Vulnerabilities > Off-by-one Error

DATE CVE VULNERABILITY TITLE RISK
2022-08-19 CVE-2020-27793 Off-by-one Error vulnerability in Radare Radare2
An off-by-one overflow flaw was found in radare2 due to mismatched array length in core_java.c.
network
low complexity
radare CWE-193
7.5
2022-08-04 CVE-2022-34970 Off-by-one Error vulnerability in Crowcpp Crow
Crow before 1.0+4 has a heap-based buffer overflow via the function qs_parse in query_string.h.
network
low complexity
crowcpp CWE-193
critical
9.8
2022-04-14 CVE-2021-21938 Off-by-one Error vulnerability in Accusoft Imagegear 19.10
A heap-based buffer overflow vulnerability exists in the Palette box parser functionality of Accusoft ImageGear 19.10.
network
low complexity
accusoft CWE-193
8.8
2022-03-02 CVE-2022-25051 Off-by-one Error vulnerability in RTL 433 Project RTL 433 21.12
An Off-by-one Error occurs in cmr113_decode of rtl_433 21.12 when decoding a crafted file.
local
low complexity
rtl-433-project CWE-193
5.5
2022-02-23 CVE-2021-4070 Off-by-one Error vulnerability in V2Fly V2Ray-Core
Off-by-one Error in GitHub repository v2fly/v2ray-core prior to 4.44.0.
network
low complexity
v2fly CWE-193
critical
9.1
2022-02-18 CVE-2021-3930 Off-by-one Error vulnerability in multiple products
An off-by-one error was found in the SCSI device emulation in QEMU.
local
low complexity
qemu redhat debian CWE-193
6.5
2022-02-14 CVE-2022-24988 Off-by-one Error vulnerability in Galois 2P8 Project Galois 2P8 0.1.0/0.1.1
In galois_2p8 before 0.1.2, PrimitivePolynomialField::new has an off-by-one buffer overflow for a vector.
network
low complexity
galois-2p8-project CWE-193
critical
9.8
2021-05-14 CVE-2021-29529 Off-by-one Error vulnerability in Google Tensorflow
TensorFlow is an end-to-end open source platform for machine learning.
local
low complexity
google CWE-193
7.8
2021-04-29 CVE-2021-31875 Off-by-one Error vulnerability in Cesanta Mongooseos MJS 1.26
In mjs_json.c in Cesanta MongooseOS mJS 1.26, a maliciously formed JSON string can trigger an off-by-one heap-based buffer overflow in mjs_json_parse, which can potentially lead to redirection of control flow.
network
low complexity
cesanta CWE-193
critical
9.8
2021-03-20 CVE-2020-27171 Off-by-one Error vulnerability in multiple products
An issue was discovered in the Linux kernel before 5.11.8.
local
low complexity
linux fedoraproject debian canonical CWE-193
6.0