CWE-190

Medium likelihood

Integer Overflow or Wraparound

Parent: CWE-682 - Incorrect Calculation

The product performs a calculation that can produce an integer overflow or wraparound when the logic assumes that the resulting value will always be larger than the original value. This occurs when an integer value is incremented to a value that is too large to store in the associated representation. When this occurs, the value may become a very small or negative number.

3,198 vulnerabilities with CWE-190
CVE-2023-23385 HIGH
Windows 10 1507-22H2 and Windows 11 21H2-22H2 - Elevation of Privilege via PPPoE Integer Overflow
CVSS 7.0
CVE-2023-24180 MEDIUM
libelfin v0.3 - Denial of Service via Integer Overflow in mmap_loader.cc
CVSS 6.5
CVE-2023-22436 HIGH
OpenHarmony <v3.1.5 - Use After Free
CVSS 7.8
CVE-2023-25155 MEDIUM
Redis < 6.0.18 - Authenticated Denial of Service via Integer Overflow in SRANDMEMBER ZRANDMEMBER and HRANDFIELD Commands
CVSS 5.5
CVE-2023-0754 CRITICAL
GE Digital Industrial Gateway Server < 7.612 - Integer Overflow or Wraparound
CVSS 9.8
CVE-2023-0933 HIGH
Google Chrome < 110.0.5481.177 - Integer Overflow in PDF via Crafted PDF File
CVSS 8.8
CVE-2023-26242 HIGH
Linux kernel <6.1.12 - Integer Overflow
CVSS 7.8
CVE-2023-23462 CRITICAL
libpeconv < 2022-11-30 - Integer Overflow
CVSS 9.8
CVE-2023-21823 HIGH KEV
Windows 10 1507-21H2 - Remote Code Execution via Graphics Component Integer Overflow
CVSS 7.8
CVE-2023-21803 CRITICAL
Windows 10 and Windows Server 2008 - Remote Code Execution via iSCSI Discovery Service Integer Overflow
CVSS 9.8
CVE-2023-21802 HIGH
Microsoft Windows Media - Remote Code Execution
CVSS 7.8
CVE-2023-21797 HIGH
Microsoft Windows 10 ODBC Driver - Remote Code Execution via Integer Overflow
CVSS 8.8
CVE-2023-21716 CRITICAL
Microsoft Word - Remote Code Execution via Integer Overflow
CVSS 9.8
CVE-2023-21704 HIGH
Microsoft ODBC Driver for SQL Server - RCE
CVSS 7.8
CVE-2023-21686 HIGH
Microsoft WDAC OLE DB provider for SQL Server - RCE
CVSS 8.8
CVE-2023-0705 HIGH
Google Chrome < 110.0.5481.77 - Integer Overflow via Crafted HTML Page
CVSS 7.5
CVE-2023-0615 MEDIUM
Linux Kernel - Memory Leak and Integer Overflow in V4L2 vivid Test Code via VIDIOC_S_DV_TIMINGS ioctl
CVSS 5.5
CVE-2023-20602 MEDIUM
Android - Integer Overflow to Out-of-Bounds Write in ged
CVSS 6.7
CVE-2023-23144 MEDIUM
GPAC - Integer Overflow in Q_DecCoordOnUnitSphere Function
CVSS 5.5
CVE-2023-22458 MEDIUM
Redis 6.2.0-6.2.8 and 7.0.0-7.0.7 - Authenticated Denial of Service via HRANDFIELD or ZRANDMEMBER Command
CVSS 5.5
CVE-2023-21579 HIGH
Adobe Acrobat Reader <22.003.20282 - RCE
CVSS 7.8
CVE-2023-23559 HIGH
Linux Kernel 2.6.35-4.14.305 - Integer Overflow in rndis_query_oid
CVSS 7.8
CVE-2023-21765 HIGH
Windows Print Spooler - Privilege Escalation
CVSS 7.8
CVE-2023-21754 HIGH
Windows Kernel - Privilege Escalation
CVSS 7.8
CVE-2023-21730 HIGH
Microsoft Cryptographic Services - Privilege Escalation
CVSS 7.8
Details
Vulnerabilities 3,198
Exploit Likelihood Medium