CWE-190

Medium likelihood

Integer Overflow or Wraparound

Parent: CWE-682 - Incorrect Calculation

The product performs a calculation that can produce an integer overflow or wraparound when the logic assumes that the resulting value will always be larger than the original value. This occurs when an integer value is incremented to a value that is too large to store in the associated representation. When this occurs, the value may become a very small or negative number.

3,209 vulnerabilities with CWE-190
CVE-2018-12293 HIGH
WebKit <2.20.3-2.20.1 - Buffer Overflow
CVSS 8.8
CVE-2018-11219 CRITICAL
Redis < 3.2.12, 4.x < 4.0.10, 5.x < 5.0 RC2 - Integer Overflow in Lua Struct Library
CVSS 9.8
CVE-2018-12447 HIGH
libbpg 0.9.8 - Remote Code Execution via Integer Overflow in restore_tqb_pixels
CVSS 8.8
CVE-2018-11574 CRITICAL
Point-to-point Protocol < 2.4.9 - Integer Overflow
CVSS 9.8
CVE-2018-12265 HIGH
Exiv2 0.26 - Integer Overflow in LoaderExifJpeg
CVSS 8.8
CVE-2018-12264 HIGH
Exiv2 0.26 - Integer Overflow in LoaderTiff::getData()
CVSS 8.8
CVE-2018-5848 HIGH
Android - Buffer Overflow in wmi_set_ie() Function
CVSS 7.8
CVE-2018-5159 CRITICAL
Skia - Buffer Overflow
CVSS 9.8
CVE-2018-5144 HIGH
Firefox ESR < 52.7 - Buffer Overflow
CVSS 7.3
CVE-2018-5122 CRITICAL
Firefox < 58 - Integer Overflow in WebCrypto DoCrypt Function
CVSS 9.8
CVE-2018-5095 CRITICAL
Skia library - Memory Corruption
CVSS 9.8
CVE-2018-4249 HIGH
Apple tvOS < 11.4 - Remote Code Execution via Integer Overflow in pktmnglr_ipfilter_input
CVSS 7.8
CVE-2018-11590 MEDIUM
Espruino < 1.99 - Denial of Service via Integer Overflow in Syntax Parser
CVSS 5.5
CVE-2018-10751 MEDIUM
Samsung Mobile - Memory Corruption via OMACP WbXml String Extension Processing
CVSS 5.3
CVE-2018-1126 MEDIUM
procps-ng <3.3.15 - Buffer Overflow
CVSS 4.8
CVE-2018-1124 HIGH
procps-ng <3.3.15 - Privilege Escalation
CVSS 7.8
CVE-2018-11239 HIGH
Hexagon - Integer Overflow in _transfer Function
CVSS 7.5
CVE-2018-11236 CRITICAL
glibc < 2.27 - Integer Overflow to Stack-Based Buffer Overflow in realpath
CVSS 9.8
CVE-2018-10973 HIGH
koreashow - Integer Overflow in transferMulti Function
CVSS 7.5
CVE-2018-10706 HIGH
Social Chain - Integer Overflow in transferMulti Function
CVSS 7.5
CVE-2018-10376 HIGH
SmartMesh - Integer Overflow in transferProxy
CVSS 7.5
CVE-2018-10316 MEDIUM
Netwide Assembler (NASM) <2.14rc0 - Buffer Overflow
CVSS 5.5
CVE-2018-8781 HIGH
Linux Kernel <4.16 - Code Execution
CVSS 7.8
CVE-2018-10299 HIGH
Beauty Ecosystem Coin - Code Injection
CVSS 7.5
CVE-2018-10191 CRITICAL
mruby <= 1.4.0 - Use-After-Free via Deep Scope Nesting in OP_GETUPVAR
CVSS 9.8
Details
Vulnerabilities 3,209
Exploit Likelihood Medium