CWE-191

Integer Underflow (Wrap or Wraparound)

Parent: CWE-682 - Incorrect Calculation

The product subtracts one value from another, such that the result is less than the minimum allowable integer value, which produces a value that is not equal to the correct result.

459 vulnerabilities with CWE-191
CVE-2022-23034 MEDIUM
Xen 3.2.0-4.12.x - Denial of Service via Grant Mapping Reference Count Underflow
CVSS 5.5
CVE-2022-21685 MEDIUM
Frontier < 2022-01-13 - Integer Underflow in MODEXP Precompile
CVSS 6.5
CVE-2021-47555 MEDIUM
Linux Kernel 5.4.160-5.4.162 - Integer Underflow in VLAN Device Reference Counting
CVSS 5.5
CVE-2021-46951 MEDIUM
Linux Kernel - Integer Underflow in TPM EFI Log Size Calculation
CVSS 5.5
CVE-2021-25121 MEDIUM
Rating by BestWebSoft WordPress <1.6 - DoS
CVSS 6.5
CVE-2021-40589 CRITICAL
ZAngband zangband-data <2.7.5 - Buffer Overflow
CVSS 9.8
CVE-2021-44509 HIGH
Fisglobal Gt.m < 7.0-000 - Integer Underflow
CVSS 7.5
CVE-2021-44489 HIGH
Fisglobal Gt.m < 7.0-000 - Integer Underflow
CVSS 7.5
CVE-2021-40054 HIGH
Huawei EMUI and Magic UI - Integer Underflow in atcmdserver Module
CVSS 7.5
CVE-2021-4066 HIGH
Google Chrome <96.0.4664.93 - Heap Corruption
CVSS 8.8
CVE-2021-37706 HIGH
PJSIP < 2.11.1 - Remote Code Execution via STUN ERROR-CODE Attribute Integer Underflow
CVSS 7.3
CVE-2021-43083 HIGH
Apache PLC4X - PLC4C <0.9.1 - Buffer Overflow
CVSS 8.8
CVE-2021-20607 MEDIUM
Mitsubishi Electric GX Works2 < 1.606g, MELSOFT Navigator < 2.84N, EZSocket < 5.4 - DoS via Malicious Project File
CVSS 5.5
CVE-2021-24894 MEDIUM
Reviews Plus < 1.2.14 - Authenticated Denial of Service via Rating Submission
CVSS 6.5
CVE-2021-31889 HIGH
Capital Embedded AR Classic - Information Leak and Denial of Service via Malformed TCP SACK Option
CVSS 7.5
CVE-2021-41196 MEDIUM
TensorFlow <2.7.0 - Memory Corruption
CVSS 5.5
CVE-2021-3323 HIGH
Zephyr 2.4.0-2.4.9 - Integer Underflow in 6LoWPAN IPHC Header Uncompression
CVSS 8.3
CVE-2021-3321 HIGH
Zephyr 2.4.0-2.4.9 - Integer Underflow in IEEE 802.15.4 Fragment Reassembly
CVSS 7.5
CVE-2021-41821 MEDIUM
Wazuh < 4.1.5 - Authenticated Denial of Service via Integer Underflow
CVSS 6.5
CVE-2021-21897 HIGH
Ribbonsoft dxflib 3.17.0 - Remote Code Execution via Crafted DXF File
CVSS 8.8
CVE-2021-1920 CRITICAL
Qualcomm APQ8009 and related firmware - Integer Underflow via RTCP Packet Handling
CVSS 9.8
CVE-2021-1919 CRITICAL
Qualcomm APQ8009 and related firmware - Integer Underflow in RTCP Length Handling
CVSS 9.8
CVE-2021-21811 CRITICAL
AT&T Labs Xmill 0.7 - Memory Corruption via XML CreateLabelOrAttrib
CVSS 9.8
CVE-2021-1108 HIGH
NVIDIA Jetson Linux 32.1-32.6.1 - Integer Underflow in FuSa Capture (VI/ISP)
CVSS 7.3
CVE-2021-22379 HIGH
Huawei Smartphone - Memory Corruption
CVSS 7.5
Details
Vulnerabilities 459