Vulnerabilities > Integer Overflow or Wraparound

DATE CVE VULNERABILITY TITLE RISK
2018-09-04 CVE-2018-16435 Integer Overflow or Wraparound vulnerability in multiple products
Little CMS (aka Little Color Management System) 2.9 has an integer overflow in the AllocateDataSet function in cmscgats.c, leading to a heap-based buffer overflow in the SetData function via a crafted file in the second argument to cmsIT8LoadFromFile.
local
low complexity
littlecms canonical redhat debian CWE-190
5.5
2018-08-31 CVE-2018-11054 Integer Overflow or Wraparound vulnerability in multiple products
RSA BSAFE Micro Edition Suite, version 4.1.6, contains an integer overflow vulnerability.
network
low complexity
dell oracle CWE-190
7.5
2018-08-28 CVE-2017-15422 Integer Overflow or Wraparound vulnerability in multiple products
Integer overflow in international date handling in International Components for Unicode (ICU) for C/C++ before 60.1, as used in V8 in Google Chrome prior to 63.0.3239.84 and other products, allowed a remote attacker to perform an out of bounds memory read via a crafted HTML page.
network
low complexity
google icu-project debian canonical redhat CWE-190
6.5
2018-08-20 CVE-2018-15560 Integer Overflow or Wraparound vulnerability in Pycryptodome
PyCryptodome before 3.6.6 has an integer overflow in the data_len variable in AESNI.c, related to the AESNI_encrypt and AESNI_decrypt functions, leading to the mishandling of messages shorter than 16 bytes.
network
low complexity
pycryptodome CWE-190
7.5
2018-08-15 CVE-2018-11687 Integer Overflow or Wraparound vulnerability in Bitcoin RED Project Bitcoin RED
An integer overflow in the distributeBTR function of a smart contract implementation for Bitcoin Red (BTCR), an Ethereum ERC20 token, allows the owner to accomplish an unauthorized increase of digital assets by providing a large address[] array, as exploited in the wild in May 2018, aka the "ownerUnderflow" issue.
network
low complexity
bitcoin-red-project CWE-190
7.5
2018-08-08 CVE-2018-11561 Integer Overflow or Wraparound vulnerability in Erc20Token Project Erc20Token
An integer overflow in the unprotected distributeToken function of a smart contract implementation for EETHER (EETHER), an Ethereum ERC20 token, will lead to an unauthorized increase of an attacker's digital assets.
network
low complexity
erc20token-project CWE-190
7.5
2018-08-05 CVE-2018-14938 Integer Overflow or Wraparound vulnerability in multiple products
An issue was discovered in wifipcap/wifipcap.cpp in TCPFLOW through 1.5.0-alpha.
network
low complexity
digitalcorpora canonical CWE-190
critical
9.1
2018-08-03 CVE-2018-14576 Integer Overflow or Wraparound vulnerability in Suncontract
The mintTokens function of a smart contract implementation for SunContract, an Ethereum token, has an integer overflow via the _amount variable.
network
low complexity
suncontract CWE-190
7.5
2018-08-03 CVE-2018-14883 Integer Overflow or Wraparound vulnerability in multiple products
An issue was discovered in PHP before 5.6.37, 7.0.x before 7.0.31, 7.1.x before 7.1.20, and 7.2.x before 7.2.8.
network
low complexity
php canonical debian netapp CWE-190
7.5
2018-08-02 CVE-2018-10921 Integer Overflow or Wraparound vulnerability in Ttembed Project Ttembed
Certain input files may trigger an integer overflow in ttembed input file processing.
network
low complexity
ttembed-project CWE-190
7.5