CWE-190
Integer Overflow or Wraparound
Description
The product performs a calculation that can produce an integer overflow or wraparound when the logic assumes that the resulting value will always be larger than the original value. This occurs when an integer value is incremented to a value that is too large to store in the associated representation. When this occurs, the value may become a very small or negative number.
Hierarchy (View 1000)
Related attack patterns (CAPEC)
CAPEC-92
CVEs mapped to this weakness (3,593)
page 170 of 180| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2007-2949 | 0.01 | — | 0.07 | Jul 4, 2007 | Integer overflow in the seek_to_and_unpack_pixeldata function in the psd.c plugin in Gimp 2.2.15 allows remote attackers to execute arbitrary code via a crafted PSD file that contains a large (1) width or (2) height value. | |||
| CVE-2026-54920 | Non | 0.00 | 0.0 | 0.00 | Aug 25, 2026 | OpenEXR is the reference implementation and specification for the EXR image format, widely used in the motion picture industry. In versions 3.4.0 through 3.4.12, a reachable assertion failure in the HTJ2K decode path allows a crafted HTJ2K-compressed EXR file to cause an… | ||
| CVE-2026-61799 | 0.00 | — | — | Aug 20, 2026 | ## Summary `io.netty.incubator:netty-incubator-codec-bhttp` uses attacker-controlled Binary HTTP variable-length integers as `long` values but accumulates them into `int` offsets. Large valid varint lengths wrap the internal offset negative, leading to unchecked… | |||
| CVE-2026-64694 | Cri | 0.00 | 9.8 | 0.01 | Jul 27, 2026 | An integer overflow was addressed with improved input validation. This issue is fixed in macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.6. An app may be able to cause unexpected system termination. | ||
| CVE-2026-43780 | Hig | 0.00 | 7.8 | 0.00 | Jul 27, 2026 | An integer overflow was addressed with improved input validation. This issue is fixed in iOS 26.6 and iPadOS 26.6, macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.6, tvOS 26.6, visionOS 26.6, watchOS 26.6. Processing a maliciously crafted texture may lead to unexpected… | ||
| CVE-2026-43764 | Cri | 0.00 | 9.8 | 0.01 | Jul 27, 2026 | An integer overflow was addressed with improved input validation. This issue is fixed in macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.6. An app may be able to cause unexpected system termination. | ||
| CVE-2026-59117 | Hig | 0.00 | 7.5 | 0.01 | Jul 16, 2026 | Integer overflow or wraparound in Windows Terminal allows an unauthorized attacker to execute code over a network. | ||
| CVE-2026-58594 | Hig | 0.00 | 8.8 | 0.01 | Jul 14, 2026 | Integer overflow or wraparound in Windows RDP allows an unauthorized attacker to execute code over a network. | ||
| CVE-2026-58532 | Hig | 0.00 | 7.8 | 0.00 | Jul 14, 2026 | Integer overflow or wraparound in Windows Kernel allows an authorized attacker to elevate privileges locally. | ||
| CVE-2026-56647 | Hig | 0.00 | 8.8 | 0.01 | Jul 14, 2026 | Integer overflow or wraparound in Windows Remote Access Service Infrastructure allows an authorized attacker to elevate privileges over a network. | ||
| CVE-2026-56194 | Hig | 0.00 | 8.8 | 0.01 | Jul 14, 2026 | Heap-based buffer overflow in Windows Network File System allows an authorized attacker to elevate privileges over a network. | ||
| CVE-2026-56182 | Hig | 0.00 | 7.8 | 0.00 | Jul 14, 2026 | Integer overflow or wraparound in Windows NTFS allows an authorized attacker to elevate privileges locally. | ||
| CVE-2026-55057 | Med | 0.00 | 5.5 | 0.01 | Jul 14, 2026 | Integer overflow or wraparound in Microsoft Office allows an unauthorized attacker to disclose information locally. | ||
| CVE-2026-55048 | Hig | 0.00 | 7.8 | 0.00 | Jul 14, 2026 | Integer overflow or wraparound in Microsoft Office Excel allows an unauthorized attacker to execute code locally. | ||
| CVE-2026-55043 | Hig | 0.00 | 7.8 | 0.00 | Jul 14, 2026 | Heap-based buffer overflow in Microsoft Office PowerPoint allows an unauthorized attacker to execute code locally. | ||
| CVE-2026-55033 | Hig | 0.00 | 7.8 | 0.01 | Jul 14, 2026 | Integer overflow or wraparound in Microsoft Office Word allows an unauthorized attacker to execute code locally. | ||
| CVE-2026-55026 | Med | 0.00 | 6.2 | 0.00 | Jul 14, 2026 | Integer overflow or wraparound in Microsoft Office allows an unauthorized attacker to disclose information locally. | ||
| CVE-2026-54124 | Hig | 0.00 | 7.8 | 0.00 | Jul 14, 2026 | Integer overflow or wraparound in Windows Terminal allows an unauthorized attacker to execute code locally. | ||
| CVE-2026-54115 | Hig | 0.00 | 7.8 | 0.00 | Jul 14, 2026 | Integer overflow or wraparound in Windows Active Directory allows an authorized attacker to elevate privileges locally. | ||
| CVE-2026-50435 | Hig | 0.00 | 7.8 | 0.00 | Jul 14, 2026 | Buffer over-read in Windows Overlay Filter allows an authorized attacker to elevate privileges locally. |
- CVE-2007-2949Jul 4, 2007risk 0.01cvss —epss 0.07
Integer overflow in the seek_to_and_unpack_pixeldata function in the psd.c plugin in Gimp 2.2.15 allows remote attackers to execute arbitrary code via a crafted PSD file that contains a large (1) width or (2) height value.
