CWE-189 · 1.236 kayıt
Numeric Errors
Bu sınıftaki CVE’ler
1.238 kayıt
| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
77Bu hafta | CVE-2013-2094Silahlaştırılmış | The perf_swevent_init function in kernel/events/core.c in the Linux kernel before 3.8.9 uses an incorrect integer data type, which allows lolinux · linux kernel · CWE-189 | Yüksek8,4 | KEV | %47,7 | 14 May 2013 |
70Bu hafta | CVE-2015-1538Kavram kanıtı | Integer overflow in the SampleTable::setSampleToChunkParams function in SampleTable.cpp in libstagefright in Android before 5.1.1 LMY48I allgoogle · android · CWE-189 | Kritik10,0 | — | %99,1 | 30 Eyl 2015 |
67Bu hafta | CVE-2015-3829İstismar yok | Off-by-one error in the MPEG4Extractor::parseChunk function in MPEG4Extractor.cpp in libstagefright in Android before 5.1.1 LMY48I allows regoogle · android · CWE-189 | Kritik10,0 | — | %89,8 | 30 Eyl 2015 |
66Bu hafta | CVE-2015-3864Silahlaştırılmış | Integer underflow in the MPEG4Extractor::parseChunk function in MPEG4Extractor.cpp in libstagefright in mediaserver in Android before 5.1.1 google · android · CWE-189 | Kritik10,0 | — | %87,1 | 30 Eyl 2015 |
66Bu hafta | CVE-2015-1539İstismar yok | Multiple integer underflows in the ESDS::parseESDescriptor function in ESDS.cpp in libstagefright in Android before 5.1.1 LMY48I allow remotgoogle · android · CWE-189 | Kritik10,0 | — | %85,8 | 30 Eyl 2015 |
65Bu hafta | CVE-2007-0071İstismar yok | Integer overflow in Adobe Flash Player 9.0.115.0 and earlier, and 8.0.39.0 and earlier, allows remote attackers to execute arbitrary code viadobe · flash player · CWE-189 | Kritik9,3 | — | %92,5 | 9 Nis 2008 |
63Bu hafta | CVE-2011-2371Silahlaştırılmış | Integer overflow in the Array.reduceRight method in Mozilla Firefox before 3.6.18 and 4.x through 4.0.1, Thunderbird before 3.1.11, and SeaMmozilla · seamonkey · CWE-189 | Kritik10,0 | — | %75,7 | 30 Haz 2011 |
62Bu hafta | CVE-2012-1182Silahlaştırılmış | The RPC code generator in Samba 3.x before 3.4.16, 3.5.x before 3.5.14, and 3.6.x before 3.6.4 does not implement validation of an array lensamba · samba · CWE-189 | Kritik10,0 | — | %74,4 | 10 Nis 2012 |
62Bu hafta | CVE-2015-3087Kavram kanıtı | Integer overflow in Adobe Flash Player before 13.0.0.289 and 14.x through 17.x before 17.0.0.188 on Windows and OS X and before 11.2.202.460adobe · air · CWE-189 | Kritik10,0 | — | %74,3 | 13 May 2015 |
60Bu hafta | CVE-2015-5560Kavram kanıtı | Integer overflow in Adobe Flash Player before 18.0.0.232 on Windows and OS X and before 11.2.202.508 on Linux, Adobe AIR before 18.0.0.199, adobe · flash player · CWE-189 | Kritik10,0 | — | %66,0 | 13 Ağu 2015 |
59Planlayın | CVE-2006-3747Silahlaştırılmış | Off-by-one error in the ldap scheme handling in the Rewrite module (mod_rewrite) in Apache 1.3 from 1.3.28, 2.0.46 and other versions beforeapache · http server · CWE-189 | Yüksek7,6 | — | %96,6 | 28 Tem 2006 |
58Planlayın | CVE-2009-2990Silahlaştırılmış | Array index error in Adobe Reader and Acrobat 9.x before 9.2, 8.x before 8.1.7, and possibly 7.x through 7.1.4 might allow attackers to execadobe · acrobat · CWE-189 | Kritik9,3 | — | %68,7 | 19 Eki 2009 |
