CWE-681 · 88 kayıt
Incorrect Conversion between Numeric Types
Bu sınıftaki CVE’ler
88 kayıt
| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
54Planlayın | CVE-2022-34169Kavram kanıtı | Apache Xalan Java XSLT library is vulnerable to an integer truncation issue when processing malicious XSLT stylesheetsapache · xalan-java · CWE-681 | Yüksek7,5 | — | %81,0 | 19 Tem 2022 |
50Planlayın | CVE-2016-3074Kavram kanıtı | Integer signedness error in GD Graphics Library 2.1.1 (aka libgd or libgd2) allows remote attackers to cause a denial of service (crash) or libgd · libgd · CWE-681 | Kritik9,8 | — | %37,2 | 26 Nis 2016 |
46Planlayın | CVE-2009-0231İstismar yok | The Embedded OpenType (EOT) Font Engine (T2EMBED.DLL) in Microsoft Windows 2000 SP4, XP SP2 and SP3, Server 2003 SP2, Vista Gold, SP1, and Smicrosoft · windows 2000 · CWE-681 | Yüksek8,8 | — | %37,5 | 15 Tem 2009 |
40Planlayın | CVE-2019-19317İstismar yok | lookupName in resolve.c in SQLite 3.30.1 omits bits from the colUsed bitmask in the case of a generated column, which allows attackers to casqlite · sqlite · CWE-681 | Kritik9,8 | — | %4,3 | 5 Ara 2019 |
40Planlayın | CVE-2019-14842İstismar yok | Structured reply is a feature of the newstyle NBD protocol allowing the server to send a reply in chunks.redhat · libnbd · CWE-681 | Kritik9,8 | — | %1,8 | 26 Kas 2019 |
39İzleyin | CVE-2021-38187İstismar yok | An issue was discovered in the anymap crate through 0.12.1 for Rust.anymap project · anymap · CWE-681 | Kritik9,8 | — | %1,4 | 8 Ağu 2021 |
39İzleyin | CVE-2021-36357İstismar yok | An issue was discovered in OpenPOWER 2.6 firmware.openpowerfoundation · skiboot · CWE-681 | Kritik9,8 | — | %1,2 | 22 Eki 2021 |
39İzleyin | CVE-2022-40138İstismar yok | An integer conversion error in Hermes bytecode generation, prior to commit 6aa825e480d48127b480b08d13adf70033237097, could have been used tofacebook · hermes · CWE-681 | Kritik9,8 | — | %1,0 | 10 Eki 2022 |
37İzleyin | CVE-2008-1721Kavram kanıtı | Integer signedness error in the zlib extension module in Python 2.5.2 and earlier allows remote attackers to execute arbitrary code via a nepython · python · CWE-681 | Yüksek7,5 | — | %22,6 | 10 Nis 2008 |
36İzleyin | CVE-2017-7308Silahlaştırılmış | The packet_set_ring function in net/packet/af_packet.c in the Linux kernel through 4.10.6 does not properly validate certain block-size datalinux · linux kernel · CWE-681 | Yüksek7,8 | — | %17,8 | 29 Mar 2017 |
36İzleyin | CVE-2024-26162İstismar yok | Microsoft ODBC Driver Remote Code Execution Vulnerabilitymicrosoft · windows 10 1507 · CWE-681 | Yüksek8,8 | — | %2,0 | 12 Mar 2024 |
35İzleyin | CVE-2023-24884İstismar yok | Microsoft PostScript and PCL6 Class Printer Driver Remote Code Execution Vulnerabilitymicrosoft · windows 10 1507 · CWE-681 | Yüksek8,8 | — | %1,6 | 11 Nis 2023 |
35İzleyin | CVE-2023-23388Kavram kanıtı | Windows Bluetooth Driver Elevation of Privilege Vulnerabilitymicrosoft · windows 10 1507 · CWE-681 | Yüksek8,8 | — | %1,6 | 14 Mar 2023 |
35İzleyin | CVE-2024-49093İstismar yok | Windows Resilient File System (ReFS) Elevation of Privilege Vulnerabilitymicrosoft · windows 11 24h2 · CWE-681 | Yüksek8,8 | — | %0,9 | 11 Ara 2024 |
35İzleyin | CVE-2021-23997İstismar yok | Due to unexpected data type conversions, a use-after-free could have occurred when interacting with the font cache.mozilla · firefox · CWE-681 | Yüksek8,8 | — | %0,8 | 24 Haz 2021 |