- risk 0.00cvss 0.0epss 0.00
OpenEXR is the reference implementation and specification for the EXR image format, widely used in the motion picture industry. In versions 3.4.0 through 3.4.12, a reachable assertion failure in the HTJ2K decode path allows a crafted HTJ2K-compressed EXR file to cause an…
- CVE-2026-61799Aug 20, 2026risk 0.00cvss —epss —
## Summary `io.netty.incubator:netty-incubator-codec-bhttp` uses attacker-controlled Binary HTTP variable-length integers as `long` values but accumulates them into `int` offsets. Large valid varint lengths wrap the internal offset negative, leading to unchecked…
- risk 0.00cvss 9.8epss 0.01
An integer overflow was addressed with improved input validation. This issue is fixed in macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.6. An app may be able to cause unexpected system termination.
- risk 0.00cvss 7.8epss 0.00
An integer overflow was addressed with improved input validation. This issue is fixed in iOS 26.6 and iPadOS 26.6, macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.6, tvOS 26.6, visionOS 26.6, watchOS 26.6. Processing a maliciously crafted texture may lead to unexpected…
- risk 0.00cvss 9.8epss 0.01
An integer overflow was addressed with improved input validation. This issue is fixed in macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.6. An app may be able to cause unexpected system termination.
- risk 0.00cvss 7.5epss 0.01
Integer overflow or wraparound in Windows Terminal allows an unauthorized attacker to execute code over a network.
- risk 0.00cvss 8.8epss 0.01
Integer overflow or wraparound in Windows RDP allows an unauthorized attacker to execute code over a network.
- risk 0.00cvss 7.8epss 0.00
Integer overflow or wraparound in Windows Kernel allows an authorized attacker to elevate privileges locally.
- risk 0.00cvss 8.8epss 0.01
Integer overflow or wraparound in Windows Remote Access Service Infrastructure allows an authorized attacker to elevate privileges over a network.
- risk 0.00cvss 8.8epss 0.01
Heap-based buffer overflow in Windows Network File System allows an authorized attacker to elevate privileges over a network.
- risk 0.00cvss 7.8epss 0.00
Integer overflow or wraparound in Windows NTFS allows an authorized attacker to elevate privileges locally.
- risk 0.00cvss 5.5epss 0.01
Integer overflow or wraparound in Microsoft Office allows an unauthorized attacker to disclose information locally.
- risk 0.00cvss 7.8epss 0.00
Integer overflow or wraparound in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
- risk 0.00cvss 7.8epss 0.00
Heap-based buffer overflow in Microsoft Office PowerPoint allows an unauthorized attacker to execute code locally.
- risk 0.00cvss 7.8epss 0.01
Integer overflow or wraparound in Microsoft Office Word allows an unauthorized attacker to execute code locally.
- risk 0.00cvss 6.2epss 0.00
Integer overflow or wraparound in Microsoft Office allows an unauthorized attacker to disclose information locally.
- risk 0.00cvss 7.8epss 0.00
Integer overflow or wraparound in Windows Terminal allows an unauthorized attacker to execute code locally.
- risk 0.00cvss 7.8epss 0.00
Integer overflow or wraparound in Windows Active Directory allows an authorized attacker to elevate privileges locally.
- risk 0.00cvss 7.8epss 0.00
Buffer over-read in Windows Overlay Filter allows an authorized attacker to elevate privileges locally.