signedness error in the authentication functionality in librpc.dll in the Informix Storage Manager (ISM) Portmapper service (aka por

    KritikCVSS 10,0Kavram kanıtıEPSS %40

    ibm · informix dynamic server5 Mar 2010

  • CVE-2015-0135
    52Planlayın

    IBM Domino 8.5 before 8.5.3 FP6 IF4 and 9.0 before 9.0.1 FP3 IF2 allows remote attackers to execute arbitrary code or cause a denial of serv

    KritikCVSS 10,0İstismar yokEPSS %40

    ibm · domino21 Nis 2015

  • CVE-2010-0028
    51Planlayın

    Integer overflow in Microsoft Paint in Windows 2000 SP4, XP SP2 and SP3, and Server 2003 SP2 allows remote attackers to execute arbitrary co

    KritikCVSS 9,3Kavram kanıtıEPSS %48

    microsoft · windows 200010 Şub 2010

  • CVE-2008-3015
    49Planlayın

    Integer overflow in gdiplus.dll in GDI+ in Microsoft Office XP SP3, Office 2003 SP2 and SP3, 2007 Microsoft Office System Gold and SP1, Visi

    KritikCVSS 9,3İstismar yokEPSS %39

    microsoft · digital image suite10 Eyl 2008

  • CVE-2011-2013
    49Planlayın

    Integer overflow in the TCP/IP implementation in Microsoft Windows Vista SP2, Windows Server 2008 SP2, R2, and R2 SP1, and Windows 7 Gold an

    KritikCVSS 9,8Kavram kanıtıEPSS %32

    microsoft · windows 78 Kas 2011

  • CVE-2009-0221
    48Planlayın

    Integer overflow in Microsoft Office PowerPoint 2002 SP3 and 2003 SP3 allows remote attackers to execute arbitrary code via a PowerPoint fil

    KritikCVSS 9,3İstismar yokEPSS %38

    microsoft · office powerpoint12 May 2009

  • CVE-2009-0561
    48Planlayın

    Integer overflow in Excel in Microsoft Office 2000 SP3, Office XP SP3, Office 2003 SP3, and Office 2004 and 2008 for Mac; Excel in 2007 Micr

    KritikCVSS 9,3İstismar yokEPSS %37

    microsoft · office10 Haz 2009

Tüm zafiyet sınıfları