CWE-682 · 122 kayıt
Incorrect Calculation
Bu sınıftaki CVE’ler
122 kayıt
| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
47Planlayın | CVE-2022-30780Kavram kanıtı | Lighttpd 1.4.56 through 1.4.58 allows a remote attacker to cause a denial of service (CPU consumption from stuck connections) because conneclighttpd · lighttpd · CWE-682 | Yüksek7,5 | — | %56,9 | 11 Haz 2022 |
41Planlayın | CVE-2018-8319İstismar yok | A Security Feature Bypass vulnerability exists in MSR JavaScript Cryptography Library that is caused by incorrect arithmetic computations, amicrosoft · research javascript cryptography library · CWE-682 | Kritik9,8 | — | %7,5 | 10 Tem 2018 |
41Planlayın | CVE-2022-30600Kavram kanıtı | A flaw was found in moodle where logic used to count failed login attempts could result in the account lockout threshold being bypassed.moodle · moodle · CWE-682 | Kritik9,8 | — | %5,1 | 18 May 2022 |
40Planlayın | CVE-2021-44847İstismar yok | A stack-based buffer overflow in handle_request function in DHT.c in toxcore 0.1.9 through 0.1.11 and 0.2.0 through 0.2.12 (caused by an imptoktok · toxcore · CWE-682 | Kritik9,8 | — | %3,8 | 12 Ara 2021 |
39İzleyin | CVE-2024-36736İstismar yok | An issue in the oneflow.permute component of OneFlow-Inc.oneflow · oneflow · CWE-682 | Kritik9,8 | — | %0,6 | 6 Haz 2024 |
39İzleyin | CVE-2020-0221İstismar yok | Airbrush FW's scratch memory allocator is susceptible to numeric overflow.google · android · CWE-682 | Kritik9,8 | — | %0,5 | 14 May 2020 |
39İzleyin | CVE-2026-16363İstismar yok | JIT miscompilation in the JavaScript: WebAssembly componentmozilla · firefox · CWE-682 | Kritik9,8 | — | %0,4 | 21 Tem 2026 |
37İzleyin | CVE-2023-35641İstismar yok | Internet Connection Sharing (ICS) Remote Code Execution Vulnerabilitymicrosoft · windows 10 1507 · CWE-682 | Yüksek8,8 | — | %7,2 | 12 Ara 2023 |
37İzleyin | CVE-2020-0022Kavram kanıtı | In reassemble_and_dispatch of packet_fragmenter.cc, there is possible out of bounds write due to an incorrect bounds calculation.google · android · CWE-682 | Yüksek8,8 | — | %6,1 | 13 Şub 2020 |
37İzleyin | CVE-2022-23066İstismar yok | Solana rBPF - Incorrect Calculation in sdiv instructionsolana · rbpf · CWE-682 | Kritik9,1 | — | %2,5 | 9 May 2022 |
37İzleyin | CVE-2026-53670İstismar yok | PREVAIL: Non-singleton typeset in add() skips offset update, allowing OOB access to pass eBPF verificationvbpf · prevail · CWE-682 | Kritik9,3 | — | %0,5 | 2 Eyl 2026 |
37İzleyin | CVE-2026-53671İstismar yok | PREVAIL: Context-write no-op in do_mem_store allows unsafe eBPF programs to pass verificationvbpf · prevail · CWE-682 | Kritik9,3 | — | %0,5 | 2 Eyl 2026 |
36İzleyin | CVE-2021-45960Kavram kanıtı | In Expat (aka libexpat) before 2.4.3, a left shift by 29 (or more) places in the storeAtts function in xmlparse.c can lead to realloc misbehlibexpat project · libexpat · CWE-682 | Yüksek8,8 | — | %4,2 | 1 Oca 2022 |
36İzleyin | CVE-2023-2163Kavram kanıtı | Incorrect Verifier Branch Pruning Logic Leads To Arbitrary Read/Write In Linux Kernel and Lateral Privilege Escalationlinux · linux kernel · CWE-682 | Yüksek8,8 | — | %3,7 | 20 Eyl 2023 |
36İzleyin | CVE-2017-8326İstismar yok | libimageworsener.a in ImageWorsener before 1.3.1 has "left shift cannot be represented in type int" undefined behavior issues, which might aentropymine · imageworsener · CWE-682 | Yüksek8,8 | — | %2,4 | 29 Nis 2017 |
36İzleyin | CVE-2026-44498İstismar yok | ZEBRA: Block Validator Undercounts Coinbase and P2SH Sigopszfnd · zebrad · CWE-682 | Kritik9,2 | — | %0,4 | 8 May 2026 |
