CWE-680
105 CVEs • Abstraction: Compound
Integer Overflow to Buffer Overflow
The product performs a calculation to determine how much memory to allocate, but an integer overflow can occur that causes less memory to be allocated than expected, leading to a buffer overflow.
CVEs (105)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine. Prior to 7.0.8, a large BPF filter file provided to Suricata at startup can lead to a buffer overflow...Show more |
1Qualcomm 263205 Mobile Platform Firmware 215 Mobile Platform Firmware315 5g Iot Modem Firmware+260 moreJun 17, 2026 Nov 4, 2024 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption while processing voice packet with arbitrary data received from ADSP. |
The bson_strfreev function in the MongoDB C driver library may be susceptible to an integer overflow where the function will try to free memory at a negative offset. This may result in memory corruption. This issue affec...Show more |
oqs-provider is a provider for the OpenSSL 3 cryptography library that adds support for post-quantum cryptography in TLS, X.509, and S/MIME using post-quantum algorithms from liboqs. Flaws have been identified in the way...Show more |
Tencent Libpag v4.3 is vulnerable to Buffer Overflow. A user can send a crafted image to trigger a overflow leading to remote code execution. |
In _imagingcms.c in Pillow before 10.3.0, a buffer overflow exists because strcpy is used instead of strncpy. |
1Qualcomm 33Aqt1000 Firmware Fastconnect 6200 FirmwareFastconnect 6700 Firmware+30 moreJun 17, 2026 Apr 1, 2024 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption while allocating memory for graphics. |
1Qualcomm 3Auto 4g Modem Firmware Auto 5g Modem Rf FirmwareC V2x 9150 FirmwareJun 17, 2026 Apr 1, 2024 N/A· v4 7.5 HIGH· v3 N/A· v2 Transient DOS while decoding the ToBeSignedMessage in Automotive Telematics. |
2Debian Mozilla3Debian Linux FirefoxThunderbirdJun 17, 2026 Mar 19, 2024 N/A· v4 8.4 HIGH· v3 N/A· v2 `AppendEncodedAttributeValue(), ExtraSpaceNeededForAttrEncoding()` and `AppendEncodedCharacters()` could have experienced integer overflows, causing underallocation of an output buffer leading to an out of bounds write....Show more |
An issue in Wireshark before 4.2.0 allows a remote attacker to cause a denial of service via the packet-bgp.c, dissect_bgp_open(tvbuff_t*tvb, proto_tree*tree, packet_info*pinfo), optlen components. NOTE: this is disputed...Show more |
EDK2 is susceptible to a vulnerability in the CreateHob() function, allowing a user to trigger a integer overflow to buffer overflow via a local network. Successful exploitation of this vulnerability may result in a comp...Show more |
1Qualcomm 211315 5g Iot Modem Firmware Apq5053 Aa FirmwareAqt1000 Firmware+208 moreJun 17, 2026 Dec 5, 2023 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption in HLOS while invoking IOCTL calls from user-space. |
1Qualcomm 262315 5g Iot Modem Firmware 8098 Firmware8998 Firmware+259 moreJun 17, 2026 Dec 5, 2023 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption while using the UIM diag command to get the operators name. |
1Qualcomm 275315 5g Iot Modem Firmware 9205 Lte Modem FirmwareAqt1000 Firmware+272 moreJun 17, 2026 Dec 5, 2023 N/A· v4 8.8 HIGH· v3 N/A· v2 Memory corruption while loading an ELF segment in TEE Kernel. |
1Intel 1Aptio V Uefi Firmware Integrator Tools Jun 17, 2026 Nov 14, 2023 N/A· v4 5.5 MEDIUM· v3 N/A· v2 Integer overflow in some Intel(R) Aptio* V UEFI Firmware Integrator Tools may allow an authenticated user to potentially enable denial of service via local access. |
3Apache FedoraprojectHcltech3Bigfix Platform FedoraXerces C++Jun 17, 2026 Oct 11, 2023 N/A· v4 8.8 HIGH· v3 N/A· v2 An integer overflow in xerces-c++ 3.2.3 in BigFix Platform allows remote attackers to cause out-of-bound access via HTTP request. |
1Qualcomm 51Aqt1000 Firmware Qca6390 FirmwareQca6391 Firmware+48 moreJun 17, 2026 Sep 5, 2023 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption in RIL due to Integer Overflow while triggering qcril_uim_request_apdu request. |
1Qualcomm 34Aqt1000 Firmware Qca6391 FirmwareQca6420 Firmware+31 moreJun 17, 2026 Aug 8, 2023 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption in RIL while trying to send apdu packet. |
Redis is an in-memory database that persists on disk. A specially crafted Lua script executing in Redis can trigger a heap overflow in the cjson library, and result with heap corruption and potentially remote code execut...Show more |
1Intel 10Server System D50tnp1mhcpac Firmware Server System D50tnp1mhcrac FirmwareServer System D50tnp1mhcrlc Firmware+7 moreJun 17, 2026 May 10, 2023 N/A· v4 5.5 MEDIUM· v3 N/A· v2 Integer overflow in some Intel(R) Server Board BMC firmware before version 2.90 may allow a privileged user to enable denial of service via local access. |