CWE-190

Medium likelihood

Integer Overflow or Wraparound

Parent: CWE-682 - Incorrect Calculation

The product performs a calculation that can produce an integer overflow or wraparound when the logic assumes that the resulting value will always be larger than the original value. This occurs when an integer value is incremented to a value that is too large to store in the associated representation. When this occurs, the value may become a very small or negative number.

3,200 vulnerabilities with CWE-190
CVE-2021-0627 MEDIUM
Android - Integer Overflow in OMA DRM
CVSS 6.7
CVE-2021-21852 HIGH
GPAC 1.0.1 - Integer Overflow in MPEG-4 stss Decoder
CVSS 8.8
CVE-2021-21851 HIGH
GPAC 1.0.1 - Integer Overflow in MPEG-4 CSGP Decoder Sample Group Description Indices
CVSS 8.8
CVE-2021-21837 HIGH
GPAC 1.0.1 - Integer Overflow to Heap-Based Buffer Overflow in MPEG-4 Decoder
CVSS 8.8
CVE-2021-21832 CRITICAL
Disc Soft Daemon Tools Pro 8.3.0.0767 - Memory Corruption via ISO Parsing
CVSS 9.8
CVE-2021-22156 CRITICAL
BlackBerry QNX Software Development Platform < 6.5.0SP1 - Integer Overflow in calloc()
CVSS 9.0
CVE-2021-21859 HIGH
GPAC 1.0.1 - Integer Truncation in MPEG-4 Atom Processing
CVSS 8.8
CVE-2021-34536 HIGH
Windows 10 and Windows Server 2016/2019 - Elevation of Privilege via Storage Spaces Controller Integer Overflow
CVSS 7.8
CVE-2021-38185 HIGH
GNU cpio < 2.13 - Remote Code Execution via Pattern File Integer Overflow
CVSS 7.8
CVE-2021-38166 HIGH
Linux kernel <5.13.8 - Memory Corruption
CVSS 7.8
CVE-2021-34270 HIGH
Doftcoin - Integer Overflow in mintToken Function
CVSS 7.5
CVE-2021-33403 HIGH
blocklancertoken - Integer Overflow in Transfer Function
CVSS 7.5
CVE-2021-22422 HIGH
HarmonyOS - Integer Overflow or Wraparound
CVSS 7.8
CVE-2021-22418 HIGH
HarmonyOS - Integer Overflow or Wraparound
CVSS 7.8
CVE-2021-22413 HIGH
Huawei Smartphone - Memory Corruption
CVSS 7.5
CVE-2021-22412 HIGH
Huawei Smartphone - Memory Corruption
CVSS 7.5
CVE-2021-22388 CRITICAL
Huawei Smartphone - Memory Corruption
CVSS 9.8
CVE-2021-37600 MEDIUM
util-linux < 2.37.1 - Integer Overflow in /proc/sysvipc/sem Handling
CVSS 5.5
CVE-2021-31292 HIGH
exiv2 0.27.3 - Denial of Service via Integer Overflow in CrwMap::encode0x1810
CVSS 7.5
CVE-2021-25803 HIGH
VLC Media Player 3.0.11 - Buffer Overflow via Crafted .avi File
CVSS 7.1
CVE-2021-24036 CRITICAL
Facebook Folly < 2021.07.22.00 and HHVM < 4.80.5 - Heap-Based Buffer Overflow via IOBuf Size Mismanagement
CVSS 9.8
CVE-2021-35942 CRITICAL
GNU C Library <2.33 - Memory Corruption
CVSS 9.1
CVE-2021-32761 HIGH
Redis <5.0.13,6.0.15,6.2.5 - Buffer Overflow
CVSS 7.5
CVE-2021-33909 HIGH
Linux Kernel 3.16-5.13.x < 5.13.4 - Integer Overflow and Out-of-bounds Write in seq_file
CVSS 7.8
CVE-2021-20110 CRITICAL
ManageEngine Asset Explorer Agent 1.0.34 - Remote Code Execution via Integer Overflow in HTTP Response Handling
CVSS 9.8
Details
Vulnerabilities 3,200
Exploit Likelihood Medium