Vulnerabilities > Integer Underflow (Wrap or Wraparound)

DATE CVE VULNERABILITY TITLE RISK
2020-06-17 CVE-2020-11906 Integer Underflow (Wrap or Wraparound) vulnerability in Treck Tcp/Ip
The Treck TCP/IP stack before 6.0.1.66 has an Ethernet Link Layer Integer Underflow.
low complexity
treck CWE-191
6.3
2020-06-09 CVE-2020-1239 Integer Underflow (Wrap or Wraparound) vulnerability in Microsoft products
A memory corruption vulnerability exists when Windows Media Foundation improperly handles objects in memory, aka 'Media Foundation Memory Corruption Vulnerability'.
network
low complexity
microsoft CWE-191
8.8
2020-04-24 CVE-2019-15791 Integer Underflow (Wrap or Wraparound) vulnerability in multiple products
In shiftfs, a non-upstream patch to the Linux kernel included in the Ubuntu 5.0 and 5.3 kernel series, shiftfs_btrfs_ioctl_fd_replace() installs an fd referencing a file from the lower filesystem without taking an additional reference to that file.
local
low complexity
linux canonical CWE-191
7.8
2020-04-23 CVE-2019-9183 Integer Underflow (Wrap or Wraparound) vulnerability in multiple products
An issue was discovered in Contiki-NG through 4.3 and Contiki through 3.0.
network
low complexity
contiki-os contiki-ng CWE-191
7.5
2020-04-08 CVE-2018-21065 Integer Underflow (Wrap or Wraparound) vulnerability in Google Android
An issue was discovered on Samsung mobile devices with M(6.0), N(7.x), and O(8.x) software.
network
low complexity
google CWE-191
critical
9.8
2020-03-24 CVE-2019-20590 Integer Underflow (Wrap or Wraparound) vulnerability in Google Android 8.0/8.1
An issue was discovered on Samsung mobile devices with O(8.x) (Qualcomm chipsets) software.
network
low complexity
google CWE-191
critical
9.8
2020-03-05 CVE-2019-14085 Integer Underflow (Wrap or Wraparound) vulnerability in Qualcomm products
Possible Integer underflow in WLAN function due to lack of check of data received from user side in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile in QCN7605, QCS605, SDA845, SDM670, SDM710, SDM845, SDM850, SM8150, SXR1130
local
low complexity
qualcomm CWE-191
7.8
2020-03-05 CVE-2019-14083 Integer Underflow (Wrap or Wraparound) vulnerability in Qualcomm products
While parsing Service Descriptor Extended Attribute received as part of SDF frame, there is a possibility that incorrect length is specified in the attribute length field of extended SSI which can lead to integer underflow in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and Networking in APQ8009, APQ8053, APQ8096, APQ8098, IPQ6018, IPQ8074, MSM8996AU, MSM8998, Nicobar, QCA6174A, QCA6390, QCA6574AU, QCA8081, QCA9377, QCA9379, QCN7605, QCS404, QCS405, QCS605, Rennell, SC8180X, SDA660, SDA845, SDM630, SDM636, SDM660, SDM670, SDM710, SDM845, SDM850, SDX20, SDX24, SM6150, SM7150, SM8150, SXR1130, SXR2130
network
low complexity
qualcomm CWE-191
critical
9.8
2020-02-25 CVE-2019-5148 Integer Underflow (Wrap or Wraparound) vulnerability in Moxa Awk-3131A Firmware 1.13
An exploitable denial-of-service vulnerability exists in ServiceAgent functionality of the Moxa AWK-3131A, firmware version 1.13.
network
low complexity
moxa CWE-191
7.5
2020-01-24 CVE-2014-9626 Integer Underflow (Wrap or Wraparound) vulnerability in Videolan VLC Media Player
Integer underflow in the MP4_ReadBox_String function in modules/demux/mp4/libmp4.c in VideoLAN VLC media player before 2.1.6 allows remote attackers to cause a denial of service or possibly have unspecified other impact via a box size less than 7.
local
low complexity
videolan CWE-191
7.8