Vulnerabilities > Integer Overflow or Wraparound

DATE CVE VULNERABILITY TITLE RISK
2017-09-28 CVE-2015-1537 Integer Overflow or Wraparound vulnerability in Google Android
Integer overflow in IHDCP.cpp in the media_server component in Android allows remote attackers to execute arbitrary code via a crafted application.
local
low complexity
google CWE-190
7.8
2017-09-28 CVE-2015-1526 Integer Overflow or Wraparound vulnerability in Google Android
The media_server component in Android allows remote attackers to cause a denial of service via a crafted application.
local
low complexity
google CWE-190
5.5
2017-09-26 CVE-2017-14745 Integer Overflow or Wraparound vulnerability in GNU Binutils 2.29
The *_get_synthetic_symtab functions in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29, interpret a -1 value as a sorting count instead of an error flag, which allows remote attackers to cause a denial of service (integer overflow and application crash) or possibly have unspecified other impact via a crafted ELF file, related to elf32-i386.c and elf64-x86-64.c.
local
low complexity
gnu CWE-190
7.8
2017-09-22 CVE-2017-14636 Integer Overflow or Wraparound vulnerability in Sam2P Project Sam2P 0.49.3
Because of an integer overflow in sam2p 0.49.3, a loop executes 0xffffffff times, ending with an invalid read of size 1 in the Image::Indexed::sortPal function in image.cpp.
network
low complexity
sam2p-project CWE-190
critical
9.8
2017-09-21 CVE-2017-9282 Integer Overflow or Wraparound vulnerability in Microfocus Visibroker 8.5
An integer overflow (CWE-190) led to an out-of-bounds write (CWE-787) on a heap-allocated area, leading to heap corruption in Micro Focus VisiBroker 8.5.
network
low complexity
microfocus CWE-190
critical
9.8
2017-09-21 CVE-2017-9281 Integer Overflow or Wraparound vulnerability in Microfocus Visibroker 8.5
An integer overflow (CWE-190) potentially causing an out-of-bounds read (CWE-125) vulnerability in Micro Focus VisiBroker 8.5 can lead to a denial of service.
network
low complexity
microfocus CWE-190
7.5
2017-09-21 CVE-2017-8250 Integer Overflow or Wraparound vulnerability in Google Android
In all Qualcomm products with Android releases from CAF using the Linux kernel, user controlled variables "nr_cmds" and "nr_bos" number are passed across functions without any check.
local
low complexity
google CWE-190
7.8
2017-09-21 CVE-2017-14630 Integer Overflow or Wraparound vulnerability in Sam2P Project Sam2P 0.49.3
In sam2p 0.49.3, an integer overflow exists in the pcxLoadImage24 function of the file in_pcx.cpp, leading to an invalid write operation.
network
low complexity
sam2p-project CWE-190
critical
9.8
2017-09-21 CVE-2017-14629 Integer Overflow or Wraparound vulnerability in Sam2P Project Sam2P 0.49.3
In sam2p 0.49.3, the in_xpm_reader function in in_xpm.cpp has an integer signedness error, leading to a crash when writing to an out-of-bounds array element.
network
low complexity
sam2p-project CWE-190
7.5
2017-09-20 CVE-2017-9607 Integer Overflow or Wraparound vulnerability in ARM Arm-Trusted-Firmware
The BL1 FWU SMC handling code in ARM Trusted Firmware before 1.4 might allow attackers to write arbitrary data to secure memory, bypass the bl1_plat_mem_check protection mechanism, cause a denial of service, or possibly have unspecified other impact via a crafted AArch32 image, which triggers an integer overflow.
local
high complexity
arm CWE-190
7.0