The product performs a calculation to determine how much memory to allocate, but an integer overflow can occur that causes less memory to be allocated than expected, leading to a buffer overflow.
104 vulnerabilities with CWE-680
CVE-2021-32765
HIGH
hiredis < 1.0.1 - Integer Overflow via Malicious RESP Multi-Bulk Protocol Data
CVSS 8.8
CVE-2021-41099
HIGH
Redis <6.2.6/<6.0.16/<5.0.14 - Heap Corruption via proto-max-bulk-len
CVSS 7.5
CVE-2021-32762
HIGH
Redis 5.0.0-5.0.13 - Integer Overflow in Multi-Bulk Reply Parsing
CVSS 7.5
CVE-2021-32687
HIGH
Redis <6.2.6/<6.0.16/<5.0.14 - Heap Corruption via set-max-intset-entries
CVSS 7.5
CVE-2021-32628
HIGH
Redis 5.0.0-5.0.13 - Remote Code Execution via Ziplist Integer Overflow
CVSS 7.5
CVE-2021-32627
HIGH
Redis 5.0.0-5.0.13 - Remote Code Execution via Integer Overflow in Stream Elements
CVSS 7.5
CVE-2021-30354
HIGH
Amazon Kindle <5.13.4 - Code Injection
CVSS 8.6
CVE-2021-21850
HIGH
GPAC 1.0.1 - Integer Overflow via MPEG-4 'trun' Atom Handling
CVSS 8.8
CVE-2021-21849
HIGH
GPAC 1.0.1 - Heap-Based Buffer Overflow via MPEG-4 tfra Atom
CVSS 8.8
CVE-2021-21848
HIGH
GPAC 1.0.1 - Heap-Based Buffer Overflow via MPEG-4 stz2 Atom Parsing
CVSS 8.8
CVE-2021-21842
HIGH
GPAC 1.0.1 - Heap-Based Buffer Overflow via MPEG-4 'ssix' Atom Processing
CVSS 8.8
CVE-2021-21841
HIGH
GPAC 1.0.1 - Heap-Based Buffer Overflow via MPEG-4 'sbgp' Atom Parsing
CVSS 8.8
CVE-2021-21840
HIGH
GPAC 1.0.1 - Heap-Based Buffer Overflow via MPEG-4 Atom Processing
CVSS 8.8
CVE-2021-21836
HIGH
GPAC 1.0.1 - Heap-Based Buffer Overflow via MPEG-4 ctts FOURCC Code
CVSS 8.8
CVE-2021-21835
HIGH
GPAC 1.0.1 - Heap-Based Buffer Overflow via MPEG-4 csgp Atom Decoding
CVSS 8.8
CVE-2021-21834
HIGH
GPAC 1.0.1 - Heap-Based Buffer Overflow via MPEG-4 co64 Atom Decoding
CVSS 8.8
CVE-2021-21862
HIGH
GPAC 1.0.1 - Heap-Based Buffer Overflow via MPEG-4 Xtra FOURCC Parser
CVSS 8.8
CVE-2021-21858
HIGH
GPAC 1.0.1 - Heap-Based Buffer Overflow via MPEG-4 Decoding
CVSS 8.8
CVE-2021-21857
HIGH
GPAC 1.0.1 - Heap-Based Buffer Overflow via MPEG-4 Decoding
CVSS 8.8
CVE-2021-21856
HIGH
GPAC Project on Advanced Content 1.0.1 - Heap-Based Buffer Overflow via MPEG-4 Decoding
CVSS 8.8
CVE-2021-21855
HIGH
GPAC Project on Advanced Content 1.0.1 - Heap-Based Buffer Overflow via MPEG-4 Decoding
CVSS 8.8
CVE-2021-21854
HIGH
GPAC 1.0.1 - Heap-Based Buffer Overflow via MPEG-4 Decoding
CVSS 8.8
CVE-2021-21853
HIGH
GPAC 1.0.1 - Heap-Based Buffer Overflow via MPEG-4 Decoding
CVSS 8.8
CVE-2021-21852
HIGH
GPAC 1.0.1 - Integer Overflow in MPEG-4 stss Decoder
CVSS 8.8
CVE-2021-21851
HIGH
GPAC 1.0.1 - Integer Overflow in MPEG-4 CSGP Decoder Sample Group Description Indices
CVSS 8.8
Details
Vulnerabilities
104