The product subtracts one value from another, such that the result is less than the minimum allowable integer value, which produces a value that is not equal to the correct result.
501 vulnerabilities with CWE-191
CVE-2021-40054
HIGH
Huawei EMUI and Magic UI - Integer Underflow in atcmdserver Module
CVSS 7.5
CVE-2021-4066
HIGH
Google Chrome <96.0.4664.93 - Heap Corruption
CVSS 8.8
CVE-2021-37706
HIGH
PJSIP < 2.11.1 - Remote Code Execution via STUN ERROR-CODE Attribute Integer Underflow
CVSS 7.3
CVE-2021-43083
HIGH
Apache PLC4X - PLC4C <0.9.1 - Buffer Overflow
CVSS 8.8
CVE-2021-20607
MEDIUM
Mitsubishi Electric GX Works2 < 1.606g, MELSOFT Navigator < 2.84N, EZSocket < 5.4 - DoS via Malicious Project File
CVSS 5.5
CVE-2021-24894
MEDIUM
Reviews Plus < 1.2.14 - Authenticated Denial of Service via Rating Submission
CVSS 6.5
CVE-2021-31889
HIGH
Capital Embedded AR Classic - Information Leak and Denial of Service via Malformed TCP SACK Option
CVSS 7.5
CVE-2021-41196
MEDIUM
TensorFlow <2.7.0 - Memory Corruption
CVSS 5.5
CVE-2021-3323
HIGH
Zephyr 2.4.0-2.4.9 - Integer Underflow in 6LoWPAN IPHC Header Uncompression
CVSS 8.3
CVE-2021-3321
HIGH
Zephyr 2.4.0-2.4.9 - Integer Underflow in IEEE 802.15.4 Fragment Reassembly
CVSS 7.5
CVE-2021-41821
MEDIUM
Wazuh < 4.1.5 - Authenticated Denial of Service via Integer Underflow
CVSS 6.5
CVE-2021-21897
HIGH
Ribbonsoft dxflib 3.17.0 - Remote Code Execution via Crafted DXF File
CVSS 8.8
CVE-2021-1920
CRITICAL
Qualcomm APQ8009 and related firmware - Integer Underflow via RTCP Packet Handling
CVSS 9.8
CVE-2021-1919
CRITICAL
Qualcomm APQ8009 and related firmware - Integer Underflow in RTCP Length Handling
CVSS 9.8
CVE-2021-21811
CRITICAL
AT&T Labs Xmill 0.7 - Memory Corruption via XML CreateLabelOrAttrib
CVSS 9.8
CVE-2021-1108
HIGH
NVIDIA Jetson Linux 32.1-32.6.1 - Integer Underflow in FuSa Capture (VI/ISP)
CVSS 7.3
CVE-2021-22379
HIGH
Huawei Smartphone - Memory Corruption
CVSS 7.5
CVE-2021-2390
MEDIUM
MySQL Server <= 5.7.34 and <= 8.0.25 - Unauthenticated Denial of Service in InnoDB
CVSS 5.9
CVE-2021-33536
HIGH
Weidmueller Industrial WLAN Firmware < 1.16.18 - Unauthenticated Denial of Service via ServiceAgent Integer Underflow
CVSS 7.5
CVE-2021-31956
HIGH
KEV
Windows NTFS - Elevation of Privilege via Integer Underflow
CVSS 7.8
CVE-2021-20240
HIGH
gdk-pixbuf < 2.42.0 - Integer Underflow via Crafted GIF Image
CVSS 8.8
CVE-2021-31178
MEDIUM
Microsoft 365 Apps - Information Disclosure via Integer Underflow
CVSS 5.5
CVE-2021-25849
HIGH
Moxa VPort 06EC-2V Series Firmware < 1.1 - Denial of Service via LLDP Packet PortID TLV
CVSS 7.5
CVE-2021-25846
HIGH
Moxa VPort 06EC-2V Series Firmware < 1.1 - Denial of Service via LLDP ChassisID TLV
CVSS 7.5
CVE-2021-3472
HIGH
x.org x_server < 1.20.11 - Integer Underflow
CVSS 7.8
Details
Vulnerabilities
501