CWE-190

Medium likelihood

Integer Overflow or Wraparound

Parent: CWE-682 - Incorrect Calculation

The product performs a calculation that can produce an integer overflow or wraparound when the logic assumes that the resulting value will always be larger than the original value. This occurs when an integer value is incremented to a value that is too large to store in the associated representation. When this occurs, the value may become a very small or negative number.

3,329 vulnerabilities with CWE-190
CVE-2026-56411 MEDIUM
Libexpat < 2.8.2 - Integer Overflow or Wraparound
CVSS 6.9
CVE-2026-56410 MEDIUM
Libexpat < 2.8.2 - Integer Overflow or Wraparound
CVSS 6.9
CVE-2026-56409 MEDIUM
Libexpat < 2.8.2 - Integer Overflow or Wraparound
CVSS 6.5
CVE-2026-56408 MEDIUM
Libexpat < 2.8.2 - Integer Overflow or Wraparound
CVSS 6.9
CVE-2026-56407 MEDIUM
Libexpat < 2.8.2 - Integer Overflow or Wraparound
CVSS 6.9
CVE-2026-56406 MEDIUM
Libexpat < 2.8.2 - Integer Overflow or Wraparound
CVSS 6.9
CVE-2026-56405 MEDIUM
Libexpat < 2.8.2 - Integer Overflow or Wraparound
CVSS 6.9
CVE-2026-56404 MEDIUM
Libexpat < 2.8.2 - Integer Overflow or Wraparound
CVSS 6.9
CVE-2026-56403 MEDIUM
Libexpat < 2.8.2 - Integer Overflow or Wraparound
CVSS 6.9
CVE-2026-49346 HIGH
libde265 has a heap buffer overflow in de265_image_get_buffer via SPS dimension integer overflow
CVSS 7.1
CVE-2026-3196 MEDIUM
Qemu-kvm: virtio-snd: integer overflow leading to unbounded memory allocation
CVSS 5.5
CVE-2026-8805 HIGH
Mitsubishi Electric MELSEC iQ-F FX5-EIP <= 1.000 - TCP Connection Denial of Service
CVE-2026-44663 MEDIUM
OpenEXR: Integer overflow in the HTJ2K decoder leads to heap-buffer-overflow
CVSS 6.1
CVE-2026-55203 HIGH
HAProxy - Integer Overflow in FCGI Demux Record Length Field
CVSS 7.5
CVE-2026-54417 HIGH
Integer Overflow in rxi/microtar mtar_next() Causes Infinite Loop DoS
CVSS 7.5
CVE-2026-0161 HIGH
Google Android - Out-of-Bounds Access
CVSS 8.8
CVE-2026-0151 HIGH
Google Android - Remote Code Execution
CVSS 8.8
CVE-2026-0150 HIGH
Google Android - Out-of-Bounds Access
CVSS 7.8
CVE-2026-0148 HIGH
Google Android - Remote Code Execution
CVSS 8.8
CVE-2026-0140 MEDIUM
Google Android - Information Disclosure
CVSS 4.3
CVE-2026-0131 HIGH
Google Android - Out-of-Bounds Access
CVSS 7.3
CVE-2026-0128 MEDIUM
Google Android - Information Disclosure
CVSS 6.5
CVE-2026-10649 HIGH
Pacemaker: pacemaker: denial of service via integer overflow in remote message decompression
CVSS 8.6
CVE-2026-46331 HIGH
net/sched: fix pedit partial COW leading to page cache corruption
CVSS 7.8
CVE-2026-53705 HIGH
Gstreamer1-plugins-good: gstreamer: heap buffer overflow in wavpack decoder via integer overflow
CVSS 7.6
Details
Vulnerabilities 3,329
Exploit Likelihood Medium