CWE-190

Medium likelihood

Integer Overflow or Wraparound

Parent: CWE-682 - Incorrect Calculation

The product performs a calculation that can produce an integer overflow or wraparound when the logic assumes that the resulting value will always be larger than the original value. This occurs when an integer value is incremented to a value that is too large to store in the associated representation. When this occurs, the value may become a very small or negative number.

3,205 vulnerabilities with CWE-190
CVE-2019-5060 HIGH
SDL2_image 2.0.4 - Remote Code Execution via XPM Image Colorhash Integer Overflow
CVSS 8.8
CVE-2019-5059 HIGH
SDL2_image 2.0.4 - Integer Overflow to Heap Buffer Overflow via XPM Image Rendering
CVSS 8.8
CVE-2019-10142 HIGH
Linux kernel <5.0.17 - Memory Corruption
CVSS 7.1
CVE-2019-14444 MEDIUM
GNU Binutils <2.32 - Memory Corruption
CVSS 5.5
CVE-2019-13126 HIGH
NATS Server < 2.0.2 - Denial of Service via Integer Overflow
CVSS 7.5
CVE-2019-14295 MEDIUM
UPX 3.95 - Denial of Service via Skewed PE Section Offset in getElfSections
CVSS 5.5
CVE-2019-14289 MEDIUM
Xpdf 4.01.01 - Buffer Overflow
CVSS 5.5
CVE-2019-14288 HIGH
Xpdf 4.01.01 - Memory Corruption
CVSS 7.8
CVE-2019-14283 MEDIUM
Linux kernel <5.2.3 - Info Disclosure
CVSS 6.8
CVE-2019-2309 CRITICAL
Snapdragon Auto - Memory Corruption
CVSS 9.8
CVE-2019-14250 MEDIUM
GNU Binutils - Heap-Based Buffer Overflow via Zero shstrndx Value in simple_object_elf_match
CVSS 5.5
CVE-2019-12552 MEDIUM
SweetScape 010 Editor 9.0.1 - Denial of Service via Integer Overflow
CVSS 5.5
CVE-2019-9959 MEDIUM
Poppler <0.78.0 - Memory Corruption
CVSS 6.5
CVE-2019-1010249 MEDIUM
Linux Foundation ONOS <2.0.0 - Memory Corruption
CVSS 4.9
CVE-2019-1010065 MEDIUM
The Sleuth Kit <4.6.0 - Integer Overflow
CVSS 6.5
CVE-2019-13115 HIGH
libssh2 < 1.9.0 - Integer Overflow leading to Out-of-Bounds Read in SSH Key Exchange
CVSS 8.1
CVE-2019-1010298 CRITICAL
Linaro/OP-TEE OP-TEE <3.4.0 - Buffer Overflow
CVSS 9.8
CVE-2019-1010297 CRITICAL
Linaro/OP-TEE OP-TEE <3.4.0 - Buffer Overflow
CVSS 9.8
CVE-2019-1010296 CRITICAL
Linaro/OP-TEE OP-TEE <3.4.0 - Buffer Overflow
CVSS 9.8
CVE-2019-1010006 HIGH
Evince 3.26.0 - Buffer Overflow in TIFF Document Renderer
CVSS 7.8
CVE-2019-13590 MEDIUM
SoX <14.4.2 - Null Pointer Dereference
CVSS 5.5
CVE-2019-5052 HIGH
SDL2_image <2.0.4 - Buffer Overflow
CVSS 8.8
CVE-2019-13136 HIGH
ImageMagick < 7.0.8-50 - Integer Overflow in TIFFSeekCustomStream
CVSS 7.8
CVE-2019-13111 MEDIUM
exiv2 < 0.27.1 - Denial of Service via WebPImage::decodeChunks Integer Overflow
CVSS 5.5
CVE-2019-13110 MEDIUM
exiv2 < 0.27.1 - Denial of Service via CiffDirectory::readDirectory Integer Overflow
CVSS 6.5
Details
Vulnerabilities 3,205
Exploit Likelihood Medium