Vulnerabilities > Integer Overflow or Wraparound

DATE CVE VULNERABILITY TITLE RISK
2017-03-01 CVE-2016-9821 Integer Overflow or Wraparound vulnerability in Libav 11.8
Integer overflow in libavcodec/mpegvideo_parser.c in libav 11.8 allows remote attackers to cause a denial of service (crash) via a crafted file.
local
low complexity
libav CWE-190
5.5
2017-03-01 CVE-2016-10093 Integer Overflow or Wraparound vulnerability in Libtiff 4.0.7
Integer overflow in tools/tiffcp.c in LibTIFF 4.0.7, 3.9.3, 3.9.4, 3.9.5, 3.9.6, 3.9.7, 4.0.0alpha4, 4.0.0alpha5, 4.0.0alpha6, 4.0.0beta7, 4.0.0, 4.0.1, 4.0.2, 4.0.3, 4.0.4, 4.0.4beta, 4.0.5 and 4.0.6 allows remote attackers to have unspecified impact via a crafted image, which triggers a heap-based buffer overflow.
local
low complexity
libtiff CWE-190
7.8
2017-02-28 CVE-2017-5885 Integer Overflow or Wraparound vulnerability in multiple products
Multiple integer overflows in the (1) vnc_connection_server_message and (2) vnc_color_map_set functions in gtk-vnc before 0.7.0 allow remote servers to cause a denial of service (crash) or possibly execute arbitrary code via vectors involving SetColorMapEntries, which triggers a buffer overflow.
network
low complexity
fedoraproject gnome CWE-190
critical
9.8
2017-02-28 CVE-2016-9558 Integer Overflow or Wraparound vulnerability in Libdwarf Project Libdwarf
(1) libdwarf/dwarf_leb.c and (2) dwarfdump/print_frames.c in libdwarf before 20161124 allow remote attackers to have unspecified impact via a crafted bit pattern in a signed leb number, aka a "negation overflow."
network
low complexity
libdwarf-project CWE-190
critical
9.8
2017-02-28 CVE-2016-8389 Integer Overflow or Wraparound vulnerability in Iceni Argus 6.6.04
An exploitable integer-overflow vulnerability exists within Iceni Argus.
local
low complexity
iceni CWE-190
7.8
2017-02-27 CVE-2017-6350 Integer Overflow or Wraparound vulnerability in VIM
An integer overflow at an unserialize_uep memory allocation site would occur for vim before patch 8.0.0378, if it does not properly validate values for tree length when reading a corrupted undo file, which may lead to resultant buffer overflows.
network
low complexity
vim CWE-190
critical
9.8
2017-02-27 CVE-2017-6349 Integer Overflow or Wraparound vulnerability in VIM
An integer overflow at a u_read_undo memory allocation site would occur for vim before patch 8.0.0377, if it does not properly validate values for tree length when reading a corrupted undo file, which may lead to resultant buffer overflows.
network
low complexity
vim CWE-190
critical
9.8
2017-02-24 CVE-2016-4490 Integer Overflow or Wraparound vulnerability in GNU Libiberty
Integer overflow in cp-demangle.c in libiberty allows remote attackers to cause a denial of service (segmentation fault and crash) via a crafted binary, related to inconsistent use of the long and int types for lengths.
local
low complexity
gnu CWE-190
5.5
2017-02-24 CVE-2016-4489 Integer Overflow or Wraparound vulnerability in GNU Libiberty
Integer overflow in the gnu_special function in libiberty allows remote attackers to cause a denial of service (segmentation fault and crash) via a crafted binary, related to the "demangling of virtual tables."
local
low complexity
gnu CWE-190
5.5
2017-02-24 CVE-2016-2226 Integer Overflow or Wraparound vulnerability in GNU Libiberty
Integer overflow in the string_appends function in cplus-dem.c in libiberty allows remote attackers to execute arbitrary code via a crafted executable, which triggers a buffer overflow.
local
low complexity
gnu CWE-190
7.8