CWE-191

Integer Underflow (Wrap or Wraparound)

Parent: CWE-682 - Incorrect Calculation

The product subtracts one value from another, such that the result is less than the minimum allowable integer value, which produces a value that is not equal to the correct result.

460 vulnerabilities with CWE-191
CVE-2019-10054 HIGH
Suricata <4.1.3 - Memory Corruption
CVSS 7.5
CVE-2019-13104 HIGH
Das U-Boot 2016.11-rc1-2019.07-rc4 - Integer Underflow via Crafted ext4 Filesystem
CVSS 7.8
CVE-2019-14523 HIGH
Schism Tracker <20190722 - Info Disclosure
CVSS 7.8
CVE-2019-14199 CRITICAL
Das U-Boot < 2019.07 - Integer Underflow via UDP Packet Handler
CVSS 9.8
CVE-2019-14192 CRITICAL
Das U-Boot < 2019.07 - Integer Underflow via UDP Packet Processing
CVSS 9.8
CVE-2019-5459 HIGH
VLC Media Player < 3.0.7 - Integer Underflow
CVSS 7.1
CVE-2019-2307 CRITICAL
Snapdragon Auto - Integer Underflow
CVSS 9.8
CVE-2019-13602 HIGH
VLC media player < 3.0.7.1 - Integer Underflow in MP4_EIA608_Convert
CVSS 7.8
CVE-2019-1628 MEDIUM
Cisco Integrated Management Controller - Authenticated Denial of Service via Crafted HTTP Request
CVSS 5.5
CVE-2019-9755 HIGH
ntfs-3g 2017.3.23 - Buffer Overflow
CVSS 7.0
CVE-2019-2245 CRITICAL
Qualcomm Snapdragon - Buffer Overflow
CVSS 9.8
CVE-2019-2244 CRITICAL
Qualcomm Snapdragon - Buffer Overflow
CVSS 9.8
CVE-2019-10053 CRITICAL
Suricata 4.1.x <4.1.4 - Buffer Overflow
CVSS 9.8
CVE-2019-9133 MEDIUM
KMPlayer < 2018.12.24.14 - Integer Underflow via Subtitle Processing
CVSS 5.5
CVE-2018-9388 CRITICAL
Android - Integer Underflow and Out-of-Bounds Write in FTM4 PDC Driver
CVSS 9.8
CVE-2018-5852 HIGH
Qualcomm MDM9206-MDM9650, MSM8909W, SD 210-845 Firmware - Buffer Over-read via IPA Driver NAT Entry Debugfs Command
CVSS 8.4
CVE-2018-21065 CRITICAL
Android M(6.0) N(7.x) O(8.x) - Integer Underflow in eCryptFS
CVSS 9.8
CVE-2018-20989 HIGH
untrusted < 0.6.2 - Integer Underflow
CVSS 7.5
CVE-2018-11930 CRITICAL
Snapdragon Auto - Integer Truncation
CVSS 9.8
CVE-2018-4011 HIGH
CUJO Smart Firewall 7003 - Unauthenticated Integer Underflow via mDNS SRV Record Parsing
CVSS 7.5
CVE-2018-20181 CRITICAL
rdesktop <= 1.8.3 - Integer Underflow and Heap-Based Buffer Overflow in seamless_process()
CVSS 9.8
CVE-2018-20180 CRITICAL
rdesktop <= 1.8.3 - Integer Underflow and Heap-Based Buffer Overflow in rdpsnddbg_process()
CVSS 9.8
CVE-2018-20179 CRITICAL
rdesktop <= 1.8.3 - Integer Underflow and Heap-Based Buffer Overflow in lspci_process()
CVSS 9.8
CVE-2018-16601 HIGH
Amazon Web Services FreeRTOS < 1.3.1 and FreeRTOS < 10.0.1 - Integer Underflow in TCP/IP Stack
CVSS 8.1
CVE-2018-15418 HIGH
Cisco Webex Meetings Online < 1.3.37 - Remote Code Execution via Malicious ARF/WRF File
CVSS 7.8
Details
Vulnerabilities 460