The product performs a calculation that can produce an integer overflow or wraparound when the logic assumes that the resulting value will always be larger than the original value. This occurs when an integer value is incremented to a value that is too large to store in the associated representation. When this occurs, the value may become a very small or negative number.
3,205 vulnerabilities with CWE-190
CVE-2019-5060
HIGH
SDL2_image 2.0.4 - Remote Code Execution via XPM Image Colorhash Integer Overflow
CVSS 8.8
CVE-2019-5059
HIGH
SDL2_image 2.0.4 - Integer Overflow to Heap Buffer Overflow via XPM Image Rendering
CVSS 8.8
CVE-2019-10142
HIGH
Linux kernel <5.0.17 - Memory Corruption
CVSS 7.1
CVE-2019-14444
MEDIUM
GNU Binutils <2.32 - Memory Corruption
CVSS 5.5
CVE-2019-13126
HIGH
NATS Server < 2.0.2 - Denial of Service via Integer Overflow
CVSS 7.5
CVE-2019-14295
MEDIUM
UPX 3.95 - Denial of Service via Skewed PE Section Offset in getElfSections
CVSS 5.5
CVE-2019-14289
MEDIUM
Xpdf 4.01.01 - Buffer Overflow
CVSS 5.5
CVE-2019-14288
HIGH
Xpdf 4.01.01 - Memory Corruption
CVSS 7.8
CVE-2019-14283
MEDIUM
Linux kernel <5.2.3 - Info Disclosure
CVSS 6.8
CVE-2019-2309
CRITICAL
Snapdragon Auto - Memory Corruption
CVSS 9.8
CVE-2019-14250
MEDIUM
GNU Binutils - Heap-Based Buffer Overflow via Zero shstrndx Value in simple_object_elf_match
CVSS 5.5
CVE-2019-12552
MEDIUM
SweetScape 010 Editor 9.0.1 - Denial of Service via Integer Overflow
CVSS 5.5
CVE-2019-9959
MEDIUM
Poppler <0.78.0 - Memory Corruption
CVSS 6.5
CVE-2019-1010249
MEDIUM
Linux Foundation ONOS <2.0.0 - Memory Corruption
CVSS 4.9
CVE-2019-1010065
MEDIUM
The Sleuth Kit <4.6.0 - Integer Overflow
CVSS 6.5
CVE-2019-13115
HIGH
libssh2 < 1.9.0 - Integer Overflow leading to Out-of-Bounds Read in SSH Key Exchange
CVSS 8.1
CVE-2019-1010298
CRITICAL
Linaro/OP-TEE OP-TEE <3.4.0 - Buffer Overflow
CVSS 9.8
CVE-2019-1010297
CRITICAL
Linaro/OP-TEE OP-TEE <3.4.0 - Buffer Overflow
CVSS 9.8
CVE-2019-1010296
CRITICAL
Linaro/OP-TEE OP-TEE <3.4.0 - Buffer Overflow
CVSS 9.8
CVE-2019-1010006
HIGH
Evince 3.26.0 - Buffer Overflow in TIFF Document Renderer
CVSS 7.8
CVE-2019-13590
MEDIUM
SoX <14.4.2 - Null Pointer Dereference
CVSS 5.5
CVE-2019-5052
HIGH
SDL2_image <2.0.4 - Buffer Overflow
CVSS 8.8
CVE-2019-13136
HIGH
ImageMagick < 7.0.8-50 - Integer Overflow in TIFFSeekCustomStream
CVSS 7.8
CVE-2019-13111
MEDIUM
exiv2 < 0.27.1 - Denial of Service via WebPImage::decodeChunks Integer Overflow
CVSS 5.5
CVE-2019-13110
MEDIUM
exiv2 < 0.27.1 - Denial of Service via CiffDirectory::readDirectory Integer Overflow
CVSS 6.5
Details
Vulnerabilities
3,205
Exploit Likelihood
Medium