CWE-190

Medium likelihood

Integer Overflow or Wraparound

Parent: CWE-682 - Incorrect Calculation

The product performs a calculation that can produce an integer overflow or wraparound when the logic assumes that the resulting value will always be larger than the original value. This occurs when an integer value is incremented to a value that is too large to store in the associated representation. When this occurs, the value may become a very small or negative number.

3,200 vulnerabilities with CWE-190
CVE-2020-11196 CRITICAL
Qualcomm APQ8009 and related firmwares - Buffer Overflow via ASF Clip Codec Entry Playback
CVSS 9.8
CVE-2020-11184 CRITICAL
Qualcomm Snapdragon Firmware - Buffer Overflow via Crafted MP4 ESDS Atom
CVSS 9.8
CVE-2020-11131 HIGH
Qualcomm Multiple Chipsets Firmware - Buffer Overflow via WMA Message Processing Integer Overflow
CVSS 7.8
CVE-2020-11127 HIGH
Qualcomm Snapdragon Firmware - Integer Overflow Buffer Overflow in Extensible Boot Loader
CVSS 7.8
CVE-2020-0452 CRITICAL
Android 8.0-11 - Integer Overflow to Remote Code Execution in EXIF Entry Processing
CVSS 9.8
CVE-2020-0409 HIGH
Android - Integer Overflow to Out-of-Bounds Write in FileMap.cpp
CVSS 7.8
CVE-2020-28371 CRITICAL
ReadyTalk Avian 1.2.0 - Integer Overflow in FileOutputStream.write()
CVSS 9.8
CVE-2020-15986 MEDIUM
Google Chrome < 86.0.4240.75 - Remote Code Execution via Integer Overflow in Media Component
CVSS 6.5
CVE-2020-15975 HIGH
Google Chrome < 86.0.4240.75 - Remote Code Execution via Integer Overflow in SwiftShader
CVSS 8.8
CVE-2020-15974 HIGH
Google Chrome < 86.0.4240.75 - Integer Overflow in Blink via Crafted HTML Page
CVSS 8.8
CVE-2020-11169 CRITICAL
Qualcomm Apq8009 Firmware - Integer Overflow
CVSS 9.1
CVE-2020-9875 HIGH
Apple iCloud < 7.20 - Integer Overflow via Maliciously Crafted Image
CVSS 7.8
CVE-2020-26682 HIGH
libass 0.14.0 - Integer Overflow in ass_outline_construct
CVSS 8.8
CVE-2020-0408 HIGH
Android - Integer Overflow to Out-of-Bounds Write in String16.cpp
CVSS 7.8
CVE-2020-16124 HIGH
ros-comm < 1.15.9 - Unauthenticated Integer Overflow in XML RPC Library
CVSS 7.3
CVE-2020-24397 HIGH
Zoho ManageEngine Desktop Central <10.0.0.SP-534 - RCE
CVSS 7.2
CVE-2020-24213 HIGH
YGOPro ygocore <13.51 - Memory Corruption
CVSS 7.5
CVE-2020-6569 MEDIUM
Google Chrome < 85.0.4183.83 - Integer Overflow in WebUSB
CVSS 6.3
CVE-2020-0309 MEDIUM
Android 11 - Integer Overflow to Out-of-Bounds Write in Bluetooth Server
CVSS 6.7
CVE-2020-0369 HIGH
Android 11 - Local Privilege Escalation via Integer Overflow in libavb
CVSS 7.8
CVE-2020-0346 HIGH
Android 11 - Integer Overflow to Out-of-Bounds Write in Mediaserver
CVSS 7.8
CVE-2020-0328 MEDIUM
Android 11 - Local Information Disclosure via Integer Overflow in Camera
CVSS 4.4
CVE-2020-0264 HIGH
Android 11 - Remote Code Execution via Integer Overflow in libstagefright
CVSS 8.8
CVE-2020-0432 HIGH
Android - Integer Overflow to Out-of-Bounds Write in skb_to_mamac
CVSS 7.8
CVE-2020-0381 HIGH
Android - Integer Overflow to Out-of-Bounds Write in Parse_wave
CVSS 7.5
Details
Vulnerabilities 3,200
Exploit Likelihood Medium