Show filters
73 Total Results
Displaying 31-40 of 73
Sort by:
Attacker Value
Unknown

CVE-2021-3323

Disclosure Date: April 14, 2021 (last updated February 23, 2025)
Integer Underflow in 6LoWPAN IPHC Header Uncompression in Zephyr. Zephyr versions >= >=2.4.0 contain Integer Underflow (Wrap or Wraparound) (CWE-191). For more information, see https://github.com/zephyrproject-rtos/zephyr/security/advisories/GHSA-89j6-qpxf-pfpc
Attacker Value
Unknown

CVE-2021-27486

Disclosure Date: April 12, 2021 (last updated February 22, 2025)
FATEK Automation WinProladder Versions 3.30 and prior is vulnerable to an integer underflow, which may cause an out-of-bounds write and allow an attacker to execute arbitrary code.
Attacker Value
Unknown

CVE-2021-28362

Disclosure Date: March 24, 2021 (last updated February 22, 2025)
An issue was discovered in Contiki through 3.0. When sending an ICMPv6 error message because of invalid extension header options in an incoming IPv6 packet, there is an attempt to remove the RPL extension headers. Because the packet length and the extension header length are unchecked (with respect to the available data) at this stage, and these variables are susceptible to integer underflow, it is possible to construct an invalid extension header that will cause memory corruption issues and lead to a Denial-of-Service condition. This is related to rpl-ext-header.c.
Attacker Value
Unknown

CVE-2021-28027

Disclosure Date: March 05, 2021 (last updated February 22, 2025)
An issue was discovered in the bam crate before 0.1.3 for Rust. There is an integer underflow and out-of-bounds write during the loading of a bgzip block.
Attacker Value
Unknown

CVE-2020-24837

Disclosure Date: February 10, 2021 (last updated February 22, 2025)
An integer underflow has been found in the latest version of ZCFees. The variables 'currPeriodIdx' and 'lastPeriodExecIdx' are both unsigned integers, and the result of the minus operation may be a negative integer which leads to an underflow. The attackers can modify the current timestamp of the transaction somehow and block the execution of the process function.
Attacker Value
Unknown

CVE-2020-28194

Disclosure Date: February 01, 2021 (last updated February 22, 2025)
Variable underflow exists in accel-ppp radius/packet.c when receiving a RADIUS vendor-specific attribute with length field is less than 2. It has an impact only when the attacker controls the RADIUS server, which can lead to arbitrary code execution.
Attacker Value
Unknown

CVE-2020-36228

Disclosure Date: January 26, 2021 (last updated February 22, 2025)
An integer underflow was discovered in OpenLDAP before 2.4.57 leading to a slapd crash in the Certificate List Exact Assertion processing, resulting in denial of service.
Attacker Value
Unknown

CVE-2020-36221

Disclosure Date: January 26, 2021 (last updated February 22, 2025)
An integer underflow was discovered in OpenLDAP before 2.4.57 leading to slapd crashes in the Certificate Exact Assertion processing, resulting in denial of service (schema_init.c serialNumberAndIssuerCheck).
Attacker Value
Unknown

CVE-2020-3691

Disclosure Date: January 21, 2021 (last updated February 22, 2025)
Possible out of bound memory access in audio due to integer underflow while processing modified contents in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables, Snapdragon Wired Infrastructure and Networking
Attacker Value
Unknown

CVE-2020-16273

Disclosure Date: November 12, 2020 (last updated February 22, 2025)
In Arm software implementing the Armv8-M processors (all versions), the stack selection mechanism could be influenced by a stack-underflow attack in v8-M TrustZone based processors. An attacker can cause a change to the stack pointer used by the Secure World from a non-secure application if the stack is not initialized. This vulnerability affects only the software that is based on Armv8-M processors with the Security Extension.