58Planlayın | CVE-2008-5159Silahlaştırılmış | Integer overflow in the remote administration protocol processing in Client Software WinCom LPD Total 3.0.2.623 and earlier allows remote atclientsoftware · wincome mpd total · CWE-189 | Kritik10,0 | — | %59,7 | 18 Kas 2008 |
56Planlayın | CVE-2008-0550Silahlaştırılmış | Off-by-one error in Steamcast 0.9.75 and earlier allows remote attackers to cause a denial of service (daemon crash) or execute arbitrary coradio toolbox · steamcast · CWE-189 | Kritik10,0 | — | %53,8 | 1 Şub 2008 |
55Planlayın | CVE-2011-0257Silahlaştırılmış | Integer signedness error in Apple QuickTime before 7.7 allows remote attackers to execute arbitrary code or cause a denial of service (appliapple · quicktime · CWE-189 | Kritik9,3 | — | %60,1 | 15 Ağu 2011 |
54Planlayın | CVE-2007-3456Kavram kanıtı | Integer overflow in Adobe Flash Player 9.0.45.0 and earlier might allow remote attackers to execute arbitrary code via a large length value adobe · flash player · CWE-189 | Kritik9,3 | — | %56,3 | 11 Tem 2007 |
53Planlayın | CVE-2007-5348Kavram kanıtı | Integer overflow in GDI+ in Microsoft Internet Explorer 6 SP1, Windows XP SP2 and SP3, Server 2003 SP1 and SP2, Vista Gold and SP1, Server 2microsoft · digital image suite · CWE-189 | Kritik9,3 | — | %52,9 | 10 Eyl 2008 |
53Planlayın | CVE-2007-3034Kavram kanıtı | Integer overflow in the AttemptWrite function in Graphics Rendering Engine (GDI) on Microsoft Windows 2000 SP4, XP SP2, and Server 2003 SP1 microsoft · windows 2000 · CWE-189 | Kritik9,3 | — | %51,9 | 14 Ağu 2007 |
52Planlayın | CVE-2009-2754Kavram kanıtı | Integer signedness error in the authentication functionality in librpc.dll in the Informix Storage Manager (ISM) Portmapper service (aka poribm · informix dynamic server · CWE-189 | Kritik10,0 | — | %40,1 | 5 Mar 2010 |
52Planlayın | CVE-2015-0135İstismar yok | IBM Domino 8.5 before 8.5.3 FP6 IF4 and 9.0 before 9.0.1 FP3 IF2 allows remote attackers to execute arbitrary code or cause a denial of servibm · domino · CWE-189 | Kritik10,0 | — | %39,8 | 21 Nis 2015 |
51Planlayın | CVE-2010-0028Kavram kanıtı | Integer overflow in Microsoft Paint in Windows 2000 SP4, XP SP2 and SP3, and Server 2003 SP2 allows remote attackers to execute arbitrary comicrosoft · windows 2000 · CWE-189 | Kritik9,3 | — | %48,3 | 10 Şub 2010 |
49Planlayın | CVE-2008-3015İstismar yok | Integer overflow in gdiplus.dll in GDI+ in Microsoft Office XP SP3, Office 2003 SP2 and SP3, 2007 Microsoft Office System Gold and SP1, Visimicrosoft · digital image suite · CWE-189 | Kritik9,3 | — | %39,3 | 10 Eyl 2008 |
49Planlayın | CVE-2011-2013Kavram kanıtı | Integer overflow in the TCP/IP implementation in Microsoft Windows Vista SP2, Windows Server 2008 SP2, R2, and R2 SP1, and Windows 7 Gold anmicrosoft · windows 7 · CWE-189 | Kritik9,8 | — | %32,3 | 8 Kas 2011 |
48Planlayın | CVE-2009-0221İstismar yok | Integer overflow in Microsoft Office PowerPoint 2002 SP3 and 2003 SP3 allows remote attackers to execute arbitrary code via a PowerPoint filmicrosoft · office powerpoint · CWE-189 | Kritik9,3 | — | %37,9 | 12 May 2009 |
