Vulnerabilities > Integer Overflow or Wraparound

DATE CVE VULNERABILITY TITLE RISK
2017-03-15 CVE-2015-8982 Integer Overflow or Wraparound vulnerability in GNU Glibc 2.3.10/2.3.2/2.3.3
Integer overflow in the strxfrm function in the GNU C Library (aka glibc or libc6) before 2.21 allows context-dependent attackers to cause a denial of service (crash) or possibly execute arbitrary code via a long string, which triggers a stack-based buffer overflow.
network
high complexity
gnu CWE-190
8.1
2017-03-15 CVE-2015-8895 Integer Overflow or Wraparound vulnerability in Imagemagick
Integer overflow in coders/icon.c in ImageMagick 6.9.1-3 and later allows remote attackers to cause a denial of service (application crash) via a crafted length value, which triggers a buffer overflow.
network
low complexity
imagemagick CWE-190
7.5
2017-03-15 CVE-2016-10168 Integer Overflow or Wraparound vulnerability in Libgd
Integer overflow in gd_io.c in the GD Graphics Library (aka libgd) before 2.2.4 allows remote attackers to have unspecified impact via vectors involving the number of horizontal and vertical chunks in an image.
local
low complexity
libgd CWE-190
7.8
2017-03-15 CVE-2017-6440 Integer Overflow or Wraparound vulnerability in Libplist Project Libplist 1.12
The parse_data_node function in bplist.c in libimobiledevice libplist 1.12 allows local users to cause a denial of service (memory allocation error) via a crafted plist file.
local
low complexity
libplist-project CWE-190
5.0
2017-03-15 CVE-2016-10251 Integer Overflow or Wraparound vulnerability in Jasper Project Jasper
Integer overflow in the jpc_pi_nextcprl function in jpc_t2cod.c in JasPer before 1.900.20 allows remote attackers to have unspecified impact via a crafted file, which triggers use of an uninitialized value.
local
low complexity
jasper-project CWE-190
7.8
2017-03-15 CVE-2016-10249 Integer Overflow or Wraparound vulnerability in Jasper Project Jasper
Integer overflow in the jpc_dec_tiledecode function in jpc_dec.c in JasPer before 1.900.12 allows remote attackers to have unspecified impact via a crafted image file, which triggers a heap-based buffer overflow.
local
low complexity
jasper-project CWE-190
7.8
2017-03-10 CVE-2017-6355 Integer Overflow or Wraparound vulnerability in Freedesktop Virglrenderer 0.5.0
Integer overflow in the vrend_create_shader function in vrend_renderer.c in virglrenderer before 0.6.0 allows local guest OS users to cause a denial of service (process crash) via crafted pkt_length and offlen values, which trigger an out-of-bounds access.
local
low complexity
freedesktop CWE-190
5.5
2017-03-10 CVE-2017-6312 Integer Overflow or Wraparound vulnerability in multiple products
Integer overflow in io-ico.c in gdk-pixbuf allows context-dependent attackers to cause a denial of service (segmentation fault and application crash) via a crafted image entry offset in an ICO file, which triggers an out-of-bounds read, related to compiler optimizations.
local
low complexity
gnome fedoraproject debian CWE-190
5.5
2017-03-08 CVE-2017-0521 Integer Overflow or Wraparound vulnerability in Linux Kernel 3.10/3.18
An elevation of privilege vulnerability in the Qualcomm camera driver could enable a local malicious application to execute arbitrary code within the context of the kernel.
local
high complexity
linux CWE-190
7.0
2017-03-08 CVE-2017-0307 Integer Overflow or Wraparound vulnerability in Linux Kernel 3.18
An elevation of privilege vulnerability in the NVIDIA GPU driver could enable a local malicious application to execute arbitrary code within the context of the kernel.
local
low complexity
linux CWE-190
7.8