CWE-190

Medium likelihood

Integer Overflow or Wraparound

Parent: CWE-682 - Incorrect Calculation

The product performs a calculation that can produce an integer overflow or wraparound when the logic assumes that the resulting value will always be larger than the original value. This occurs when an integer value is incremented to a value that is too large to store in the associated representation. When this occurs, the value may become a very small or negative number.

3,200 vulnerabilities with CWE-190
CVE-2020-17752 CRITICAL
MillionCoin (MON) - Integer Overflow in Payable Function
CVSS 9.8
CVE-2020-7860 HIGH
UnEGG < 1.0 - Integer Overflow leading to Remote Code Execution via Malformed File
CVSS 7.8
CVE-2020-11306 HIGH
Qualcomm AQT1000 Firmware - Integer Overflow in RPMB Counter
CVSS 7.8
CVE-2020-11235 HIGH
Qualcomm APQ8009 Firmware - Buffer Overflow via Unified Command Parsing
CVSS 7.8
CVE-2020-11160 MEDIUM
Qualcomm Firmware - Resource Leak via DCI Client Registration Reference Count
CVSS 6.7
CVE-2020-13603 MEDIUM
Zephyr < 1.14.2 - Integer Overflow in Memory Allocation Functions
CVSS 6.9
CVE-2020-27769 LOW
ImageMagick < 7.0.9-0 - Integer Overflow in Quantize Component
CVSS 3.3
CVE-2020-35198 CRITICAL
Wind River VxWorks 7 - Memory Corruption
CVSS 9.8
CVE-2020-11279 HIGH
Qualcomm APQ8009 and related firmwares - Memory Corruption via Crafted SDES Packet Length Check
CVSS 7.5
CVE-2020-28020 CRITICAL
Exim 4.00-4.91 - Unauthenticated Remote Code Execution via Header Length Continuation Mishandling
CVSS 9.8
CVE-2020-28017 CRITICAL
Exim < 4.94.2 - Integer Overflow to Buffer Overflow via Large Recipient Count
CVSS 9.8
CVE-2020-28009 HIGH
Exim 4.00-4.94.1 - Integer Overflow to Buffer Overflow via Unbounded STDIN Read
CVSS 7.8
CVE-2020-11245 HIGH
Qualcomm AQT1000 Firmware - Unintended Memory Access via Input Validation Issue
CVSS 8.4
CVE-2020-27945 HIGH
macOS 10.14-10.14.5 and 11.0-11.1 - Remote Code Execution via Integer Overflow
CVSS 7.8
CVE-2020-35230 MEDIUM
NETGEAR JGS516PE/GS116Ev2 v2.6.0.43 - Denial of Service via Integer Overflow
CVSS 6.8
CVE-2020-29238 HIGH
ExpressVPN Router < - Info Disclosure
CVSS 7.5
CVE-2020-35523 HIGH
libtiff < 4.2.0 - Integer Overflow in tif_getimage.c
CVSS 7.8
CVE-2020-27768 LOW
ImageMagick < 7.0.9-0 - Integer Overflow in Quantum Private Header
CVSS 3.3
CVE-2020-11269 HIGH
Qualcomm APQ8009 and related firmware - Memory Corruption via EAPOL Frame Key Length
CVSS 8.8
CVE-2020-28248 HIGH
png-img < 3.1.0 - Heap-Based Buffer Overflow via Integer Overflow in PngImg::InitStorage_()
CVSS 8.8
CVE-2020-12368 HIGH
Intel Graphics Drivers < 26.20.100.8141 - Integer Overflow via Local Access
CVSS 7.8
CVE-2020-12367 HIGH
Intel Graphics Drivers < 26.20.100.8476 - Integer Overflow via Local Access
CVSS 7.8
CVE-2020-12362 HIGH
Intel Graphics Drivers < 26.20.100.7212 - Integer Overflow in Firmware
CVSS 7.8
CVE-2020-13576 CRITICAL
gSOAP 2.8.107 - Remote Code Execution via WS-Addressing Plugin
CVSS 9.8
CVE-2020-13546 HIGH
SoftMaker Office TextMaker 2021 <1014 - Buffer Overflow
CVSS 7.8
Details
Vulnerabilities 3,200
Exploit Likelihood Medium