CWE-191

Integer Underflow (Wrap or Wraparound)

Parent: CWE-682 - Incorrect Calculation

The product subtracts one value from another, such that the result is less than the minimum allowable integer value, which produces a value that is not equal to the correct result.

459 vulnerabilities with CWE-191
CVE-2022-28733 HIGH
GRUB2 2.00-2.06-2 - Integer Underflow in grub_net_recv_ip4_packets
CVSS 8.1
CVE-2022-38681 MEDIUM
Android - Denial of Service via Missing Parameter Check in WLAN Driver
CVSS 5.5
CVE-2022-4338 CRITICAL
OpenvSwitch <version> - Integer Underflow
CVSS 9.8
CVE-2022-44444 MEDIUM
Android - Denial of Service via Missing Bounds Check in WLAN Driver
CVSS 5.5
CVE-2022-20516 HIGH
Android - Remote Information Disclosure via Integer Overflow in rw_t3t_act_handle_check_ndef_rsp
CVSS 7.5
CVE-2022-20483 HIGH
Android - Remote Information Disclosure via Integer Overflow in AVRC Response Parsing
CVSS 7.5
CVE-2022-37301 HIGH
Modicon M340 and M580 Firmware < 3.50/4.01 - Denial of Service via Modbus TCP Memory Access Violation
CVSS 7.5
CVE-2022-39343 MEDIUM
Azure RTOS FileX < 6.2.0 - Integer Overflow in Fault Tolerant Log Recovery
CVSS 5.6
CVE-2022-3165 MEDIUM
QEMU 6.1.0-7.0.0 - Denial of Service via VNC ClientCutText Message Integer Underflow
CVSS 6.5
CVE-2022-39293 HIGH
Azure RTOS USBX < 6.1.12 - Integer Underflow in Pima Read Function
CVSS 8.6
CVE-2022-36063 HIGH
eclipse/threadx_usbx < 6.1.11 - Integer Underflow and Buffer Overflow in _ux_host_class_cdc_ecm_mac_address_get
CVSS 7.6
CVE-2022-27492 HIGH
WhatsApp < 2.22.15.9 and < 2.22.16.2 - Remote Code Execution via Crafted Video File
CVSS 7.8
CVE-2022-20393 MEDIUM
Android 11-12L - Local Information Disclosure via Integer Overflow in TextDescriptions.cpp
CVSS 5.5
CVE-2022-2869 MEDIUM
libtiff - Out-of-bounds Read and Write in tiffcrop extractContigSamples8bits
CVSS 5.5
CVE-2022-2867 MEDIUM
libtiff < 4.4.0 - Out-of-bounds Read and Write via tiffcrop Utility
CVSS 5.5
CVE-2022-2335 HIGH
Softing Secure Integration Server V1.22 - DoS
CVSS 7.5
CVE-2022-30787 MEDIUM
NTFS-3G <2021.8.22 - Memory Corruption
CVSS 6.7
CVE-2022-29204 MEDIUM
TensorFlow <2.9.0, 2.8.1, 2.7.2, 2.6.4 - DoS
CVSS 5.5
CVE-2022-1698 HIGH
organizr < 2.1.2000 - Denial of Service via Long Password Input
CVSS 7.5
CVE-2022-20073 MEDIUM
Preloader (usb) - Local Privilege Escalation
CVSS 6.6
CVE-2022-0544 MEDIUM
Blender <2.83.19, 2.93.8, 3.1 - Info Disclosure
CVSS 5.5
CVE-2022-24046 HIGH
Sonos One Speaker <3.4.1-11.2.13 - RCE
CVSS 8.8
CVE-2022-0185 HIGH KEV
Linux kernel - Privilege Escalation
CVSS 8.4
CVE-2022-22715 HIGH
Windows 10 and Windows 11 - Elevation of Privilege via Named Pipe File System Integer Underflow
CVSS 7.8
CVE-2022-23613 HIGH
xrdp - Unauthenticated Remote Code Execution via Integer Underflow in sesman Server
CVSS 7.8
Details
Vulnerabilities 459