CWE-191

Integer Underflow (Wrap or Wraparound)

Parent: CWE-682 - Incorrect Calculation

The product subtracts one value from another, such that the result is less than the minimum allowable integer value, which produces a value that is not equal to the correct result.

460 vulnerabilities with CWE-191
CVE-2021-22379 HIGH
Huawei Smartphone - Memory Corruption
CVSS 7.5
CVE-2021-2390 MEDIUM
MySQL Server <= 5.7.34 and <= 8.0.25 - Unauthenticated Denial of Service in InnoDB
CVSS 5.9
CVE-2021-33536 HIGH
Weidmueller Industrial WLAN Firmware < 1.16.18 - Unauthenticated Denial of Service via ServiceAgent Integer Underflow
CVSS 7.5
CVE-2021-31956 HIGH KEV
Windows NTFS - Elevation of Privilege via Integer Underflow
CVSS 7.8
CVE-2021-20240 HIGH
gdk-pixbuf < 2.42.0 - Integer Underflow via Crafted GIF Image
CVSS 8.8
CVE-2021-31178 MEDIUM
Microsoft 365 Apps - Information Disclosure via Integer Underflow
CVSS 5.5
CVE-2021-25849 HIGH
Moxa VPort 06EC-2V Series Firmware < 1.1 - Denial of Service via LLDP Packet PortID TLV
CVSS 7.5
CVE-2021-25846 HIGH
Moxa VPort 06EC-2V Series Firmware < 1.1 - Denial of Service via LLDP ChassisID TLV
CVSS 7.5
CVE-2021-3472 HIGH
x.org x_server < 1.20.11 - Integer Underflow
CVSS 7.8
CVE-2021-27486 HIGH
FATEK Automation WinProladder <3.30 - RCE
CVSS 7.8
CVE-2021-28362 HIGH
Contiki < 3.0 - Denial of Service via ICMPv6 Error Message with Invalid Extension Header
CVSS 7.5
CVE-2021-28027 CRITICAL
bam < 0.1.3 - Integer Underflow and Out-of-Bounds Write during BGZIP Block Loading
CVSS 9.8
CVE-2020-24837 HIGH
zcfees - Integer Underflow via Timestamp Manipulation
CVSS 7.5
CVE-2020-28194 CRITICAL
accel-ppp < 1.12.0-e9d369a - Integer Underflow in RADIUS Vendor-Specific Attribute Handling
CVSS 9.8
CVE-2020-36228 HIGH
OpenLDAP < 2.4.57 - Denial of Service via Certificate List Exact Assertion Integer Underflow
CVSS 7.5
CVE-2020-36221 HIGH
OpenLDAP < 2.4.57 - Denial of Service via Certificate Exact Assertion Integer Underflow
CVSS 7.5
CVE-2020-3691 CRITICAL
Qualcomm Snapdragon - Memory Corruption via Integer Underflow in Audio Processing
CVSS 9.8
CVE-2020-16273 HIGH
Armv8-M Firmware - Integer Underflow via Stack Selection Mechanism
CVSS 7.8
CVE-2020-11208 HIGH
Qualcomm Sd820 Firmware - Integer Underflow
CVSS 7.8
CVE-2020-14378 LOW
DPDK 18.02.1-18.11.9 - Integer Underflow in move_desc Function
CVSS 3.3
CVE-2020-14362 HIGH
X.Org Server < 1.20.9 - Integer Underflow to Heap-Buffer Overflow
CVSS 7.8
CVE-2020-14361 HIGH
X.Org Server < 1.20.9 - Integer Underflow to Heap-Buffer Overflow
CVSS 7.8
CVE-2020-14346 HIGH
x.org X Server < 1.20.9 - Integer Underflow in X Input Extension Protocol Decoding
CVSS 7.8
CVE-2020-3634 CRITICAL
Snapdragon Auto Snapdragon Compute Snapdragon Consumer IOT Snapdrag...
CVSS 9.1
CVE-2020-3675 CRITICAL
Snapdragon Auto - Integer Underflow
CVSS 9.8
Details
Vulnerabilities 460