48Planlayın | CVE-2009-0561İstismar yok | Integer overflow in Excel in Microsoft Office 2000 SP3, Office XP SP3, Office 2003 SP3, and Office 2004 and 2008 for Mac; Excel in 2007 Micrmicrosoft · office · CWE-189 | Kritik9,3 | — | %36,9 | 10 Haz 2009 |
- CVE-2013-209477Bu hafta
The perf_swevent_init function in kernel/events/core.c in the Linux kernel before 3.8.9 uses an incorrect integer data type, which allows lo
YüksekCVSS 8,4KEVSilahlaştırılmışEPSS %48linux · linux kernel14 May 2013
- CVE-2015-153870Bu hafta
Integer overflow in the SampleTable::setSampleToChunkParams function in SampleTable.cpp in libstagefright in Android before 5.1.1 LMY48I all
KritikCVSS 10,0Kavram kanıtıEPSS %99google · android30 Eyl 2015
- CVE-2015-382967Bu hafta
Off-by-one error in the MPEG4Extractor::parseChunk function in MPEG4Extractor.cpp in libstagefright in Android before 5.1.1 LMY48I allows re
KritikCVSS 10,0İstismar yokEPSS %90google · android30 Eyl 2015
- CVE-2015-386466Bu hafta
Integer underflow in the MPEG4Extractor::parseChunk function in MPEG4Extractor.cpp in libstagefright in mediaserver in Android before 5.1.1
KritikCVSS 10,0SilahlaştırılmışEPSS %87google · android30 Eyl 2015
- CVE-2015-153966Bu hafta
Multiple integer underflows in the ESDS::parseESDescriptor function in ESDS.cpp in libstagefright in Android before 5.1.1 LMY48I allow remot
KritikCVSS 10,0İstismar yokEPSS %86google · android30 Eyl 2015
- CVE-2007-007165Bu hafta
Integer overflow in Adobe Flash Player 9.0.115.0 and earlier, and 8.0.39.0 and earlier, allows remote attackers to execute arbitrary code vi
KritikCVSS 9,3İstismar yokEPSS %93adobe · flash player9 Nis 2008
- CVE-2011-237163Bu hafta
Integer overflow in the Array.reduceRight method in Mozilla Firefox before 3.6.18 and 4.x through 4.0.1, Thunderbird before 3.1.11, and SeaM
KritikCVSS 10,0SilahlaştırılmışEPSS %76mozilla · seamonkey30 Haz 2011
- CVE-2012-118262Bu hafta
The RPC code generator in Samba 3.x before 3.4.16, 3.5.x before 3.5.14, and 3.6.x before 3.6.4 does not implement validation of an array len
KritikCVSS 10,0SilahlaştırılmışEPSS %74samba · samba10 Nis 2012
- CVE-2015-308762Bu hafta
Integer overflow in Adobe Flash Player before 13.0.0.289 and 14.x through 17.x before 17.0.0.188 on Windows and OS X and before 11.2.202.460
KritikCVSS 10,0Kavram kanıtıEPSS %74adobe · air13 May 2015
- CVE-2015-556060Bu hafta
Integer overflow in Adobe Flash Player before 18.0.0.232 on Windows and OS X and before 11.2.202.508 on Linux, Adobe AIR before 18.0.0.199,
KritikCVSS 10,0Kavram kanıtıEPSS %66adobe · flash player13 Ağu 2015
- CVE-2006-374759Planlayın
Off-by-one error in the ldap scheme handling in the Rewrite module (mod_rewrite) in Apache 1.3 from 1.3.28, 2.0.46 and other versions before
YüksekCVSS 7,6SilahlaştırılmışEPSS %97apache · http server28 Tem 2006
- CVE-2009-299058Planlayın
Array index error in Adobe Reader and Acrobat 9.x before 9.2, 8.x before 8.1.7, and possibly 7.x through 7.1.4 might allow attackers to exec
KritikCVSS 9,3SilahlaştırılmışEPSS %69adobe · acrobat19 Eki 2009
