Vulnerabilities > Integer Overflow or Wraparound

DATE CVE VULNERABILITY TITLE RISK
2022-05-15 CVE-2022-28936 Integer Overflow or Wraparound vulnerability in Fisco-Bcos 3.0.0
FISCO-BCOS release-3.0.0-rc2 was discovered to contain an issue where a malicious node can trigger an integer overflow and cause a Denial of Service (DoS) via an unusually large viewchange message packet.
network
low complexity
fisco-bcos CWE-190
7.5
2022-05-15 CVE-2022-28937 Integer Overflow or Wraparound vulnerability in Fisco-Bcos 3.0.0
FISCO-BCOS release-3.0.0-rc2 was discovered to contain an issue where a malicious node, via an invalid proposal with an invalid header, will cause normal nodes to stop producing new blocks and processing new clients' requests.
network
low complexity
fisco-bcos CWE-190
7.5
2022-05-09 CVE-2022-27114 Integer Overflow or Wraparound vulnerability in multiple products
There is a vulnerability in htmldoc 1.9.16.
local
low complexity
htmldoc-project debian CWE-190
5.5
2022-05-05 CVE-2022-26073 Integer Overflow or Wraparound vulnerability in Anker Eufy Homebase 2 Firmware 2.1.8.5H
A denial of service vulnerability exists in the libxm_av.so DemuxCmdInBuffer functionality of Anker Eufy Homebase 2 2.1.8.5h.
low complexity
anker CWE-190
6.5
2022-05-05 CVE-2022-28471 Integer Overflow or Wraparound vulnerability in Rockcarry Ffjpeg 20211206
In ffjpeg (commit hash: caade60), the function bmp_load() in bmp.c contains an integer overflow vulnerability, which eventually results in the heap overflow in jfif_encode() in jfif.c.
network
low complexity
rockcarry CWE-190
6.5
2022-05-03 CVE-2021-27417 Integer Overflow or Wraparound vulnerability in Ecoscentric Ecospro 2.0.1/4.5.3
eCosCentric eCosPro RTOS Versions 2.0.1 through 4.5.3 are vulnerable to integer wraparound in function calloc (an implementation of malloc).
network
low complexity
ecoscentric CWE-190
critical
9.8
2022-05-03 CVE-2021-27433 Integer Overflow or Wraparound vulnerability in ARM Mbed Ualloc 1.3.0
ARM mbed-ualloc memory library version 1.3.0 is vulnerable to integer wrap-around in function mbed_krbs, which can lead to arbitrary memory allocation, resulting in unexpected behavior such as a crash or a remote code injection/execution.
network
low complexity
arm CWE-190
critical
9.8
2022-05-03 CVE-2022-20107 Integer Overflow or Wraparound vulnerability in multiple products
In subtitle service, there is a possible application crash due to an integer overflow.
local
low complexity
google linux CWE-190
4.4
2022-05-03 CVE-2022-21743 Integer Overflow or Wraparound vulnerability in Google Android
In ion, there is a possible use after free due to an integer overflow.
local
low complexity
google CWE-190
7.8
2022-05-03 CVE-2021-22556 Integer Overflow or Wraparound vulnerability in Google Fuchsia
The Security Team discovered an integer overflow bug that allows an attacker with code execution to issue memory cache invalidation operations on pages that they don’t own, allowing them to control kernel memory from userspace.
local
low complexity
google CWE-190
7.8