CWE-190

Medium likelihood

Integer Overflow or Wraparound

Parent: CWE-682 - Incorrect Calculation

The product performs a calculation that can produce an integer overflow or wraparound when the logic assumes that the resulting value will always be larger than the original value. This occurs when an integer value is incremented to a value that is too large to store in the associated representation. When this occurs, the value may become a very small or negative number.

3,065 vulnerabilities with CWE-190
CVE-2026-5477 HIGH
Prefix-substitution forgery via integer overflow in wolfCrypt CMAC
CVSS 7.5
CVE-2026-40046 HIGH
Apache ActiveMQ, Apache ActiveMQ All, Apache ActiveMQ MQTT: Missing fix for CVE-2025-66168: MQTT control packet remaining length field is not properly validated
CVSS 7.5
CVE-2026-39855 MEDIUM
osslsigncode has an Integer Underflow in PE Page Hash Calculation Can Cause Out-of-Bounds Read
CVSS 5.5
CVE-2026-5870 HIGH
Google Chrome <147.0.7727.55 - Memory Corruption
CVSS 8.8
CVE-2026-24173 HIGH
Nvidia Triton Inference Server - Denial of Service
CVSS 7.5
CVE-2026-24660 HIGH
LibRaw < Commit d20315b - Buffer Overflow
CVSS 8.1
CVE-2026-24450 HIGH
LibRaw < Commit 8dc68e2 - Buffer Overflow
CVSS 8.1
CVE-2026-20889 CRITICAL
LibRaw < Commit d20315b - Buffer Overflow
CVSS 9.8
CVE-2026-20884 HIGH
LibRaw < Commit 8dc68e2 - Buffer Overflow
CVSS 8.1
CVE-2026-5732 HIGH
Incorrect boundary conditions, integer overflow in the Graphics: Text component
CVSS 8.8
CVE-2026-20446 MEDIUM
Mediatek, Inc. MediaTek Chipset < MT6813 - Denial of Service
CVSS 4.3
CVE-2026-34589 MEDIUM
OpenEXR: DWA Lossy Decoder Heap Out-of-Bounds Write
CVSS 5.0
CVE-2026-34588 HIGH
OpenEXR has a signed 32-bit Overflow in PIZ Decoder Leads to OOB Read/Write
CVSS 7.8
CVE-2026-34380 MEDIUM
OpenEXR has a signed integer overflow (undefined behavior) in undo_pxr24_impl may allow bounds-check bypass in PXR24 decompression
CVSS 5.9
CVE-2026-34378 MEDIUM
OpenEXR has a signed integer overflow in generic_unpack() when parsing EXR files with crafted negative dataWindow.min.x
CVSS 6.5
CVE-2026-5476 MEDIUM
NASA cFS cfe_tbl_passthru_codec.c CFE_TBL_ValidateCodecLoadSize integer overflow
CVSS 4.6
CVE-2026-34545 HIGH
OpenEXR: integer overflow lead to OOB in HTJ2K decoder
CVSS 7.3
CVE-2026-34544 HIGH
OpenEXR: integer overflow to OOB write in uncompress_b44_impl()
CVSS 7.3
CVE-2026-35092 HIGH
Corosync: corosync: denial of service via integer overflow in join message validation
CVSS 7.5
CVE-2026-34219 MEDIUM
libp2p-gossipsub: Gossipsub PRUNE Backoff Heartbeat Instant Overflow
CVSS 5.9
CVE-2026-3308 HIGH
Mupdf < 1.27.0 - Out-of-Bounds Access
CVSS 7.8
CVE-2026-33983 MEDIUM
FreeRDP: Progressive Codec Quant BYTE Underflow - UB + CPU DoS
CVSS 6.5
CVE-2026-5121 HIGH
Libarchive: libarchive: arbitrary code execution via integer overflow in iso9660 image processing
CVSS 7.5
CVE-2026-3945 HIGH
Tinyproxy < <=1.11.3 - Denial of Service
CVSS 7.5
CVE-2026-4985 MEDIUM
dloebl CGIF GIF Image cgif.c cgif_addframe integer overflow
CVSS 4.3
Details
Vulnerabilities 3,065
Exploit Likelihood Medium