CWE-190

Medium likelihood

Integer Overflow or Wraparound

Parent: CWE-682 - Incorrect Calculation

The product performs a calculation that can produce an integer overflow or wraparound when the logic assumes that the resulting value will always be larger than the original value. This occurs when an integer value is incremented to a value that is too large to store in the associated representation. When this occurs, the value may become a very small or negative number.

3,200 vulnerabilities with CWE-190
CVE-2019-9256 HIGH
Android 10 - Remote Code Execution via Integer Overflow in libmediaextractor
CVSS 8.8
CVE-2019-6010 HIGH
LINE 4.4.0-9.15.0 - Integer Overflow via Crafted Image
CVSS 7.8
CVE-2019-6007 HIGH
apng-drawable 1.0.0-1.6.0 - Integer Overflow or Wraparound
CVSS 8.8
CVE-2019-16167 MEDIUM
sysstat <12.1.6 - Memory Corruption
CVSS 5.5
CVE-2019-16096 HIGH
kilo 0.0.1 - Heap-Based Buffer Overflow via Integer Overflow in Tab Calculation
CVSS 7.5
CVE-2019-2181 HIGH
Android kernel - Privilege Escalation
CVSS 7.8
CVE-2019-2179 MEDIUM
Android 7.1.1-9 - Integer Overflow to Out-of-Bounds Read in NDEF_MsgValidate
CVSS 5.5
CVE-2019-11476 MEDIUM
whoopsie <0.2.52.5ubuntu0.1-0.2.66 - Memory Corruption
CVSS 6.5
CVE-2019-15788 CRITICAL
NVIDIA Clara Genomics Analysis < 0.2.0 - Integer Overflow in cudapoa Memory Management
CVSS 9.8
CVE-2019-15787 HIGH
libzetta-rs < 0.1.2 - Denial of Service via Integer Overflow in zpool Parser
CVSS 7.5
CVE-2019-9930 CRITICAL
Lexmark CS31X Firmware < lw71.vyl.p230 - Integer Overflow
CVSS 9.8
CVE-2019-10055 HIGH
Suricata 4.1.3 - Denial of Service via FTP PASV Response Length Mismatch
CVSS 7.5
CVE-2019-8101 HIGH
Adobe Acrobat and Reader DC < 19.012.20036 - Integer Overflow leading to Information Disclosure
CVSS 7.5
CVE-2019-8099 HIGH
Adobe Acrobat and Reader DC < 19.012.20036 - Integer Overflow leading to Information Disclosure
CVSS 7.5
CVE-2019-5040 HIGH
Openweave-core <4.0.2 - Info Disclosure
CVSS 7.5
CVE-2019-5037 HIGH
Nest Cam IQ Indoor Firmware 4620002 - Denial of Service via Weave Certificate Packet
CVSS 7.5
CVE-2019-2134 HIGH
Android 7.0-9 - Local Privilege Escalation via Integer Overflow in phFriNfc_ExtnsTransceive
CVSS 7.8
CVE-2019-14973 MEDIUM
libtiff < 4.0.10 - Integer Overflow in _TIFFCheckMalloc and _TIFFCheckRealloc
CVSS 6.5
CVE-2019-14982 MEDIUM
exiv2 < 0.27.2 - Integer Overflow in WebPImage::getHeaderOffset
CVSS 6.5
CVE-2019-14459 HIGH
nfdump < 1.6.17 - Denial of Service via Integer Overflow in Process_ipfix_template_withdraw
CVSS 7.5
CVE-2019-5060 HIGH
SDL2_image 2.0.4 - Remote Code Execution via XPM Image Colorhash Integer Overflow
CVSS 8.8
CVE-2019-5059 HIGH
SDL2_image 2.0.4 - Integer Overflow to Heap Buffer Overflow via XPM Image Rendering
CVSS 8.8
CVE-2019-10142 HIGH
Linux kernel <5.0.17 - Memory Corruption
CVSS 7.1
CVE-2019-14444 MEDIUM
GNU Binutils <2.32 - Memory Corruption
CVSS 5.5
CVE-2019-13126 HIGH
NATS Server < 2.0.2 - Denial of Service via Integer Overflow
CVSS 7.5
Details
Vulnerabilities 3,200
Exploit Likelihood Medium