CWE-369— Divide By Zero
The product divides a value by zero.— MITRE CWE catalog
457 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-369page 3 of 10
- CVE-2018-19628HIGHCVSS 7.5EG 7.52018-11-29
In Wireshark 2.6.0 to 2.6.4, the ZigBee ZCL dissector could crash. This was addressed in epan/dissectors/packet-zbee-zcl-lighting.c by preventing a divide-by-zero error.
- CVE-2018-19872MEDIUMCVSS 5.5EG 5.52019-03-21
An issue was discovered in Qt 5.11. A malformed PPM image causes a division by zero and a crash in qppmhandler.cpp.
- CVE-2018-20544MEDIUMCVSS 6.5EG 6.52018-12-28
There is floating point exception at caca/dither.c (function caca_dither_bitmap) in libcaca 0.99.beta19.
- CVE-2018-20845MEDIUMCVSS 6.5EG 6.52019-06-26
Division-by-zero vulnerabilities in the functions pi_next_pcrl, pi_next_cprl, and pi_next_rpcl in openmj2/pi.c in OpenJPEG through 2.3.0 allow remote attackers to cause a denial of service (application crash).
- CVE-2018-2385MEDIUMCVSS 6.5EG 6.52018-02-14
Under certain conditions a malicious user provoking a divide by zero crash can prevent legitimate users from accessing the SAP Internet Graphics Server, 7.20, 7.20EXT, 7.45, 7.49, 7.53, and its services.
- CVE-2018-5804MEDIUMCVSS 6.5EG 6.52018-12-07
A type confusion error within the "identify()" function (internal/dcraw_common.cpp) in LibRaw versions prior to 0.18.8 can be exploited to trigger a division by zero.
- CVE-2018-9018MEDIUMCVSS 6.5EG 6.52018-03-25
In GraphicsMagick 1.3.28, there is a divide-by-zero in the ReadMNGImage function of coders/png.c. Remote attackers could leverage this vulnerability to cause a crash and denial of service via a crafted mng file.
- CVE-2018-9304MEDIUMCVSS 6.5EG 6.52018-04-04
In Exiv2 0.26, a divide by zero in BigTiffImage::printIFD in bigtiffimage.cpp could result in denial of service.
- CVE-2018-9354MEDIUMCVSS 6.5EG 6.52024-11-27
In VideoFrameScheduler.cpp of VideoFrameScheduler::PLL::fit, there is a possible remote denial of service due to divide by 0. This could lead to remote denial of service with no additional execution privileges needed. User interaction i…
- CVE-2019-10018MEDIUMCVSS 5.5EG 5.52019-03-25
An issue was discovered in Xpdf 4.01.01. There is an FPE in the function PostScriptFunction::exec at Function.cc for the psOpIdiv case.
- CVE-2019-10019MEDIUMCVSS 5.5EG 5.52019-03-25
An issue was discovered in Xpdf 4.01.01. There is an FPE in the function PSOutputDev::checkPageSlice at PSOutputDev.cc for nStripes.
- CVE-2019-10020MEDIUMCVSS 5.5EG 5.52019-03-25
An issue was discovered in Xpdf 4.01.01. There is an FPE in the function Splash::scaleImageYuXu at Splash.cc for x Bresenham parameters.
- CVE-2019-10021MEDIUMCVSS 5.5EG 5.52019-03-25
An issue was discovered in Xpdf 4.01.01. There is an FPE in the function ImageStream::ImageStream at Stream.cc for nComps.
- CVE-2019-10023MEDIUMCVSS 5.5EG 5.52019-03-25
An issue was discovered in Xpdf 4.01.01. There is an FPE in the function PostScriptFunction::exec at Function.cc for the psOpMod case.
- CVE-2019-10024MEDIUMCVSS 5.5EG 5.52019-03-25
An issue was discovered in Xpdf 4.01.01. There is an FPE in the function Splash::scaleImageYuXu at Splash.cc for y Bresenham parameters.
- CVE-2019-10025MEDIUMCVSS 5.5EG 5.52019-03-25
An issue was discovered in Xpdf 4.01.01. There is an FPE in the function ImageStream::ImageStream at Stream.cc for nBits.
- CVE-2019-10026MEDIUMCVSS 5.5EG 5.52019-03-25
An issue was discovered in Xpdf 4.01.01. There is an FPE in the function PostScriptFunction::exec in Function.cc for the psOpRoll case.
