The product performs a calculation that can produce an integer overflow or wraparound when the logic assumes that the resulting value will always be larger than the original value. This occurs when an integer value is incremented to a value that is too large to store in the associated representation. When this occurs, the value may become a very small or negative number.
3,200 vulnerabilities with CWE-190
CVE-2021-23215
MEDIUM
OpenEXR < 3.0.1 - Heap-Buffer Overflow via Integer Overflow in DwaCompressor
CVSS 5.5
CVE-2021-32625
HIGH
Redis 6.0.0-6.0.13 - Remote Code Execution via STRALGO LCS Command Integer Overflow
CVSS 7.5
CVE-2021-3520
CRITICAL
Lz4 - Buffer Overflow
CVSS 9.8
CVE-2021-31642
MEDIUM
CHIYU Technology IoT Devices - Denial of Service via Integer Overflow in Page Parameter
CVSS 6.5
CVE-2021-32027
HIGH
PostgreSQL < 9.6.22, 10.0-10.16, 11.0-11.11, 12.0-12.6, 13.0-13.2 - Authenticated Arbitrary Memory Write
CVSS 8.8
CVE-2021-31808
MEDIUM
Squid < 4.15 and 5.x < 5.0.6 - Denial of Service via HTTP Range Request
CVSS 6.5
CVE-2021-28682
HIGH
Envoy through 1.71.1 - Integer Overflow via gRPC Timeout Value
CVSS 7.5
CVE-2021-31319
MEDIUM
Telegram < 7.1.0 - Integer Overflow in LOTGradient::populate
CVSS 5.5
CVE-2021-3402
CRITICAL
YARA < 4.0.4 - Integer Overflow and Buffer Overflow Read via Malicious Mach-O File
CVSS 9.1
CVE-2021-29605
HIGH
TensorFlow < 2.1.4 - Integer Overflow in TFLiteIntArray Allocation
CVSS 7.1
CVE-2021-29601
MEDIUM
TensorFlow < 2.1.4 - Integer Overflow in TFLite Concatenation
CVSS 6.3
CVE-2021-29584
LOW
TensorFlow < 2.1.4 - Denial of Service via Integer Overflow in Tensor Shape Construction
CVSS 2.5
CVE-2021-29523
LOW
TensorFlow < 2.1.4 - Denial of Service via CHECK-fail in AddManySparseToTensorsMap
CVSS 2.5
CVE-2021-20312
HIGH
ImageMagick < 7.0.11-0 - Integer Overflow in WriteTHUMBNAILImage
CVSS 7.5
CVE-2021-32489
MEDIUM
Yubico yubihsm-shell < 2.0.3 - Denial of Service via Integer Overflow in _send_secure_msg
CVSS 4.4
CVE-2021-22677
HIGH
SimpleLink Wi-Fi <v4.20.00.12 - DoS
CVSS 7.8
CVE-2021-22671
CRITICAL
TI SimpleLink Wi-Fi SDK - Code Execution via Long Domain Name Integer Overflow
CVSS 9.8
CVE-2021-22679
CRITICAL
TI SimpleLink Wi-Fi SDK - Code Execution via HTTP Header Integer Overflow
CVSS 9.8
CVE-2021-22675
HIGH
TI SimpleLink Wi-Fi SDK - Code Execution via OTA Firmware Integer Overflow
CVSS 7.2
CVE-2021-1895
MEDIUM
Qualcomm APQ8009W and other Snapdragon Firmware - Integer Overflow via Image Flashing
CVSS 6.8
CVE-2021-29478
HIGH
Redis 6.2.0-6.2.2 - Remote Code Execution via Integer Overflow in set-max-intset-entries
CVSS 7.5
CVE-2021-29477
HIGH
Redis 6.0.0-6.0.12 - Integer Overflow via STRALGO LCS Command
CVSS 7.5
CVE-2021-31873
CRITICAL
klibc < 2.0.9 - Integer Overflow to Heap Buffer Overflow in malloc
CVSS 9.8
CVE-2021-31872
CRITICAL
klibc < 2.0.9 - Integer Overflow in cpio Command
CVSS 9.8
CVE-2021-31871
HIGH
klibc < 2.0.9 - Integer Overflow in cpio Command
CVSS 7.5
Details
Vulnerabilities
3,200
Exploit Likelihood
Medium