A product calculates or uses an incorrect maximum or minimum value that is 1 more, or 1 less, than the correct value.
218 vulnerabilities with CWE-193
CVE-2026-2703
LOW
xlnt-community xlnt <=1.6.1 - Memory Corruption
CVSS 3.3
CVE-2026-21870
MEDIUM
BACnet Protocol Stack <1.5.0.rc2 - Buffer Overflow
CVSS 5.5
CVE-2026-23951
MEDIUM
SumatraPDF - Out-of-bounds Read in PalmDbReader Mobi File Handling
CVSS 5.5
CVE-2026-21504
MEDIUM
iccDEV < 2.3.1.2 - Heap-based Buffer Overflow in ToneMap Parser
CVSS 6.6
CVE-2026-21494
MEDIUM
iccDEV < 2.3.1.2 - Heap-based Buffer Overflow in CIccTagLut8::Validate()
CVSS 6.1
CVE-2026-21491
MEDIUM
iccDEV < 2.3.1.2 - Heap-based Buffer Overflow in CIccTagTextDescription
CVSS 6.1
CVE-2026-21490
MEDIUM
iccDEV < 2.3.1.2 - Heap-based Buffer Overflow in CIccTagLut16::Validate()
CVSS 6.1
CVE-2025-71161
HIGH
Linux Kernel 4.5-6.18.6 - Denial of Service via dm-verity Recursive Forward Error Correction
CVSS 7.5
CVE-2025-71087
MEDIUM
Linux Kernel 4.7.0-6.18.3 - Memory Corruption via iavf_config_rss_reg() Off-by-One Error
CVSS 5.5
CVE-2025-11215
MEDIUM
Google Chrome <141.0.7390.54 - Memory Corruption
CVSS 4.3
CVE-2025-4582
HIGH
RTI Connext Professional Buffer Over-read in Core Libraries
CVSS 7.1
CVE-2025-38600
HIGH
Linux Kernel - Off-by-one Error in mt7925_mcu_hw_scan
CVSS 8.8
CVE-2025-54349
MEDIUM
iperf3 3.2-3.19.1 - Heap-Based Buffer Overflow via Off-by-One Error
CVSS 6.5
CVE-2025-53014
LOW
ImageMagick < 6.9.13-26 - Out-of-bounds Read in InterpretImageFilename
CVSS 3.7
CVE-2025-52497
MEDIUM
Mbed TLS < 3.6.4 - Heap-Based Buffer Underflow via PEM Parsing
CVSS 4.8
CVE-2025-47711
MEDIUM
nbdkit - Denial of Service via Large Data Block Response
CVSS 6.5
CVE-2025-23150
HIGH
Linux Kernel - Use-After-Free via Off-by-One Error in ext4 do_split
CVSS 7.8
CVE-2025-43973
MEDIUM
GoBGP < 3.35.0 - Off-by-one Error in RTR Message Length Handling
CVSS 6.8
CVE-2025-43971
HIGH
GoBGP < 3.35.0 - Denial of Service via Zero softwareVersionLen
CVSS 8.6
CVE-2025-37893
HIGH
Linux Kernel 6.1-6.1.133, 6.1.0-6.6.86, 6.7.0-6.12.22, 6.13.0-6.13.10, 6.14.0-6.14.1 - BPF JIT Off-by-one Error
CVSS 7.8
CVE-2025-30742
MEDIUM
atophttpd 2.8.0 - Out-of-Bounds Read via Off-by-One Error in httpd.c
CVSS 5.3
CVE-2025-21813
MEDIUM
Linux Kernel - Off-by-one Error in Timer Migration Root Connection
CVSS 5.5
CVE-2024-10442
CRITICAL
Synology Replication Service <1.0.12-0066, 1.2.2-0353, 1.3.0-0423 -...
CVSS 10.0
CVE-2024-57990
HIGH
Linux Kernel 6.10.13-6.11 - Off-by-One Error in mt7925_load_clc()
CVSS 7.8
CVE-2024-57259
HIGH
Das U-Boot <2025.01-rc1 - Memory Corruption
CVSS 7.1
Details
Vulnerabilities
218