35İzleyin | CVE-2026-77412İstismar yok | RabbitMQ amqp091-go: Denial of Service via Malicious Field Length in AMQP Clientrabbitmq · amqp091-go · CWE-681 | Yüksek8,9 | — | %0,5 | 16 Eyl 2026 |
34İzleyin | CVE-2008-3282İstismar yok | Integer overflow in the rtl_allocateMemory function in sal/rtl/source/alloc_global.c in the memory allocator in OpenOffice.org (OOo) 2.4.1, apache · openoffice · CWE-681 | Yüksek7,8 | — | %10,8 | 29 Ağu 2008 |
34İzleyin | CVE-2026-55768İstismar yok | GoAccess WebSocket Server: Signed 32 bit truncation of the 64 bit frame length causes a remote pre-authentication denial of serviceallinurl · goaccess · CWE-681 | Yüksek8,7 | — | %0,5 | 30 Tem 2026 |
34İzleyin | CVE-2026-4931İstismar yok | Smart contract Marginal v1 performs unsafe downcast, allowing attackers to settle a large debt position for a negligible asset cost.marginal · v1-core · CWE-681 | Yüksek8,6 | — | %0,5 | 7 Nis 2026 |
34İzleyin | CVE-2026-82457İstismar yok | su-exec through 0.3 Privilege Escalation via Numeric User IDncopa · su-exec · CWE-681 | Yüksek8,5 | — | %0,2 | 29 Ağu 2026 |
33İzleyin | CVE-2023-46848İstismar yok | Squid: denial of service in ftpsquid-cache · squid · CWE-681 | Yüksek7,5 | — | %10,2 | 3 Kas 2023 |
33İzleyin | CVE-2025-53733İstismar yok | Microsoft Word Remote Code Execution Vulnerabilitymicrosoft · 365 apps · CWE-681 | Yüksek8,4 | — | %0,5 | 12 Ağu 2025 |
32İzleyin | CVE-2007-4988İstismar yok | Sign extension error in the ReadDIBImage function in ImageMagick before 6.3.5-9 allows context-dependent attackers to execute arbitrary codeimagemagick · imagemagick · CWE-681 | Yüksek7,8 | — | %3,1 | 24 Eyl 2007 |
32İzleyin | CVE-2026-69438İstismar yok | Microsoft JScript Remote Code Execution Vulnerabilitymicrosoft · windows 10 1607 · CWE-681 | Yüksek8,1 | — | %0,7 | 8 Eyl 2026 |
31İzleyin | CVE-2020-6582İstismar yok | Nagios NRPE 3.2.1 has a Heap-Based Buffer Overflow, as demonstrated by interpretation of a small negative number as a large positive number nagios · remote plug in executor · CWE-681 | Yüksek7,5 | — | %4,4 | 16 Mar 2020 |
- CVE-2022-3416954Planlayın
Apache Xalan Java XSLT library is vulnerable to an integer truncation issue when processing malicious XSLT stylesheets
YüksekCVSS 7,5Kavram kanıtıEPSS %81apache · xalan-java19 Tem 2022
- CVE-2016-307450Planlayın
Integer signedness error in GD Graphics Library 2.1.1 (aka libgd or libgd2) allows remote attackers to cause a denial of service (crash) or
KritikCVSS 9,8Kavram kanıtıEPSS %37libgd · libgd26 Nis 2016
- CVE-2009-023146Planlayın
The Embedded OpenType (EOT) Font Engine (T2EMBED.DLL) in Microsoft Windows 2000 SP4, XP SP2 and SP3, Server 2003 SP2, Vista Gold, SP1, and S
YüksekCVSS 8,8İstismar yokEPSS %37microsoft · windows 200015 Tem 2009
- CVE-2019-1931740Planlayın
lookupName in resolve.c in SQLite 3.30.1 omits bits from the colUsed bitmask in the case of a generated column, which allows attackers to ca
KritikCVSS 9,8İstismar yokEPSS %4sqlite · sqlite5 Ara 2019
- CVE-2019-1484240Planlayın
Structured reply is a feature of the newstyle NBD protocol allowing the server to send a reply in chunks.
KritikCVSS 9,8İstismar yokEPSS %2redhat · libnbd26 Kas 2019
- CVE-2021-3818739İzleyin
An issue was discovered in the anymap crate through 0.12.1 for Rust.
KritikCVSS 9,8İstismar yokEPSS %1anymap project · anymap8 Ağu 2021
- CVE-2021-3635739İzleyin
An issue was discovered in OpenPOWER 2.6 firmware.
