A product calculates or uses an incorrect maximum or minimum value that is 1 more, or 1 less, than the correct value.
198 vulnerabilities with CWE-193
CVE-2020-27171
MEDIUM
Linux kernel <5.11.8 - Info Disclosure
CVSS 6.0
CVE-2020-35893
HIGH
simple-slab < 0.3.3 - Use-After-Free via remove() Off-by-One Error
CVSS 7.5
CVE-2020-29040
HIGH
Xen < 4.14.0 - Off-by-one Error in x86 HVM Guest Handling
CVSS 8.8
CVE-2020-14510
CRITICAL
GateManager < 9.2c - Unauthenticated Hardcoded Credential Exposure
CVSS 9.8
CVE-2020-14508
HIGH
Secomea GateManager <9.2c - Code Execution or Denial of Service via Off-by-One
CVSS 8.1
CVE-2020-3969
HIGH
VMware ESXi <7.0-1.20.16321839,6.7-202004101-SG,6.5-202005401-SG - RCE
CVSS 7.8
CVE-2020-10062
CRITICAL
Zephyr < 2.2.0 - Memory Corruption via MQTT Packet Length Decoder
CVSS 9.0
CVE-2020-11765
MEDIUM
OpenEXR < 2.4.1 - Out-of-bounds Read in DwaCompressor Classifier
CVSS 5.5
CVE-2020-3840
HIGH
iPadOS < 13.3.1 - Memory Corruption via Racoon Configuration File
CVSS 7.8
CVE-2020-8443
CRITICAL
OSSEC-HIDS 2.7-3.5.0 - Buffer Overflow
CVSS 9.8
CVE-2020-7044
HIGH
Wireshark 3.2.0 - Denial of Service in WASSP Dissector
CVSS 7.5
CVE-2020-6835
CRITICAL
bftpd < 5.4 - Heap-Based Off-by-One Error during File-Transfer Error Checking
CVSS 9.8
CVE-2019-19721
HIGH
VLC media player <3.0.9 - Memory Corruption
CVSS 7.8
CVE-2019-12521
MEDIUM
Squid 3.0-4.7 - Denial of Service via ESI Element Stack Overflow
CVSS 5.9
CVE-2019-19906
HIGH
cyrus-sasl < 2.1.28 - Unauthenticated Denial of Service via Malformed LDAP Packet
CVSS 7.5
CVE-2019-18423
HIGH
Xen 4.8-4.12.x - Denial of Service via XENMEM_add_to_physmap Hypercall
CVSS 8.8
CVE-2019-14532
CRITICAL
The Sleuth Kit <4.6.6 - Memory Corruption
CVSS 9.8
CVE-2019-14323
HIGH
SSDP Responder <1.5 - Buffer Overflow
CVSS 7.5
CVE-2019-13306
HIGH
ImageMagick 7.0.8-50 - Stack-based Buffer Overflow in WritePNMImage
CVSS 7.8
CVE-2019-13305
HIGH
ImageMagick 7.0.8-50 Q16 - Stack-based Buffer Overflow in WritePNMImage
CVSS 7.8
CVE-2019-10131
HIGH
ImageMagick <7.0.7-28 - Info Disclosure
CVSS 7.1
CVE-2019-8272
CRITICAL
UltraVNC < 1.2.2.3 - Remote Code Execution via Off-by-one Error
CVSS 9.8
CVE-2019-8268
CRITICAL
UltraVNC < 1.2.2.3 - Remote Code Execution via ClientConnection::ReadString Off-by-one Error
CVSS 9.8
CVE-2019-9209
MEDIUM
Wireshark 2.4.0-2.4.12 and 2.6.0-2.6.6 - Denial of Service via ASN.1 BER Time Value Buffer Overflow
CVSS 5.5
CVE-2019-3813
HIGH
Spice 0.5.2-0.14.1 - Unauthenticated Denial of Service via Off-by-One Error in memslot_get_virt
CVSS 7.5
Details
Vulnerabilities
198