CWE-190

Medium likelihood

Integer Overflow or Wraparound

Parent: CWE-682 - Incorrect Calculation

The product performs a calculation that can produce an integer overflow or wraparound when the logic assumes that the resulting value will always be larger than the original value. This occurs when an integer value is incremented to a value that is too large to store in the associated representation. When this occurs, the value may become a very small or negative number.

3,200 vulnerabilities with CWE-190
CVE-2021-0621 MEDIUM
Android - Local Information Disclosure via Integer Overflow in ASF Extractor
CVSS 5.5
CVE-2021-33106 HIGH
Intel SafeString Library < 2021-07-22 - Authenticated Integer Overflow
CVSS 7.8
CVE-2021-26329 MEDIUM
AMD EPYC 7001 Series Firmware < naplespi-sp3_1.0.0.g - Integer Overflow in System Management Unit
CVSS 5.5
CVE-2021-43618 HIGH
GNU Multiple Precision Arithmetic Library <6.2.1 - Buffer Overflow
CVSS 7.5
CVE-2021-1912 HIGH
Qualcomm AQT1000 Firmware - Integer Overflow in Length Calculation
CVSS 8.4
CVE-2021-41203 HIGH
TensorFlow <2.7.0 - Memory Corruption
CVSS 7.8
CVE-2021-41199 MEDIUM
TensorFlow < 2.4.4, 2.6.0-2.6.1 - Denial of Service via Integer Overflow in tf.image.resize
CVSS 5.5
CVE-2021-41198 MEDIUM
TensorFlow <2.7.0 - Buffer Overflow
CVSS 5.5
CVE-2021-41197 MEDIUM
TensorFlow < 2.4.4, 2.6.0-2.6.1 - Integer Overflow via Tensor Dimension Calculation
CVSS 5.5
CVE-2021-41195 MEDIUM
TensorFlow < 2.4.4, 2.6.0-2.6.1 - Denial of Service via Integer Overflow in Segment Operations
CVSS 5.5
CVE-2021-22455 MEDIUM
HarmonyOS - Integer Overflow or Wraparound
CVSS 5.5
CVE-2021-22451 HIGH
HarmonyOS - Integer Overflow or Wraparound
CVSS 7.8
CVE-2021-0630 HIGH
Android - Denial of Service via WiFi Driver Missing Bounds Check
CVSS 7.5
CVE-2021-0615 MEDIUM
Android - Local Information Disclosure via Integer Overflow in FLV Extractor
CVSS 5.5
CVE-2021-0411 MEDIUM
Android - Local Information Disclosure via Integer Overflow in FLV Extractor
CVSS 5.5
CVE-2021-1949 HIGH
Qualcomm APQ8009 Firmware - Integer Overflow via Improper Batch Count Check
CVSS 8.4
CVE-2021-1913 HIGH
Qualcomm AQT1000 Firmware - Integer Overflow in Grace Period Update
CVSS 8.4
CVE-2021-41991 HIGH
strongSwan 4.2.10-5.9.3 - Remote Integer Overflow in Certificate Cache
CVSS 7.5
CVE-2021-41990 HIGH
strongSwan < 5.9.4 - Integer Overflow via RSASSA-PSS Certificate Signature
CVSS 7.5
CVE-2021-41345 HIGH
Windows Storage Spaces Controller - Elevation of Privilege via Integer Overflow
CVSS 7.8
CVE-2021-29644 HIGH
Hitachi JP1/IT Desktop Management 2 Agent 9-12 - Remote Code Execution via Integer Overflow
CVSS 8.1
CVE-2021-27665 HIGH
exacqVision Server < 21.06.11.0 - Unauthenticated Denial of Service via Integer Overflow
CVSS 7.5
CVE-2021-32765 HIGH
hiredis < 1.0.1 - Integer Overflow via Malicious RESP Multi-Bulk Protocol Data
CVSS 8.8
CVE-2021-41099 HIGH
Redis <6.2.6/<6.0.16/<5.0.14 - Heap Corruption via proto-max-bulk-len
CVSS 7.5
CVE-2021-32762 HIGH
Redis 5.0.0-5.0.13 - Integer Overflow in Multi-Bulk Reply Parsing
CVSS 7.5
Details
Vulnerabilities 3,200
Exploit Likelihood Medium