CWE-190

Medium likelihood

Integer Overflow or Wraparound

Parent: CWE-682 - Incorrect Calculation

The product performs a calculation that can produce an integer overflow or wraparound when the logic assumes that the resulting value will always be larger than the original value. This occurs when an integer value is incremented to a value that is too large to store in the associated representation. When this occurs, the value may become a very small or negative number.

3,210 vulnerabilities with CWE-190
CVE-2014-9944 HIGH
Android Secure File System - Integer Overflow to Buffer Overflow
CVSS 7.8
CVE-2014-9935 HIGH
Android TrustZone - Integer Overflow to Buffer Overflow in DRM Routine
CVSS 7.8
CVE-2014-9932 HIGH
Android TrustZone - Integer Overflow in Address Range Computation
CVSS 7.8
CVE-2014-9863 HIGH
Android <2016-08-05 - Privilege Escalation
CVSS 7.8
CVE-2014-9862 HIGH
macOS < 10.11.5 - Remote Code Execution via Crafted Patch File
CVSS 7.8
CVE-2014-9192
Trihedral Engineering VTScada <9.1.20-11.1.07 - DoS
CVE-2014-8094
X.Org Server 1.7.0-1.16.x - Authenticated Integer Overflow in DRI2 ProcDRI2GetBuffers
CVE-2014-0569
Adobe Flash Player < 13.0.0.250, 14.x-15.x < 15.0.0.189, < 11.2.202.411 - Remote Code Execution via Integer Overflow
CVE-2014-4656
Linux Kernel < 3.15.2 - Denial of Service via ALSA Control Integer Overflow
CVE-2014-4655
Linux Kernel < 3.15.2 - Denial of Service via ALSA Control Integer Overflow
CVE-2014-4608 HIGH
Linux kernel <3.15.2 - Memory Corruption
CVSS 7.3
CVE-2014-3144
Linux Kernel < 3.14.3 - Denial of Service via Integer Underflow in BPF Extension
CVE-2014-1736
Google V8 <34.0.1847.131-34.0.1847.132 - DoS
CVE-2013-3493 CRITICAL
XnView 2.03 - Integer Overflow
CVSS 9.8
CVE-2013-3486 CRITICAL
IrfanView FlashPix Plugin 4.3.4 0 - Integer Overflow
CVSS 9.6
CVE-2013-2807 HIGH
Rockwell Automation RSLinx Enterprise Software - Logic Error
CVSS 7.5
CVE-2013-2806 HIGH
Rockwell Automation RSLinx Enterprise Software - Buffer Overflow
CVSS 7.5
CVE-2013-7437
potrace 1.11 - Denial of Service via BMP Image Dimension Handling
CVE-2013-7354 MEDIUM
libpng < 1.5.13 - Heap-based Buffer Overflow via Crafted Image
CVSS 6.5
CVE-2013-7353 MEDIUM
libpng < 1.5.14beta08 - Heap-based Buffer Overflow via Crafted Image
CVSS 6.5
CVE-2013-1913
GIMP < 2.6.9 - Integer Overflow in XWD Image Loader
CVE-2013-5619
Mozilla Firefox <26 - DoS
CVE-2013-5058
Microsoft Windows - Privilege Escalation
CVE-2013-3940
Microsoft Windows GDI - Integer Overflow via Crafted WRI Document
CVE-2013-6114
Apple Motion 5.0.7 - Denial of Service via OZDocument::parseElement Integer Overflow
Details
Vulnerabilities 3,210
Exploit Likelihood Medium