CWE-190

Medium likelihood

Integer Overflow or Wraparound

Parent: CWE-682 - Incorrect Calculation

The product performs a calculation that can produce an integer overflow or wraparound when the logic assumes that the resulting value will always be larger than the original value. This occurs when an integer value is incremented to a value that is too large to store in the associated representation. When this occurs, the value may become a very small or negative number.

3,209 vulnerabilities with CWE-190
CVE-2018-1084 HIGH
corosync < 2.4.4 - Integer Overflow in totemcrypto.c
CVSS 7.5
CVE-2018-9838 CRITICAL
OCaml 4.06.0 - Integer Overflow in caml_ba_deserialize
CVSS 9.8
CVE-2018-6917 HIGH
FreeBSD 10.0-10.3 - Integer Overflow in Font Parameter Validation
CVSS 7.5
CVE-2018-5820 HIGH
Qualcomm Android <2018-04-05 - Memory Corruption
CVSS 7.3
CVE-2018-7194 MEDIUM
osTicket < 1.10.1 - Denial of Service via Ticket Number Format Integer Overflow
CVSS 4.9
CVE-2018-8098 MEDIUM
libgit2 < 0.26.2 - Integer Overflow in Index File Decompression
CVSS 6.5
CVE-2018-1000127 HIGH
memcached <1.4.37 - Memory Corruption
CVSS 7.5
CVE-2018-1000098 HIGH
Teluu PJSIP <2.7.1 - Memory Corruption
CVSS 7.5
CVE-2018-7643 HIGH
GNU Binutils 2.30 - Integer Overflow in dwarf.c via Crafted ELF File
CVSS 7.8
CVE-2018-7569 MEDIUM
GNU Binutils 2.30 - Denial of Service via Corrupt DWARF FORM Block in ELF File
CVSS 5.5
CVE-2018-7568 MEDIUM
GNU Binutils - Denial of Service via Corrupt DWARF1 Debug Information in ELF File
CVSS 5.5
CVE-2018-7471 HIGH
KingView 7.5SP1 - Integer Overflow via stgopenstorage API
CVSS 7.8
CVE-2018-7226 CRITICAL
vncterm < 0.9.10 - Integer Overflow via VNC Packet Length
CVSS 9.8
CVE-2018-7225 CRITICAL
LibVNCServer < 0.9.11 - Integer Overflow via VNC Packet Length
CVSS 9.8
CVE-2018-6927 HIGH
Linux Kernel < 4.14.15 - Integer Overflow in futex_requeue
CVSS 7.8
CVE-2018-6551 CRITICAL
glibc 2.24-2.26 - Integer Overflow in malloc
CVSS 9.8
CVE-2018-6543 HIGH
GNU Binutils 2.30 - Integer Overflow in load_specific_debug_section
CVSS 7.8
CVE-2018-6485 CRITICAL
glibc < 2.26 - Integer Overflow in posix_memalign and memalign Functions
CVSS 9.8
CVE-2018-6323 HIGH
GNU Binutils - Integer Overflow in elf_object_p
CVSS 7.8
CVE-2018-6315 HIGH
libming < 0.4.8 - Integer Overflow and Out-of-Bounds Read via Crafted SWF File
CVSS 8.8
CVE-2018-6191 MEDIUM
Artifex MuJS < 1.0.2 - Integer Overflow in js_strtod
CVSS 5.5
CVE-2018-5785 MEDIUM
OpenJPEG 2.3.0 - Denial of Service via Integer Overflow in opj_j2k_setup_encoder
CVSS 6.5
CVE-2018-5727 MEDIUM
OpenJPEG 2.3.0 - Denial of Service via Integer Overflow in opj_t1_encode_cblks
CVSS 6.5
CVE-2018-5709 HIGH
MIT Kerberos <1.16 - Info Disclosure
CVSS 7.5
CVE-2018-5309 MEDIUM
PoDoFo 0.9.5 - Denial of Service via Integer Overflow in PdfObjectStreamParserObject
CVSS 5.5
Details
Vulnerabilities 3,209
Exploit Likelihood Medium