CWE-190

Medium likelihood

Integer Overflow or Wraparound

Parent: CWE-682 - Incorrect Calculation

The product performs a calculation that can produce an integer overflow or wraparound when the logic assumes that the resulting value will always be larger than the original value. This occurs when an integer value is incremented to a value that is too large to store in the associated representation. When this occurs, the value may become a very small or negative number.

3,200 vulnerabilities with CWE-190
CVE-2020-24838 HIGH
Issuer - Integer Overflow in issuedCount Calculation
CVSS 7.5
CVE-2020-36242 CRITICAL
cryptography < 3.3.2 - Integer Overflow and Buffer Overflow via Symmetric Encryption Update Calls
CVSS 9.1
CVE-2020-13579 HIGH
SoftMaker Office 2021 PlanMaker - Integer Overflow to Heap-Based Buffer Overflow in Document Parser
CVSS 7.8
CVE-2020-28895 HIGH
Wind River VxWorks 6.9-6.9.4.11 - Integer Overflow in Memory Allocator via calloc()
CVSS 7.3
CVE-2020-11216 CRITICAL
Qualcomm Snapdragon - Buffer Over-Read via Video Driver Atom Size Handling
CVSS 9.8
CVE-2020-11197 CRITICAL
Qualcomm Snapdragon - Integer Overflow in TS Clip Stream Info Update
CVSS 9.8
CVE-2020-11167 CRITICAL
Qualcomm Snapdragon - Memory Corruption via L2CAP Packet Length Calculation
CVSS 9.8
CVE-2020-11137 CRITICAL
Qualcomm Snapdragon - Integer Overflow leading to Memory Access Out of Bounds
CVSS 9.8
CVE-2020-14409 HIGH
Libsdl Simple Directmedia Layer < 2.0.20 - Integer Overflow
CVSS 7.8
CVE-2020-16040 MEDIUM
Google Chrome versions before 87.0.4280.88 integer overflow during SimplfiedLowering phase
CVSS 6.5
CVE-2020-35738 MEDIUM
WavPack 5.3.0 - Integer Overflow to Out-of-Bounds Write in WavpackPackSamples
CVSS 6.1
CVE-2020-29361 HIGH
p11-kit 0.21.1-0.23.21 - Integer Overflow in Array Allocations
CVSS 7.5
CVE-2020-27051 HIGH
Android 11 - Integer Overflow to Out-of-Bounds Write in NFA_RwI93WriteMultipleBlocks
CVSS 7.8
CVE-2020-0495 MEDIUM
Android 11 - Integer Overflow to Out-of-Bounds Write in JBig2_SddProc.cpp
CVSS 5.5
CVE-2020-35457 HIGH
GNOME GLib < 2.65.3 - Integer Overflow in g_option_group_add_entries
CVSS 7.8
CVE-2020-0458 HIGH
Android 8.0-10 - Remote Code Execution via Integer Overflow in SPDIFEncoder
CVSS 7.8
CVE-2020-17444 HIGH
picoTCP < 1.7.0 - Denial of Service via IPv6 Extension Header Length Overflow
CVSS 7.5
CVE-2020-17443 HIGH
picoTCP < 1.7.0 - Denial of Service via ICMPv6 Echo Request Size Miscount
CVSS 7.5
CVE-2020-17442 HIGH
picoTCP < 1.7.0 - Denial of Service via IPv6 Hop-by-Hop Extension Header Length
CVSS 7.5
CVE-2020-13988 HIGH
contiki-ng < 3.0 - Integer Overflow in uIP TCP/IP Stack via TCP MSS Option Parsing
CVSS 7.5
CVE-2020-13985 HIGH
Contiki < 3.0 - Memory Corruption via RPL Extension Header Handling
CVSS 7.5
CVE-2020-27350 MEDIUM
APT <2.1.10ubuntu0.1 - Buffer Overflow
CVSS 5.7
CVE-2020-27758 LOW
ImageMagick < 6.9.10-68 - Integer Overflow in TXT Coder
CVSS 3.3
CVE-2020-27757 LOW
ImageMagick < 6.9.10-68 - Integer Overflow in ScaleAnyToQuantum
CVSS 3.3
CVE-2020-27754 LOW
ImageMagick < 6.9.10-69 - Integer Overflow in IntensityCompare
CVSS 3.3
Details
Vulnerabilities 3,200
Exploit Likelihood Medium