CWE-190
3,306 CVEs • Abstraction: Base • Likelihood of Exploit: Medium
Integer Overflow or Wraparound
The product performs a calculation that can produce an integer overflow or wraparound when the logic assumes that the resulting value will always be larger than the original value. This occurs when an integer value is incremented to a value that is too large to store in the associated representation. When this occurs, the value may become a very small or negative number.
CVEs (3,306)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
In wlan driver, there is a possible missing params check. This could lead to local denial of service in wlan services. |
1Qualcomm 189Aqt1000 Firmware Ar8031 FirmwareAr8035 Firmware+186 moreJun 17, 2026 Mar 10, 2023 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption in WLAN due to integer overflow to buffer overflow in WLAN during initialization phase. |
1Qualcomm 201Apq8009 Firmware Apq8009w FirmwareApq8017 Firmware+198 moreJun 17, 2026 Mar 10, 2023 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption in modem due to integer overflow to buffer overflow while handling APDU response |
The kernel subsystem function check_permission_for_set_tokenid within OpenHarmony-v3.1.5 and prior versions has an UAF vulnerability which local attackers can exploit this vulnerability to escalate the privilege to roo...Show more |
Redis is an in-memory database that persists on disk. Authenticated users issuing specially crafted `SRANDMEMBER`, `ZRANDMEMBER`, and `HRANDFIELD` commands can trigger an integer overflow, resulting in a runtime assertio...Show more |
A vulnerability was found in SerenityOS. It has been rated as critical. Affected by this issue is the function initialize_typed_array_from_array_buffer in the library Userland/Libraries/LibJS/Runtime/TypedArray.cpp. The...Show more |
3Ge PtcRockwellautomation9Digital Industrial Gateway Server Kepserver EnterpriseKepware Server+6 moreJun 17, 2026 Feb 23, 2023 N/A· v4 9.8 CRITICAL· v3 N/A· v2
The affected products are vulnerable to an integer
overflow or wraparound, which could allow an attacker to crash the server and remotely
execute arbitrary code.
|
Integer overflow in PDF in Google Chrome prior to 110.0.5481.177 allowed a remote attacker to potentially exploit heap corruption via a crafted PDF file. (Chromium security severity: Medium) |
afu_mmio_region_get_by_offset in drivers/fpga/dfl-afu-region.c in the Linux kernel through 6.1.12 has an integer overflow. |
Integer overflow in the Intel(R) Trace Analyzer and Collector software before version 2021.5 may allow an authenticated user to potentially enable escalation of privilege via local access. |
Libpeconv – integer overflow, before commit 75b1565 (30/11/2022). |
1Microsoft 13Windows 10 1507 Windows 10 1607Windows 10 1809+10 moreJun 17, 2026 Feb 14, 2023 N/A· v4 7.8 HIGH· v3 N/A· v2 Windows Graphics Component Remote Code Execution Vulnerability |
1Microsoft 7Windows 10 Windows 10 1607Windows 10 1809+4 moreJun 17, 2026 Feb 14, 2023 N/A· v4 9.8 CRITICAL· v3 N/A· v2 Windows iSCSI Discovery Service Remote Code Execution Vulnerability |
1Microsoft 13Windows 10 Windows 10 1607Windows 10 1809+10 moreJun 17, 2026 Feb 14, 2023 N/A· v4 7.8 HIGH· v3 N/A· v2 Windows Media Remote Code Execution Vulnerability |
1Microsoft 13Windows 10 1507 Windows 10 1607Windows 10 1809+10 moreJun 17, 2026 Feb 14, 2023 N/A· v4 8.8 HIGH· v3 N/A· v2 Microsoft ODBC Driver Remote Code Execution Vulnerability |
1Microsoft 8Office Office Long Term Servicing ChannelOffice Online Server+5 moreJun 17, 2026 Feb 14, 2023 N/A· v4 9.8 CRITICAL· v3 N/A· v2 Microsoft Word Remote Code Execution Vulnerability |
Microsoft ODBC Driver for SQL Server Remote Code Execution Vulnerability |
1Microsoft 13Windows 10 1507 Windows 10 1607Windows 10 1809+10 moreJun 17, 2026 Feb 14, 2023 N/A· v4 8.8 HIGH· v3 N/A· v2 Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability |
In wlan driver, there is a possible missing params check. This could lead to local denial of service in wlan services. |
In wlan driver, there is a possible missing params check. This could lead to local denial of service in wlan services. |