Vulnerabilities > Integer Underflow (Wrap or Wraparound)
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2017-05-12 | CVE-2017-8924 | Integer Underflow (Wrap or Wraparound) vulnerability in Linux Kernel The edge_bulk_in_callback function in drivers/usb/serial/io_ti.c in the Linux kernel before 4.10.4 allows local users to obtain sensitive information (in the dmesg ringbuffer and syslog) from uninitialized kernel memory by using a crafted USB device (posing as an io_ti USB serial device) to trigger an integer underflow. | 2.1 |
2017-05-12 | CVE-2017-8911 | Integer Underflow (Wrap or Wraparound) vulnerability in Tnef Project Tnef 1.4.14 An integer underflow has been identified in the unicode_to_utf8() function in tnef 1.4.14. | 7.5 |
2017-05-11 | CVE-2017-8906 | Integer Underflow (Wrap or Wraparound) vulnerability in Multicorewareinc X265 High Efficiency Video Coding 2.4 An integer underflow vulnerability exists in pixel-a.asm, the x86 assembly code for planeClipAndMax() in MulticoreWare x265 through 2.4, as used by the x265_encoder_encode dependency in libbpg and other products. | 4.3 |
2017-04-12 | CVE-2017-3034 | Integer Underflow (Wrap or Wraparound) vulnerability in Adobe products Adobe Acrobat Reader versions 11.0.19 and earlier, 15.006.30280 and earlier, 15.023.20070 and earlier have an exploitable integer overflow vulnerability in the XML Forms Architecture (XFA) engine, related to layout functionality. | 9.3 |
2017-03-24 | CVE-2016-10268 | Integer Underflow (Wrap or Wraparound) vulnerability in Libtiff 4.0.7 tools/tiffcp.c in LibTIFF 4.0.7 allows remote attackers to cause a denial of service (integer underflow and heap-based buffer under-read) or possibly have unspecified other impact via a crafted TIFF image, related to "READ of size 78490" and libtiff/tif_unix.c:115:23. | 6.8 |
2017-03-15 | CVE-2016-10166 | Integer Underflow (Wrap or Wraparound) vulnerability in Libgd Integer underflow in the _gdContributionsAlloc function in gd_interpolation.c in the GD Graphics Library (aka libgd) before 2.2.4 allows remote attackers to have unspecified impact via vectors related to decrementing the u variable. | 7.5 |
2017-03-10 | CVE-2017-6313 | Integer Underflow (Wrap or Wraparound) vulnerability in multiple products Integer underflow in the load_resources function in io-icns.c in gdk-pixbuf allows context-dependent attackers to cause a denial of service (out-of-bounds read and program crash) via a crafted image entry size in an ICO file. | 7.1 |
2017-02-06 | CVE-2016-7800 | Integer Underflow (Wrap or Wraparound) vulnerability in multiple products Integer underflow in the parse8BIM function in coders/meta.c in GraphicsMagick 1.3.25 and earlier allows remote attackers to cause a denial of service (application crash) via a crafted 8BIM chunk, which triggers a heap-based buffer overflow. | 5.0 |
2017-01-23 | CVE-2016-1925 | Integer Underflow (Wrap or Wraparound) vulnerability in LHA FOR Unix Project LHA FOR Unix Integer underflow in header.c in lha allows remote attackers to have unspecified impact via a large header size value for the (1) level0 or (2) level1 header in a lha archive, which triggers a buffer overflow. | 7.5 |
2016-08-06 | CVE-2014-9883 | Integer Underflow (Wrap or Wraparound) vulnerability in Google Android Integer overflow in drivers/char/diag/diag_dci.c in the Qualcomm components in Android before 2016-08-05 on Nexus 5 and 7 (2013) devices allows attackers to gain privileges or obtain sensitive information via a crafted application, aka Android internal bug 28769912 and Qualcomm internal bug CR565160. | 6.8 |