The product performs a calculation that can produce an integer overflow or wraparound when the logic assumes that the resulting value will always be larger than the original value. This occurs when an integer value is incremented to a value that is too large to store in the associated representation. When this occurs, the value may become a very small or negative number.
3,205 vulnerabilities with CWE-190
CVE-2019-12247
HIGH
QEMU 3.0.0 - Integer Overflow in qga/commands
CVSS 7.5
CVE-2019-11878
MEDIUM
XiongMai Besder IP20H1 V4.02.R12 - DoS
CVSS 6.5
CVE-2019-2046
CRITICAL
Android - Remote Code Execution via Integer Overflow in CalculateInstanceSizeForDerivedClass
CVSS 9.8
CVE-2019-9139
HIGH
DaviewIndy < 8.98.7 - Integer Overflow via Malformed PDF File
CVSS 7.8
CVE-2019-9138
HIGH
datools daviewindy < 8.98.7 - Integer Overflow via Malformed PhotoShop File
CVSS 7.8
CVE-2019-9137
HIGH
DaviewIndy < 8.98.7 - Integer Overflow via Malformed Image File
CVSS 7.8
CVE-2019-2723
HIGH
Oracle VM VirtualBox < 5.2.28 - Authenticated Integer Overflow in Core
CVSS 8.8
CVE-2019-2034
HIGH
Android 7.0-9 - Local Privilege Escalation via Integer Overflow in rw_i93_sm_read_ndef
CVSS 7.8
CVE-2019-11072
CRITICAL
lighttpd < 1.4.54 - Denial of Service via Malicious HTTP GET Request
CVSS 9.8
CVE-2019-9133
MEDIUM
KMPlayer < 2018.12.24.14 - Integer Underflow via Subtitle Processing
CVSS 5.5
CVE-2019-0694
HIGH
Windows Subsystem for Linux - Privilege Escalation
CVSS 7.8
CVE-2019-0693
HIGH
Windows Subsystem for Linux - Privilege Escalation
CVSS 7.8
CVE-2019-0692
HIGH
Windows Subsystem for Linux - Privilege Escalation
CVSS 7.8
CVE-2019-0689
HIGH
Windows Subsystem for Linux - Privilege Escalation
CVSS 7.8
CVE-2019-0682
HIGH
Windows Subsystem for Linux - Privilege Escalation
CVSS 7.8
CVE-2019-0639
HIGH
Internet Explorer - Remote Code Execution via ChakraCore Scripting Engine Memory Corruption
CVSS 7.5
CVE-2019-10877
CRITICAL
Teeworlds 0.7.2 - Integer Overflow in CMap::Load()
CVSS 9.8
CVE-2019-10879
CRITICAL
Teeworlds 0.7.2 - Integer Overflow in CDataFileReader::Open()
CVSS 9.8
CVE-2019-7251
MEDIUM
Digium Asterisk <16.1.1 - Remote Crash
CVSS 6.5
CVE-2019-3857
HIGH
libssh2 < 1.8.1 - Remote Code Execution via SSH_MSG_CHANNEL_REQUEST Packet Parsing
CVSS 8.8
CVE-2019-3856
HIGH
libssh2 < 1.8.1 - Remote Code Execution via Keyboard Prompt Request Parsing
CVSS 8.8
CVE-2019-3863
HIGH
libssh2 < 1.8.1 - Integer Overflow via Keyboard Interactive Response
CVSS 7.5
CVE-2019-3855
HIGH
libssh2 < 1.8.1 - Remote Code Execution via Integer Overflow in Packet Handling
CVSS 8.8
CVE-2019-1993
HIGH
Android 8.0-9 - Integer Overflow in btif_hd.cc register_app
CVSS 7.8
CVE-2019-9210
HIGH
AdvanceCOMP 2.1 - Integer Overflow via Invalid PNG Size Handling
CVSS 7.8
Details
Vulnerabilities
3,205
Exploit Likelihood
Medium