Weaknesses of type CWE-190

1,670 results

Estouro ou envolvimento de inteiro

Ocorre quando uma operação aritmética produz um resultado maior (ou menor, em caso de sinal) do que o tipo de dado consegue representar, causando truncamento ou envolvimento para valores inesperados. Um atacante explora isso para contornar validações, causar alocações de memória inválidas ou alterar lógica de negócio.

Example

Um servidor calcula tamanho de buffer como `size = quantidade * 100`. Se quantidade for próxima ao máximo de um inteiro de 32 bits, a multiplicação estoura e retorna um valor pequeno, levando a alocação insuficiente e buffer overflow posterior.

How to mitigate

Valide limites antes de operações aritméticas (verifique se o resultado cabe no tipo), use tipos de dado maiores quando possível, ou aplique bibliotecas de aritmética segura que detectam estouro em tempo de execução.

CVE-2025-24324LOWInteger overflow or wraparound in the Linux kernel-mode driver for some Intel(R) 800 Series Ethernet before version 1.17.2 may allow an authEPSS 0.1%CVE-2022-44432MEDIUMIn wlan driver, there is a possible missing bounds check. This could lead to local denial of service in wlan services.EPSS 0.1%CVE-2022-44426MEDIUMIn wlan driver, there is a possible missing bounds check. This could lead to local denial of service in wlan services.EPSS 0.1%CVE-2023-33038MEDIUMInteger Overflow or Wraparound in Radio Interface LayerEPSS 0.1%CVE-2022-44425MEDIUMIn wlan driver, there is a possible missing bounds check. This could lead to local denial of service in wlan services.EPSS 0.1%CVE-2022-42765MEDIUMIn wlan driver, there is a possible missing bounds check, This could lead to local denial of service in wlan services.EPSS 0.1%CVE-2023-28537HIGHInteger Overflow or Wraparound in AudioEPSS 0.1%CVE-2022-33269CRITICALInteger overflow or wraparound in CoreEPSS 0.1%CVE-2022-40532HIGHInteger overflow or wraparound in WLANEPSS 0.1%CVE-2023-22666HIGHInteger Overflow or Wraparound in AudioEPSS 0.1%CVE-2023-22667HIGHInteger Overflow or Wraparound in AudioEPSS 0.1%CVE-2026-96674MEDIUMalsa-lib through 1.2.16.1 Integer Overflow via Topology FileEPSS 0.1%CVE-2023-21655MEDIUMInteger Overflow or Wraparound in DisplayEPSS 0.1%CVE-2022-33266MEDIUMInteger overflow to buffer overflow in AudioEPSS 0.1%CVE-2026-96611MEDIUMFFmpeg before 9.0 has a signed integer overflow in libavformat/mov.c. In mov_read_ispe(), uint32_t width/height values from a crafted HEIF iEPSS 0.1%CVE-2023-31365LOWAn integer overflow in the SMU could allow a privileged attacker to potentially write memory beyond the end of the reserved dRAM area resultEPSS 0.1%CVE-2022-42767MEDIUMIn wlan driver, there is a possible missing bounds check, This could lead to local denial of service in wlan services.EPSS 0.1%CVE-2026-16890LOWVulnerabilities in IBM AIX and PowerVM VIOSEPSS 0.1%CVE-2023-24288LOWAn issue in Portable Puzzle Collection before 20230116.5782e29 allows attackers to cause a Denial of Service (DoS) via creating an excessiveEPSS 0.1%CVE-2024-45575HIGHInteger Overflow or Wraparound in Camera DriverEPSS 0.1%