- CVE-2019-1010315MEDIUMCVSS 5.5EG 5.52019-07-11
WavPack 5.1 and earlier is affected by: CWE 369: Divide by Zero. The impact is: Divide by zero can lead to sudden crash of a software/service that tries to parse a .wav file. The component is: ParseDsdiffHeaderConfig (dsdiff.c:282). The at…
- CVE-2019-11472MEDIUMCVSS 6.5EG 6.52019-04-23
ReadXWDImage in coders/xwd.c in the XWD image parsing component of ImageMagick 7.0.8-41 Q16 allows attackers to cause a denial-of-service (divide-by-zero error) by crafting an XWD image file in which the header indicates neither LSB first …
- CVE-2019-13218MEDIUMCVSS 5.5EG 5.52019-08-15
Division by zero in the predict_point function in stb_vorbis through 2019-03-04 allows an attacker to cause a denial of service by opening a crafted Ogg Vorbis file.
- CVE-2019-13390MEDIUMCVSS 6.5EG 6.52019-07-07
In FFmpeg 4.1.3, there is a division by zero at adx_write_trailer in libavformat/rawenc.c.
- CVE-2019-13454MEDIUMCVSS 6.5EG 6.52019-07-09
ImageMagick 7.0.1-0 to 7.0.8-54 Q16 allows Division by Zero in RemoveDuplicateLayers in MagickCore/layer.c.
- CVE-2019-14249MEDIUMCVSS 6.5EG 6.52019-07-24
dwarf_elf_load_headers.c in libdwarf before 2019-07-05 allows attackers to cause a denial of service (division by zero) via an ELF file with a zero-size section group (SHT_GROUP), as demonstrated by dwarfdump.
- CVE-2019-14284MEDIUMCVSS 6.2EG 6.22019-07-26
In the Linux kernel before 5.2.3, drivers/block/floppy.c allows a denial of service by setup_format_params division-by-zero. Two consecutive ioctls can trigger the bug: the first one should set the drive geometry with .sect and .rate value…
- CVE-2019-14443MEDIUMCVSS 6.5EG 6.52019-07-30
An issue was discovered in Libav 12.3. Division by zero in range_decode_culshift in libavcodec/apedec.c allows remote attackers to cause a denial of service (application crash), as demonstrated by avconv.
- CVE-2019-14494HIGHCVSS 7.5EG 7.52019-08-01
An issue was discovered in Poppler through 0.78.0. There is a divide-by-zero error in the function SplashOutputDev::tilingPatternFill at SplashOutputDev.cc.
- CVE-2019-14498HIGHCVSS 7.8EG 7.82019-08-29
A divide-by-zero error exists in the Control function of demux/caf.c in VideoLAN VLC media player 3.0.7.1. As a result, an FPE can be triggered via a crafted CAF file.
- CVE-2019-14535HIGHCVSS 7.8EG 7.82019-08-29
A divide-by-zero error exists in the SeekIndex function of demux/asf/asf.c in VideoLAN VLC media player 3.0.7.1. As a result, an FPE can be triggered via a crafted WMV file.
- CVE-2019-14981MEDIUMCVSS 6.5EG 6.52019-08-12
In ImageMagick 7.x before 7.0.8-41 and 6.x before 6.9.10-41, there is a divide-by-zero vulnerability in the MeanShiftImage function. It allows an attacker to cause a denial of service by sending a crafted file.
- CVE-2019-15133MEDIUMCVSS 6.5EG 6.52019-08-17
In GIFLIB before 2019-02-16, a malformed GIF file triggers a divide-by-zero exception in the decoder function DGifSlurp in dgif_lib.c if the height field of the ImageSize data structure is equal to zero.
- CVE-2019-15939MEDIUMCVSS 5.9EG 5.92019-09-05
An issue was discovered in OpenCV 4.1.0. There is a divide-by-zero error in cv::HOGDescriptor::getDescriptorSize in modules/objdetect/src/hog.cpp.
- CVE-2019-16168MEDIUMCVSS 6.5EG 6.52019-09-09
In SQLite through 3.29.0, whereLoopAddBtreeIndex in sqlite3.c can crash a browser or other application because of missing validation of a sqlite_stat1 sz field, aka a "severe division by zero in the query planner."
- CVE-2019-16228HIGHCVSS 7.5EG 7.52019-09-11
An issue was discovered in py-lmdb 0.97. There is a divide-by-zero error in the function mdb_env_open2 if mdb_env_read_header obtains a zero value for a certain size field. NOTE: this outcome occurs when accessing a data.mdb file supplied …
- CVE-2019-19888MEDIUMCVSS 6.5EG 6.52019-12-18
jfif_decode in jfif.c in ffjpeg through 2019-08-21 has a divide-by-zero error.
