CWE-190

Medium likelihood

Integer Overflow or Wraparound

Parent: CWE-682 - Incorrect Calculation

The product performs a calculation that can produce an integer overflow or wraparound when the logic assumes that the resulting value will always be larger than the original value. This occurs when an integer value is incremented to a value that is too large to store in the associated representation. When this occurs, the value may become a very small or negative number.

3,187 vulnerabilities with CWE-190
CVE-2024-41858 HIGH
Adobe InCopy < 18.5.2 - Integer Overflow or Wraparound via Malicious File
CVSS 7.8
CVE-2024-38215 HIGH
Windows Cloud Files Mini Filter Driver - Privilege Escalation
CVSS 7.8
CVE-2024-38144 HIGH
Kernel Streaming WOW Thunk Service Driver - Privilege Escalation
CVSS 8.8
CVE-2024-38128 HIGH
Windows Routing and Remote Access Service - Remote Code Execution
CVSS 8.8
CVE-2024-33024 HIGH
Qualcomm AR8035 Firmware - Denial of Service via Malformed ML IE Length Field
CVSS 7.5
CVE-2024-33022 HIGH
Qualcomm AR8035 Firmware - Memory Corruption via HGSL Driver Integer Overflow
CVSS 8.4
CVE-2024-42223 MEDIUM
Linux Kernel Integer Overflow in TDA10048 DVB Frontend
CVSS 5.5
CVE-2024-42136 HIGH
Linux Kernel - Integer Overflow in CDROM Last Media Change Check
CVSS 7.8
CVE-2024-42131 MEDIUM
Linux Kernel Integer Overflow in Dirty Throttling Logic
CVSS 4.4
CVE-2024-40784 MEDIUM
iPadOS < 16.7.9 - Integer Overflow via Maliciously Crafted File
CVSS 5.5
CVE-2024-42066 MEDIUM
Linux Kernel - Integer Overflow in DRM/xe Page Size Calculation
CVSS 5.5
CVE-2024-6638 MEDIUM
LabVIEW < 2024 Q1 - Denial of Service via TDMS File Parsing
CVSS 5.5
CVE-2024-41184 CRITICAL
Keepalived <2.3.1 - Buffer Overflow
CVSS 9.8
CVE-2024-41000 HIGH
Linux Kernel - Integer Overflow via Block IOCTL Overflow Check
CVSS 7.8
CVE-2024-40994 HIGH
Linux Kernel 5.14-5.15.161, 5.16-6.1.95, 6.2-6.6.35, 6.7-6.9.6 - Integer Overflow in PTP max_vclocks_store
CVSS 7.8
CVE-2024-37310 CRITICAL
EVerest everest-core < 2024.3.1 and 2024.4.0-2024.6.0 - Heap-based Buffer Overflow in v2g_incoming_v2gtp
CVSS 9.0
CVE-2024-23695 HIGH
Android - Integer Overflow to Out-of-Bounds Write in CacheOpPMRExec
CVSS 7.8
CVE-2024-34139 HIGH
Adobe Bridge < 13.0.8 - Integer Overflow or Wraparound via Malicious File
CVSS 7.8
CVE-2024-39684 HIGH
Tencent RapidJSON - Privilege Escalation
CVSS 7.8
CVE-2024-38080 HIGH KEV
Windows Hyper-V - Privilege Escalation
CVSS 7.8
CVE-2024-38034 HIGH
Windows Filtering Platform - Privilege Escalation
CVSS 7.8
CVE-2024-38019 HIGH
Microsoft Windows Performance Data Helper Library - RCE
CVSS 7.2
CVE-2024-37336 HIGH
SQL Server 2016/2017/2019/2022 Remote Code Execution via Integer Overflow
CVSS 8.8
CVE-2024-37323 HIGH
SQL Server 2016/2017/2019/2022 Remote Code Execution via Integer Overflow
CVSS 8.8
CVE-2024-26184 MEDIUM
Windows Secure Boot Security Feature Bypass via Integer Overflow
CVSS 6.8
Details
Vulnerabilities 3,187
Exploit Likelihood Medium