CWE-190

Medium likelihood

Integer Overflow or Wraparound

Parent: CWE-682 - Incorrect Calculation

The product performs a calculation that can produce an integer overflow or wraparound when the logic assumes that the resulting value will always be larger than the original value. This occurs when an integer value is incremented to a value that is too large to store in the associated representation. When this occurs, the value may become a very small or negative number.

3,210 vulnerabilities with CWE-190
CVE-2016-3935 HIGH
Qualcomm cryptographic engine driver - Privilege Escalation
CVSS 7.8
CVE-2016-3901 HIGH
Qualcomm cryptographic engine driver - Privilege Escalation
CVSS 7.8
CVE-2016-7167 CRITICAL
Fedora < 7.50.2 - Integer Overflow
CVSS 9.8
CVE-2016-7568 CRITICAL
libgd < 2.2.3 - Integer Overflow in gdImageWebpCtx
CVSS 9.8
CVE-2016-3945 HIGH
libtiff < 4.0.6 - Integer Overflow and Out-of-Bounds Write via tiff2rgba -b Mode
CVSS 7.8
CVE-2016-7163 HIGH
OpenJPEG < 2.2.0 - Remote Code Execution via Integer Overflow in opj_pi_create_decode
CVSS 7.8
CVE-2016-6250 HIGH
libarchive <3.2.1 - Buffer Overflow
CVSS 8.6
CVE-2016-5844 MEDIUM
libarchive < 3.2.1 - Denial of Service via ISO Parser Integer Overflow
CVSS 6.5
CVE-2016-4300 HIGH
libarchive < 3.2.1 - Remote Code Execution via 7zip Substream Count Overflow
CVSS 7.8
CVE-2016-4287 HIGH
Adobe Flash Player < 11.2.202.635, < 18.0.0.375, < 22.0.0.211, < 23.0.0.162 - Remote Code Execution via Integer Overflow
CVSS 8.8
CVE-2016-7133 HIGH
PHP 7.x < 7.0.10 - Denial of Service via Integer Overflow in zend_alloc.c
CVSS 8.1
CVE-2016-3895 MEDIUM
Android <6.0.1 & 7.0 - Info Disclosure
CVSS 5.5
CVE-2016-5159 HIGH
Opensuse Leap < 52.0.2743.116 - Integer Overflow
CVSS 8.8
CVE-2016-5158 HIGH
Opensuse Leap < 52.0.2743.116 - Integer Overflow
CVSS 8.8
CVE-2016-5152 HIGH
Google Chrome < 52.0.2743.116 - Integer Overflow in opj_tcd_get_decoded_tile_size
CVSS 8.8
CVE-2016-5636 CRITICAL
CPython <2.7.12, <3.4.5, <3.5.2 - Buffer Overflow
CVSS 9.8
CVE-2016-5344 CRITICAL
Android < 7.0 and Linux Kernel 3.0-3.19.8 - Integer Overflow in MDSS Driver
CVSS 9.8
CVE-2016-6207 MEDIUM
libgd < 2.2.3 - Denial of Service via Integer Overflow in _gdContributionsAlloc
CVSS 6.5
CVE-2016-1951 HIGH
Mozilla NSPR <4.12 - Buffer Overflow
CVSS 8.6
CVE-2016-5770 CRITICAL
PHP < 5.5.37 - Integer Overflow in SplFileObject::fread
CVSS 9.8
CVE-2016-5769 CRITICAL
PHP <5.5.37, 5.6.x <5.6.23, 7.x <7.0.8 - DoS
CVSS 9.8
CVE-2016-5767 HIGH
GD Graphics Library <2.0.34RC1 - DoS
CVSS 8.8
CVE-2016-5766 HIGH
GD Graphics Library <2.2.3 - DoS
CVSS 8.8
CVE-2016-5096 HIGH
PHP < 5.5.36 and 5.6.x < 5.6.22 - Integer Overflow in fread Function
CVSS 8.6
CVE-2016-5095 HIGH
PHP < 5.5.36 and 5.6.x < 5.6.22 - Integer Overflow in php_escape_html_entities_ex
CVSS 8.6
Details
Vulnerabilities 3,210
Exploit Likelihood Medium