CWE-190
3,300 CVEs • Abstraction: Base • Likelihood of Exploit: Medium
Integer Overflow or Wraparound
The product performs a calculation that can produce an integer overflow or wraparound when the logic assumes that the resulting value will always be larger than the original value. This occurs when an integer value is incremented to a value that is too large to store in the associated representation. When this occurs, the value may become a very small or negative number.
CVEs (3,300)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Microsoft 9Windows 10 1809 Windows 10 21h2Windows 10 22h2+6 moreJun 17, 2026 May 14, 2024 N/A· v4 6.8 MEDIUM· v3 N/A· v2 Windows Mobile Broadband Driver Remote Code Execution Vulnerability |
1Microsoft 9Windows 10 1809 Windows 10 21h2Windows 10 22h2+6 moreJun 17, 2026 May 14, 2024 N/A· v4 6.8 MEDIUM· v3 N/A· v2 Windows Mobile Broadband Driver Remote Code Execution Vulnerability |
1Microsoft 9Windows 10 1809 Windows 10 21h2Windows 10 22h2+6 moreJun 17, 2026 May 14, 2024 N/A· v4 6.8 MEDIUM· v3 N/A· v2 Windows Mobile Broadband Driver Remote Code Execution Vulnerability |
1Microsoft 9Windows 10 1809 Windows 10 21h2Windows 10 22h2+6 moreJun 17, 2026 May 14, 2024 N/A· v4 6.8 MEDIUM· v3 N/A· v2 Windows Mobile Broadband Driver Remote Code Execution Vulnerability |
1Microsoft 9Windows 10 1809 Windows 10 21h2Windows 10 22h2+6 moreJun 17, 2026 May 14, 2024 N/A· v4 6.8 MEDIUM· v3 N/A· v2 Windows Mobile Broadband Driver Remote Code Execution Vulnerability |
Npgsql is the .NET data provider for PostgreSQL. The `WriteBind()` method in `src/Npgsql/Internal/NpgsqlConnector.FrontendMessages.cs` uses `int` variables to store the message length and the sum of parameter lengths. Bo...Show more |
in OpenHarmony v4.0.0 and prior versions allow a local attacker cause service crash through integer overflow. |
1Qualcomm 154Aqt1000 Firmware Ar8035 FirmwareFastconnect 6200 Firmware+151 moreJun 17, 2026 May 6, 2024 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption in HLOS while checking for the storage type. |
GIMP PSP File Parsing Integer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GIMP. User interaction is required to exploit...Show more |
Unified Automation UaGateway Certificate Parsing Integer Overflow Denial-of-Service Vulnerability. This vulnerability allows remote attackers to create a denial-of-service condition on affected installations of Unified A...Show more |
2Gstreamer Gstreamer Project2Gstreamer GstreamerJun 17, 2026 May 3, 2024 N/A· v4 8.8 HIGH· v3 N/A· v2 GStreamer MXF File Parsing Integer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GStreamer. Interaction with this library...Show more |
2Gstreamer Gstreamer Project2Gstreamer GstreamerJun 17, 2026 May 3, 2024 N/A· v4 8.8 HIGH· v3 N/A· v2 GStreamer MXF File Parsing Integer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GStreamer. Interaction with this library...Show more |
2Gstreamer Gstreamer Project2Gstreamer GstreamerJun 17, 2026 May 3, 2024 N/A· v4 8.8 HIGH· v3 N/A· v2 GStreamer RealMedia File Parsing Integer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GStreamer. Interaction with this li...Show more |
2Gstreamer Gstreamer Project2Gstreamer GstreamerJun 17, 2026 May 3, 2024 N/A· v4 8.8 HIGH· v3 N/A· v2 GStreamer RealMedia File Parsing Integer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GStreamer. Interaction with this li...Show more |
2Gstreamer Gstreamer Project2Gstreamer GstreamerJun 17, 2026 May 3, 2024 N/A· v4 8.8 HIGH· v3 N/A· v2 GStreamer FLAC File Parsing Integer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GStreamer. Interaction with this library...Show more |
2Fedoraproject Uriparser Project2Fedora UriparserJun 17, 2026 May 3, 2024 N/A· v4 5.9 MEDIUM· v3 N/A· v2 An issue was discovered in uriparser through 0.9.7. ComposeQueryMallocExMm in UriQuery.c has an integer overflow via a long string. |
2Fedoraproject Uriparser Project2Fedora UriparserJun 17, 2026 May 3, 2024 N/A· v4 8.6 HIGH· v3 N/A· v2 An issue was discovered in uriparser through 0.9.7. ComposeQueryEngine in UriQuery.c has an integer overflow via long keys or values, with a resultant buffer overflow. |
2Fedoraproject Nothings2Fedora Stb Vorbis.cJun 17, 2026 May 1, 2024 N/A· v4 9.8 CRITICAL· v3 N/A· v2 A heap-based buffer overflow vulnerability exists in the comment functionality of stb _vorbis.c v1.22. A specially crafted .ogg file can lead to an out-of-bounds write. An attacker can provide a malicious file to trigger...Show more |
An integer overflow or wraparound vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow users to compromise the security of the system via a network...Show more |
2Fedoraproject Freerdp2Fedora FreerdpJun 17, 2026 Apr 22, 2024 N/A· v4 9.8 CRITICAL· v3 N/A· v2 FreeRDP is a free implementation of the Remote Desktop Protocol. FreeRDP based clients using a version of FreeRDP prior to 3.5.0 or 2.11.6 are vulnerable to integer overflow and out-of-bounds write. Versions 3.5.0 and 2....Show more |