Weaknesses of type CWE-190

1,670 results

Estouro ou envolvimento de inteiro

Ocorre quando uma operação aritmética produz um resultado maior (ou menor, em caso de sinal) do que o tipo de dado consegue representar, causando truncamento ou envolvimento para valores inesperados. Um atacante explora isso para contornar validações, causar alocações de memória inválidas ou alterar lógica de negócio.

Example

Um servidor calcula tamanho de buffer como `size = quantidade * 100`. Se quantidade for próxima ao máximo de um inteiro de 32 bits, a multiplicação estoura e retorna um valor pequeno, levando a alocação insuficiente e buffer overflow posterior.

How to mitigate

Valide limites antes de operações aritméticas (verifique se o resultado cabe no tipo), use tipos de dado maiores quando possível, ou aplique bibliotecas de aritmética segura que detectam estouro em tempo de execução.

CVE-2022-42257MEDIUMNVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel mode layer (nvidia.ko), where an integer overflow may lead to infEPSS 0.3%CVE-2026-79902MEDIUMGimp: stack vla size underflow denial of service in seattleEPSS 0.3%CVE-2026-0080MEDIUMIn multiple functions of ubsan_throwing_runtime.cpp, there is a possible way to cause a crash due to an integer overflow. This could lead toEPSS 0.3%CVE-2025-32364MEDIUMA floating-point exception in the PSStack::roll function of Poppler before 25.04.0 can cause an application to crash when handling malformedEPSS 0.3%CVE-2024-33063HIGHInteger Overflow or Wraparound in WLAN Host CommunicationEPSS 0.3%CVE-2024-21844MEDIUMInteger overflow in firmware for some Intel(R) CSME may allow an unauthenticated user to potentially enable denial of service via adjacent aEPSS 0.3%CVE-2022-42259MEDIUMNVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel mode layer (nvidia.ko), where an integer overflow may lead to denEPSS 0.3%CVE-2025-63938MEDIUMTinyproxy through 1.11.2 contains an integer overflow vulnerability in the strip_return_port() function within src/reqs.c.EPSS 0.3%CVE-2026-33306MEDIUMbcrypt-ruby has an Integer Overflow that Causes Zero Key-Strengthening Iterations at Cost=31 on JRubyEPSS 0.3%CVE-2026-87630MEDIUMInteger overflow in WebRTC in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to read memory inside the sandbox via a craftedEPSS 0.3%CVE-2023-27937HIGHAn integer overflow was addressed with improved input validation. This issue is fixed in macOS Ventura 13.3, iOS 16.4 and iPadOS 16.4, macOSEPSS 0.3%CVE-2022-49570MEDIUMgpio: gpio-xilinx: Fix integer overflowEPSS 0.3%CVE-2022-49387MEDIUMwatchdog: rzg2l_wdt: Fix 32bit overflow issueEPSS 0.3%CVE-2024-21105LOWVulnerability in the Oracle Solaris product of Oracle Systems (component: Utility). The supported version that is affected is 11. Easily eEPSS 0.3%CVE-2026-16724MEDIUMPower System Integer OverflowEPSS 0.3%CVE-2024-20434MEDIUMA vulnerability in Cisco IOS XE Software could allow an unauthenticated, adjacent attacker to cause a denial of service (DoS) condition on tEPSS 0.3%CVE-2026-15534MEDIUMPerl versions through 5.45.1 have out-of-bounds heap reads and writes during regular expression matching via an undersized superlinear cache in S_regmatchEPSS 0.3%CVE-2018-9472HIGHIn xmlMemStrdupLoc of xmlmemory.c, there is a possible out-of-bounds write due to an integer overflow. This could lead to remote code executEPSS 0.3%CVE-2022-42263HIGHNVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel mode layer handler, where an Integer overflow may lead to denial EPSS 0.3%CVE-2026-0044MEDIUMIn multiple functions of ubsan_throwing_runtime.cpp, there is a possible way to cause the system to crash due to an integer overflow. This cEPSS 0.3%