Skip to main content

CWE archive

CWE-193 CVEs

Programmatic archive

215 CVEs tagged with CWE-19333 Critical, 77 High, 91 Medium, 14 Low, 0 Unrated.

CVE-2019-19721

Published May 15, 2020

An off-by-one error in the DecodeBlock function in codec/sdl_image.c in VideoLAN VLC media player before 3.0.9 allows remote attackers to cause a denial of service (memory corrupt…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2020-11765

Published Apr 14, 2020

An issue was discovered in OpenEXR before 2.4.1. There is an off-by-one error in use of the ImfXdr.h read function by DwaCompressor::Classifier::Classifier, leading to an out-of-b…

CVSS 5.5 · Medium
evidence mentions
1
Buzz score
11.9

CVE-2020-8443

Published Jan 30, 2020

In OSSEC-HIDS 2.7 through 3.5.0, the server component responsible for log analysis (ossec-analysisd) is vulnerable to an off-by-one heap-based buffer overflow during the cleaning…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2020-6835

Published Jan 10, 2020

An issue was discovered in Bftpd before 5.4. There is a heap-based off-by-one error during file-transfer error checking.

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2014-8182

Published Jan 2, 2020

An off-by-one error leading to a crash was discovered in openldap 2.4 when processing DNS SRV messages. If slapd was configured to use the dnssrv backend, an attacker could crash…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2015-0841

Published Dec 9, 2019

Off-by-one error in the readBuf function in listener.cpp in libcapsinetwork and monopd before 0.9.8, allows remote attackers to cause a denial of service (crash) via a long line.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2010-5331

Published Jul 27, 2019

In the Linux kernel before 2.6.34, a range check issue in drivers/gpu/drm/radeon/atombios.c could cause an off by one (buffer overflow) problem. NOTE: At least one Linux maintaine…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2019-3813

Published Feb 4, 2019

Spice, versions 0.5.2 through 0.14.1, are vulnerable to an out-of-bounds read due to an off-by-one error in memslot_get_virt. This may lead to a denial of service, or, in the wors…

CVSS 7.5 · High

CVE-2018-14679

Published Jul 28, 2018

An issue was discovered in mspack/chmd.c in libmspack before 0.7alpha. There is an off-by-one error in the CHM PMGI/PMGL chunk number validity checks, which could lead to denial o…

CVSS 6.5 · Medium
Showing 151-175 of 215 CVEsPage 7 of 9