- CVE-2008-515958Planlayın
Integer overflow in the remote administration protocol processing in Client Software WinCom LPD Total 3.0.2.623 and earlier allows remote at
KritikCVSS 10,0SilahlaştırılmışEPSS %60clientsoftware · wincome mpd total18 Kas 2008
- CVE-2008-055056Planlayın
Off-by-one error in Steamcast 0.9.75 and earlier allows remote attackers to cause a denial of service (daemon crash) or execute arbitrary co
KritikCVSS 10,0SilahlaştırılmışEPSS %54radio toolbox · steamcast1 Şub 2008
- CVE-2011-025755Planlayın
Integer signedness error in Apple QuickTime before 7.7 allows remote attackers to execute arbitrary code or cause a denial of service (appli
KritikCVSS 9,3SilahlaştırılmışEPSS %60apple · quicktime15 Ağu 2011
- CVE-2007-345654Planlayın
Integer overflow in Adobe Flash Player 9.0.45.0 and earlier might allow remote attackers to execute arbitrary code via a large length value
KritikCVSS 9,3Kavram kanıtıEPSS %56adobe · flash player11 Tem 2007
- CVE-2007-534853Planlayın
Integer overflow in GDI+ in Microsoft Internet Explorer 6 SP1, Windows XP SP2 and SP3, Server 2003 SP1 and SP2, Vista Gold and SP1, Server 2
KritikCVSS 9,3Kavram kanıtıEPSS %53microsoft · digital image suite10 Eyl 2008
- CVE-2007-303453Planlayın
Integer overflow in the AttemptWrite function in Graphics Rendering Engine (GDI) on Microsoft Windows 2000 SP4, XP SP2, and Server 2003 SP1
KritikCVSS 9,3Kavram kanıtıEPSS %52microsoft · windows 200014 Ağu 2007
- CVE-2009-275452Planlayın
Integer signedness error in the authentication functionality in librpc.dll in the Informix Storage Manager (ISM) Portmapper service (aka por
KritikCVSS 10,0Kavram kanıtıEPSS %40ibm · informix dynamic server5 Mar 2010
- CVE-2015-013552Planlayın
IBM Domino 8.5 before 8.5.3 FP6 IF4 and 9.0 before 9.0.1 FP3 IF2 allows remote attackers to execute arbitrary code or cause a denial of serv
KritikCVSS 10,0İstismar yokEPSS %40ibm · domino21 Nis 2015
- CVE-2010-002851Planlayın
Integer overflow in Microsoft Paint in Windows 2000 SP4, XP SP2 and SP3, and Server 2003 SP2 allows remote attackers to execute arbitrary co
KritikCVSS 9,3Kavram kanıtıEPSS %48microsoft · windows 200010 Şub 2010
- CVE-2008-301549Planlayın
Integer overflow in gdiplus.dll in GDI+ in Microsoft Office XP SP3, Office 2003 SP2 and SP3, 2007 Microsoft Office System Gold and SP1, Visi
KritikCVSS 9,3İstismar yokEPSS %39microsoft · digital image suite10 Eyl 2008
- CVE-2011-201349Planlayın
Integer overflow in the TCP/IP implementation in Microsoft Windows Vista SP2, Windows Server 2008 SP2, R2, and R2 SP1, and Windows 7 Gold an
KritikCVSS 9,8Kavram kanıtıEPSS %32microsoft · windows 78 Kas 2011
- CVE-2009-022148Planlayın
Integer overflow in Microsoft Office PowerPoint 2002 SP3 and 2003 SP3 allows remote attackers to execute arbitrary code via a PowerPoint fil
KritikCVSS 9,3İstismar yokEPSS %38microsoft · office powerpoint12 May 2009
- CVE-2009-056148Planlayın
Integer overflow in Excel in Microsoft Office 2000 SP3, Office XP SP3, Office 2003 SP3, and Office 2004 and 2008 for Mac; Excel in 2007 Micr
KritikCVSS 9,3İstismar yokEPSS %37microsoft · office10 Haz 2009