CWE-190
3,533 CVEs • Abstraction: Base • Likelihood of Exploit: Medium
Integer Overflow or Wraparound
The product performs a calculation that can produce an integer overflow or wraparound when the logic assumes that the resulting value will always be larger than the original value. This occurs when an integer value is incremented to a value that is too large to store in the associated representation. When this occurs, the value may become a very small or negative number.
CVEs (3,533)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
A component of the HarmonyOS has a Integer Overflow or Wraparound vulnerability. Local attackers may exploit this vulnerability to cause the memory which is not released. |
A component of the HarmonyOS has a Integer Overflow or Wraparound vulnerability. Local attackers may exploit this vulnerability to cause memory overwriting. |
In wifi driver, there is a possible system crash due to a missing bounds check. This could lead to remote denial of service with no additional execution privileges needed. User interaction is not needed for exploitation....Show more |
In flv extractor, there is a possible out of bounds read due to an integer overflow. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for expl...Show more |
In flv extractor, there is a possible out of bounds read due to an integer overflow. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for expl...Show more |
1Qualcomm 139Apq8009 Firmware Apq8009w FirmwareApq8017 Firmware+136 moreJun 17, 2026 Oct 20, 2021 N/A· v4 8.4 HIGH· v3 7.2 HIGH· v2 Possible integer overflow due to improper check of batch count value while sanitizer is enabled in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdra...Show more |
1Qualcomm 81Aqt1000 Firmware Ar8035 FirmwareCsrb31024 Firmware+78 moreJun 17, 2026 Oct 20, 2021 N/A· v4 8.4 HIGH· v3 7.2 HIGH· v2 Possible integer overflow due to improper length check while updating grace period and count record in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdrago...Show more |
4Debian FedoraprojectSiemens+1 more25Cp 1543 1 Firmware Debian LinuxFedora+22 moreJun 17, 2026 Oct 18, 2021 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 The in-memory certificate cache in strongSwan before 5.9.4 has a remote integer overflow upon receiving many requests with different certificates to fill the cache and later trigger the replacement of cache entries. The...Show more |
4Debian FedoraprojectSiemens+1 more206gk5615 0aa00 2aa2 Firmware 6gk5804 0ap00 2aa2 Firmware6gk5812 1aa00 2aa2 Firmware+17 moreJun 17, 2026 Oct 18, 2021 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 The gmp plugin in strongSwan before 5.9.4 has a remote integer overflow via a crafted certificate with an RSASSA-PSS signature. For example, this can be triggered by an unrelated self-signed CA certificate sent by an ini...Show more |
1Microsoft 8Windows 10 Windows 11Windows 8.1+5 moreJun 17, 2026 Oct 13, 2021 N/A· v4 7.8 HIGH· v3 7.2 HIGH· v2 Storage Spaces Controller Elevation of Privilege Vulnerability |
1Hitachi 14It Operations Director Job Management Partner 1/it Desktop Management ManagerJob Management Partner 1/it Desktop Management 2 Manager+11 moreJun 17, 2026 Oct 12, 2021 N/A· v4 9.8 CRITICAL· v3 10.0 HIGH· v2 Hitachi JP1/IT Desktop Management 2 Agent 9 through 12 contains a remote code execution vulnerability because of an Integer Overflow. An attacker with network access to port 31016 may exploit this issue to execute code w...Show more |
1Johnsoncontrols 1Exacqvision Server Jun 17, 2026 Oct 11, 2021 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 An unauthenticated remote user could exploit a potential integer overflow condition in the exacqVision Server with a specially crafted script and cause denial-of-service condition. |
3Debian NetappRedis3Debian Linux HiredisManagement Services For Element Software And Netapp HciJun 17, 2026 Oct 4, 2021 N/A· v4 8.8 HIGH· v3 6.5 MEDIUM· v2 Hiredis is a minimalistic C client library for the Redis database. In affected versions Hiredis is vulnurable to integer overflow if provided maliciously crafted or corrupted `RESP` `mult-bulk` protocol data. When parsin...Show more |
5Debian FedoraprojectNetapp+2 more5Communications Operations Monitor Debian LinuxFedora+2 moreJun 17, 2026 Oct 4, 2021 N/A· v4 7.5 HIGH· v3 6.0 MEDIUM· v2 Redis is an open source, in-memory database that persists on disk. An integer overflow bug in the underlying string library can be used to corrupt the heap and potentially result with denial of service or remote code exe...Show more |
5Debian FedoraprojectNetapp+2 more6Communications Operations Monitor Debian LinuxFedora+3 moreJun 17, 2026 Oct 4, 2021 N/A· v4 8.8 HIGH· v3 9.0 HIGH· v2 Redis is an open source, in-memory database that persists on disk. The redis-cli command line tool and redis-sentinel service may be vulnerable to integer overflow when parsing specially crafted large multi-bulk network...Show more |
5Debian FedoraprojectNetapp+2 more6Communications Operations Monitor Debian LinuxFedora+3 moreJun 17, 2026 Oct 4, 2021 N/A· v4 7.5 HIGH· v3 6.0 MEDIUM· v2 Redis is an open source, in-memory database that persists on disk. An integer overflow bug affecting all versions of Redis can be exploited to corrupt the heap and potentially be used to leak arbitrary contents of the he...Show more |
5Debian FedoraprojectNetapp+2 more6Communications Operations Monitor Debian LinuxFedora+3 moreJun 17, 2026 Oct 4, 2021 N/A· v4 7.5 HIGH· v3 6.0 MEDIUM· v2 Redis is an open source, in-memory database that persists on disk. An integer overflow bug in the ziplist data structure used by all versions of Redis can be exploited to corrupt the heap and potentially result with remo...Show more |
5Debian FedoraprojectNetapp+2 more6Communications Operations Monitor Debian LinuxFedora+3 moreJun 17, 2026 Oct 4, 2021 N/A· v4 7.5 HIGH· v3 6.0 MEDIUM· v2 Redis is an open source, in-memory database that persists on disk. In affected versions an integer overflow bug in Redis can be exploited to corrupt the heap and potentially result with remote code execution. The vulnera...Show more |
2Netapp Php2Clustered Data Ontap PhpJun 17, 2026 Oct 4, 2021 N/A· v4 5.9 MEDIUM· v3 4.3 MEDIUM· v2 In PHP versions 7.3.x below 7.3.29, 7.4.x below 7.4.21 and 8.0.x below 8.0.8, when using Firebird PDO driver extension, a malicious database server could cause crashes in various database functions, such as getAttribute(...Show more |
4Debian FedoraprojectLinux+1 more15Cloud Backup Debian LinuxFedora+12 moreAug 5, 2026 Oct 2, 2021 N/A· v4 7.8 HIGH· v3 4.6 MEDIUM· v2 prealloc_elems_and_freelist in kernel/bpf/stackmap.c in the Linux kernel before 5.14.12 allows unprivileged users to trigger an eBPF multiplication integer overflow with a resultant out-of-bounds write. |