Weaknesses of type CWE-190

1,670 results

Estouro ou envolvimento de inteiro

Ocorre quando uma operação aritmética produz um resultado maior (ou menor, em caso de sinal) do que o tipo de dado consegue representar, causando truncamento ou envolvimento para valores inesperados. Um atacante explora isso para contornar validações, causar alocações de memória inválidas ou alterar lógica de negócio.

Example

Um servidor calcula tamanho de buffer como `size = quantidade * 100`. Se quantidade for próxima ao máximo de um inteiro de 32 bits, a multiplicação estoura e retorna um valor pequeno, levando a alocação insuficiente e buffer overflow posterior.

How to mitigate

Valide limites antes de operações aritméticas (verifique se o resultado cabe no tipo), use tipos de dado maiores quando possível, ou aplique bibliotecas de aritmética segura que detectam estouro em tempo de execução.

CVE-2023-24288LOWAn issue in Portable Puzzle Collection before 20230116.5782e29 allows attackers to cause a Denial of Service (DoS) via creating an excessiveEPSS 0.1%CVE-2026-15551MEDIUMSamsung rlottie: Numeric truncation in gray_hline() leads to heap-based buffer overflow when rendering a crafted Lottie animation at native canvas sizeEPSS 0.1%CVE-2023-43530MEDIUMInteger Overflow or Wraparound in HLOSEPSS 0.1%CVE-2025-15584MEDIUMEndpoint DLP Driver Filter Communication Port Integer OverflowEPSS 0.1%CVE-2026-0095HIGHIn l2c_fcr_clone_buf of l2c_fcr.cc, there is a possible way to trigger controlled heap corruption within the privileged Bluetooth process duEPSS 0.1%CVE-2025-48637HIGHIn multiple functions of mem_protect.c, there is a possible out of bounds write due to an integer overflow. This could lead to local escalatEPSS 0.1%CVE-2026-41977MEDIUMDoS vulnerability in the log service. Impact: Successful exploitation of this vulnerability may affect availability.EPSS 0.1%CVE-2024-23695HIGHIn CacheOpPMRExec of cache_km.c, there is a possible out of bounds write due to an integer overflow. This could lead to local escalation of EPSS 0.1%CVE-2024-33022HIGHInteger Overflow or Wraparound in Automotive GPUEPSS 0.1%CVE-2026-21366HIGHInteger Overflow or Wraparound in Data Network Stack & ConnectivityEPSS 0.1%CVE-2026-88035MEDIUMHeap buffer overflow via wrapped size check during SASL username canonicalization in MongoDB C DriverEPSS 0.1%CVE-2023-43545MEDIUMInteger Overflow or Wraparound in WLAN HOSTEPSS 0.1%CVE-2021-26380LOWA compromised Trusted OS (TOS) driver could issue a malformed call that could potentially allow memory access outside the intended range reEPSS 0.1%CVE-2024-53025MEDIUMInteger Overflow or Wraparound in BT ControllerEPSS 0.1%CVE-2024-31333HIGHIn _MMU_AllocLevel of mmu_common.c, there is a possible arbitrary code execution due to an integer overflow. This could lead to local escalaEPSS 0.1%CVE-2026-56889MEDIUMIn multiple locations, there is a possible permission bypass due to an integer overflow. This could lead to local escalation of privilege wiEPSS 0.1%CVE-2025-47364MEDIUMInteger Overflow or Wraparound in AutomotiveEPSS 0.1%CVE-2025-47363MEDIUMInteger Overflow or Wraparound in AutomotiveEPSS 0.1%CVE-2023-20602MEDIUMIn ged, there is a possible out of bounds write due to an integer overflow. This could lead to local escalation of privilege with System exeEPSS 0.1%CVE-2026-55351HIGHIn VPU, there is a possible out-of-bounds write due to an integer overflow. This could lead to local escalation of privilege with no additioEPSS 0.1%