CWE-190

Medium likelihood

Integer Overflow or Wraparound

Parent: CWE-682 - Incorrect Calculation

The product performs a calculation that can produce an integer overflow or wraparound when the logic assumes that the resulting value will always be larger than the original value. This occurs when an integer value is incremented to a value that is too large to store in the associated representation. When this occurs, the value may become a very small or negative number.

3,200 vulnerabilities with CWE-190
CVE-2019-16905 HIGH
OpenSSH 7.7-7.9 and 8.x < 8.1 - Unauthenticated Remote Code Execution via XMSS Key Parsing Integer Overflow
CVSS 7.8
CVE-2019-12693 MEDIUM
Cisco Adaptive Security Appliance < 9.6.4.30 and 9.7-9.8.4 - Authenticated Denial of Service via SCP File Transfer
CVSS 4.9
CVE-2019-16508 HIGH
Imagination Technologies - Privilege Escalation
CVSS 7.8
CVE-2019-11927 HIGH
WhatsApp <2.19.143-2.19.100 - Memory Corruption
CVSS 7.8
CVE-2019-9421 MEDIUM
Android 10 - Integer Overflow Leading to Out-of-Bounds Read in libandroidfw
CVSS 5.0
CVE-2019-9420 MEDIUM
Android 10 - Denial of Service via Integer Overflow in libhevc
CVSS 6.5
CVE-2019-9405 HIGH
Android 10 - Remote Code Execution via Integer Overflow in libAACdec
CVSS 8.8
CVE-2019-9357 HIGH
Android 10 - Remote Code Execution via Integer Overflow in libAACdec
CVSS 8.8
CVE-2019-9311 HIGH
Android 10 - Remote Denial of Service via Bluetooth Integer Overflow
CVSS 7.5
CVE-2019-9310 HIGH
Android 10 - Remote Code Execution via Integer Overflow in libFDK
CVSS 8.8
CVE-2019-9308 HIGH
Android 10 - Remote Code Execution via Integer Overflow in libAACdec
CVSS 8.8
CVE-2019-9307 HIGH
Android 10 - Remote Code Execution via Integer Overflow in libAACdec
CVSS 8.8
CVE-2019-9306 HIGH
Android 10 - Remote Code Execution via Integer Overflow in libMpegTPDec
CVSS 8.8
CVE-2019-9305 HIGH
Android 10 - Remote Code Execution via Integer Overflow in libAACdec
CVSS 8.8
CVE-2019-9304 HIGH
Android 10 - Remote Code Execution via Integer Overflow in libMpegTPDec
CVSS 8.8
CVE-2019-9303 HIGH
Android 10 - Remote Code Execution via Integer Overflow in libFDK
CVSS 8.8
CVE-2019-9302 HIGH
Android 10 - Remote Code Execution via Integer Overflow in libAACdec
CVSS 8.8
CVE-2019-9301 CRITICAL
Android 10 - Remote Code Execution via Integer Overflow in libAACdec
CVSS 9.8
CVE-2019-9300 HIGH
Android 10 - Remote Code Execution via Integer Overflow in libAACdec
CVSS 8.8
CVE-2019-9299 HIGH
Android 10 - Remote Code Execution via Integer Overflow in libAACdec
CVSS 8.8
CVE-2019-9298 HIGH
Android 10 - Remote Code Execution via Integer Overflow in libAACdec
CVSS 8.8
CVE-2019-9297 HIGH
Android 10 - Remote Code Execution via Integer Overflow in libAACdec
CVSS 8.8
CVE-2019-9278 HIGH
Android 10 - Integer Overflow in libexif
CVSS 8.8
CVE-2019-9262 HIGH
Android 10 - Remote Code Execution via Integer Overflow in MPEG4Extractor
CVSS 8.8
CVE-2019-9257 HIGH
Android 10 - Local Privilege Escalation via Bluetooth Integer Overflow
CVSS 7.8
Details
Vulnerabilities 3,200
Exploit Likelihood Medium