- CVE-2019-5637HIGHCVSS 7.5EG 7.52019-11-21
When Beckhoff TwinCAT is configured to use the Profinet driver, a denial of service of the controller could be reached by sending a malformed UDP packet to the device. This issue affects TwinCAT 2 version 2304 (and prior) and TwinCAT 3.1 v…
- CVE-2019-7156MEDIUMCVSS 6.5EG 6.52019-01-29
In libdoc through 2019-01-28, calcFileBlockOffset in ole.c allows division by zero.
- CVE-2019-9084MEDIUMCVSS 4.9EG 4.92019-06-07
In Hoteldruid before 2.3.1, a division by zero was discovered in $num_tabelle in tab_tariffe.php (aka the numtariffa1 parameter) due to the mishandling of non-numeric values, as demonstrated by the /tab_tariffe.php?anno=[YEAR]&numtariffa1=…
- CVE-2020-11145HIGHCVSS 7.5EG 7.52021-01-21
Divide by zero issue can happen while updating delta extension header due to improper validation of master SN and extension header SN in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Indu…
- CVE-2020-12371MEDIUMCVSS 5.5EG 5.52021-02-17
Divide by zero in some Intel(R) Graphics Drivers before version 26.20.100.8141 may allow a privileged user to potentially enable a denial of service via local access.
- CVE-2020-12767MEDIUMCVSS 5.5EG 5.52020-05-09
exif_entry_get_value in exif-entry.c in libexif 0.6.21 has a divide-by-zero error.
- CVE-2020-14415LOWCVSS 3.3EG 3.32020-08-27
oss_write in audio/ossaudio.c in QEMU before 5.0.0 mishandles a buffer position.
- CVE-2020-16160HIGHCVSS 7.5EG 7.52020-10-19
GoPro gpmf-parser 1.5 has a division-by-zero vulnerability in GPMF_Decompress(). Parsing malicious input can result in a crash.
- CVE-2020-16161HIGHCVSS 7.5EG 7.52020-10-19
GoPro gpmf-parser 1.5 has a division-by-zero vulnerability in GPMF_ScaledData(). Parsing malicious input can result in a crash.
- CVE-2020-16299MEDIUMCVSS 5.5EG 5.52020-08-13
A Division by Zero vulnerability in bj10v_print_page() in contrib/japanese/gdev10v.c of Artifex Software GhostScript v9.50 allows a remote attacker to cause a denial of service via a crafted PDF file. This is fixed in v9.51.
- CVE-2020-16310MEDIUMCVSS 5.5EG 5.52020-08-13
A division by zero vulnerability in dot24_print_page() in devices/gdevdm24.c of Artifex Software GhostScript v9.50 allows a remote attacker to cause a denial of service via a crafted PDF file. This is fixed in v9.51.
- CVE-2020-18774MEDIUMCVSS 6.5EG 6.52021-08-23
A float point exception in the printLong function in tags_int.cpp of Exiv2 0.27.99.0 allows attackers to cause a denial of service (DOS) via a crafted tif file.
- CVE-2020-20253MEDIUMCVSS 6.5EG 6.52021-05-18
Mikrotik RouterOs before 6.47 (stable tree) suffers from a divison by zero vulnerability in the /nova/bin/lcdstat process. An authenticated remote attacker can cause a Denial of Service due to a divide by zero error.
- CVE-2020-20264MEDIUMCVSS 6.5EG 6.52021-05-19
Mikrotik RouterOs before 6.47 (stable tree) in the /ram/pckg/advanced-tools/nova/bin/netwatch process. An authenticated remote attacker can cause a Denial of Service due to a divide by zero error.
- CVE-2020-20445MEDIUMCVSS 6.5EG 6.52021-05-25
FFmpeg 4.2 is affected by a Divide By Zero issue via libavcodec/lpc.h, which allows a remote malicious user to cause a Denial of Service.
- CVE-2020-20446MEDIUMCVSS 6.5EG 6.52021-05-25
FFmpeg 4.2 is affected by a Divide By Zero issue via libavcodec/aacpsy.c, which allows a remote malicious user to cause a Denial of Service.
Map vulnerabilities like CWE-369 to your infrastructure
EchelonGraph correlates every CVE — across CWE-369 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Start Free Scan →