CWE-190
Integer Overflow or Wraparound
Description
The product performs a calculation that can produce an integer overflow or wraparound when the logic assumes that the resulting value will always be larger than the original value. This occurs when an integer value is incremented to a value that is too large to store in the associated representation. When this occurs, the value may become a very small or negative number.
Hierarchy (View 1000)
Related attack patterns (CAPEC)
CAPEC-92
CVEs mapped to this weakness (3,387)
page 155 of 170| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2026-55048 | Hig | 0.00 | 7.8 | 0.00 | Jul 14, 2026 | Integer overflow or wraparound in Microsoft Office Excel allows an unauthorized attacker to execute code locally. | ||
| CVE-2026-55043 | Hig | 0.00 | 7.8 | 0.00 | Jul 14, 2026 | Heap-based buffer overflow in Microsoft Office PowerPoint allows an unauthorized attacker to execute code locally. | ||
| CVE-2026-55033 | Hig | 0.00 | 7.8 | 0.01 | Jul 14, 2026 | Integer overflow or wraparound in Microsoft Office Word allows an unauthorized attacker to execute code locally. | ||
| CVE-2026-55026 | Med | 0.00 | 6.2 | 0.00 | Jul 14, 2026 | Integer overflow or wraparound in Microsoft Office allows an unauthorized attacker to disclose information locally. | ||
| CVE-2026-54124 | Hig | 0.00 | 7.8 | 0.00 | Jul 14, 2026 | Integer overflow or wraparound in Windows Terminal allows an unauthorized attacker to execute code locally. | ||
| CVE-2026-54115 | Hig | 0.00 | 7.8 | 0.00 | Jul 14, 2026 | Integer overflow or wraparound in Windows Active Directory allows an authorized attacker to elevate privileges locally. | ||
| CVE-2026-50435 | Hig | 0.00 | 7.8 | 0.00 | Jul 14, 2026 | Buffer over-read in Windows Overlay Filter allows an authorized attacker to elevate privileges locally. | ||
| CVE-2026-50347 | Hig | 0.00 | 7.8 | 0.00 | Jul 14, 2026 | Heap-based buffer overflow in Windows Data dll allows an unauthorized attacker to execute code locally. | ||
| CVE-2026-50310 | Med | 0.00 | 4.7 | 0.00 | Jul 14, 2026 | Integer overflow or wraparound in Windows Devices Human Interface allows an authorized attacker to disclose information locally. | ||
| CVE-2026-50306 | Hig | 0.00 | 7.8 | 0.00 | Jul 14, 2026 | Use after free in Windows TCP/IP allows an authorized attacker to elevate privileges locally. | ||
| CVE-2026-55012 | Hig | 0.00 | 7.8 | 0.00 | Jul 14, 2026 | Integer overflow or wraparound in Microsoft Defender allows an unauthorized attacker to execute code locally. | ||
| CVE-2026-54109 | Hig | 0.00 | 7.8 | 0.00 | Jul 14, 2026 | Integer overflow or wraparound in Windows Resilient File System (ReFS) allows an authorized attacker to execute code locally. | ||
| CVE-2026-50299 | Med | 0.00 | 6.8 | 0.00 | Jul 14, 2026 | Integer overflow or wraparound in Windows Storage Spaces Direct allows an unauthorized attacker to execute code with a physical attack. | ||
| CVE-2026-50298 | Med | 0.00 | 6.8 | 0.00 | Jul 14, 2026 | Integer overflow or wraparound in Windows Spaceport.sys allows an unauthorized attacker to elevate privileges with a physical attack. | ||
| CVE-2026-49800 | Hig | 0.00 | 7.8 | 0.02 | Jul 14, 2026 | Integer overflow or wraparound in Windows Web Proxy Auto-Discovery Protocol (WPAD) allows an authorized attacker to elevate privileges locally. | ||
| CVE-2026-49168 | Med | 0.00 | 6.8 | 0.00 | Jul 14, 2026 | Integer overflow or wraparound in Windows Storage Spaces Direct allows an unauthorized attacker to elevate privileges with a physical attack. | ||
| CVE-2026-39042 | Hig | 0.00 | 7.5 | 0.00 | Jul 13, 2026 | An issue in MikroTIk (SIA Mikrotikls, Latvia) RouterOS 7.21.x before v.7.21.4 and 7.22.x before v.7.22.2 allows a remote attacker to cause a denial of service via the unflatten() function in libumsg.so. | ||
| CVE-2026-40469 | Cri | 0.00 | 9.1 | 0.00 | Jul 13, 2026 | Integer overflow vulnerability has been found in "builtin.c" program file of gawk (do_sub() routine). This issue could be used to overwrite gawk heap metadata and objects causing the program to crash. It affects 32-bit builds of gawk in versions 5.4.0 and below. | ||
| CVE-2026-40468 | Cri | 0.00 | 9.1 | 0.00 | Jul 13, 2026 | Integer overflow vulnerability has been found in "builtin.c" program file of gawk. This issue may lead to memory exhaustion on the hosting operating system and could be used to overwrite gawk heap metadata and objects with attacker-controlled bytes. It affects gawk in versions… | ||
| CVE-2026-7162 | Hig | 0.00 | 7.8 | 0.00 | Jul 13, 2026 | Successful exploitation of the integer overflow vulnerability could allow an attacker to achieve system-level access to the affected software. |
- risk 0.00cvss 7.8epss 0.00
Integer overflow or wraparound in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
- risk 0.00cvss 7.8epss 0.00
Heap-based buffer overflow in Microsoft Office PowerPoint allows an unauthorized attacker to execute code locally.
