CWE-190

Medium likelihood

Integer Overflow or Wraparound

Parent: CWE-682 - Incorrect Calculation

The product performs a calculation that can produce an integer overflow or wraparound when the logic assumes that the resulting value will always be larger than the original value. This occurs when an integer value is incremented to a value that is too large to store in the associated representation. When this occurs, the value may become a very small or negative number.

3,200 vulnerabilities with CWE-190
CVE-2022-32543 HIGH
ESTsoft Alyac 2.5.8.544 - Integer Overflow in OLE File Parser
CVSS 7.8
CVE-2022-29886 HIGH
ESTsoft Alyac 2.5.8.544 - Integer Overflow via OLE File Parsing
CVSS 7.8
CVE-2022-33719 HIGH
Baseband <SMR Aug-2022 Release 1 - Memory Corruption
CVSS 8.6
CVE-2022-34612 MEDIUM
rizin < 0.4.0 - Denial of Service via Integer Overflow in get_long_object()
CVSS 5.5
CVE-2022-2122 HIGH
gstreamer < 1.20.3 - Denial of Service and Heap Overflow via qtdemux_inflate
CVSS 7.8
CVE-2022-1925 HIGH
GStreamer < 1.20.3 - Integer Overflow and Heap Overflow in Matroska Demuxing
CVSS 7.8
CVE-2022-1924 HIGH
GStreamer < 1.20.3 - Denial of Service and Heap Overflow in Matroska Demuxer LZO Decompression
CVSS 7.8
CVE-2022-1923 HIGH
GStreamer < 1.20.3 - Denial of Service and Heap Overflow in Matroska Demuxer Bzip Decompression
CVSS 7.8
CVE-2022-1922 HIGH
GStreamer < 1.20.3 - Denial of Service and Heap Overflow in Matroska Demuxer
CVSS 7.8
CVE-2022-1921 HIGH
GStreamer < 1.20.3 - Integer Overflow in AVI Demuxer via Crafted AVI File
CVSS 7.8
CVE-2022-1920 HIGH
GStreamer < 1.20.3 - Heap Overflow via Matroska Demuxer WVPK Header Parsing
CVSS 7.8
CVE-2022-2454 HIGH
gpac < 2.0.0 - Integer Overflow or Wraparound
CVSS 7.8
CVE-2022-32073 CRITICAL
WolfSSH v1.4.7 - Integer Overflow in wolfSSH_SFTP_RecvRMDIR
CVSS 9.8
CVE-2022-31600 HIGH
NVIDIA DGX A100 - Privilege Escalation
CVSS 7.5
CVE-2022-2285 HIGH
vim < 9.0.0018 - Integer Overflow or Wraparound
CVSS 7.8
CVE-2022-33068 MEDIUM
Harfbuzz 4.3.0 - Denial of Service via Integer Overflow in hb-ot-shape-fallback.cc
CVSS 5.5
CVE-2022-32546 HIGH
ImageMagick < 6.9.12-44 - Integer Overflow in PCL Coder
CVSS 7.8
CVE-2022-32545 HIGH
ImageMagick < 6.9.12-43 - Integer Overflow in PSD Coder
CVSS 7.8
CVE-2022-20178 MEDIUM
Android - Local Privilege Escalation
CVSS 6.7
CVE-2022-25651 CRITICAL
Qualcomm Bluetooth Host - Memory Corruption via BT HFP-UNIT Profile Integer Overflow
CVSS 9.8
CVE-2022-28615 CRITICAL
Apache HTTP Server <2.4.53 - Info Disclosure
CVSS 9.1
CVE-2022-28614 MEDIUM
Apache HTTP Server <2.4.53 - Memory Corruption
CVSS 5.3
CVE-2022-21762 MEDIUM
Android - Denial of Service via Integer Overflow in apusys Driver
CVSS 4.4
CVE-2022-21761 MEDIUM
Android - Denial of Service via Integer Overflow in apusys Driver
CVSS 4.4
CVE-2022-21760 MEDIUM
Google Android - Denial of Service via Integer Overflow in apusys Driver
CVSS 4.4
Details
Vulnerabilities 3,200
Exploit Likelihood Medium