CWE-190
Integer Overflow or Wraparound
Description
The product performs a calculation that can produce an integer overflow or wraparound when the logic assumes that the resulting value will always be larger than the original value. This occurs when an integer value is incremented to a value that is too large to store in the associated representation. When this occurs, the value may become a very small or negative number.
Hierarchy (View 1000)
Related attack patterns (CAPEC)
CAPEC-92
CVEs mapped to this weakness (3,583)
page 21 of 180| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2010-2753 | Hig | 0.58 | 8.8 | 0.07 | Jul 30, 2010 | Integer overflow in Mozilla Firefox 3.5.x before 3.5.11 and 3.6.x before 3.6.7, Thunderbird 3.0.x before 3.0.6 and 3.1.x before 3.1.1, and SeaMonkey before 2.0.6 allows remote attackers to execute arbitrary code via a large selection attribute in a XUL tree element, which… | ||
| CVE-2010-0130 | Hig | 0.58 | 8.8 | 0.07 | May 13, 2010 | Integer overflow in Adobe Shockwave Player before 11.5.7.609 might allow remote attackers to execute arbitrary code via a crafted .dir (aka Director) file. | ||
| CVE-2010-0129 | Hig | 0.58 | 8.8 | 0.06 | May 13, 2010 | Multiple integer overflows in Adobe Shockwave Player before 11.5.7.609 allow remote attackers to cause a denial of service (memory corruption) or possibly execute arbitrary code via a crafted .dir (aka Director) file that triggers an array index error. | ||
| CVE-2026-11725 | Hig | 0.57 | 8.8 | 0.00 | Sep 18, 2026 | IBM MQ could allow an authenticated attacker to cause a denial of service or potentially execute arbitrary code due to an integer overflow in MQINQ request processing. | ||
| CVE-2026-11378 | Hig | 0.57 | 8.8 | 0.01 | Sep 18, 2026 | IBM MQ could allow an authenticated attacker to cause a denial of service or potentially execute arbitrary code due to an integer overflow in distribution list processing. | ||
| CVE-2026-65391 | Hig | 0.57 | 8.8 | 0.00 | Sep 14, 2026 | An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in Safari 26.6.1, iOS 26.6.1 and iPadOS 26.6.1, macOS Tahoe 26.6.2, tvOS 27, visionOS 27, watchOS 27. Processing maliciously crafted web content may lead to memory corruption. | ||
| CVE-2026-65390 | Hig | 0.57 | 8.8 | 0.00 | Sep 14, 2026 | An integer overflow was addressed with improved input validation. This issue is fixed in Safari 26.6.1, iOS 26.6.1 and iPadOS 26.6.1, macOS Tahoe 26.6.2, tvOS 27, visionOS 27, watchOS 27. Processing maliciously crafted web content may lead to memory corruption. | ||
| CVE-2026-16174 | Hig | 0.57 | — | 0.00 | Sep 10, 2026 | Netskope was notified about a potential gap in Netskope Endpoint DLP (EPDLP) running on Windows systems. Successful exploitation of the gap could potentially allow a privileged user to send a crafted message to the EPDLP process port to trigger an integer overflow, leading to… | ||
| CVE-2026-77486 | Hig | 0.57 | 8.8 | 0.01 | Sep 8, 2026 | Integer overflow or wraparound in SQL Server allows an unauthorized attacker to execute code over a network. | ||
| CVE-2026-72986 | Hig | 0.57 | 8.8 | 0.01 | Sep 8, 2026 | Heap-based buffer overflow in Graphic Fonts allows an unauthorized attacker to execute code over a network. | ||
| CVE-2026-71336 | Hig | 0.57 | 8.8 | 0.01 | Sep 8, 2026 | Integer overflow or wraparound in Windows Work Folder Service allows an authorized attacker to execute code over a network. | ||
| CVE-2026-70351 | Hig | 0.57 | 8.8 | 0.01 | Sep 8, 2026 | Integer overflow or wraparound in Microsoft WebP Image Extension allows an unauthorized attacker to execute code over a network. | ||
| CVE-2026-69742 | Hig | 0.57 | 8.8 | 0.01 | Sep 8, 2026 | Integer overflow or wraparound in Microsoft Office Publisher allows an unauthorized attacker to execute code over a network. | ||
| CVE-2026-69499 | Hig | 0.57 | 8.8 | 0.01 | Sep 8, 2026 | Integer overflow or wraparound in Windows Imaging Component allows an unauthorized attacker to execute code over a network. | ||
| CVE-2026-69266 | Hig | 0.57 | 8.8 | 0.00 | Sep 8, 2026 | Integer overflow or wraparound in Windows DHCP Server allows an unauthorized attacker to execute code over a network. | ||
| CVE-2026-67384 | Hig | 0.57 | 8.8 | 0.01 | Sep 8, 2026 | Integer overflow or wraparound in SQL Server allows an authorized attacker to execute code over a network. | ||
| CVE-2026-85438 | Cri | 0.57 | 9.8 | 0.00 | Sep 3, 2026 | MOOS-IvP through 24.8.1 contains a buffer overflow vulnerability in StringToIvPFunction() where dimension, piece, and degree counts from encoded BHV_IPF payloads are used as allocation sizes and loop bounds without validation. Attackers can supply crafted payloads with… | ||
| CVE-2026-82908 | Hig | 0.57 | 8.8 | 0.00 | Aug 31, 2026 | A vulnerability was found in MSI Dragon Center up to 2.0.155.0. Affected by this vulnerability is the function MmioWritePath in the library NTIOLib_X64.sys of the component MMIO Write Path Handler. Performing a manipulation of the argument count/elementSize results in integer… | ||
| CVE-2026-79223 | Hig | 0.57 | 8.8 | 0.00 | Aug 25, 2026 | Integer overflow in Chromium in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to read memory inside the sandbox via a crafted file. (Chromium security severity: Low) | ||
| CVE-2026-79215 | Hig | 0.57 | 8.8 | 0.00 | Aug 25, 2026 | Integer overflow in WebGL in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Medium) |
- risk 0.58cvss 8.8epss 0.07
Integer overflow in Mozilla Firefox 3.5.x before 3.5.11 and 3.6.x before 3.6.7, Thunderbird 3.0.x before 3.0.6 and 3.1.x before 3.1.1, and SeaMonkey before 2.0.6 allows remote attackers to execute arbitrary code via a large selection attribute in a XUL tree element, which…
- risk 0.58cvss 8.8epss 0.07
Integer overflow in Adobe Shockwave Player before 11.5.7.609 might allow remote attackers to execute arbitrary code via a crafted .dir (aka Director) file.
