CWE-190

Medium likelihood

Integer Overflow or Wraparound

Parent: CWE-682 - Incorrect Calculation

The product performs a calculation that can produce an integer overflow or wraparound when the logic assumes that the resulting value will always be larger than the original value. This occurs when an integer value is incremented to a value that is too large to store in the associated representation. When this occurs, the value may become a very small or negative number.

3,198 vulnerabilities with CWE-190
CVE-2023-35681 CRITICAL
Android - Remote Code Execution via Integer Overflow in eatt_l2cap_reconfig_completed
CVSS 9.8
CVE-2023-35673 HIGH
Android - Remote Code Execution via Integer Overflow in GATT Response Handling
CVSS 8.8
CVE-2023-4576 HIGH
Firefox < 117.0 - Heap Buffer Overflow via RecordedSourceSurfaceCreation Integer Overflow
CVSS 8.6
CVE-2023-40353 LOW
Samsung Exynos 980 and 2100 Firmware - Integer Overflow via Buffer Index
CVSS 2.0
CVE-2023-21655 MEDIUM
Qualcomm Audio Metadata Handling Firmware - Memory Corruption
CVSS 6.7
CVE-2023-21644 MEDIUM
Qualcomm RIL Firmware - Memory Corruption
CVSS 6.7
CVE-2023-4734 HIGH
vim < 9.0.1846 - Integer Overflow or Wraparound
CVSS 7.8
CVE-2023-4722 MEDIUM
gpac < 2.3-dev - Integer Overflow or Wraparound
CVSS 5.5
CVE-2023-36328 CRITICAL
libtommath <beba892bc0d4e4ded4d667ab1d2a94f4d75109a9 - RCE/DoS
CVSS 9.8
CVE-2023-36327 CRITICAL
RELIC <421f2e91cf2ba42473d4d54daf24e295679e290e - RCE
CVSS 9.8
CVE-2023-36326 CRITICAL
RELIC < 2022-11-14 - Integer Overflow in bn_grow realloc Function
CVSS 9.8
CVE-2023-40186 MEDIUM
FreeRDP < 2.11.0 - Integer Overflow to Out-of-Bounds Write in gdi_CreateSurface
CVSS 6.5
CVE-2023-40022 HIGH
rizin < 0.6.1 - Integer Overflow in C++ Demangler consume_count
CVSS 7.8
CVE-2023-39125 HIGH
NTSC-CRT 2.2.1 - Integer Overflow and Out-of-Bounds Write in BMP Loader
CVSS 7.5
CVE-2023-2914 HIGH
Rockwell Automation ThinManager ThinServer 11.0.0-11.0.5 DoS via Crafted Sync Message
CVSS 7.5
CVE-2023-35085 CRITICAL
UniFi Access Points and Switches < 6.5.50 and < 6.5.32 - Remote Code Execution via Integer Overflow
CVSS 9.8
CVE-2023-36911 CRITICAL
Windows 10/11, Server 2008-2019 Remote Code Execution
CVSS 9.8
CVE-2023-36910 CRITICAL
Windows 10/11 and Windows Server - Remote Code Execution via MSMQ Integer Overflow
CVSS 9.8
CVE-2023-36900 HIGH
Windows Common Log File System Driver - Privilege Escalation
CVSS 7.8
CVE-2023-36866 HIGH
Microsoft Office Visio - Remote Code Execution via Integer Overflow
CVSS 7.8
CVE-2023-35385 CRITICAL
Microsoft Windows 10 1507-22H2 and Windows 11 21H2-22H2 - Remote Code Execution via MSMQ Integer Overflow
CVSS 9.8
CVE-2023-35383 HIGH
Windows 10 1507-22H2 and Windows 11 21H2-22H2 - Information Disclosure via Integer Overflow
CVSS 7.5
CVE-2023-35381 HIGH
Windows Fax Service - Remote Code Execution via Integer Overflow
CVSS 8.8
CVE-2023-35372 HIGH
Microsoft Office Visio - Remote Code Execution via Integer Overflow
CVSS 7.8
CVE-2023-28537 HIGH
Qualcomm Modem and SoC Firmware - Memory Corruption in COmxApeDec Audio Module
CVSS 8.4
Details
Vulnerabilities 3,198
Exploit Likelihood Medium