CWE-190

Medium likelihood

Integer Overflow or Wraparound

Parent: CWE-682 - Incorrect Calculation

The product performs a calculation that can produce an integer overflow or wraparound when the logic assumes that the resulting value will always be larger than the original value. This occurs when an integer value is incremented to a value that is too large to store in the associated representation. When this occurs, the value may become a very small or negative number.

3,206 vulnerabilities with CWE-190
CVE-2018-10893 HIGH
spice - Integer Overflow and Buffer Overflow in LZ Compressed Frame Handling
CVSS 7.6
CVE-2018-14618 HIGH
libcurl < 7.61.1 - Heap Buffer Overflow via NTLM Authentication Password Length
CVSS 7.5
CVE-2018-10911 HIGH
glusterfs 3.12.0-3.12.13 - Integer Overflow in dic_unserialize Function
CVSS 7.5
CVE-2018-16435 MEDIUM
Little CMS 2.9 - Heap-Based Buffer Overflow via Crafted File in cmsIT8LoadFromFile
CVSS 5.5
CVE-2018-11054 HIGH
RSA BSAFE Micro Edition Suite 4.1.6 - Denial of Service via ASN.1 Integer Overflow
CVSS 7.5
CVE-2018-1000224 HIGH
Godot Engine < 2.1.5 and 3.0 < 3.0.6 - Denial of Service via Malformed Network Packet
CVSS 7.5
CVE-2018-15560 HIGH
PyCryptodome < 3.6.6 - Integer Overflow in AESNI Encryption/Decryption
CVSS 7.5
CVE-2018-11687 HIGH
Bitcoin Red - Integer Overflow in distributeBTR Function
CVSS 7.5
CVE-2018-11561 HIGH
erc20token - Integer Overflow in Unprotected distributeToken Function
CVSS 7.5
CVE-2018-14938 CRITICAL
TCPFLOW <1.5.0-alpha - Memory Corruption
CVSS 9.1
CVE-2018-14576 HIGH
SunContract - Integer Overflow in mintTokens Function
CVSS 7.5
CVE-2018-14883 HIGH
PHP <5.6.37, <7.0.31, <7.1.20, <7.2.8 - Memory Corruption
CVSS 7.5
CVE-2018-10921 MEDIUM
ttembed - Integer Overflow in Input File Processing
CVSS 4.3
CVE-2018-14295 HIGH
Foxit Reader and PhantomPDF < 9.1.0.5096 - Remote Code Execution via PDF Shading Pattern Parsing
CVSS 8.8
CVE-2018-14444 HIGH
libdxfrw 0.6.3 - Integer Overflow in dwgCompressor::decompress18
CVSS 7.5
CVE-2018-14343 HIGH
Wireshark <2.6.1, <2.4.7, <2.2.15 - Crash
CVSS 7.5
CVE-2018-14341 HIGH
Wireshark <2.6.1,<2.4.7,<2.2.15 - DoS
CVSS 7.5
CVE-2018-14337 HIGH
mruby 1.4.1 - Integer Overflow via CHECK Macro in sprintf
CVSS 7.5
CVE-2018-14326 HIGH
MP4v2 2.0.0 - Memory Corruption
CVSS 8.8
CVE-2018-0360 MEDIUM
ClamAV < 0.100.1 - Denial of Service via HWP File Integer Overflow
CVSS 5.5
CVE-2018-14088 CRITICAL
STeX White List - Integer Overflow in withdrawToFounders Function
CVSS 9.8
CVE-2018-14087 CRITICAL
encryptedtoken - Integer Overflow via setPrices() and Fallback Function
CVSS 9.8
CVE-2018-14086 CRITICAL
SingaporeCoinOrigin - Integer Overflow
CVSS 9.8
CVE-2018-14084 CRITICAL
myadvancedtoken - Integer Overflow in sell() Function
CVSS 9.8
CVE-2018-14063 CRITICAL
tracto - Integer Overflow in increaseApproval Function
CVSS 9.8
Details
Vulnerabilities 3,206
Exploit Likelihood Medium