Weaknesses of type CWE-190

1,670 results

Estouro ou envolvimento de inteiro

Ocorre quando uma operação aritmética produz um resultado maior (ou menor, em caso de sinal) do que o tipo de dado consegue representar, causando truncamento ou envolvimento para valores inesperados. Um atacante explora isso para contornar validações, causar alocações de memória inválidas ou alterar lógica de negócio.

Example

Um servidor calcula tamanho de buffer como `size = quantidade * 100`. Se quantidade for próxima ao máximo de um inteiro de 32 bits, a multiplicação estoura e retorna um valor pequeno, levando a alocação insuficiente e buffer overflow posterior.

How to mitigate

Valide limites antes de operações aritméticas (verifique se o resultado cabe no tipo), use tipos de dado maiores quando possível, ou aplique bibliotecas de aritmética segura que detectam estouro em tempo de execução.

CVE-2025-55647MEDIUMAn Out-of-Memory in the mp4_mux_cenc_insert_pssh function (filters/mux_isom.c) of GPAC MP4Box v2.4 allows attackers to cause a Denial of SerEPSS 0.2%CVE-2024-52559HIGHdrm/msm/gem: prevent integer overflow in msm_ioctl_gem_submit()EPSS 0.2%CVE-2025-67125MEDIUMA signed integer overflow in docopt.cpp v0.6.2 (LeafPattern::match in docopt_private.h) when merging occurrence counters (e.g., default LONGEPSS 0.2%CVE-2024-36617MEDIUMFFmpeg n6.1.1 has an integer overflow vulnerability in the FFmpeg CAF decoder.EPSS 0.2%CVE-2023-4949HIGHMemory Corruption Vulnerability in Grub-Legacy's XFS ImplementationEPSS 0.2%CVE-2026-40250HIGHOpenEXR has integer overflow in DWA decoder outBufferEnd pointer arithmetic (missed variant of CVE-2026-34589)EPSS 0.2%CVE-2025-2295LOWPotential iSCSI R2T PDU VulnerabilityEPSS 0.2%CVE-2023-26242HIGHafu_mmio_region_get_by_offset in drivers/fpga/dfl-afu-region.c in the Linux kernel through 6.1.12 has an integer overflow.EPSS 0.2%CVE-2021-41199MEDIUMOverflow/crash in `tf.image.resize` when size is largeEPSS 0.2%CVE-2021-41198MEDIUMOverflow/crash in `tf.tile` when tiling tensor is largeEPSS 0.2%CVE-2024-35369MEDIUMIn FFmpeg version n6.1.1, specifically within the avcodec/speexdec.c module, a potential security vulnerability exists due to insufficient vEPSS 0.2%CVE-2025-7458MEDIUMSQLite integer overflow in key info allocation may lead to information disclosure.EPSS 0.2%CVE-2024-53187MEDIUMio_uring: check for overflows in io_pin_pagesEPSS 0.2%CVE-2023-27913HIGHA maliciously crafted X_B file when parsed through Autodesk® AutoCAD® 2023 can be used to cause an Integer Overflow. A malicious actor can lEPSS 0.2%CVE-2025-6196MEDIUMLibgepub: integer overflow in libgepub's epub archive handlingEPSS 0.2%CVE-2020-13603MEDIUMInteger Overflow in memory allocating functionsEPSS 0.2%CVE-2022-46720HIGHAn integer overflow was addressed with improved input validation. This issue is fixed in iOS 16.2 and iPadOS 16.2, macOS Ventura 13.1. An apEPSS 0.2%CVE-2025-43238MEDIUMAn integer overflow was addressed with improved input validation. This issue is fixed in macOS Sequoia 15.6, macOS Sonoma 14.7.7, macOS VentEPSS 0.2%CVE-2026-66757MEDIUMGimp: signed integer overflow in file-sgi (sgi-lib) causes the plugin to crash on rle sgi imagesEPSS 0.2%CVE-2026-70638HIGHllama.cpp b1886–b7445 Integer Overflow via new_1batch() in llama-android.cppEPSS 0.2%