CWE-190

Medium likelihood

Integer Overflow or Wraparound

Parent: CWE-682 - Incorrect Calculation

The product performs a calculation that can produce an integer overflow or wraparound when the logic assumes that the resulting value will always be larger than the original value. This occurs when an integer value is incremented to a value that is too large to store in the associated representation. When this occurs, the value may become a very small or negative number.

3,205 vulnerabilities with CWE-190
CVE-2019-12247 HIGH
QEMU 3.0.0 - Integer Overflow in qga/commands
CVSS 7.5
CVE-2019-11878 MEDIUM
XiongMai Besder IP20H1 V4.02.R12 - DoS
CVSS 6.5
CVE-2019-2046 CRITICAL
Android - Remote Code Execution via Integer Overflow in CalculateInstanceSizeForDerivedClass
CVSS 9.8
CVE-2019-9139 HIGH
DaviewIndy < 8.98.7 - Integer Overflow via Malformed PDF File
CVSS 7.8
CVE-2019-9138 HIGH
datools daviewindy < 8.98.7 - Integer Overflow via Malformed PhotoShop File
CVSS 7.8
CVE-2019-9137 HIGH
DaviewIndy < 8.98.7 - Integer Overflow via Malformed Image File
CVSS 7.8
CVE-2019-2723 HIGH
Oracle VM VirtualBox < 5.2.28 - Authenticated Integer Overflow in Core
CVSS 8.8
CVE-2019-2034 HIGH
Android 7.0-9 - Local Privilege Escalation via Integer Overflow in rw_i93_sm_read_ndef
CVSS 7.8
CVE-2019-11072 CRITICAL
lighttpd < 1.4.54 - Denial of Service via Malicious HTTP GET Request
CVSS 9.8
CVE-2019-9133 MEDIUM
KMPlayer < 2018.12.24.14 - Integer Underflow via Subtitle Processing
CVSS 5.5
CVE-2019-0694 HIGH
Windows Subsystem for Linux - Privilege Escalation
CVSS 7.8
CVE-2019-0693 HIGH
Windows Subsystem for Linux - Privilege Escalation
CVSS 7.8
CVE-2019-0692 HIGH
Windows Subsystem for Linux - Privilege Escalation
CVSS 7.8
CVE-2019-0689 HIGH
Windows Subsystem for Linux - Privilege Escalation
CVSS 7.8
CVE-2019-0682 HIGH
Windows Subsystem for Linux - Privilege Escalation
CVSS 7.8
CVE-2019-0639 HIGH
Internet Explorer - Remote Code Execution via ChakraCore Scripting Engine Memory Corruption
CVSS 7.5
CVE-2019-10877 CRITICAL
Teeworlds 0.7.2 - Integer Overflow in CMap::Load()
CVSS 9.8
CVE-2019-10879 CRITICAL
Teeworlds 0.7.2 - Integer Overflow in CDataFileReader::Open()
CVSS 9.8
CVE-2019-7251 MEDIUM
Digium Asterisk <16.1.1 - Remote Crash
CVSS 6.5
CVE-2019-3857 HIGH
libssh2 < 1.8.1 - Remote Code Execution via SSH_MSG_CHANNEL_REQUEST Packet Parsing
CVSS 8.8
CVE-2019-3856 HIGH
libssh2 < 1.8.1 - Remote Code Execution via Keyboard Prompt Request Parsing
CVSS 8.8
CVE-2019-3863 HIGH
libssh2 < 1.8.1 - Integer Overflow via Keyboard Interactive Response
CVSS 7.5
CVE-2019-3855 HIGH
libssh2 < 1.8.1 - Remote Code Execution via Integer Overflow in Packet Handling
CVSS 8.8
CVE-2019-1993 HIGH
Android 8.0-9 - Integer Overflow in btif_hd.cc register_app
CVSS 7.8
CVE-2019-9210 HIGH
AdvanceCOMP 2.1 - Integer Overflow via Invalid PNG Size Handling
CVSS 7.8
Details
Vulnerabilities 3,205
Exploit Likelihood Medium