All CVEs (59)
CVE-2022-40138
CRITICALAn integer conversion error in Hermes bytecode generation, prior to commit 6aa825e480d48127b480b08d13adf70033237097, could have been used to perform Out-Of-Bounds operations and subsequently execute a...
CVE-2021-38187
CRITICALAn issue was discovered in the anymap crate through 0.12.1 for Rust. It violates soundness via conversion of a *u8 to a *u64.
CVE-2021-36357
CRITICALAn issue was discovered in OpenPOWER 2.6 firmware. unpack_timestamp() calls le32_to_cpu() for endian conversion of a uint16_t "year" value, resulting in a type mismatch that can truncate a higher inte...
CVE-2019-19317
CRITICALlookupName in resolve.c in SQLite 3.30.1 omits bits from the colUsed bitmask in the case of a generated column, which allows attackers to cause a denial of service or possibly have unspecified other i...
CVE-2016-3074
CRITICALInteger signedness error in GD Graphics Library 2.1.1 (aka libgd or libgd2) allows remote attackers to cause a denial of service (crash) or potentially execute arbitrary code via crafted compressed gd...
CVE-2024-49093
HIGHWindows Resilient File System (ReFS) Elevation of Privilege Vulnerability
CVE-2024-26162
HIGHMicrosoft ODBC Driver Remote Code Execution Vulnerability
CVE-2023-24884
HIGHMicrosoft PostScript and PCL6 Class Printer Driver Remote Code Execution Vulnerability
CVE-2023-23388
HIGHWindows Bluetooth Driver Elevation of Privilege Vulnerability
CVE-2021-23997
HIGHDue to unexpected data type conversions, a use-after-free could have occurred when interacting with the font cache. We presume that with enough effort this could have been exploited to run arbitrary c...
CVE-2009-0231
HIGHThe Embedded OpenType (EOT) Font Engine (T2EMBED.DLL) in Microsoft Windows 2000 SP4, XP SP2 and SP3, Server 2003 SP2, Vista Gold, SP1, and SP2, and Server 2008 Gold and SP2 allows remote attackers to ...
CVE-2023-29346
HIGHNTFS Elevation of Privilege Vulnerability
CVE-2023-23401
HIGHWindows Media Remote Code Execution Vulnerability
CVE-2023-21736
HIGHMicrosoft Office Visio Remote Code Execution Vulnerability
CVE-2021-3444
HIGHThe bpf verifier in the Linux kernel did not properly handle mod32 destination register truncation when the source register was known to be 0. A local attacker with the ability to load bpf programs co...
CVE-2021-32461
HIGHTrend Micro Password Manager (Consumer) version 5.0.0.1217 and below is vulnerable to an Integer Truncation Privilege Escalation vulnerability which could allow a local attacker to trigger a buffer ov...
CVE-2019-14563
HIGHInteger truncation in EDK II may allow an authenticated user to potentially enable escalation of privilege via local access.
CVE-2017-7308
HIGHThe packet_set_ring function in net/packet/af_packet.c in the Linux kernel through 4.10.6 does not properly validate certain block-size data, which allows local users to cause a denial of service (int...
CVE-2008-3282
HIGHInteger overflow in the rtl_allocateMemory function in sal/rtl/source/alloc_global.c in the memory allocator in OpenOffice.org (OOo) 2.4.1, on 64-bit platforms, allows remote attackers to cause a deni...
CVE-2007-4988
HIGHSign extension error in the ReadDIBImage function in ImageMagick before 6.3.5-9 allows context-dependent attackers to execute arbitrary code via a crafted width value in an image file, which triggers ...
CVE-2007-4268
HIGHInteger signedness error in the Networking component in Apple Mac OS X 10.4 through 10.4.10 allows local users to execute arbitrary code via a crafted AppleTalk message with a negative value, which sa...
CVE-2024-1552
HIGHIncorrect code generation could have led to unexpected numeric conversions and potential undefined behavior.*Note:* This issue only affects 32-bit ARM devices. This vulnerability affects Firefox < 123...
CVE-2023-46848
HIGHSquid is vulnerable to Denial of Service, where a remote attacker can perform DoS by sending ftp:// URLs in HTTP Request messages or constructing ftp:// URLs from FTP Native input.
CVE-2023-20006
HIGHA vulnerability in the hardware-based SSL/TLS cryptography functionality of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software for Cisco Firepower 2100 ...