CWE-190

Medium likelihood

Integer Overflow or Wraparound

Parent: CWE-682 - Incorrect Calculation

The product performs a calculation that can produce an integer overflow or wraparound when the logic assumes that the resulting value will always be larger than the original value. This occurs when an integer value is incremented to a value that is too large to store in the associated representation. When this occurs, the value may become a very small or negative number.

3,329 vulnerabilities with CWE-190
CVE-2026-16280 CRITICAL
Imagination Technologies Graphics DDK - GPU DDK - Integer Overflow in _PMRLogicalOffsetToPhysicalOffset
CVSS 9.8
CVE-2026-66039 HIGH
FFmpeg MACE6 Audio Decoder Heap Out-of-Bounds Write via CAF File
CVSS 8.8
CVE-2026-13063 MEDIUM
MongoDB Server - Libmongocrypt Improper Input Validation Leading to Process Termination
CVSS 4.3
CVE-2026-53910 LOW
Heap-based Buffer Overflow in GNU diffutils
CVE-2026-16517 LOW
Libarchive: libarchive: signed integer overflow in archive_write_zip_header
CVSS 2.9
CVE-2026-16416 CRITICAL
Google Chrome - Integer Overflow or Wraparound
CVSS 9.3
CVE-2026-47251 MEDIUM
libheif has an incomplete fix for CVE-2026-3949: integer overflow bypass in vvdec_push_data2
CVSS 6.1
CVE-2026-47714 MEDIUM
libheif has integer overflow in inline mask size calculation that causes undersized buffer allocation
CVSS 6.1
CVE-2026-16408 CRITICAL
Integer overflow in the Audio/Video: Playback component
CVSS 9.8
CVE-2026-16402 CRITICAL
Integer overflow in the Graphics: ImageLib component
CVSS 9.8
CVE-2026-16395 CRITICAL
Mozilla Firefox - Integer Overflow in the Audio/Video Component
CVSS 9.8
CVE-2026-16389 CRITICAL
Incorrect boundary conditions, integer overflow in the Libraries component in NSS
CVSS 9.8
CVE-2026-16369 CRITICAL
Integer overflow in the JavaScript: WebAssembly component
CVSS 9.8
CVE-2026-41521 HIGH
xrdp: lib_framebuffer_update Has Integer Overflow Heap Info Leak & ASLR Bypass
CVSS 8.2
CVE-2026-33328 MEDIUM
Possible integer overflow on 32-bit systems when reading GIF images
CVE-2026-33327 HIGH
Possible integer overflow leading to potential heap-based buffer overflow
CVE-2026-63091 MEDIUM
ProFTPD mod_sftp Signed Integer Overflow via SCP Size-Record Parser
CVSS 6.5
CVE-2026-55254 MEDIUM
NCalc: Denial of Service via Unbounded and Non-Terminating Factorial Evaluation
CVSS 4.8
CVE-2026-59117 HIGH
Windows Terminal Remote Code Execution Vulnerability
CVSS 7.5
CVE-2026-48354 MEDIUM
CAI Content Credentials | Integer Overflow or Wraparound (CWE-190)
CVSS 6.2
CVE-2026-48342 HIGH
Adobe Bridge - Bridge | Integer Overflow or Wraparound (CWE-190)
CVSS 7.8
CVE-2026-58594 HIGH
Microsoft Windows 10 Version 1607 - Remote Desktop Client Remote Code Execution Vulnerability
CVSS 8.8
CVE-2026-58532 HIGH
Microsoft Windows 10 Version 1607 - Windows Kernel Elevation of Privilege Vulnerability
CVSS 7.8
CVE-2026-56647 HIGH
Windows Remote Access Service Infrastructure Elevation of Privilege Vulnerability
CVSS 8.8
CVE-2026-56194 HIGH
Microsoft Windows 10 Version 1607 - Windows NFS Server Elevation of Privilege Vulnerability
CVSS 8.8
Details
Vulnerabilities 3,329
Exploit Likelihood Medium