Skip to main content

CWE archive

CWE-189 CVEs

Programmatic archive

1,247 CVEs tagged with CWE-189379 Critical, 275 High, 550 Medium, 43 Low, 0 Unrated.

CVE-2013-6489

Published Feb 6, 2014

Integer signedness error in the MXit functionality in Pidgin before 2.10.8 allows remote attackers to cause a denial of service (segmentation fault) via a crafted emoticon value,…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2013-6487

Published Feb 6, 2014

Integer overflow in libpurple/protocols/gg/lib/http.c in the Gadu-Gadu (gg) parser in Pidgin before 2.10.8 allows remote attackers to have an unspecified impact via a large Conten…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2013-6477

Published Feb 6, 2014

Multiple integer signedness errors in libpurple in Pidgin before 2.10.8 allow remote attackers to cause a denial of service (application crash) via a crafted timestamp value in an…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2013-4449

Published Feb 5, 2014

The rwm overlay in OpenLDAP 2.4.23, 2.4.36, and earlier does not properly count references, which allows remote attackers to cause a denial of service (slapd crash) by unbinding i…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2012-2107

Published Feb 4, 2014

Integer overflow in the main function in util/lpci_main.c in Csound before 5.17.2, when converting a file, allows user-assisted remote attackers to execute arbitrary code via a cr…

CVSS 9.3 · Critical
Vendor/product tagsBeta · best-effort

CVE-2012-2106

Published Feb 4, 2014

Integer overflow in the pv_import function in util/pv_import.c in Csound 5.16.6, when converting a file, allows remote attackers to execute arbitrary code via a crafted file, whic…

CVSS 9.3 · Critical
Vendor/product tagsBeta · best-effort

CVE-2013-6933

Published Jan 23, 2014

The parseRTSPRequestString function in Live Networks Live555 Streaming Media 2011.08.13 through 2013.11.25, as used in VideoLAN VLC Media Player, allows remote attackers to cause…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2013-4564

Published Jan 7, 2014

Libreswan 3.6 allows remote attackers to cause a denial of service (crash) via a small length value and (1) no version or (2) an invalid major number in an IKE packet.

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2014-0791

Published Jan 3, 2014

Integer overflow in the license_read_scope_list function in libfreerdp/core/license.c in FreeRDP through 1.0.2 allows remote RDP servers to cause a denial of service (application…

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2013-6376

Published Dec 14, 2013

The recalculate_apic_map function in arch/x86/kvm/lapic.c in the KVM subsystem in the Linux kernel through 3.12.5 allows guest OS users to cause a denial of service (host OS crash…

CVSS 5.2 · Medium
Vendor/product tagsBeta · best-effort

CVE-2013-6367

Published Dec 14, 2013

The apic_get_tmcct function in arch/x86/kvm/lapic.c in the KVM subsystem in the Linux kernel through 3.12.5 allows guest OS users to cause a denial of service (divide-by-zero erro…

CVSS 5.7 · Medium
Vendor/product tagsBeta · best-effort

CVE-2011-4971

Published Dec 12, 2013

Multiple integer signedness errors in the (1) process_bin_sasl_auth, (2) process_bin_complete_sasl_auth, (3) process_bin_update, and (4) process_bin_append_prepend functions in Me…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2013-7014

Published Dec 9, 2013

Integer signedness error in the add_bytes_l2_c function in libavcodec/pngdsp.c in FFmpeg before 2.1 allows remote attackers to cause a denial of service (out-of-bounds array acces…

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2013-7013

Published Dec 9, 2013

The g2m_init_buffers function in libavcodec/g2meet.c in FFmpeg before 2.1 uses an incorrect ordering of arithmetic operations, which allows remote attackers to cause a denial of s…

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2013-7010

Published Dec 9, 2013

Multiple integer signedness errors in libavcodec/dsputil.c in FFmpeg before 2.1 allow remote attackers to cause a denial of service (out-of-bounds array access) or possibly have u…

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2013-1953

Published Dec 9, 2013

Integer underflow in the input_bmp_reader function in input-bmp.c in AutoTrace 0.31.1 allows context-dependent attackers to have an unspecified impact via a small value in the biS…

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2013-0859

Published Dec 7, 2013

The add_doubles_metadata function in libavcodec/tiff.c in FFmpeg before 1.1 allows remote attackers to have an unspecified impact via a negative or zero count value in a TIFF imag…

CVSS 9.3 · Critical
Vendor/product tagsBeta · best-effort

CVE-2013-0855

Published Dec 7, 2013

Integer overflow in the alac_decode_close function in libavcodec/alac.c in FFmpeg before 1.1 allows remote attackers to have an unspecified impact via a large number of samples pe…

CVSS 9.3 · Critical
Vendor/product tagsBeta · best-effort

CVE-2013-0853

Published Dec 7, 2013

The wavpack_decode_frame function in libavcodec/wavpack.c in FFmpeg before 1.1 allows remote attackers to have an unspecified impact via crafted WavPack data, which triggers an ou…

CVSS 9.3 · Critical
Vendor/product tagsBeta · best-effort

CVE-2013-0844

Published Dec 7, 2013

Off-by-one error in the adpcm_decode_frame function in libavcodec/adpcm.c in FFmpeg before 1.0.4 allows remote attackers to have an unspecified impact via crafted DK4 data, which…

CVSS 9.3 · Critical
Vendor/product tagsBeta · best-effort

CVE-2013-6050

Published Dec 7, 2013

Integer overflow in Links before 2.8 allows remote attackers to cause a denial of service (crash) via crafted HTML tables.

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2013-6378

Published Nov 27, 2013

The lbs_debugfs_write function in drivers/net/wireless/libertas/debugfs.c in the Linux kernel through 3.12.1 allows local users to cause a denial of service (OOPS) by leveraging r…

CVSS 4.4 · Medium
Vendor/product tagsBeta · best-effort
Showing 301-325 of 1,247 CVEsPage 13 of 50