35İzleyin | CVE-2019-16346İstismar yok | ngiflib 0.4 has a heap-based buffer overflow in WritePixel() in ngiflib.c when called from DecodeGifImg, because deinterlacing for small picminiupnp project · ngiflib · CWE-682 | Yüksek8,8 | — | %1,6 | 16 Eyl 2019 |
35İzleyin | CVE-2022-28048İstismar yok | STB v2.27 was discovered to contain an integer shift of invalid size in the component stbi__jpeg_decode_block_prog_ac.stb project · stb · CWE-682 | Yüksek8,8 | — | %1,6 | 15 Nis 2022 |
35İzleyin | CVE-2019-16347İstismar yok | ngiflib 0.4 has a heap-based buffer overflow in WritePixels() in ngiflib.c when called from DecodeGifImg, because deinterlacing for small piminiupnp project · ngiflib · CWE-682 | Yüksek8,8 | — | %1,5 | 16 Eyl 2019 |
35İzleyin | CVE-2017-13151İstismar yok | A remote code execution vulnerability in the Android media framework (libmpeg2).google · android · CWE-682 | Yüksek8,8 | — | %1,4 | 6 Ara 2017 |
35İzleyin | CVE-2019-5853İstismar yok | Inappropriate implementation in JavaScript in Google Chrome prior to 76.0.3809.87 allowed a remote attacker to potentially exploit heap corrgoogle · chrome · CWE-682 | Yüksek8,8 | — | %1,0 | 25 Kas 2019 |
35İzleyin | CVE-2026-53706İstismar yok | PREVAIL: ALU32 pointer arithmetic accepted without is64 gate — verifier emits false PASS for pointer-corrupting programsvbpf · prevail · CWE-682 | Yüksek8,8 | — | %0,5 | 2 Eyl 2026 |
35İzleyin | CVE-2017-12134İstismar yok | The xen_biovec_phys_mergeable function in drivers/xen/biomerge.c in Xen might allow local OS guest users to corrupt block device data streamxen · xen · CWE-682 | Yüksek8,8 | — | %0,5 | 24 Ağu 2017 |
35İzleyin | CVE-2025-5372İstismar yok | Libssh: incorrect return code handling in ssh_kdf() in libsshlibssh · libssh · CWE-682 | Yüksek8,8 | — | %0,5 | 4 Tem 2025 |
35İzleyin | CVE-2017-12135İstismar yok | Xen allows local OS guest users to cause a denial of service (crash) or possibly obtain sensitive information or gain privileges via vectorsxen · xen · CWE-682 | Yüksek8,8 | — | %0,5 | 24 Ağu 2017 |
- CVE-2022-3078047Planlayın
Lighttpd 1.4.56 through 1.4.58 allows a remote attacker to cause a denial of service (CPU consumption from stuck connections) because connec
YüksekCVSS 7,5Kavram kanıtıEPSS %57lighttpd · lighttpd11 Haz 2022
- CVE-2018-831941Planlayın
A Security Feature Bypass vulnerability exists in MSR JavaScript Cryptography Library that is caused by incorrect arithmetic computations, a
KritikCVSS 9,8İstismar yokEPSS %8microsoft · research javascript cryptography library10 Tem 2018
- CVE-2022-3060041Planlayın
A flaw was found in moodle where logic used to count failed login attempts could result in the account lockout threshold being bypassed.
KritikCVSS 9,8Kavram kanıtıEPSS %5moodle · moodle18 May 2022
- CVE-2021-4484740Planlayın
A stack-based buffer overflow in handle_request function in DHT.c in toxcore 0.1.9 through 0.1.11 and 0.2.0 through 0.2.12 (caused by an imp
KritikCVSS 9,8İstismar yokEPSS %4toktok · toxcore12 Ara 2021
- CVE-2024-3673639İzleyin
An issue in the oneflow.permute component of OneFlow-Inc.
KritikCVSS 9,8İstismar yokEPSS %1oneflow · oneflow6 Haz 2024
- CVE-2020-022139İzleyin
Airbrush FW's scratch memory allocator is susceptible to numeric overflow.
KritikCVSS 9,8İstismar yokEPSS %0google · android14 May 2020
- CVE-2026-1636339İzleyin
JIT miscompilation in the JavaScript: WebAssembly component
KritikCVSS 9,8İstismar yokEPSS %0mozilla · firefox21 Tem 2026
- CVE-2023-3564137İzleyin
Internet Connection Sharing (ICS) Remote Code Execution Vulnerability
YüksekCVSS 8,8İstismar yokEPSS %7microsoft · windows 10 150712 Ara 2023
- CVE-2020-002237İzleyin
In reassemble_and_dispatch of packet_fragmenter.cc, there is possible out of bounds write due to an incorrect bounds calculation.
