Weaknesses of type CWE-190

1,670 results

Estouro ou envolvimento de inteiro

Ocorre quando uma operação aritmética produz um resultado maior (ou menor, em caso de sinal) do que o tipo de dado consegue representar, causando truncamento ou envolvimento para valores inesperados. Um atacante explora isso para contornar validações, causar alocações de memória inválidas ou alterar lógica de negócio.

Example

Um servidor calcula tamanho de buffer como `size = quantidade * 100`. Se quantidade for próxima ao máximo de um inteiro de 32 bits, a multiplicação estoura e retorna um valor pequeno, levando a alocação insuficiente e buffer overflow posterior.

How to mitigate

Valide limites antes de operações aritméticas (verifique se o resultado cabe no tipo), use tipos de dado maiores quando possível, ou aplique bibliotecas de aritmética segura que detectam estouro em tempo de execução.

CVE-2025-20024LOWArkcompiler Ets Runtime has an integer overflow vulnerabilityEPSS 0.2%CVE-2025-0302MEDIUMLiteos_a has an integer overflow read vulnerabilityEPSS 0.2%CVE-2026-0031HIGHIn multiple functions of mem_protect.c, there is a possible out of bounds write due to an integer overflow. This could lead to local escalatEPSS 0.2%CVE-2023-31034MEDIUMCVEEPSS 0.2%CVE-2026-28729LOWInteger overflow in the UEFI firmware for the Intel(R) Slim Bootloader may allow an information disclosure. System software adversary with aEPSS 0.1%CVE-2021-46750LOWFailure to validate the address and size in TEE (Trusted Execution Environment) may allow a malicious x86 attacker to send malformed messageEPSS 0.1%CVE-2026-76149MEDIUMCorvusSKK contains an integer overflow vulnerability, which may allow malicious data to be written to a dictionary file.EPSS 0.1%CVE-2026-56363MEDIUMImageMagick - Division by Zero in Binomial Kernel ProcessingEPSS 0.1%CVE-2021-26377MEDIUMInsufficient parameter validation while allocating process space in the Trusted OS (TOS) may allow for a malicious userspace process to trigEPSS 0.1%CVE-2026-30935MEDIUMImageMagick has a heap Buffer Over-Read in BilateralBlurImageEPSS 0.1%CVE-2026-17091HIGHPower System Integer OverflowEPSS 0.1%CVE-2026-49510MEDIUMInteger overflow or wraparound vulnerability in Samsung Open Source rlottie allows Integer Attacks. This issue affects rlottie: before 2129EPSS 0.1%CVE-2026-43788MEDIUMAn integer overflow was addressed with improved input validation. This issue is fixed in macOS Golden Gate 27. Processing a maliciously crafEPSS 0.1%CVE-2026-34238MEDIUMImageMagick: Integer overflow in despeckle operation causes heap buffer overflow on 32-bit buildsEPSS 0.1%CVE-2026-34353MEDIUMIn OCaml through 4.14.3, Bigarray.reshape allows an integer overflow, and resultant reading of arbitrary memory, when untrusted data is procEPSS 0.1%CVE-2026-54679MEDIUMjq: potential integer overflow in jvp_string_appendEPSS 0.1%CVE-2026-1464MEDIUMA possible integer overflow vulnerability in RawTherapee/RawTherapeeEPSS 0.1%CVE-2026-73074HIGHVim: Heap Buffer Overflow in Text Property HandlingEPSS 0.1%CVE-2026-70628HIGHFFmpeg 0.5 < 9.0 DVB Subtitle Parser Heap Buffer Overflow via WTV FileEPSS 0.1%CVE-2024-1633LOWFIP Header Integer OverflowEPSS 0.1%