The product performs a calculation that can produce an integer overflow or wraparound when the logic assumes that the resulting value will always be larger than the original value. This occurs when an integer value is incremented to a value that is too large to store in the associated representation. When this occurs, the value may become a very small or negative number.
3,065 vulnerabilities with CWE-190
CVE-2026-5477
HIGH
Prefix-substitution forgery via integer overflow in wolfCrypt CMAC
CVSS 7.5
CVE-2026-40046
HIGH
Apache ActiveMQ, Apache ActiveMQ All, Apache ActiveMQ MQTT: Missing fix for CVE-2025-66168: MQTT control packet remaining length field is not properly validated
CVSS 7.5
CVE-2026-39855
MEDIUM
osslsigncode has an Integer Underflow in PE Page Hash Calculation Can Cause Out-of-Bounds Read
CVSS 5.5
CVE-2026-5870
HIGH
Google Chrome <147.0.7727.55 - Memory Corruption
CVSS 8.8
CVE-2026-24173
HIGH
Nvidia Triton Inference Server - Denial of Service
CVSS 7.5
CVE-2026-24660
HIGH
LibRaw < Commit d20315b - Buffer Overflow
CVSS 8.1
CVE-2026-24450
HIGH
LibRaw < Commit 8dc68e2 - Buffer Overflow
CVSS 8.1
CVE-2026-20889
CRITICAL
LibRaw < Commit d20315b - Buffer Overflow
CVSS 9.8
CVE-2026-20884
HIGH
LibRaw < Commit 8dc68e2 - Buffer Overflow
CVSS 8.1
CVE-2026-5732
HIGH
Incorrect boundary conditions, integer overflow in the Graphics: Text component
CVSS 8.8
CVE-2026-20446
MEDIUM
Mediatek, Inc. MediaTek Chipset < MT6813 - Denial of Service
CVSS 4.3
CVE-2026-34589
MEDIUM
OpenEXR: DWA Lossy Decoder Heap Out-of-Bounds Write
CVSS 5.0
CVE-2026-34588
HIGH
OpenEXR has a signed 32-bit Overflow in PIZ Decoder Leads to OOB Read/Write
CVSS 7.8
CVE-2026-34380
MEDIUM
OpenEXR has a signed integer overflow (undefined behavior) in undo_pxr24_impl may allow bounds-check bypass in PXR24 decompression
CVSS 5.9
CVE-2026-34378
MEDIUM
OpenEXR has a signed integer overflow in generic_unpack() when parsing EXR files with crafted negative dataWindow.min.x
CVSS 6.5
CVE-2026-5476
MEDIUM
NASA cFS cfe_tbl_passthru_codec.c CFE_TBL_ValidateCodecLoadSize integer overflow
CVSS 4.6
CVE-2026-34545
HIGH
OpenEXR: integer overflow lead to OOB in HTJ2K decoder
CVSS 7.3
CVE-2026-34544
HIGH
OpenEXR: integer overflow to OOB write in uncompress_b44_impl()
CVSS 7.3
CVE-2026-35092
HIGH
Corosync: corosync: denial of service via integer overflow in join message validation
CVSS 7.5
CVE-2026-34219
MEDIUM
libp2p-gossipsub: Gossipsub PRUNE Backoff Heartbeat Instant Overflow
CVSS 5.9
CVE-2026-3308
HIGH
Mupdf < 1.27.0 - Out-of-Bounds Access
CVSS 7.8
CVE-2026-33983
MEDIUM
FreeRDP: Progressive Codec Quant BYTE Underflow - UB + CPU DoS
CVSS 6.5
CVE-2026-5121
HIGH
Libarchive: libarchive: arbitrary code execution via integer overflow in iso9660 image processing
CVSS 7.5
CVE-2026-3945
HIGH
Tinyproxy < <=1.11.3 - Denial of Service
CVSS 7.5
CVE-2026-4985
MEDIUM
dloebl CGIF GIF Image cgif.c cgif_addframe integer overflow
CVSS 4.3
Details
Vulnerabilities
3,065
Exploit Likelihood
Medium