CWE-680

Integer Overflow to Buffer Overflow

Parent: CWE-190 - Integer Overflow or Wraparound

The product performs a calculation to determine how much memory to allocate, but an integer overflow can occur that causes less memory to be allocated than expected, leading to a buffer overflow.

104 vulnerabilities with CWE-680
CVE-2021-32765 HIGH
hiredis < 1.0.1 - Integer Overflow via Malicious RESP Multi-Bulk Protocol Data
CVSS 8.8
CVE-2021-41099 HIGH
Redis <6.2.6/<6.0.16/<5.0.14 - Heap Corruption via proto-max-bulk-len
CVSS 7.5
CVE-2021-32762 HIGH
Redis 5.0.0-5.0.13 - Integer Overflow in Multi-Bulk Reply Parsing
CVSS 7.5
CVE-2021-32687 HIGH
Redis <6.2.6/<6.0.16/<5.0.14 - Heap Corruption via set-max-intset-entries
CVSS 7.5
CVE-2021-32628 HIGH
Redis 5.0.0-5.0.13 - Remote Code Execution via Ziplist Integer Overflow
CVSS 7.5
CVE-2021-32627 HIGH
Redis 5.0.0-5.0.13 - Remote Code Execution via Integer Overflow in Stream Elements
CVSS 7.5
CVE-2021-30354 HIGH
Amazon Kindle <5.13.4 - Code Injection
CVSS 8.6
CVE-2021-21850 HIGH
GPAC 1.0.1 - Integer Overflow via MPEG-4 'trun' Atom Handling
CVSS 8.8
CVE-2021-21849 HIGH
GPAC 1.0.1 - Heap-Based Buffer Overflow via MPEG-4 tfra Atom
CVSS 8.8
CVE-2021-21848 HIGH
GPAC 1.0.1 - Heap-Based Buffer Overflow via MPEG-4 stz2 Atom Parsing
CVSS 8.8
CVE-2021-21842 HIGH
GPAC 1.0.1 - Heap-Based Buffer Overflow via MPEG-4 'ssix' Atom Processing
CVSS 8.8
CVE-2021-21841 HIGH
GPAC 1.0.1 - Heap-Based Buffer Overflow via MPEG-4 'sbgp' Atom Parsing
CVSS 8.8
CVE-2021-21840 HIGH
GPAC 1.0.1 - Heap-Based Buffer Overflow via MPEG-4 Atom Processing
CVSS 8.8
CVE-2021-21836 HIGH
GPAC 1.0.1 - Heap-Based Buffer Overflow via MPEG-4 ctts FOURCC Code
CVSS 8.8
CVE-2021-21835 HIGH
GPAC 1.0.1 - Heap-Based Buffer Overflow via MPEG-4 csgp Atom Decoding
CVSS 8.8
CVE-2021-21834 HIGH
GPAC 1.0.1 - Heap-Based Buffer Overflow via MPEG-4 co64 Atom Decoding
CVSS 8.8
CVE-2021-21862 HIGH
GPAC 1.0.1 - Heap-Based Buffer Overflow via MPEG-4 Xtra FOURCC Parser
CVSS 8.8
CVE-2021-21858 HIGH
GPAC 1.0.1 - Heap-Based Buffer Overflow via MPEG-4 Decoding
CVSS 8.8
CVE-2021-21857 HIGH
GPAC 1.0.1 - Heap-Based Buffer Overflow via MPEG-4 Decoding
CVSS 8.8
CVE-2021-21856 HIGH
GPAC Project on Advanced Content 1.0.1 - Heap-Based Buffer Overflow via MPEG-4 Decoding
CVSS 8.8
CVE-2021-21855 HIGH
GPAC Project on Advanced Content 1.0.1 - Heap-Based Buffer Overflow via MPEG-4 Decoding
CVSS 8.8
CVE-2021-21854 HIGH
GPAC 1.0.1 - Heap-Based Buffer Overflow via MPEG-4 Decoding
CVSS 8.8
CVE-2021-21853 HIGH
GPAC 1.0.1 - Heap-Based Buffer Overflow via MPEG-4 Decoding
CVSS 8.8
CVE-2021-21852 HIGH
GPAC 1.0.1 - Integer Overflow in MPEG-4 stss Decoder
CVSS 8.8
CVE-2021-21851 HIGH
GPAC 1.0.1 - Integer Overflow in MPEG-4 CSGP Decoder Sample Group Description Indices
CVSS 8.8
Details
Vulnerabilities 104