CWE-190
3,528 CVEs • Abstraction: Base • Likelihood of Exploit: Medium
Integer Overflow or Wraparound
The product performs a calculation that can produce an integer overflow or wraparound when the logic assumes that the resulting value will always be larger than the original value. This occurs when an integer value is incremented to a value that is too large to store in the associated representation. When this occurs, the value may become a very small or negative number.
CVEs (3,528)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
2Gstreamer Gstreamer Project2Gstreamer GstreamerJun 17, 2026 May 3, 2024 N/A· v4 8.8 HIGH· v3 N/A· v2 GStreamer RealMedia File Parsing Integer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GStreamer. Interaction with this li...Show more |
2Gstreamer Gstreamer Project2Gstreamer GstreamerJun 17, 2026 May 3, 2024 N/A· v4 8.8 HIGH· v3 N/A· v2 GStreamer RealMedia File Parsing Integer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GStreamer. Interaction with this li...Show more |
2Gstreamer Gstreamer Project2Gstreamer GstreamerJun 17, 2026 May 3, 2024 N/A· v4 8.8 HIGH· v3 N/A· v2 GStreamer FLAC File Parsing Integer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GStreamer. Interaction with this library...Show more |
2Fedoraproject Uriparser Project2Fedora UriparserJun 17, 2026 May 3, 2024 N/A· v4 5.9 MEDIUM· v3 N/A· v2 An issue was discovered in uriparser through 0.9.7. ComposeQueryMallocExMm in UriQuery.c has an integer overflow via a long string. |
2Fedoraproject Uriparser Project2Fedora UriparserJun 17, 2026 May 3, 2024 N/A· v4 8.6 HIGH· v3 N/A· v2 An issue was discovered in uriparser through 0.9.7. ComposeQueryEngine in UriQuery.c has an integer overflow via long keys or values, with a resultant buffer overflow. |
2Fedoraproject Nothings2Fedora Stb Vorbis.cJun 17, 2026 May 1, 2024 N/A· v4 9.8 CRITICAL· v3 N/A· v2 A heap-based buffer overflow vulnerability exists in the comment functionality of stb _vorbis.c v1.22. A specially crafted .ogg file can lead to an out-of-bounds write. An attacker can provide a malicious file to trigger...Show more |
An integer overflow or wraparound vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow users to compromise the security of the system via a network...Show more |
2Fedoraproject Freerdp2Fedora FreerdpJun 17, 2026 Apr 22, 2024 N/A· v4 9.8 CRITICAL· v3 N/A· v2 FreeRDP is a free implementation of the Remote Desktop Protocol. FreeRDP based clients using a version of FreeRDP prior to 3.5.0 or 2.11.6 are vulnerable to integer overflow and out-of-bounds write. Versions 3.5.0 and 2....Show more |
An Integer Overflow vulnerability in WLInfoRailService component of Ivanti Avalanche before 6.4.3 allows an unauthenticated remote attacker to perform denial of service attacks. In certain rare conditions this could also...Show more |
An issue in `coap_pdu.c` in libcoap 4.3.4 allows attackers to cause undefined behavior via a sequence of messages leading to unsigned integer overflow. |
In the Linux kernel, the following vulnerability has been resolved: bpf: Fix hashtab overflow check on 32-bit arches The hashtab code relies on roundup_pow_of_two() to compute the number of hash buckets, and contains a...Show more |
Vulnerability in the Oracle Solaris product of Oracle Systems (component: Utility). The supported version that is affected is 11. Easily exploitable vulnerability allows high privileged attacker with logon to the infra...Show more |
2Debian Mozilla3Debian Linux FirefoxThunderbirdJun 17, 2026 Apr 16, 2024 N/A· v4 5.9 MEDIUM· v3 N/A· v2 On 32-bit versions there were integer-overflows that led to an out-of-bounds-read that potentially could be triggered by a malformed OpenType font. This vulnerability affects Firefox < 125, Firefox ESR < 115.10, and Thun...Show more |
2Debian Linux2Debian Linux Linux KernelJun 17, 2026 Apr 13, 2024 N/A· v4 5.5 MEDIUM· v3 N/A· v2 In the Linux kernel, the following vulnerability has been resolved:
amdkfd: use calloc instead of kzalloc to avoid integer overflow
This uses calloc instead of doing the multiplication which might
overflow. |
Animate versions 23.0.4, 24.0.1 and earlier are affected by an Integer Overflow or Wraparound vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue req...Show more |
1Microsoft 3Ole Db Driver For Sql Server Sql Server 2019Sql Server 2022Jun 17, 2026 Apr 9, 2024 N/A· v4 8.8 HIGH· v3 N/A· v2 Microsoft OLE DB Driver for SQL Server Remote Code Execution Vulnerability |
1Microsoft 5Odbc Driver For Sql Server Sql Server 2019Sql Server 2022+2 moreJun 17, 2026 Apr 9, 2024 N/A· v4 8.8 HIGH· v3 N/A· v2 Microsoft ODBC Driver for SQL Server Remote Code Execution Vulnerability |
1Microsoft 5Odbc Driver For Sql Server Sql Server 2019Sql Server 2022+2 moreJun 17, 2026 Apr 9, 2024 N/A· v4 8.8 HIGH· v3 N/A· v2 Microsoft ODBC Driver for SQL Server Remote Code Execution Vulnerability |
1Microsoft 5Odbc Driver For Sql Server Sql Server 2019Sql Server 2022+2 moreJun 17, 2026 Apr 9, 2024 N/A· v4 8.8 HIGH· v3 N/A· v2 Microsoft ODBC Driver for SQL Server Remote Code Execution Vulnerability |
1Microsoft 13Windows 10 1507 Windows 10 1607Windows 10 1809+10 moreJun 17, 2026 Apr 9, 2024 N/A· v4 6.4 MEDIUM· v3 N/A· v2 Secure Boot Security Feature Bypass Vulnerability |