VYPR

CWE-190

Integer Overflow or Wraparound

BaseStableLikelihood: Medium

Description

The product performs a calculation that can produce an integer overflow or wraparound when the logic assumes that the resulting value will always be larger than the original value. This occurs when an integer value is incremented to a value that is too large to store in the associated representation. When this occurs, the value may become a very small or negative number.

Hierarchy (View 1000)

Parents

Children

Related attack patterns (CAPEC)

CAPEC-92

CVEs mapped to this weakness (3,398)

page 47 of 170
  • CVE-2024-35827HigMay 17, 2024
    risk 0.51cvss 7.8epss 0.00

    In the Linux kernel, the following vulnerability has been resolved: io_uring/net: fix overflow check in io_recvmsg_mshot_prep() The "controllen" variable is type size_t (unsigned long). Casting it to int could lead to an integer underflow. The check_add_overflow() function…

  • CVE-2024-20795HigApr 11, 2024
    risk 0.51cvss 7.8epss 0.00

    Animate versions 23.0.4, 24.0.1 and earlier are affected by an Integer Overflow or Wraparound vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a…

  • CVE-2021-47098HigMar 4, 2024
    risk 0.51cvss 7.8epss 0.00

    In the Linux kernel, the following vulnerability has been resolved: hwmon: (lm90) Prevent integer overflow/underflow in hysteresis calculations Commit b50aa49638c7 ("hwmon: (lm90) Prevent integer underflows of temperature calculations") addressed a number of underflow…

  • CVE-2023-43550HigMar 4, 2024
    risk 0.51cvss 7.8epss 0.00

    Memory corruption while processing a QMI request for allocating memory from a DHMS supported subsystem.

  • CVE-2024-20730HigFeb 15, 2024
    risk 0.51cvss 7.8epss 0.04

    Acrobat Reader versions 20.005.30539, 23.008.20470 and earlier are affected by an Integer Overflow or Wraparound vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim…

  • CVE-2024-21379HigFeb 13, 2024
    risk 0.51cvss 7.8epss 0.02

    Microsoft Word Remote Code Execution Vulnerability

  • CVE-2024-20698HigJan 9, 2024
    risk 0.51cvss 7.8epss 0.09

    Windows Kernel Elevation of Privilege Vulnerability

  • CVE-2023-39317HigJan 8, 2024
    risk 0.51cvss 7.8epss 0.00

    Multiple integer overflow vulnerabilities exist in the LXT2 num_dict_entries functionality of GTKWave 3.3.115. A specially crafted .lxt2 file can lead to arbitrary code execution. A victim would need to open a malicious file to trigger these vulnerabilities.This vulnerability…

  • CVE-2023-39316HigJan 8, 2024
    risk 0.51cvss 7.8epss 0.00

    Multiple integer overflow vulnerabilities exist in the LXT2 num_dict_entries functionality of GTKWave 3.3.115. A specially crafted .lxt2 file can lead to arbitrary code execution. A victim would need to open a malicious file to trigger these vulnerabilities.This vulnerability…

  • CVE-2023-39275HigJan 8, 2024
    risk 0.51cvss 7.8epss 0.00

    Multiple integer overflow vulnerabilities exist in the LXT2 facgeometry parsing functionality of GTKWave 3.3.115. A specially crafted .lxt2 file can lead to arbitrary code execution. A victim would need to open a malicious file to trigger these vulnerabilities.This vulnerability…

  • CVE-2023-39274HigJan 8, 2024
    risk 0.51cvss 7.8epss 0.00

    Multiple integer overflow vulnerabilities exist in the LXT2 facgeometry parsing functionality of GTKWave 3.3.115. A specially crafted .lxt2 file can lead to arbitrary code execution. A victim would need to open a malicious file to trigger these vulnerabilities.This vulnerability…

  • CVE-2023-39273HigJan 8, 2024
    risk 0.51cvss 7.8epss 0.00

    Multiple integer overflow vulnerabilities exist in the LXT2 facgeometry parsing functionality of GTKWave 3.3.115. A specially crafted .lxt2 file can lead to arbitrary code execution. A victim would need to open a malicious file to trigger these vulnerabilities.This vulnerability…

  • CVE-2023-39272HigJan 8, 2024
    risk 0.51cvss 7.8epss 0.00

    Multiple integer overflow vulnerabilities exist in the LXT2 facgeometry parsing functionality of GTKWave 3.3.115. A specially crafted .lxt2 file can lead to arbitrary code execution. A victim would need to open a malicious file to trigger these vulnerabilities.This vulnerability…

  • CVE-2023-39271HigJan 8, 2024
    risk 0.51cvss 7.8epss 0.00

    Multiple integer overflow vulnerabilities exist in the LXT2 facgeometry parsing functionality of GTKWave 3.3.115. A specially crafted .lxt2 file can lead to arbitrary code execution. A victim would need to open a malicious file to trigger these vulnerabilities.This vulnerability…

  • CVE-2023-39270HigJan 8, 2024
    risk 0.51cvss 7.8epss 0.00

    Multiple integer overflow vulnerabilities exist in the LXT2 facgeometry parsing functionality of GTKWave 3.3.115. A specially crafted .lxt2 file can lead to arbitrary code execution. A victim would need to open a malicious file to trigger these vulnerabilities.This vulnerability…

  • CVE-2023-38623HigJan 8, 2024
    risk 0.51cvss 7.8epss 0.00

    Multiple integer overflow vulnerabilities exist in the VZT facgeometry parsing functionality of GTKWave 3.3.115. A specially crafted .vzt file can lead to arbitrary code execution. A victim would need to open a malicious file to trigger these vulnerabilities.This vulnerability…

  • CVE-2023-38622HigJan 8, 2024
    risk 0.51cvss 7.8epss 0.00

    Multiple integer overflow vulnerabilities exist in the VZT facgeometry parsing functionality of GTKWave 3.3.115. A specially crafted .vzt file can lead to arbitrary code execution. A victim would need to open a malicious file to trigger these vulnerabilities.This vulnerability…

  • CVE-2023-38621HigJan 8, 2024
    risk 0.51cvss 7.8epss 0.00

    Multiple integer overflow vulnerabilities exist in the VZT facgeometry parsing functionality of GTKWave 3.3.115. A specially crafted .vzt file can lead to arbitrary code execution. A victim would need to open a malicious file to trigger these vulnerabilities.This vulnerability…

  • CVE-2023-38620HigJan 8, 2024
    risk 0.51cvss 7.8epss 0.00

    Multiple integer overflow vulnerabilities exist in the VZT facgeometry parsing functionality of GTKWave 3.3.115. A specially crafted .vzt file can lead to arbitrary code execution. A victim would need to open a malicious file to trigger these vulnerabilities.This vulnerability…

  • CVE-2023-38619HigJan 8, 2024
    risk 0.51cvss 7.8epss 0.00

    Multiple integer overflow vulnerabilities exist in the VZT facgeometry parsing functionality of GTKWave 3.3.115. A specially crafted .vzt file can lead to arbitrary code execution. A victim would need to open a malicious file to trigger these vulnerabilities.This vulnerability…