KritikCVSS 9,8İstismar yokEPSS %1openpowerfoundation · skiboot22 Eki 2021
- CVE-2022-4013839İzleyin
An integer conversion error in Hermes bytecode generation, prior to commit 6aa825e480d48127b480b08d13adf70033237097, could have been used to
KritikCVSS 9,8İstismar yokEPSS %1facebook · hermes10 Eki 2022
- CVE-2008-172137İzleyin
Integer signedness error in the zlib extension module in Python 2.5.2 and earlier allows remote attackers to execute arbitrary code via a ne
YüksekCVSS 7,5Kavram kanıtıEPSS %23python · python10 Nis 2008
- CVE-2017-730836İzleyin
The packet_set_ring function in net/packet/af_packet.c in the Linux kernel through 4.10.6 does not properly validate certain block-size data
YüksekCVSS 7,8SilahlaştırılmışEPSS %18linux · linux kernel29 Mar 2017
- CVE-2024-2616236İzleyin
Microsoft ODBC Driver Remote Code Execution Vulnerability
YüksekCVSS 8,8İstismar yokEPSS %2microsoft · windows 10 150712 Mar 2024
- CVE-2023-2488435İzleyin
Microsoft PostScript and PCL6 Class Printer Driver Remote Code Execution Vulnerability
YüksekCVSS 8,8İstismar yokEPSS %2microsoft · windows 10 150711 Nis 2023
- CVE-2023-2338835İzleyin
Windows Bluetooth Driver Elevation of Privilege Vulnerability
YüksekCVSS 8,8Kavram kanıtıEPSS %2microsoft · windows 10 150714 Mar 2023
- CVE-2024-4909335İzleyin
Windows Resilient File System (ReFS) Elevation of Privilege Vulnerability
YüksekCVSS 8,8İstismar yokEPSS %1microsoft · windows 11 24h211 Ara 2024
- CVE-2021-2399735İzleyin
Due to unexpected data type conversions, a use-after-free could have occurred when interacting with the font cache.
YüksekCVSS 8,8İstismar yokEPSS %1mozilla · firefox24 Haz 2021
- CVE-2026-7741235İzleyin
RabbitMQ amqp091-go: Denial of Service via Malicious Field Length in AMQP Client
YüksekCVSS 8,9İstismar yokEPSS %1rabbitmq · amqp091-go16 Eyl 2026
- CVE-2008-328234İzleyin
Integer overflow in the rtl_allocateMemory function in sal/rtl/source/alloc_global.c in the memory allocator in OpenOffice.org (OOo) 2.4.1,
YüksekCVSS 7,8İstismar yokEPSS %11apache · openoffice29 Ağu 2008
- CVE-2026-5576834İzleyin
GoAccess WebSocket Server: Signed 32 bit truncation of the 64 bit frame length causes a remote pre-authentication denial of service
YüksekCVSS 8,7İstismar yokEPSS %0allinurl · goaccess30 Tem 2026
- CVE-2026-493134İzleyin
Smart contract Marginal v1 performs unsafe downcast, allowing attackers to settle a large debt position for a negligible asset cost.
YüksekCVSS 8,6İstismar yokEPSS %0marginal · v1-core7 Nis 2026
- CVE-2026-8245734İzleyin
su-exec through 0.3 Privilege Escalation via Numeric User ID
YüksekCVSS 8,5İstismar yokEPSS %0ncopa · su-exec29 Ağu 2026
- CVE-2023-4684833İzleyin
Squid: denial of service in ftp
YüksekCVSS 7,5İstismar yokEPSS %10squid-cache · squid3 Kas 2023
- CVE-2025-5373333İzleyin
Microsoft Word Remote Code Execution Vulnerability
YüksekCVSS 8,4İstismar yokEPSS %1microsoft · 365 apps12 Ağu 2025
- CVE-2007-498832İzleyin
Sign extension error in the ReadDIBImage function in ImageMagick before 6.3.5-9 allows context-dependent attackers to execute arbitrary code
YüksekCVSS 7,8İstismar yokEPSS %3imagemagick · imagemagick24 Eyl 2007
- CVE-2026-6943832İzleyin
Microsoft JScript Remote Code Execution Vulnerability
YüksekCVSS 8,1İstismar yokEPSS %1microsoft · windows 10 16078 Eyl 2026
- CVE-2020-658231İzleyin
Nagios NRPE 3.2.1 has a Heap-Based Buffer Overflow, as demonstrated by interpretation of a small negative number as a large positive number
YüksekCVSS 7,5İstismar yokEPSS %4nagios · remote plug in executor16 Mar 2020