Skip to main content

CWE archive

CWE-191 CVEs

Programmatic archive

493 CVEs tagged with CWE-19157 Critical, 256 High, 162 Medium, 18 Low, 0 Unrated.

CVE-2019-10053

Published May 13, 2019

An issue was discovered in Suricata 4.1.x before 4.1.4. If the input of the function SSHParseBanner is composed only of a \n character, then the program runs into a heap-based buf…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2018-4011

Published Mar 21, 2019

An exploitable integer underflow vulnerability exists in the mdnscap binary of the CUJO Smart Firewall, version 7003. When parsing SRV records in an mDNS packet, the "RDLENGTH" va…

CVSS 7.5 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2018-20180

Published Mar 15, 2019

rdesktop versions up to and including v1.8.3 contain an Integer Underflow that leads to a Heap-Based Buffer Overflow in the function rdpsnddbg_process() and results in memory corr…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2018-20179

Published Mar 15, 2019

rdesktop versions up to and including v1.8.3 contain an Integer Underflow that leads to a Heap-Based Buffer Overflow in the function lspci_process() and results in memory corrupti…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2018-11301

Published Sep 18, 2018

In all android releases (Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, lack of check on buffer length while processing debug log event from fi…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2018-14325

Published Jul 16, 2018

In MP4v2 2.0.0, there is an integer underflow (with resultant memory corruption) when parsing MP4Atom in mp4atom.cpp.

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2018-12230

Published Jul 10, 2018

An wrong logical check identified in the transferFrom function of a smart contract implementation for RemiCoin (RMC), an Ethereum ERC20 token, allows the attacker to steal tokens…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2018-5865

Published Jul 6, 2018

While processing a debug log event from firmware in all Android releases from CAF using the Linux kernel (Android for MSM, Firefox OS for MSM, QRD Android) before security patch l…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2018-12025

Published Jun 11, 2018

The transferFrom function of a smart contract implementation for FuturXE (FXE), an Ethereum ERC20 token, allows attackers to accomplish an unauthorized transfer of digital assets…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2018-5850

Published Jun 6, 2018

In the function csr_update_fils_params_rso(), insufficient validation on a key length can result in an integer underflow leading to a buffer overflow in all Android releases from…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort
Showing 426-450 of 493 CVEsPage 18 of 20