CWE-190

Medium likelihood

Integer Overflow or Wraparound

Parent: CWE-682 - Incorrect Calculation

The product performs a calculation that can produce an integer overflow or wraparound when the logic assumes that the resulting value will always be larger than the original value. This occurs when an integer value is incremented to a value that is too large to store in the associated representation. When this occurs, the value may become a very small or negative number.

3,173 vulnerabilities with CWE-190
CVE-2026-31412 MEDIUM
usb: gadget: f_mass_storage: Fix potential integer overflow in check_command_size_in_blocks()
CVSS 5.5
CVE-2026-5477 HIGH
Prefix-substitution forgery via integer overflow in wolfCrypt CMAC
CVSS 7.5
CVE-2026-40046 HIGH
Apache ActiveMQ MQTT 6.0.0-6.2.3 - Remaining Length Integer Overflow
CVSS 7.5
CVE-2026-39855 MEDIUM
osslsigncode <2.13 PE Page Hashing - Out-of-Bounds Read
CVSS 5.5
CVE-2026-5870 HIGH
Google Chrome <147.0.7727.55 - Memory Corruption
CVSS 8.8
CVE-2026-24173 HIGH
NVIDIA Triton Inference Server < 26.02 - Denial of Service via Malformed Request
CVSS 7.5
CVE-2026-24660 HIGH
LibRaw Commit d20315b - Heap-Based Buffer Overflow in x3f_load_huffman
CVSS 8.1
CVE-2026-24450 HIGH
LibRaw Commit 8dc68e2 - Heap Buffer Overflow via Uncompressed FP DNG Load Raw
CVSS 8.1
CVE-2026-20889 CRITICAL
LibRaw Commit d20315b - Heap-Based Buffer Overflow in x3f_thumb_loader
CVSS 9.8
CVE-2026-20884 HIGH
LibRaw Commit 8dc68e2 - Integer Overflow in deflate_dng_load_raw
CVSS 8.1
CVE-2026-5732 HIGH
Incorrect boundary conditions, integer overflow in the Graphics: Text component
CVSS 8.8
CVE-2026-20446 MEDIUM
MediaTek chipset >=MT6813 - Denial of Service via Integer Overflow in Secure Boot
CVSS 4.3
CVE-2026-34589 MEDIUM
OpenEXR: DWA Lossy Decoder Heap Out-of-Bounds Write
CVSS 5.0
CVE-2026-34588 HIGH
OpenEXR PIZ Decoder - Out-of-Bounds Read/Write
CVSS 7.8
CVE-2026-34380 MEDIUM
OpenEXR PXR24 undo_pxr24_impl - Signed Integer Overflow
CVSS 5.9
CVE-2026-34378 MEDIUM
OpenEXR 3.4.0-3.4.8 generic_unpack - Signed Integer Overflow
CVSS 6.5
CVE-2026-5476 MEDIUM
NASA cFS cfe_tbl_passthru_codec.c CFE_TBL_ValidateCodecLoadSize integer overflow
CVSS 4.6
CVE-2026-34545 HIGH
OpenEXR: integer overflow lead to OOB in HTJ2K decoder
CVSS 7.3
CVE-2026-34544 HIGH
OpenEXR: integer overflow to OOB write in uncompress_b44_impl()
CVSS 7.3
CVE-2026-35092 HIGH
Corosync: corosync: denial of service via integer overflow in join message validation
CVSS 7.5
CVE-2026-34219 MEDIUM
libp2p-gossipsub: Gossipsub PRUNE Backoff Heartbeat Instant Overflow
CVSS 5.9
CVE-2026-3308 HIGH
MuPDF < 1.27.0 - Integer Overflow in pdf-image.c via pdf_load_image_imp
CVSS 7.8
CVE-2026-33983 MEDIUM
FreeRDP: Progressive Codec Quant BYTE Underflow - UB + CPU DoS
CVSS 6.5
CVE-2026-5121 HIGH
Libarchive: libarchive: arbitrary code execution via integer overflow in iso9660 image processing
CVSS 7.5
CVE-2026-3945 HIGH
tinyproxy <= 1.11.3 - Unauthenticated Denial of Service via HTTP Chunked Transfer Encoding Parser
CVSS 7.5
Details
Vulnerabilities 3,173
Exploit Likelihood Medium