CWE-190

Medium likelihood

Integer Overflow or Wraparound

Parent: CWE-682 - Incorrect Calculation

The product performs a calculation that can produce an integer overflow or wraparound when the logic assumes that the resulting value will always be larger than the original value. This occurs when an integer value is incremented to a value that is too large to store in the associated representation. When this occurs, the value may become a very small or negative number.

3,200 vulnerabilities with CWE-190
CVE-2022-23852 CRITICAL
libexpat < 2.4.4 - Integer Overflow in XML_GetBuffer
CVSS 9.8
CVE-2022-21668 HIGH
pipenv 2018.10.9-2022.1.8 - Remote Code Execution via Malicious Requirements File Comment
CVSS 8.0
CVE-2022-22827 HIGH
libexpat < 2.4.3 - Integer Overflow in storeAtts
CVSS 8.8
CVE-2022-22826 HIGH
libexpat < 2.4.3 - Integer Overflow in nextScaffoldPart
CVSS 8.8
CVE-2022-22825 HIGH
libexpat < 2.4.3 - Integer Overflow in xmlparse.c Lookup
CVSS 8.8
CVE-2022-22824 CRITICAL
libexpat < 2.4.3 - Integer Overflow in defineAttribute
CVSS 9.8
CVE-2022-22823 CRITICAL
libexpat < 2.4.3 - Integer Overflow in build_model Function
CVSS 9.8
CVE-2022-22822 CRITICAL
libexpat < 2.4.3 - Integer Overflow in addBinding
CVSS 9.8
CVE-2022-20012 HIGH
Android - Integer Overflow in MDP Driver
CVSS 7.8
CVE-2021-26380 LOW
Amd Ryzen™ 5000 Series Desktop Processors With Radeon™ Graphics - Integer Overflow or Wraparound
CVE-2021-46750 LOW
AMD Athlon 3000 Series Mobile Processors with Radeon Graphics - Integer Overflow via Graphics Mailbox Message Handling
CVSS 3.0
CVE-2021-26377 MEDIUM
AMD Ryzen 5000 Series DoS via Integer Overflow in Trusted OS Process Space Allocation
CVSS 4.1
CVE-2021-47432 MEDIUM
Linux Kernel < 6.1.64 - Integer Overflow in Radix Tree Peek Function
CVSS 5.5
CVE-2021-47109 MEDIUM
Linux Kernel 5.0-5.4.124 - Denial of Service via Neighbour Table Overflow
CVSS 5.5
CVE-2021-47098 HIGH
Linux Kernel 5.14 - Integer Overflow in LM90 Hysteresis Calculation
CVSS 7.8
CVE-2021-46940 MEDIUM
Linux Kernel - Integer Overflow in turbostat Index Conversion
CVSS 5.5
CVE-2021-33631 MEDIUM
openEuler kernel - Forced Integer Overflow
CVSS 5.5
CVE-2021-27504 HIGH
Amazon FreeRTOS - Integer Overflow in malloc
CVSS 7.4
CVE-2021-27502 HIGH
Texas Instruments TI-RTOS - Code Execution
CVSS 7.4
CVE-2021-27429 HIGH
TI-RTOS - Code Injection
CVSS 7.4
CVE-2021-22636 HIGH
Texas Instruments TI-RTOS - Code Injection
CVSS 7.4
CVE-2021-28429 MEDIUM
FFmpeg 4.3.2 - Denial of Service via Crafted .mov File
CVSS 5.5
CVE-2021-28025 MEDIUM
Qt qtsvg 5.15.1 6.0.0 6.0.2 6.2 - Denial of Service via Integer Overflow in qsvghandler.cpp
CVSS 5.5
CVE-2021-0701 CRITICAL
Android PowerVR Kernel Driver - Integer Overflow to Out-of-Bounds Heap Access in PVRSRVBridgeSyncPrimOpCreate
CVSS 9.8
CVE-2021-0885 HIGH
PowerVR kernel driver - Privilege Escalation
CVSS 7.8
Details
Vulnerabilities 3,200
Exploit Likelihood Medium