CWE-190
3,306 CVEs • Abstraction: Base • Likelihood of Exploit: Medium
Integer Overflow or Wraparound
The product performs a calculation that can produce an integer overflow or wraparound when the logic assumes that the resulting value will always be larger than the original value. This occurs when an integer value is incremented to a value that is too large to store in the associated representation. When this occurs, the value may become a very small or negative number.
CVEs (3,306)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
2Debian Nvidia4Cloud Gaming Debian LinuxGpu Display Driver+1 moreJun 17, 2026 Dec 30, 2022 N/A· v4 7.3 HIGH· v3 N/A· v2 NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel mode layer (nvidia.ko), where an integer overflow may lead to denial of service, data tampering, or information disclosure. |
2Debian Nvidia4Cloud Gaming Debian LinuxGpu Display Driver+1 moreJun 17, 2026 Dec 30, 2022 N/A· v4 7.3 HIGH· v3 N/A· v2 NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel mode layer (nvidia.ko), where an integer overflow may lead to information disclosure, data tampering or denial of service. |
NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel mode layer (nvidia.ko), where an integer overflow in index validation may lead to denial of service, information disclosure, or data tampering. |
NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel mode layer (nvidia.ko), where an out-of-bounds array access may lead to denial of service, information disclosure, or data tampering. |
A buffer over-read was discovered in libntlmauth in Squid 2.5 through 5.6. Due to incorrect integer-overflow protection, the SSPI and SMB authentication helpers are vulnerable to reading unintended memory locations. In s...Show more |
3Heimdal Project MitSamba3Heimdal Kerberos 5SambaJun 17, 2026 Dec 25, 2022 N/A· v4 8.8 HIGH· v3 N/A· v2 PAC parsing in MIT Kerberos 5 (aka krb5) before 1.19.4 and 1.20.x before 1.20.1 has integer overflows that may lead to remote code execution (in KDC, kadmind, or a GSS or Kerberos application server) on 32-bit platforms...Show more |
1Mozilla 3Firefox Firefox EsrThunderbirdJun 17, 2026 Dec 22, 2022 N/A· v4 8.8 HIGH· v3 N/A· v2 In the <code>nsTArray_Impl::ReplaceElementsAt()</code> function, an integer overflow could have occurred when the number of elements to replace was too large for the container. This vulnerability affects Firefox < 102, F...Show more |
2Debian Gnupg2Debian Linux LibksbaJun 17, 2026 Dec 20, 2022 N/A· v4 9.8 CRITICAL· v3 N/A· v2 Libksba before 1.6.3 is prone to an integer overflow vulnerability in the CRL signature parser. |
In sec_media_protect of media.c, there is a possible EoP due to an integer overflow. This could lead to local escalation of privilege of secure mode MFC Core with no additional execution privileges needed. User interacti...Show more |
In ppmpu_set of ppmpu.c, there is a possible EoP due to an integer overflow. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitatio...Show more |
An integer overflow was addressed with improved input validation. This issue is fixed in iOS 15.6 and iPadOS 15.6, macOS Monterey 12.5. An app may be able to execute arbitrary code with kernel privileges. |
Integer Overflow or Wraparound in GitHub repository radareorg/radare2 prior to 5.8.0. |
2Debian Neutrinolabs2Debian Linux XrdpJun 17, 2026 Dec 9, 2022 N/A· v4 9.8 CRITICAL· v3 N/A· v2 xrdp is an open source project which provides a graphical login to remote machines using Microsoft Remote Desktop Protocol (RDP). xrdp < v0.9.21 contain a Integer Overflow in xrdp_mm_process_rail_update_window_text() fun...Show more |
Integer overflow vulnerability in Samsung decoding library for video thumbnails prior to SMR Dec-2022 Release 1 allows local attacker to perform Out-Of-Bounds Write. |
2Debian Videolan2Debian Linux Vlc Media PlayerJun 17, 2026 Dec 6, 2022 N/A· v4 7.8 HIGH· v3 N/A· v2 An integer overflow in the VNC module in VideoLAN VLC Media Player through 3.0.17.4 allows attackers, by tricking a user into opening a crafted playlist or connecting to a rogue VNC server, to crash VLC or execute code u...Show more |
In wlan driver, there is a possible missing bounds check, This could lead to local denial of service in wlan services. |
In wlan driver, there is a possible missing bounds check, This could lead to local denial of service in wlan services. |
In wlan driver, there is a possible missing bounds check, This could lead to local denial of service in wlan services. |
In wlan driver, there is a possible missing bounds check, This could lead to local denial of service in wlan services. |
4Debian FedoraprojectLinux+1 more8Debian Linux FedoraH300s Firmware+5 moreJun 17, 2026 Nov 27, 2022 N/A· v4 7.8 HIGH· v3 N/A· v2 An issue was discovered in the Linux kernel through 6.0.10. l2cap_config_req in net/bluetooth/l2cap_core.c has an integer wraparound via L2CAP_CONF_REQ packets. |