CWE-190

Medium likelihood

Integer Overflow or Wraparound

Parent: CWE-682 - Incorrect Calculation

The product performs a calculation that can produce an integer overflow or wraparound when the logic assumes that the resulting value will always be larger than the original value. This occurs when an integer value is incremented to a value that is too large to store in the associated representation. When this occurs, the value may become a very small or negative number.

3,198 vulnerabilities with CWE-190
CVE-2023-46228 HIGH
zchunk < 1.3.2 - Integer Overflow via Malformed File Parsing
CVSS 7.8
CVE-2023-45853 CRITICAL
zlib < 1.3.1 - Heap-Based Buffer Overflow via MiniZip Long Filename
CVSS 9.8
CVE-2023-42752 MEDIUM
Linux Kernel < 6.5.7 - Integer Overflow in skb_shared_info Allocation
CVSS 5.5
CVE-2023-42298 MEDIUM
GPAC < 2.2.1 - Denial of Service via Q_DecCoordOnUnitSphere Function
CVSS 5.5
CVE-2023-35968 CRITICAL
Yifan YF325 <1.0_20221108 - Buffer Overflow
CVSS 9.8
CVE-2023-35967 CRITICAL
Yifan YF325 <1.0_20221108 - Buffer Overflow
CVSS 9.8
CVE-2023-35966 CRITICAL
Yifan YF325 <1.0_20221108 - Buffer Overflow
CVSS 9.8
CVE-2023-35965 CRITICAL
Yifan YF325 <1.0_20221108 - Buffer Overflow
CVSS 9.8
CVE-2023-37536 HIGH
Xerces-C++ 3.2.3 - Integer Overflow via HTTP Request
CVSS 8.2
CVE-2023-36593 HIGH
Microsoft Windows 10/11 and Windows Server - Remote Code Execution via MSMQ Integer Overflow
CVSS 7.8
CVE-2023-36582 HIGH
Windows 10/11 and Windows Server - Remote Code Execution via MSMQ Integer Overflow
CVSS 7.3
CVE-2023-36576 MEDIUM
Windows Kernel - Information Disclosure via Integer Overflow
CVSS 5.5
CVE-2023-36478 HIGH
Eclipse Jetty <11.0.15,10.0.15,9.4.52 - Buffer Overflow
CVSS 7.5
CVE-2023-43787 HIGH
libX11 < 1.8.7 - Integer Overflow in XCreateImage()
CVSS 7.8
CVE-2023-41175 MEDIUM
libtiff - DoS/Arbitrary Code Execution
CVSS 6.5
CVE-2023-40745 MEDIUM
libtiff < 4.6.0 - Integer Overflow via Crafted TIFF Image
CVSS 6.5
CVE-2023-32829 MEDIUM
Yocto - Integer Overflow to Out-of-Bounds Write
CVSS 6.7
CVE-2023-32828 MEDIUM
mediatek iot_yocto - Integer Overflow to Out-of-Bounds Write in vpu
CVSS 6.7
CVE-2023-32823 MEDIUM
Android - Local Privilege Escalation via Missing Bounds Check in rpmb
CVSS 6.7
CVE-2023-5173 HIGH
Firefox < 118 - Integer Overflow to Out-of-Bounds Write via Non-HTTPS Alternate Services
CVSS 7.5
CVE-2023-38150 HIGH
Windows 11 21H2 < 10.0.22000.2416 and 22H2 < 10.0.22621.2275 - Elevation of Privilege via Integer Overflow
CVSS 7.8
CVE-2023-38142 HIGH
Windows Kernel - Elevation of Privilege via Integer Overflow
CVSS 7.8
CVE-2023-36792 HIGH
Microsoft Visual Studio - Remote Code Execution
CVSS 7.8
CVE-2023-40218 LOW
Samsung Exynos Mobile Processor 9820, 980, 2100, 2200, 1280, 1380 - Integer Overflow in NPU Kernel Driver
CVSS 2.0
CVE-2023-28831 HIGH
SIMATIC OPC UA - Unauthenticated Denial of Service via Integer Overflow in Certificate Validation
CVSS 7.5
Details
Vulnerabilities 3,198
Exploit Likelihood Medium