Weaknesses of type CWE-190

1,670 results

Estouro ou envolvimento de inteiro

Ocorre quando uma operação aritmética produz um resultado maior (ou menor, em caso de sinal) do que o tipo de dado consegue representar, causando truncamento ou envolvimento para valores inesperados. Um atacante explora isso para contornar validações, causar alocações de memória inválidas ou alterar lógica de negócio.

Example

Um servidor calcula tamanho de buffer como `size = quantidade * 100`. Se quantidade for próxima ao máximo de um inteiro de 32 bits, a multiplicação estoura e retorna um valor pequeno, levando a alocação insuficiente e buffer overflow posterior.

How to mitigate

Valide limites antes de operações aritméticas (verifique se o resultado cabe no tipo), use tipos de dado maiores quando possível, ou aplique bibliotecas de aritmética segura que detectam estouro em tempo de execução.

CVE-2026-65413MEDIUMAn integer overflow was addressed with improved input validation. This issue is fixed in macOS Golden Gate 27, macOS Sequoia 15.8, macOS TahEPSS 0.2%CVE-2026-21347HIGHBridge | Integer Overflow or Wraparound (CWE-190)EPSS 0.2%CVE-2026-20025MEDIUMA vulnerability in the OSPF protocol of Cisco Secure Firewall ASA Software and Cisco Secure FTD Software could allow an authenticated, adjacEPSS 0.2%CVE-2022-50399HIGHmedia: atomisp: prevent integer overflow in sh_css_set_black_frame()EPSS 0.2%CVE-2021-22556MEDIUMInteger Overflow in Fuchsia KernelEPSS 0.2%CVE-2025-6603MEDIUMcoldfunction qCUDA qcow.c qcow_make_empty integer overflowEPSS 0.2%CVE-2022-49750MEDIUMcpufreq: CPPC: Add u64 casts to avoid overflowingEPSS 0.2%CVE-2022-47451MEDIUMIn wlan driver, there is a possible missing params check. This could lead to local denial of service in wlan services.EPSS 0.2%CVE-2026-2809MEDIUMEndpoint DLP Driver DLLEPSS 0.2%CVE-2026-6192MEDIUMuclouvain openjpeg pi.c opj_pi_initialise_encode integer overflowEPSS 0.2%CVE-2026-3707MEDIUMMrNanko webp4j gif_decoder.c DecodeGifFromMemory integer overflowEPSS 0.2%CVE-2026-57965MEDIUMSpice-vdagent: integer overflow in udscs_write() leading to heap buffer overflowEPSS 0.2%CVE-2026-47251MEDIUMlibheif has an incomplete fix for CVE-2026-3949: integer overflow bypass in vvdec_push_data2EPSS 0.2%CVE-2026-84517MEDIUMAn integer overflow was addressed with improved input validation. This issue is fixed in macOS Golden Gate 27, macOS Sequoia 15.8, macOS TahEPSS 0.2%CVE-2024-36336HIGHInteger overflow within the AMD NPU Driver could allow a local attacker to write out of bounds, potentially leading to a loss of confidentiaEPSS 0.2%CVE-2024-36337HIGHInteger overflow within AMD NPU Driver could allow a local attacker to write out of bounds, potentially leading to loss of confidentiality, EPSS 0.2%CVE-2026-42308MEDIUMPillow: Integer overflow when processing fontsEPSS 0.2%CVE-2026-44983HIGHsmallbitvec: Safe API Triggered Heap Buffer Overflow via Integer OverflowEPSS 0.2%CVE-2024-36316MEDIUMThe integer overflow vulnerability within AMD Graphics driver could allow an attacker to bypass size checks potentially resulting in a deniaEPSS 0.2%CVE-2026-39824LOWInvoking integer overflow in NewNTUnicodeString in golang.org/x/sys/windowsEPSS 0.2%