CWE-191

Integer Underflow (Wrap or Wraparound)

Parent: CWE-682 - Incorrect Calculation

The product subtracts one value from another, such that the result is less than the minimum allowable integer value, which produces a value that is not equal to the correct result.

459 vulnerabilities with CWE-191
CVE-2026-22185 MEDIUM
OpenLDAP LMDB <0.9.14 - Buffer Overflow
CVE-2026-21489 MEDIUM
iccDEV < 2.3.1.2 - Out-of-bounds Read and Integer Underflow in CIccCalculatorFunc::SequenceNeedTempReset
CVSS 6.1
CVE-2025-14547 LOW
Simplicity SDK < 2025.6.2 and Gecko SDK < 2.5.x - Denial of Service via EC-JPAKE ZKP Parsing Integer Underflow
CVE-2025-14055 LOW
Silicon Labs Secure NCP - Buffer Overflow
CVE-2025-48021 MEDIUM
Yokogawa Electric Corporation - DoS
CVSS 6.5
CVE-2025-1924 HIGH
Yokogawa Electric Corporation - DoS
CVSS 8.2
CVE-2025-62291 HIGH
strongSwan <6.0.3 - Buffer Overflow
CVSS 8.1
CVE-2025-10933 MEDIUM
Silicon Labs Z-Wave Protocol Controller - Memory Corruption
CVE-2025-67269 HIGH
gpsd < 3.27.1 - Denial of Service via Integer Underflow in NAVCOM Packet Parsing
CVSS 7.5
CVE-2025-62567 MEDIUM
Windows Hyper-V - Denial of Service via Integer Underflow
CVSS 5.3
CVE-2025-66217 HIGH
AIS-catcher <0.64 - Buffer Overflow/DoS/RCE
CVSS 7.5
CVE-2025-59368 MEDIUM
ASUS Router - Authenticated Denial of Service via Integer Underflow in Aicloud
CVE-2025-11931 HIGH
wolfssl - Integer Underflow and Out-of-Bounds Access in wc_XChaCha20Poly1305_Decrypt
CVSS 8.2
CVE-2025-65092 MEDIUM
Espressif IOT Dev Framework <5.5.1-5.3.4 - Buffer Overflow
CVE-2025-64076 HIGH
cbor2 < 5.7.0 - Integer Underflow and Memory Leak in C Extension Decoder
CVSS 7.5
CVE-2025-61835 HIGH
Substance 3D Stager < 3.1.6 - Integer Underflow Leading to Arbitrary Code Execution
CVSS 7.8
CVE-2025-61836 HIGH
Illustrator on iPad < 3.0.10 - Integer Underflow Leading to Arbitrary Code Execution
CVSS 7.8
CVE-2025-61826 HIGH
Illustrator on iPad < 3.0.10 - Integer Underflow Leading to Arbitrary Code Execution
CVSS 7.8
CVE-2025-62594 MEDIUM
ImageMagick < 7.1.2-8 - Denial of Service via CLAHEImage Function
CVSS 4.7
CVE-2025-55096 MEDIUM
Eclipse ThreadX USBX < 6.4.3.202503 - Integer Underflow in HID Report Descriptor Parser
CVSS 6.1
CVE-2025-62495 HIGH
QuickJS < 2025-09-13 - Integer Overflow in Regular Expression Engine
CVSS 8.8
CVE-2025-59242 HIGH
Windows 10/11, Server 2008 - Privilege Escalation via AFD Heap Overflow
CVSS 7.8
CVE-2025-39928 MEDIUM
Linux Kernel 6.13-6.16.7 - Integer Underflow in I2C RTL9300 Data Length Handling
CVSS 5.5
CVE-2025-55118 HIGH
Control-M/Agent <9.0.20,9.0.21,9.0.22 - Memory Corruption
CVSS 8.9
CVE-2025-23335 MEDIUM
NVIDIA Triton Inference Server < 25.05 - Denial of Service via Integer Underflow
CVSS 4.4
Details
Vulnerabilities 459