CVE-2024-1580 – Integer overflow in VideoLAN dav1d
https://notcve.org/view.php?id=CVE-2024-1580
An integer overflow in dav1d AV1 decoder that can occur when decoding videos with large frame size. ... There is an integer overflow in dav1d when decoding an AV1 video with large width/height. The integer overflow may result in an out-of-bounds write. • http://seclists.org/fulldisclosure/2024/Mar/36 http://seclists.org/fulldisclosure/2024/Mar/37 http://seclists.org/fulldisclosure/2024/Mar/38 http://seclists.org/fulldisclosure/2024/Mar/39 http://seclists.org/fulldisclosure/2024/Mar/40 http://seclists.org/fulldisclosure/2024/Mar/41 https://code.videolan.org/videolan/dav1d/-/blob/master/NEWS https://code.videolan.org/videolan/dav1d/-/releases/1.4.0 https://lists.fedoraproject.org/archives/list/package-announce@lists.fedorap • CWE-190: Integer Overflow or Wraparound •
CVE-2024-20730 – TALOS-2023-1906 - Adobe Acrobat Reader Font CPAL integer overflow vulnerability
https://notcve.org/view.php?id=CVE-2024-20730
Acrobat Reader versions 20.005.30539, 23.008.20470 and earlier are affected by an Integer Overflow or Wraparound vulnerability that could result in arbitrary code execution in the context of the current user. • https://helpx.adobe.com/security/products/acrobat/apsb24-07.html https://www.talosintelligence.com/vulnerability_reports/TALOS-2023-1906 • CWE-190: Integer Overflow or Wraparound •
CVE-2024-21420 – Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability
https://notcve.org/view.php?id=CVE-2024-21420
Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability Proveedor Microsoft WDAC OLE DB para la vulnerabilidad de ejecución remota de código de SQL Server • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-21420 • CWE-190: Integer Overflow or Wraparound •
CVE-2024-21372 – Windows OLE Remote Code Execution Vulnerability
https://notcve.org/view.php?id=CVE-2024-21372
Windows OLE Remote Code Execution Vulnerability Vulnerabilidad de ejecución remota de código OLE de Windows • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-21372 • CWE-190: Integer Overflow or Wraparound •
CVE-2024-21350 – Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability
https://notcve.org/view.php?id=CVE-2024-21350
Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability Proveedor Microsoft WDAC OLE DB para la vulnerabilidad de ejecución remota de código de SQL Server • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-21350 • CWE-190: Integer Overflow or Wraparound •