CWE-191

Integer Underflow (Wrap or Wraparound)

Parent: CWE-682 - Incorrect Calculation

The product subtracts one value from another, such that the result is less than the minimum allowable integer value, which produces a value that is not equal to the correct result.

501 vulnerabilities with CWE-191
CVE-2018-5850 HIGH
Android - Integer Underflow and Buffer Overflow in csr_update_fils_params_rso()
CVSS 7.8
CVE-2018-7569 MEDIUM
GNU Binutils 2.30 - Denial of Service via Corrupt DWARF FORM Block in ELF File
CVSS 5.5
CVE-2018-6612 MEDIUM
jhead 3.00 - Heap-Based Buffer Over-Read in EXIF Processing
CVSS 5.5
CVE-2017-18278 HIGH
Qualcomm Mdm9206 Firmware - Integer Underflow
CVSS 7.8
CVE-2017-18170 HIGH
Qualcomm Snapdragon and QCA9379 Firmware - Memory Corruption via Bluetooth Controller Input Validation
CVSS 8.8
CVE-2017-15874 MEDIUM
BusyBox 1.27.2 - Integer Underflow in decompress_unlzma
CVSS 5.0
CVE-2017-14997 MEDIUM
GraphicsMagick 1.3.26 - Denial of Service via Integer Underflow in ReadPICTImage
CVSS 6.5
CVE-2017-14496 HIGH
dnsmasq <2.78 - DoS
CVSS 7.5
CVE-2017-14796 HIGH
libbpg 0.9.7 - Integer Underflow via Crafted BPG File
CVSS 8.8
CVE-2017-13666 MEDIUM
x265 - Integer Underflow in pixel-a.asm planeClipAndMax Function
CVSS 5.5
CVE-2017-11757 CRITICAL
Actian Pervasive PSQL v12.10-Zen v13 - Buffer Overflow
CVSS 9.8
CVE-2017-7367 HIGH
Android - Integer Underflow in Boot Image Processing
CVSS 7.8
CVE-2017-9214 CRITICAL
Open vSwitch (OvS) 2.7.0 - Buffer Overflow
CVSS 9.8
CVE-2017-8924 MEDIUM
Linux kernel <4.10.4 - Info Disclosure
CVSS 4.6
CVE-2017-8911 CRITICAL
tnef 1.4.14 - Integer Underflow in unicode_to_utf8 Function
CVSS 9.8
CVE-2017-8906 MEDIUM
MulticoreWare x265 < 2.4 - Denial of Service via Integer Underflow in pixel-a.asm
CVSS 5.5
CVE-2017-3034 HIGH
Adobe Acrobat and Reader < 11.0.19, < 15.006.30280, < 15.023.20070 - Remote Code Execution
CVSS 7.8
CVE-2017-6313 HIGH
gdk-pixbuf < 2.36.12 - Integer Underflow in ICO Image Entry Size Handling
CVSS 7.1
CVE-2016-10268 HIGH
libtiff - Integer Underflow and Heap-Based Buffer Under-Read via Crafted TIFF Image
CVSS 7.8
CVE-2016-10166 CRITICAL
libgd < 2.2.4 - Integer Underflow in _gdContributionsAlloc
CVSS 9.8
CVE-2016-7800 HIGH
GraphicsMagick < 1.3.25 - Denial of Service via Crafted 8BIM Chunk
CVSS 7.5
CVE-2016-1925 CRITICAL
lha_for_unix - Integer Underflow and Buffer Overflow via Large Header Size Value
CVSS 9.8
CVE-2016-2316 MEDIUM
Fedora - Integer Underflow
CVSS 5.9
CVE-2015-9198 CRITICAL
Qualcomm MDM9206 and Snapdragon Firmware - Integer Underflow in qsee_register_log_buff
CVSS 9.8
CVE-2015-9167 CRITICAL
Qualcomm Snapdragon Mobile and Automobile Firmware - Integer Underflow in EMM Command
CVSS 9.8
Details
Vulnerabilities 501