- risk 0.58cvss 8.8epss 0.06
Multiple integer overflows in Adobe Shockwave Player before 11.5.7.609 allow remote attackers to cause a denial of service (memory corruption) or possibly execute arbitrary code via a crafted .dir (aka Director) file that triggers an array index error.
- risk 0.57cvss 8.8epss 0.00
IBM MQ could allow an authenticated attacker to cause a denial of service or potentially execute arbitrary code due to an integer overflow in MQINQ request processing.
- risk 0.57cvss 8.8epss 0.01
IBM MQ could allow an authenticated attacker to cause a denial of service or potentially execute arbitrary code due to an integer overflow in distribution list processing.
- risk 0.57cvss 8.8epss 0.00
An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in Safari 26.6.1, iOS 26.6.1 and iPadOS 26.6.1, macOS Tahoe 26.6.2, tvOS 27, visionOS 27, watchOS 27. Processing maliciously crafted web content may lead to memory corruption.
- risk 0.57cvss 8.8epss 0.00
An integer overflow was addressed with improved input validation. This issue is fixed in Safari 26.6.1, iOS 26.6.1 and iPadOS 26.6.1, macOS Tahoe 26.6.2, tvOS 27, visionOS 27, watchOS 27. Processing maliciously crafted web content may lead to memory corruption.
- risk 0.57cvss —epss 0.00
Netskope was notified about a potential gap in Netskope Endpoint DLP (EPDLP) running on Windows systems. Successful exploitation of the gap could potentially allow a privileged user to send a crafted message to the EPDLP process port to trigger an integer overflow, leading to…
- risk 0.57cvss 8.8epss 0.01
Integer overflow or wraparound in SQL Server allows an unauthorized attacker to execute code over a network.
- risk 0.57cvss 8.8epss 0.01
Heap-based buffer overflow in Graphic Fonts allows an unauthorized attacker to execute code over a network.
- risk 0.57cvss 8.8epss 0.01
Integer overflow or wraparound in Windows Work Folder Service allows an authorized attacker to execute code over a network.
- risk 0.57cvss 8.8epss 0.01
Integer overflow or wraparound in Microsoft WebP Image Extension allows an unauthorized attacker to execute code over a network.
- risk 0.57cvss 8.8epss 0.01
Integer overflow or wraparound in Microsoft Office Publisher allows an unauthorized attacker to execute code over a network.
- risk 0.57cvss 8.8epss 0.01
Integer overflow or wraparound in Windows Imaging Component allows an unauthorized attacker to execute code over a network.
- risk 0.57cvss 8.8epss 0.00
Integer overflow or wraparound in Windows DHCP Server allows an unauthorized attacker to execute code over a network.
- risk 0.57cvss 8.8epss 0.01
Integer overflow or wraparound in SQL Server allows an authorized attacker to execute code over a network.
- risk 0.57cvss 9.8epss 0.00
MOOS-IvP through 24.8.1 contains a buffer overflow vulnerability in StringToIvPFunction() where dimension, piece, and degree counts from encoded BHV_IPF payloads are used as allocation sizes and loop bounds without validation. Attackers can supply crafted payloads with…
- risk 0.57cvss 8.8epss 0.00
A vulnerability was found in MSI Dragon Center up to 2.0.155.0. Affected by this vulnerability is the function MmioWritePath in the library NTIOLib_X64.sys of the component MMIO Write Path Handler. Performing a manipulation of the argument count/elementSize results in integer…
- risk 0.57cvss 8.8epss 0.00
Integer overflow in Chromium in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to read memory inside the sandbox via a crafted file. (Chromium security severity: Low)
- risk 0.57cvss 8.8epss 0.00
Integer overflow in WebGL in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Medium)