Show filters
524 Total Results
Displaying 11-20 of 524
Sort by:
Attacker Value
Unknown

CVE-2025-0727

Disclosure Date: February 21, 2025 (last updated February 23, 2025)
In NetX HTTP server functionality of Eclipse ThreadX NetX Duo before version 6.4.2, an attacker can cause an integer underflow and a subsequent denial of service by writing a very large file, by specially crafted packets with Content-Length in one packet smaller than the data request size of the other packet. A possible workaround is to disable HTTP PUT support.
0
Attacker Value
Unknown

CVE-2021-0615

Disclosure Date: October 25, 2021 (last updated February 23, 2025)
In flv extractor, there is a possible out of bounds read due to an integer overflow. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS05561369; Issue ID: ALPS05561369.
Attacker Value
Unknown

CVE-2021-0630

Disclosure Date: October 25, 2021 (last updated February 23, 2025)
In wifi driver, there is a possible system crash due to a missing bounds check. This could lead to remote denial of service with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS05551397; Issue ID: ALPS05551397.
Attacker Value
Unknown

CVE-2021-0411

Disclosure Date: October 25, 2021 (last updated February 23, 2025)
In flv extractor, there is a possible out of bounds read due to an integer overflow. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS05561362; Issue ID: ALPS05561362.
Attacker Value
Unknown

CVE-2021-1913

Disclosure Date: October 20, 2021 (last updated February 23, 2025)
Possible integer overflow due to improper length check while updating grace period and count record in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wired Infrastructure and Networking
0
Attacker Value
Unknown

CVE-2021-1949

Disclosure Date: October 20, 2021 (last updated February 23, 2025)
Possible integer overflow due to improper check of batch count value while sanitizer is enabled in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Voice & Music, Snapdragon Wearables
0
Attacker Value
Unknown

CVE-2021-41990

Disclosure Date: October 18, 2021 (last updated February 23, 2025)
The gmp plugin in strongSwan before 5.9.4 has a remote integer overflow via a crafted certificate with an RSASSA-PSS signature. For example, this can be triggered by an unrelated self-signed CA certificate sent by an initiator. Remote code execution cannot occur.
Attacker Value
Unknown

CVE-2021-41991

Disclosure Date: October 18, 2021 (last updated February 23, 2025)
The in-memory certificate cache in strongSwan before 5.9.4 has a remote integer overflow upon receiving many requests with different certificates to fill the cache and later trigger the replacement of cache entries. The code attempts to select a less-often-used cache entry by means of a random number generator, but this is not done correctly. Remote code execution might be a slight possibility.
Attacker Value
Unknown

CVE-2021-41345

Disclosure Date: October 13, 2021 (last updated February 23, 2025)
Storage Spaces Controller Elevation of Privilege Vulnerability
0
Attacker Value
Unknown

CVE-2021-29644

Disclosure Date: October 12, 2021 (last updated February 23, 2025)
Hitachi JP1/IT Desktop Management 2 Agent 9 through 12 contains a remote code execution vulnerability because of an Integer Overflow. An attacker with network access to port 31016 may exploit this issue to execute code with unrestricted privileges on the underlying OS.