- risk 0.00cvss 7.8epss 0.01
Integer overflow or wraparound in Microsoft Office Word allows an unauthorized attacker to execute code locally.
- risk 0.00cvss 6.2epss 0.00
Integer overflow or wraparound in Microsoft Office allows an unauthorized attacker to disclose information locally.
- risk 0.00cvss 7.8epss 0.00
Integer overflow or wraparound in Windows Terminal allows an unauthorized attacker to execute code locally.
- risk 0.00cvss 7.8epss 0.00
Integer overflow or wraparound in Windows Active Directory allows an authorized attacker to elevate privileges locally.
- risk 0.00cvss 7.8epss 0.00
Buffer over-read in Windows Overlay Filter allows an authorized attacker to elevate privileges locally.
- risk 0.00cvss 7.8epss 0.00
Heap-based buffer overflow in Windows Data dll allows an unauthorized attacker to execute code locally.
- risk 0.00cvss 4.7epss 0.00
Integer overflow or wraparound in Windows Devices Human Interface allows an authorized attacker to disclose information locally.
- risk 0.00cvss 7.8epss 0.00
Use after free in Windows TCP/IP allows an authorized attacker to elevate privileges locally.
- risk 0.00cvss 7.8epss 0.00
Integer overflow or wraparound in Microsoft Defender allows an unauthorized attacker to execute code locally.
- risk 0.00cvss 7.8epss 0.00
Integer overflow or wraparound in Windows Resilient File System (ReFS) allows an authorized attacker to execute code locally.
- risk 0.00cvss 6.8epss 0.00
Integer overflow or wraparound in Windows Storage Spaces Direct allows an unauthorized attacker to execute code with a physical attack.
- risk 0.00cvss 6.8epss 0.00
Integer overflow or wraparound in Windows Spaceport.sys allows an unauthorized attacker to elevate privileges with a physical attack.
- risk 0.00cvss 7.8epss 0.02
Integer overflow or wraparound in Windows Web Proxy Auto-Discovery Protocol (WPAD) allows an authorized attacker to elevate privileges locally.
- risk 0.00cvss 6.8epss 0.00
Integer overflow or wraparound in Windows Storage Spaces Direct allows an unauthorized attacker to elevate privileges with a physical attack.
- risk 0.00cvss 7.5epss 0.00
An issue in MikroTIk (SIA Mikrotikls, Latvia) RouterOS 7.21.x before v.7.21.4 and 7.22.x before v.7.22.2 allows a remote attacker to cause a denial of service via the unflatten() function in libumsg.so.
- risk 0.00cvss 9.1epss 0.00
Integer overflow vulnerability has been found in "builtin.c" program file of gawk (do_sub() routine). This issue could be used to overwrite gawk heap metadata and objects causing the program to crash. It affects 32-bit builds of gawk in versions 5.4.0 and below.
- risk 0.00cvss 9.1epss 0.00
Integer overflow vulnerability has been found in "builtin.c" program file of gawk. This issue may lead to memory exhaustion on the hosting operating system and could be used to overwrite gawk heap metadata and objects with attacker-controlled bytes. It affects gawk in versions…
- risk 0.00cvss 7.8epss 0.00
Successful exploitation of the integer overflow vulnerability could allow an attacker to achieve system-level access to the affected software.