CWE-190

Medium likelihood

Integer Overflow or Wraparound

Parent: CWE-682 - Incorrect Calculation

The product performs a calculation that can produce an integer overflow or wraparound when the logic assumes that the resulting value will always be larger than the original value. This occurs when an integer value is incremented to a value that is too large to store in the associated representation. When this occurs, the value may become a very small or negative number.

3,177 vulnerabilities with CWE-190
CVE-2024-53107 MEDIUM
Linux Kernel 6.7-6.11.10 - Integer Overflow in pagemap_scan_get_args
CVSS 5.5
CVE-2024-33063 HIGH
Qualcomm AR8035 Firmware - Denial of Service via Malformed ML IE Beacon Parsing
CVSS 7.5
CVE-2024-35366 CRITICAL
FFmpeg n6.1.1 - Integer Overflow in libavformat parse_options
CVSS 9.1
CVE-2024-36616 MEDIUM
FFmpeg n6.1.1 - Denial of Service via Crafted VQA File Integer Overflow
CVSS 6.5
CVE-2024-36618 MEDIUM
FFmpeg n6.1.1 - Denial of Service via Integer Overflow in AVI Demuxer
CVSS 6.2
CVE-2024-36617 MEDIUM
FFmpeg < 3.4.14 - Integer Overflow in CAF Decoder
CVSS 6.2
CVE-2024-36619 MEDIUM
FFmpeg n6.1.1 - Denial of Service via WAVARC Decoder Integer Overflow
CVSS 5.3
CVE-2024-35369 MEDIUM
FFmpeg n6.1.1 - Integer Overflow in Speex Extradata Parsing
CVSS 5.5
CVE-2024-36671 CRITICAL
Nodemcu <v3.0.0-release_20240225 - Buffer Overflow
CVSS 9.8
CVE-2024-7025 HIGH
Google Chrome < 129.0.6668.89 - Integer Overflow in Layout via Crafted HTML Page
CVSS 8.8
CVE-2024-11236 CRITICAL
PHP 8.1.0-8.1.30 - Integer Overflow via ldap_escape() Long String Input
CVSS 9.8
CVE-2024-48983 HIGH
MBed OS 6.16.0 - Integer Overflow to Buffer Overflow in HCI Packet Processing
CVSS 7.5
CVE-2024-50270 MEDIUM
Linux Kernel 6.8-6.11.7 - Integer Overflow in damon_feed_loop_next_input
CVSS 5.5
CVE-2024-42384 HIGH
Cesanta Mongoose Web Server <7.14 - Memory Corruption
CVSS 7.5
CVE-2024-52919 MEDIUM
Bitcoin Core < 22.0 - Denial of Service via CAddrMan nIdCount Integer Overflow
CVSS 6.5
CVE-2024-52912 HIGH
Bitcoin Core < 0.21.0 - Network Split via Integer Overflow in Time Offset Calculation
CVSS 7.5
CVE-2024-21783 MEDIUM
Intel(R) VPL <24.1.4 - Privilege Escalation
CVSS 4.8
CVE-2024-43091 CRITICAL
Android Skia SkEmbossMaskFilter - Out-of-Bounds Write Remote Code Execution
CVSS 9.8
CVE-2024-43641 HIGH
Windows 10 1507-22H2 and Windows 11 22H2 - Elevation of Privilege via Registry Integer Overflow
CVSS 7.8
CVE-2024-43635 HIGH
Windows Telephony Service - Remote Code Execution via Integer Overflow
CVSS 8.8
CVE-2024-43628 HIGH
Windows 10 1507-22H2 and Windows 11 22H2 - Remote Code Execution in Telephony Service
CVSS 8.8
CVE-2024-43623 HIGH
Windows 10 1507-22H2 and Windows 11 22H2 - Elevation of Privilege via Integer Overflow
CVSS 7.8
CVE-2024-10917 LOW
Eclipse OpenJ9 0.8.0-0.47.0 - Integer Overflow in GetStringUTFLength
CVSS 3.7
CVE-2024-46953 HIGH
Ghostscript < 10.04.0 - Integer Overflow in Output Filename Parsing
CVSS 7.8
CVE-2024-46613 CRITICAL
WeeChat < 4.4.2 - Integer Overflow and Buffer Overflow in Core String Handling
CVSS 9.8
Details
Vulnerabilities 3,177
Exploit Likelihood Medium