Vulnerabilities > Integer Underflow (Wrap or Wraparound)

DATE CVE VULNERABILITY TITLE RISK
2022-02-11 CVE-2022-0185 Integer Underflow (Wrap or Wraparound) vulnerability in multiple products
A heap-based buffer overflow flaw was found in the way the legacy_parse_param function in the Filesystem Context functionality of the Linux kernel verified the supplied parameters length.
local
low complexity
linux netapp CWE-191
8.4
2022-02-07 CVE-2022-23613 Integer Underflow (Wrap or Wraparound) vulnerability in multiple products
xrdp is an open source remote desktop protocol (RDP) server.
local
low complexity
neutrinolabs fedoraproject CWE-191
7.8
2022-01-25 CVE-2022-23034 Integer Underflow (Wrap or Wraparound) vulnerability in multiple products
A PV guest could DoS Xen while unmapping a grant To address XSA-380, reference counting was introduced for grant mappings for the case where a PV guest would have the IOMMU enabled.
local
low complexity
xen fedoraproject debian CWE-191
5.5
2022-01-14 CVE-2022-21685 Integer Underflow (Wrap or Wraparound) vulnerability in Parity Frontier 20210903/20211013
Frontier is Substrate's Ethereum compatibility layer.
network
low complexity
parity CWE-191
6.5
2021-12-23 CVE-2021-4066 Integer Underflow (Wrap or Wraparound) vulnerability in multiple products
Integer underflow in ANGLE in Google Chrome prior to 96.0.4664.93 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
network
low complexity
google fedoraproject debian CWE-191
8.8
2021-12-19 CVE-2021-43083 Integer Underflow (Wrap or Wraparound) vulnerability in Apache Plc4X
Apache PLC4X - PLC4C (Only the C language implementation was effected) was vulnerable to an unsigned integer underflow flaw inside the tcp transport.
network
low complexity
apache CWE-191
8.8
2021-12-17 CVE-2021-20607 Integer Underflow (Wrap or Wraparound) vulnerability in Mitsubishielectric Ezsocket, GX Works2 and Melsoft Navigator
Integer Underflow vulnerability in Mitsubishi Electric GX Works2 versions 1.606G and prior, Mitsubishi Electric MELSOFT Navigator versions 2.84N and prior and Mitsubishi Electric EZSocket versions 5.4 and prior allows an attacker to cause a DoS condition in the software by getting a user to open malicious project file specially crafted by an attacker.
local
low complexity
mitsubishielectric CWE-191
5.5
2021-11-05 CVE-2021-41196 Integer Underflow (Wrap or Wraparound) vulnerability in Google Tensorflow
TensorFlow is an open source platform for machine learning.
local
low complexity
google CWE-191
5.5
2021-10-12 CVE-2021-3321 Integer Underflow (Wrap or Wraparound) vulnerability in Zephyrproject Zephyr 2.4.0
Integer Underflow in Zephyr in IEEE 802154 Fragment Reassembly Header Removal.
low complexity
zephyrproject CWE-191
8.8
2021-10-12 CVE-2021-3323 Integer Underflow (Wrap or Wraparound) vulnerability in Zephyrproject Zephyr 2.4.0
Integer Underflow in 6LoWPAN IPHC Header Uncompression in Zephyr.
network
low complexity
zephyrproject CWE-191
critical
9.8