#integer-overflow clear

CVE-2022-40303: Integer overflow in libxml2 xmlParseCharData → xmlBufAdd with XML_PARSE_HUGE

CVE-2021-35942: Integer overflow in glibc wordexp() w_addword leads to heap overflow

CVE-2021-35942: Integer Overflow in glibc wordexp() w_addword Function

CVE-2020-15900: Ghostscript zbitshift integer overflow via off-by-one shift range check

CVE-2020-15900 — rsearch post-string size off-by-one in Ghostscript 9.52

Ghostscript CVE-2020-15900: Integer Overflow in PostScript Calculator bitshift Operator

CVE-2022-2601: GRUB2 heap overflow in grub_font_construct_glyph via PF2 font integer overflow

GRUB2 CVE-2022-2601 - Heap Overflow in PF2 Font Glyph Loading via Integer Overflow

CVE-2020-10713 BootHole: Integer Overflow → Heap Buffer Overflow in GRUB2 Script Lexer (grub-core/script/yylex.l)

CVE-2022-40303: Integer overflow in libxml2 xmlSAX2Text → heap buffer overflow on large XML text nodes

CVE-2022-40303: libxml2 integer overflow with XML_PARSE_HUGE in xmlParseEntityValue and friends

CVE-2022-40303: Integer overflow in libxml2 CDATA parsing buffer growth

CVE-2021-35942: glibc wordexp() integer overflow in w_addword via we_offs

CVE-2021-35942: Integer overflow in glibc wordexp() w_addword function

CVE-2017-13089: Stack-overflow in wget HTTP chunked transfer encoding parsing

CVE-2020-15900: Integer overflow (signed left-shift UB) in Ghostscript bitshift PostScript operator

CVE-2020-15900: Ghostscript zbitshift signed integer overflow / UB in PostScript bitshift operator

CVE-2020-15900: Integer Underflow in Ghostscript rsearch Operator