CWE-190

Medium likelihood

Integer Overflow or Wraparound

Parent: CWE-682 - Incorrect Calculation

The product performs a calculation that can produce an integer overflow or wraparound when the logic assumes that the resulting value will always be larger than the original value. This occurs when an integer value is incremented to a value that is too large to store in the associated representation. When this occurs, the value may become a very small or negative number.

3,189 vulnerabilities with CWE-190
CVE-2024-35827 MEDIUM
Linux Kernel 6.0-6.1.82, 6.2-6.6.22, 6.7-6.7.10, 6.8-6.8.1 - Integer Underflow in io_uring net recvmsg_mshot
CVSS 5.5
CVE-2024-30021 MEDIUM
Microsoft Windows Mobile Broadband Driver - Remote Code Execution
CVSS 6.8
CVE-2024-30012 MEDIUM
Microsoft Windows Mobile Broadband Driver - Remote Code Execution
CVSS 6.8
CVE-2024-30005 MEDIUM
Microsoft Windows Mobile Broadband Driver - Remote Code Execution
CVSS 6.8
CVE-2024-30004 MEDIUM
Microsoft Windows Mobile Broadband Driver - Remote Code Execution
CVSS 6.8
CVE-2024-30003 MEDIUM
Microsoft Windows Mobile Broadband Driver - Remote Code Execution
CVSS 6.8
CVE-2024-30001 MEDIUM
Microsoft Windows Mobile Broadband Driver - Remote Code Execution
CVSS 6.8
CVE-2024-30000 MEDIUM
Microsoft Windows Mobile Broadband Driver - Remote Code Execution
CVSS 6.8
CVE-2024-29999 MEDIUM
Microsoft Windows Mobile Broadband Driver - Remote Code Execution
CVSS 6.8
CVE-2024-29997 MEDIUM
Microsoft Windows Mobile Broadband Driver - Remote Code Execution
CVSS 6.8
CVE-2024-32655 HIGH
Npgsql SQL Injection via Integer Overflow in WriteBind
CVSS 8.1
CVE-2024-3757 LOW
OpenHarmony < 4.0.1 - Denial of Service via Integer Overflow
CVSS 3.3
CVE-2024-34403 MEDIUM
uriparser < 0.9.7 - Integer Overflow via Long String in ComposeQueryMallocExMm
CVSS 5.9
CVE-2024-34402 HIGH
uriparser < 0.9.7 - Integer Overflow and Buffer Overflow via Long Query Keys or Values
CVSS 8.6
CVE-2024-21905 MEDIUM
QNAP QTS/QuTS hero/QuTScloud Integer Overflow
CVSS 6.5
CVE-2024-32039 CRITICAL
FreeRDP <3.5.0-2.11.6 - Buffer Overflow
CVSS 9.8
CVE-2024-23531 HIGH
Ivanti Avalanche < 6.4.3 - Unauthenticated Integer Overflow in WLInfoRailService
CVSS 7.5
CVE-2024-31031 HIGH
libcoap 4.3.4 - Integer Overflow in coap_pdu.c
CVSS 7.5
CVE-2024-26884 HIGH
Linux Kernel 3.19-6.8.1 Memory Corruption via BPF Hashtab Overflow
CVSS 7.8
CVE-2024-21105 LOW
Oracle Solaris 11 - Information Disclosure via Integer Overflow
CVSS 2.0
CVE-2024-3859 MEDIUM
Firefox < 125 and ESR < 115.10 - Integer Overflow via OpenType Font Parsing
CVSS 5.9
CVE-2024-26817 MEDIUM
Linux Kernel Integer Overflow via amdkfd Memory Allocation
CVSS 5.5
CVE-2024-20795 HIGH
Adobe Animate < 23.0.5 - Arbitrary Code Execution via Integer Overflow
CVSS 7.8
CVE-2024-28942 HIGH
Microsoft OLE DB Driver for SQL Server 18.0.2-18.7.0002.0 - Remote Code Execution
CVSS 8.8
CVE-2024-28936 HIGH
Microsoft ODBC Driver for SQL Server 17.0.1.1-17.10.6.1 - Remote Code Execution
CVSS 8.8
Details
Vulnerabilities 3,189
Exploit Likelihood Medium