CWE-190

Medium likelihood

Integer Overflow or Wraparound

Parent: CWE-682 - Incorrect Calculation

The product performs a calculation that can produce an integer overflow or wraparound when the logic assumes that the resulting value will always be larger than the original value. This occurs when an integer value is incremented to a value that is too large to store in the associated representation. When this occurs, the value may become a very small or negative number.

3,189 vulnerabilities with CWE-190
CVE-2023-32650 HIGH
GTKWave 3.3.115 - Integer Overflow in FST_BL_GEOM Parsing
CVSS 7.0
CVE-2023-33038 MEDIUM
Qualcomm 315 5G IoT Modem Firmware - Memory Corruption via Bus Socket Transport Server
CVSS 6.7
CVE-2023-33032 CRITICAL
Qualcomm 9205 LTE Modem Firmware - Memory Corruption via TA Region Allocation
CVSS 9.3
CVE-2023-32881 MEDIUM
Android - Local Information Disclosure via Integer Overflow in Battery Component
CVSS 4.4
CVE-2023-51714 CRITICAL
Qt <5.15.17, <6.2.11, <=6.5.4, <=6.6.2 - Memory Corruption
CVSS 9.8
CVE-2023-24609 HIGH
Matrix SSL <4.6.0 - DoS
CVSS 7.5
CVE-2023-43826 HIGH
Apache Guacamole <1.5.3 - Memory Corruption
CVSS 7.5
CVE-2023-44709 CRITICAL
PlutoSVG - Integer Overflow in plutosvg_load_from_memory
CVSS 9.8
CVE-2023-6478 HIGH
x.org X Server < 21.1.10 and XWayland < 23.2.3 - Integer Overflow via RRChangeProviderProperty or RRChangeOutputProperty
CVSS 7.6
CVE-2023-35644 HIGH
Windows Sysmain Service - Elevation of Privilege via Integer Overflow
CVSS 7.8
CVE-2023-35632 HIGH
Windows Ancillary Function Driver for WinSock - Elevation of Privilege via Integer Overflow
CVSS 7.8
CVE-2023-5869 HIGH
PostgreSQL >=11.0 <11.22 - Authenticated Remote Code Execution via SQL Array Value Modification
CVSS 8.8
CVE-2023-48409 HIGH
Private Google Modules Mali Kbase < Linux - Privilege Escalation
CVSS 7.8
CVE-2023-42563 MEDIUM
Samsung Android 12.0-13.0 - Integer Overflow in libFacePreProcessingjni.camera.samsung.so
CVSS 6.7
CVE-2023-42562 MEDIUM
Samsung Android 12.0-13.0 - Integer Overflow in Face Detection Multi-Instance Processing
CVSS 6.7
CVE-2023-33107 HIGH KEV
Qualcomm 315 5G IoT Modem Firmware - Memory Corruption via Graphics IOCTL Shared Virtual Memory Assignment
CVSS 8.4
CVE-2023-33022 HIGH
Qualcomm 315 5G IoT Modem Firmware - Memory Corruption via HLOS IOCTL Calls
CVSS 8.4
CVE-2023-33018 HIGH
Qualcomm 315 5G IoT Modem Firmware - Memory Corruption via UIM Diag Command
CVSS 7.8
CVE-2023-28588 HIGH
Qualcomm Bluetooth Host - Denial of Service via RFC Slot Allocation
CVSS 7.5
CVE-2023-6345 CRITICAL KEV
Google Chrome <119.0.6045.199 - Sandbox Escape
CVSS 9.6
CVE-2023-4398 HIGH
Zyxel ATP/USG FLEX/USG20(W)-VPN <5.37 - DoS
CVSS 7.5
CVE-2023-4424 HIGH
Zephyr < 3.4.0 - Buffer Overflow via Malformed BLE Advertising Packet
CVSS 8.3
CVE-2023-48237 LOW
vim < 9.0.2112 - Integer Overflow in Operator Pending Mode Line Shift
CVSS 2.8
CVE-2023-48236 LOW
vim < 9.0.2111 - Integer Overflow via z= Command
CVSS 2.8
CVE-2023-48235 LOW
vim < 9.0.2110 - Integer Overflow in Relative Ex Address Parsing
CVSS 2.8
Details
Vulnerabilities 3,189
Exploit Likelihood Medium