Vulnerabilities > Incorrect Calculation

DATE CVE VULNERABILITY TITLE RISK
2022-06-11 CVE-2022-30780 Incorrect Calculation vulnerability in Lighttpd 1.4.56/1.4.57/1.4.58
Lighttpd 1.4.56 through 1.4.58 allows a remote attacker to cause a denial of service (CPU consumption from stuck connections) because connection_read_header_more in connections.c has a typo that disrupts use of multiple read operations on large headers.
network
low complexity
lighttpd CWE-682
7.5
2022-05-18 CVE-2022-30600 Incorrect Calculation vulnerability in multiple products
A flaw was found in moodle where logic used to count failed login attempts could result in the account lockout threshold being bypassed.
network
low complexity
moodle redhat fedoraproject CWE-682
critical
9.8
2022-05-11 CVE-2022-29978 Incorrect Calculation vulnerability in Libsixel Project Libsixel 1.8.6
There is a floating point exception error in sixel_encoder_do_resize, encoder.c:633 in libsixel img2sixel 1.8.6.
network
low complexity
libsixel-project CWE-682
6.5
2022-04-15 CVE-2021-44490 Incorrect Calculation vulnerability in multiple products
An issue was discovered in YottaDB through r1.32 and V7.0-000.
network
low complexity
yottadb fisglobal CWE-682
7.5
2022-04-15 CVE-2021-44491 Incorrect Calculation vulnerability in multiple products
An issue was discovered in YottaDB through r1.32 and V7.0-000.
network
low complexity
yottadb fisglobal CWE-682
7.5
2022-04-15 CVE-2021-44504 Incorrect Calculation vulnerability in Fisglobal Gt.M
An issue was discovered in FIS GT.M through V7.0-000 (related to the YottaDB code base).
network
low complexity
fisglobal CWE-682
7.5
2022-04-15 CVE-2022-28048 Incorrect Calculation vulnerability in multiple products
STB v2.27 was discovered to contain an integer shift of invalid size in the component stbi__jpeg_decode_block_prog_ac.
network
low complexity
stb-project fedoraproject CWE-682
8.8
2022-01-25 CVE-2022-23011 Incorrect Calculation vulnerability in F5 products
On certain hardware BIG-IP platforms, in version 15.1.x before 15.1.4 and 14.1.x before 14.1.3, virtual servers may stop responding while processing TCP traffic due to an issue in the SYN Cookie Protection feature.
network
low complexity
f5 CWE-682
7.5
2022-01-25 CVE-2022-23028 Incorrect Calculation vulnerability in F5 Big-Ip Advanced Firewall Manager
On BIG-IP AFM version 16.x before 16.1.0, 15.1.x before 15.1.5, 14.1.x before 14.1.4.5, and all versions of 13.1.x, when global AFM SYN cookie protection (TCP Half Open flood vector) is activated in the AFM Device Dos or DOS profile, certain types of TCP connections will fail.
network
low complexity
f5 CWE-682
5.3
2022-01-01 CVE-2021-45960 Incorrect Calculation vulnerability in multiple products
In Expat (aka libexpat) before 2.4.3, a left shift by 29 (or more) places in the storeAtts function in xmlparse.c can lead to realloc misbehavior (e.g., allocating too few bytes, or only freeing memory).
8.8