CWE-190

Medium likelihood

Integer Overflow or Wraparound

Parent: CWE-682 - Incorrect Calculation

The product performs a calculation that can produce an integer overflow or wraparound when the logic assumes that the resulting value will always be larger than the original value. This occurs when an integer value is incremented to a value that is too large to store in the associated representation. When this occurs, the value may become a very small or negative number.

3,177 vulnerabilities with CWE-190
CVE-2025-40906 CRITICAL
BSON::XS < 0.8.4 - Use of Unmaintained Third Party Components
CVSS 9.8
CVE-2025-40907 MEDIUM
FCGI 0.44-0.82 - Integer Overflow via Crafted nameLen or valueLen in IPC Socket Data
CVSS 5.3
CVE-2025-48175 MEDIUM
libavif < 1.3.0 - Integer Overflow in avifImageRGBToYUV
CVSS 4.5
CVE-2025-48174 MEDIUM
libavif < 1.3.0 - Integer Overflow and Buffer Overflow in stream.c makeRoom
CVSS 4.5
CVE-2025-43556 HIGH
Adobe Animate < 23.0.12 - Integer Overflow or Wraparound
CVSS 7.8
CVE-2025-43547 HIGH
Adobe Bridge < 14.1.7 - Integer Overflow or Wraparound via Malicious File
CVSS 7.8
CVE-2025-30325 HIGH
Photoshop Desktop <26.5, 25.12.2 - Code Injection
CVSS 7.8
CVE-2025-31221 HIGH
iPadOS < 17.7.7 - Integer Overflow via Improved Input Validation
CVSS 7.5
CVE-2025-37858 MEDIUM
Linux Kernel < 5.4.293 - Integer Overflow in JFS AG Size Calculation
CVSS 5.5
CVE-2025-37857 MEDIUM
Linux Kernel SCSI Tape Driver Integer Overflow Vulnerability
CVSS 5.5
CVE-2025-47268 MEDIUM
iputils < 20250602 - Denial of Service via Crafted ICMP Echo Reply Packet
CVSS 6.5
CVE-2025-2082 HIGH
Tesla Model 3 Firmware < 2024.14 - Unauthenticated Remote Code Execution via VCSEC Integer Overflow
CVSS 7.5
CVE-2025-31203 MEDIUM
iPadOS < 17.7.6 - Denial of Service via Integer Overflow
CVSS 6.5
CVE-2025-46333 HIGH
z2d <0.6.1 - Buffer Overflow
CVE-2025-2760 HIGH
GIMP - Remote Code Execution via XWD File Parsing Integer Overflow
CVSS 7.8
CVE-2025-22091 MEDIUM
Linux Kernel 6.12-6.12.22, 6.13-6.13.10, 6.14-6.14.1 - Integer Overflow in RDMA/mlx5 Page Size Handling
CVSS 5.5
CVE-2025-22081 MEDIUM
Linux Kernel 5.15-6.14.2 - NTFS3 Integer Overflow
CVSS 5.5
CVE-2025-22080 MEDIUM
Linux Kernel 6.2-6.6.86, 6.7-6.12.22, 6.13-6.13.10, 6.14-6.14.1 - Integer Overflow in NTFS3 hdr_first_de()
CVSS 5.5
CVE-2025-22059 MEDIUM
Linux Kernel 6.10-6.12.22, 6.13.0-6.13.10, 6.14.0-6.14.1 - Integer Overflow in UDP Socket Receive Buffer Accounting
CVSS 5.5
CVE-2025-22055 MEDIUM
Linux kernel - Heap Out-of-Bounds Read
CVSS 5.5
CVE-2025-22039 HIGH
Linux Kernel 5.15-6.14 - Integer Overflow in SMB DACL Offset Check
CVSS 7.1
CVE-2025-0101 MEDIUM
WAGO CC100 0751-9x01 < 04.07.01 - Integer Overflow via Date Setting
CVSS 6.5
CVE-2025-30712 HIGH
Oracle VM VirtualBox 7.1.6 - Authenticated Integer Overflow in Core
CVSS 8.1
CVE-2025-3277 CRITICAL
SQLite 3.44.0 to 3.49.1 concat_ws - Integer Overflow Code Execution
CVSS 9.8
CVE-2025-29088 MEDIUM
SQLite 3.49.0 - Denial of Service via sqlite3_db_config Integer Overflow
CVSS 5.6
Details
Vulnerabilities 3,177
Exploit Likelihood Medium