CWE-190

Medium likelihood

Integer Overflow or Wraparound

Parent: CWE-682 - Incorrect Calculation

The product performs a calculation that can produce an integer overflow or wraparound when the logic assumes that the resulting value will always be larger than the original value. This occurs when an integer value is incremented to a value that is too large to store in the associated representation. When this occurs, the value may become a very small or negative number.

3,210 vulnerabilities with CWE-190
CVE-2016-8705 CRITICAL
memcached < 1.4.31 - Remote Code Execution via Integer Overflow in process_bin_update
CVSS 9.8
CVE-2016-8704 CRITICAL
Memcached < 1.4.31 - Remote Code Execution via Integer Overflow in process_bin_append_prepend
CVSS 9.8
CVE-2016-4298 HIGH
Hancom Office 2014 - Buffer Overflow
CVSS 7.8
CVE-2016-4291 HIGH
Hancom Office 2014 - Buffer Overflow
CVSS 7.8
CVE-2016-4290 HIGH
Hancom Office 2014 - Buffer Overflow
CVSS 7.8
CVE-2016-9754 HIGH
Linux Kernel < 4.6.1 - Integer Overflow in Ring Buffer Resize
CVSS 7.8
CVE-2016-7875 HIGH
Adobe Flash Player <= 23.0.0.207 and <= 11.2.202.644 - Remote Code Execution via BitmapData Integer Overflow
CVSS 8.8
CVE-2016-9031 HIGH
Joyent SmartOS <20161110T013148Z - Privilege Escalation
CVSS 7.8
CVE-2016-8733 HIGH
Joyent SmartOS 20161110T013148Z - Buffer Overflow
CVSS 8.8
CVE-2016-7951 CRITICAL
Fedora < 1.2.2 - Integer Overflow
CVSS 9.8
CVE-2016-7947 CRITICAL
Fedora < 1.5.0 - Integer Overflow
CVSS 9.8
CVE-2016-7945 HIGH
Fedora < 1.7.6 - Integer Overflow
CVSS 7.5
CVE-2016-7944 CRITICAL
libXfixes < 5.0.3 - Integer Overflow via Length Value
CVSS 9.8
CVE-2016-5841 CRITICAL
ImageMagick <7.0.2-1 - Memory Corruption
CVSS 9.8
CVE-2016-9427 CRITICAL
bdwgc < 7.4.4 - Heap Buffer Overflow via Huge Allocation
CVSS 9.8
CVE-2016-9426 HIGH
tats/w3m < 0.5.3-30 - Integer Overflow in renderTable Function
CVSS 8.8
CVE-2016-6888 MEDIUM
QEMU < 2.6.2 - Denial of Service via Unchecked Multiplication in net_tx_pkt_init
CVSS 4.4
CVE-2016-9104 MEDIUM
QEMU < 2.7.1 - Denial of Service via Integer Overflow in 9pfs Xattr Functions
CVSS 4.4
CVE-2016-9084 HIGH
Linux Kernel < 4.8.11 - Integer Overflow in VFIO PCI Device Handling
CVSS 7.8
CVE-2016-9083 HIGH
Linux kernel <4.8.11 - Memory Corruption
CVSS 7.8
CVE-2016-9538 CRITICAL
libtiff - Integer Overflow in readContigStripsIntoBuffer
CVSS 9.8
CVE-2016-9277 HIGH
Samsung Mobile KK(4.4) and L(5.0/5.1) - Denial of Service via SystemUI Integer Overflow
CVSS 7.5
CVE-2016-9189 MEDIUM
Pillow < 3.3.2 - Integer Overflow in Image.core.map_buffer
CVSS 5.5
CVE-2016-7990 CRITICAL
Samsung Galaxy S4-S7 - RCE
CVSS 9.8
CVE-2016-6999 CRITICAL
Adobe Acrobat/Reader <11.0.18, Acrobat DC <15.006.30243, Acrobat Reader DC <15.020.20039 RCE via Integer Overflow
CVSS 9.8
Details
Vulnerabilities 3,210
Exploit Likelihood Medium