CWE-190
3,306 CVEs • Abstraction: Base • Likelihood of Exploit: Medium
Integer Overflow or Wraparound
The product performs a calculation that can produce an integer overflow or wraparound when the logic assumes that the resulting value will always be larger than the original value. This occurs when an integer value is incremented to a value that is too large to store in the associated representation. When this occurs, the value may become a very small or negative number.
CVEs (3,306)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
4Debian OpensusePhp+1 more4Debian Linux LeapPhp+1 moreJun 17, 2026 Jun 19, 2019 N/A· v4 9.1 CRITICAL· v3 6.4 MEDIUM· v2 Function iconv_mime_decode_headers() in PHP versions 7.1.x below 7.1.30, 7.2.x below 7.2.19 and 7.3.x below 7.3.6 may perform out-of-buffer read due to integer overflow when parsing MIME headers. This may lead to informa...Show more |
Fuji Electric V-Server before 6.0.33.0 is vulnerable to denial of service via a crafted UDP message sent to port 8005. An unauthenticated, remote attacker can crash vserver.exe due to an integer overflow in the UDP messa...Show more |
1Foxitsoftware 2Foxit Reader PhantompdfJun 17, 2026 Jun 3, 2019 N/A· v4 5.5 MEDIUM· v3 4.3 MEDIUM· v2 This vulnerability allows remote attackers to disclose sensitive information on vulnerable installations of Foxit Reader 9.3.0.10826. User interaction is required to exploit this vulnerability in that the target must vis...Show more |
When RPC is enabled in Wind River VxWorks 6.9 prior to 6.9.1, a specially crafted RPC request can trigger an integer overflow leading to an out-of-bounds memory copy. It may allow remote attackers to cause a denial of se...Show more |
An integer overflow in curl's URL API results in a buffer overflow in libcurl 7.62.0 to and including 7.64.1. |
1Adobe 2Acrobat Dc Acrobat Reader DcJun 17, 2026 May 24, 2019 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 Adobe Acrobat and Reader versions 2019.010.20069 and earlier, 2019.010.20069 and earlier, 2017.011.30113 and earlier version, and 2015.006.30464 and earlier have an integer overflow vulnerability. Successful exploitation...Show more |
1Qualcomm 37Mdm9150 Firmware Mdm9206 FirmwareMdm9607 Firmware+34 moreNov 21, 2024 May 24, 2019 N/A· v4 9.8 CRITICAL· v3 10.0 HIGH· v2 Untrusted header fields in GNSS XTRA3 function can lead to integer overflow in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables in MDM9150,...Show more |
1Qualcomm 50Mdm9150 Firmware Mdm9206 FirmwareMdm9607 Firmware+47 moreNov 21, 2024 May 24, 2019 N/A· v4 9.8 CRITICAL· v3 10.0 HIGH· v2 Unchecked OTA field in GNSS XTRA3 lead to integer overflow and then buffer overflow in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT...Show more |
1Qualcomm 56Ipq4019 Firmware Ipq8064 FirmwareIpq8074 Firmware+53 moreNov 21, 2024 May 24, 2019 N/A· v4 7.8 HIGH· v3 7.2 HIGH· v2 Improper check before assigning value can lead to integer overflow in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Indust...Show more |
1Qualcomm 28Ipq4019 Firmware Ipq8064 FirmwareIpq8074 Firmware+25 moreNov 21, 2024 May 24, 2019 N/A· v4 7.8 HIGH· v3 7.2 HIGH· v2 Data length received from firmware is not validated against the max allowed size which can result in buffer overflow. in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon...Show more |
1Qualcomm 36Mdm9150 Firmware Mdm9206 FirmwareMdm9607 Firmware+33 moreNov 21, 2024 May 24, 2019 N/A· v4 7.8 HIGH· v3 4.6 MEDIUM· v2 Improper buffer length validation in WLAN function can lead to a potential integer oveflow issue in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon I...Show more |
1Qualcomm 28Mdm9150 Firmware Mdm9206 FirmwareMdm9607 Firmware+25 moreNov 21, 2024 May 24, 2019 N/A· v4 7.8 HIGH· v3 4.6 MEDIUM· v2 Improper buffer length check before copying can lead to integer overflow and then a buffer overflow in WMA event handler in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdra...Show more |
2Google Opensuse3Backports ChromeLeapJun 17, 2026 May 23, 2019 N/A· v4 8.8 HIGH· v3 6.8 MEDIUM· v2 Integer overflow in PDFium in Google Chrome prior to 73.0.3683.75 allowed a remote attacker to potentially perform out of bounds memory access via a crafted PDF file. |
2Google Opensuse3Backports ChromeLeapJun 17, 2026 May 23, 2019 N/A· v4 8.8 HIGH· v3 6.8 MEDIUM· v2 Integer overflow in PDFium in Google Chrome prior to 73.0.3683.75 allowed a remote attacker to potentially perform out of bounds memory access via a crafted PDF file. |
2Google Opensuse3Backports ChromeLeapJun 17, 2026 May 23, 2019 N/A· v4 8.8 HIGH· v3 6.8 MEDIUM· v2 An integer overflow leading to an incorrect capacity of a buffer in JavaScript in Google Chrome prior to 73.0.3683.75 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. |
2Google Opensuse3Backports ChromeLeapJun 17, 2026 May 23, 2019 N/A· v4 8.8 HIGH· v3 9.3 HIGH· v2 An integer overflow that leads to a use-after-free in WebMIDI in Google Chrome on Windows prior to 73.0.3683.75 allowed a remote attacker who had compromised the renderer process to execute arbitrary code via a crafted H...Show more |
2Google Opensuse3Backports ChromeLeapJun 17, 2026 May 23, 2019 N/A· v4 8.8 HIGH· v3 9.3 HIGH· v2 An integer overflow that leads to a use-after-free in Blink Storage in Google Chrome on Linux prior to 73.0.3683.75 allowed a remote attacker who had compromised the renderer process to execute arbitrary code via a craft...Show more |
QEMU 3.0.0 has an Integer Overflow because the qga/commands*.c files do not check the length of the argument list or the number of environment variables. NOTE: This has been disputed as not exploitable |
1Xiongmaitech 1Besder Ip20h1 Firmware Jun 17, 2026 May 10, 2019 N/A· v4 6.5 MEDIUM· v3 3.3 LOW· v2 An issue was discovered on XiongMai Besder IP20H1 V4.02.R12.00035520.12012.047500.00200 cameras. An attacker on the same local network as the camera can craft a message with a size field larger than 0x80000000 and send i...Show more |
In CalculateInstanceSizeForDerivedClass of objects.cc, there is possible memory corruption due to an integer overflow. This could lead to remote code execution in the proxy auto-config with no additional execution privil...Show more |