CWE-190

Medium likelihood

Integer Overflow or Wraparound

Parent: CWE-682 - Incorrect Calculation

The product performs a calculation that can produce an integer overflow or wraparound when the logic assumes that the resulting value will always be larger than the original value. This occurs when an integer value is incremented to a value that is too large to store in the associated representation. When this occurs, the value may become a very small or negative number.

3,177 vulnerabilities with CWE-190
CVE-2025-50166 MEDIUM
Windows Distributed Transaction Coordinator - Info Disclosure
CVSS 6.5
CVE-2025-24324 LOW
Intel 800 Series Ethernet <1.17.2 - Privilege Escalation
CVSS 2.8
CVE-2025-23241 HIGH
Intel 800 Series Ethernet <1.17.2 - DoS
CVSS 7.3
CVE-2025-22836 HIGH
Intel 800 Series Ethernet <1.17.2 - Privilege Escalation
CVSS 7.8
CVE-2025-30405 CRITICAL
ExecuTorch < 0.7.0 - Integer Overflow in Model Loading
CVSS 9.8
CVE-2025-30404 CRITICAL
ExecuTorch <d158236b1dc84539c1b16843bc74054c9dcba006 - Code Injection
CVSS 9.8
CVE-2025-23327 HIGH
NVIDIA Triton Inference Server < 25.05 - Integer Overflow via Crafted Inputs
CVSS 7.5
CVE-2025-23324 HIGH
NVIDIA Triton Inference Server < 25.05 - Denial of Service via Integer Overflow
CVSS 7.5
CVE-2025-23323 HIGH
NVIDIA Triton Inference Server < 25.05 - Denial of Service via Integer Overflow
CVSS 7.5
CVE-2025-54631 MEDIUM
HarmonyOS - Denial of Service via Partition Module Data Length Verification
CVSS 6.7
CVE-2025-54804 MEDIUM
russh < 0.54.1 - Denial of Service via Integer Overflow in Channel Window Adjust Message
CVSS 6.5
CVE-2025-7458 CRITICAL
SQLite 3.39.2-3.41.1 - Denial of Service and Information Disclosure via ORDER BY Clause
CVSS 9.1
CVE-2025-5449 MEDIUM
libssh - Denial of Service via Integer Overflow in SFTP Server Message Decoding
CVSS 6.5
CVE-2025-48964 MEDIUM
iputils < 20250602 - Denial of Service via Crafted ICMP Echo Reply Packet
CVSS 6.5
CVE-2025-52520 HIGH
Apache Tomcat 9.0.0-9.0.106, 10.1.0-M1-10.1.42, 11.0.0-M1-11.0.8 DoS via Multipart Upload Integer Overflow
CVSS 7.5
CVE-2025-49531 HIGH
Adobe Illustrator 28.0-28.7.6 and <=29.5.1 - Arbitrary Code Execution via Integer Overflow
CVSS 7.8
CVE-2025-49742 HIGH
Windows 10 1507-22H2, Windows 11 22H2-24H2, Windows Server 2008 - Local Code Execution via Integer Overflow
CVSS 7.8
CVE-2025-49689 HIGH
Windows 10 1507-22H2, Windows 11 22H2-24H2, Windows Server 2008 - Local Privilege Escalation via VHDX Integer Overflow
CVSS 7.8
CVE-2025-49683 HIGH
Windows 10 1507-22H2, Windows 11 22H2-24H2, Windows Server 2008 - Local Code Execution via VHDX Integer Overflow
CVSS 7.8
CVE-2025-48816 HIGH
Microsoft Windows HID Class Driver - Privilege Escalation
CVSS 7.8
CVE-2025-48002 MEDIUM
Windows 11 24H2 and Windows Server 2025 < 10.0.26100.4652 - Authenticated Information Disclosure via Integer Overflow
CVSS 5.7
CVE-2025-47998 HIGH
Windows Server RRAS Heap Overflow RCE (2008, 2012, 2016, 2019, 2022, 2025)
CVSS 8.8
CVE-2025-47987 HIGH
Windows 10/11, Server 2008 - Authenticated Heap Overflow in CredSSP
CVSS 7.8
CVE-2025-38222 MEDIUM
Linux Kernel - Integer Overflow in ext4_prepare_inline_data
CVSS 5.5
CVE-2025-38193 MEDIUM
Linux Kernel - Integer Overflow in SFQ Perturb Period Handling
CVSS 5.5
Details
Vulnerabilities 3,177
Exploit Likelihood Medium