YüksekCVSS 8,8Kavram kanıtıEPSS %6google · android13 Şub 2020
- CVE-2022-2306637İzleyin
Solana rBPF - Incorrect Calculation in sdiv instruction
KritikCVSS 9,1İstismar yokEPSS %3solana · rbpf9 May 2022
- CVE-2026-5367037İzleyin
PREVAIL: Non-singleton typeset in add() skips offset update, allowing OOB access to pass eBPF verification
KritikCVSS 9,3İstismar yokEPSS %1vbpf · prevail2 Eyl 2026
- CVE-2026-5367137İzleyin
PREVAIL: Context-write no-op in do_mem_store allows unsafe eBPF programs to pass verification
KritikCVSS 9,3İstismar yokEPSS %1vbpf · prevail2 Eyl 2026
- CVE-2021-4596036İzleyin
In Expat (aka libexpat) before 2.4.3, a left shift by 29 (or more) places in the storeAtts function in xmlparse.c can lead to realloc misbeh
YüksekCVSS 8,8Kavram kanıtıEPSS %4libexpat project · libexpat1 Oca 2022
- CVE-2023-216336İzleyin
Incorrect Verifier Branch Pruning Logic Leads To Arbitrary Read/Write In Linux Kernel and Lateral Privilege Escalation
YüksekCVSS 8,8Kavram kanıtıEPSS %4linux · linux kernel20 Eyl 2023
- CVE-2017-832636İzleyin
libimageworsener.a in ImageWorsener before 1.3.1 has "left shift cannot be represented in type int" undefined behavior issues, which might a
YüksekCVSS 8,8İstismar yokEPSS %2entropymine · imageworsener29 Nis 2017
- CVE-2026-4449836İzleyin
ZEBRA: Block Validator Undercounts Coinbase and P2SH Sigops
KritikCVSS 9,2İstismar yokEPSS %0zfnd · zebrad8 May 2026
- CVE-2019-1634635İzleyin
ngiflib 0.4 has a heap-based buffer overflow in WritePixel() in ngiflib.c when called from DecodeGifImg, because deinterlacing for small pic
YüksekCVSS 8,8İstismar yokEPSS %2miniupnp project · ngiflib16 Eyl 2019
- CVE-2022-2804835İzleyin
STB v2.27 was discovered to contain an integer shift of invalid size in the component stbi__jpeg_decode_block_prog_ac.
YüksekCVSS 8,8İstismar yokEPSS %2stb project · stb15 Nis 2022
- CVE-2019-1634735İzleyin
ngiflib 0.4 has a heap-based buffer overflow in WritePixels() in ngiflib.c when called from DecodeGifImg, because deinterlacing for small pi
YüksekCVSS 8,8İstismar yokEPSS %1miniupnp project · ngiflib16 Eyl 2019
- CVE-2017-1315135İzleyin
A remote code execution vulnerability in the Android media framework (libmpeg2).
YüksekCVSS 8,8İstismar yokEPSS %1google · android6 Ara 2017
- CVE-2019-585335İzleyin
Inappropriate implementation in JavaScript in Google Chrome prior to 76.0.3809.87 allowed a remote attacker to potentially exploit heap corr
YüksekCVSS 8,8İstismar yokEPSS %1google · chrome25 Kas 2019
- CVE-2026-5370635İzleyin
PREVAIL: ALU32 pointer arithmetic accepted without is64 gate — verifier emits false PASS for pointer-corrupting programs
YüksekCVSS 8,8İstismar yokEPSS %1vbpf · prevail2 Eyl 2026
- CVE-2017-1213435İzleyin
The xen_biovec_phys_mergeable function in drivers/xen/biomerge.c in Xen might allow local OS guest users to corrupt block device data stream
YüksekCVSS 8,8İstismar yokEPSS %0xen · xen24 Ağu 2017
- CVE-2025-537235İzleyin
Libssh: incorrect return code handling in ssh_kdf() in libssh
YüksekCVSS 8,8İstismar yokEPSS %0libssh · libssh4 Tem 2025
- CVE-2017-1213535İzleyin
Xen allows local OS guest users to cause a denial of service (crash) or possibly obtain sensitive information or gain privileges via vectors
YüksekCVSS 8,8İstismar yokEPSS %0xen · xen24 Ağu 2017