Fallos del tipo CWE-190

1670 resultados

Estouro ou Envolvimento de Inteiro

Ocorre quando uma operação aritmética produz um resultado que excede a capacidade máxima (ou mínima) do tipo de dado inteiro, causando um envolvimento (wraparound) silencioso para um valor inesperado. O perigo está em decisões lógicas baseadas nesse valor corrompido — validações de tamanho, cálculos de alocação de memória ou verificações de limites falham silenciosamente.

Ejemplo

Um aplicativo valida que um tamanho de upload é menor que 2GB comparando `size < 2147483648`. Um atacante fornece um valor de 2147483648 bytes em um inteiro de 32 bits com sinal; o valor sofre wraparound para -2147483648, passa na validação, e a alocação subsequente falha ou aloca memória insuficiente, levando a corrupção de heap.

Cómo mitigar

Use verificações explícitas antes de operações: validar se a adição de dois números não vai ultrapassar o limite antes de somar, preferir tipos sem sinal quando o contexto permite valores positivos apenas, ou usar bibliotecas/linguagens com aritmética segura que lançam exceções em overflow (como Python ou linguagens modernas com verificação de bounds).

CVE-2022-4398MEDIUMInteger Overflow or Wraparound in radareorg/radare2EPSS 0.3%CVE-2025-14181MEDIUMInteger overflow to buffer overflow in soap HTTP parsingEPSS 0.3%CVE-2026-69594HIGHMicrosoft Local Security Authority (LSA) Server Elevation of Privilege VulnerabilityEPSS 0.3%CVE-2026-69407HIGHVolume Manager Driver Elevation of Privilege VulnerabilityEPSS 0.3%CVE-2025-68431MEDIUMlibheif has Potential Heap Buffer Over-ReadEPSS 0.3%CVE-2025-12818MEDIUMPostgreSQL libpq undersizes allocations, via integer wraparoundEPSS 0.3%CVE-2026-18306HIGHGIMP SGI File Parsing Integer Overflow Remote Code Execution VulnerabilityEPSS 0.3%CVE-2022-42805HIGHAn integer overflow was addressed with improved input validation. This issue is fixed in iOS 15.6 and iPadOS 15.6, macOS Monterey 12.5. An aEPSS 0.3%CVE-2026-18308HIGHGIMP TIF File Parsing Integer Overflow Remote Code Execution VulnerabilityEPSS 0.3%CVE-2026-18301HIGHGIMP PSD File Parsing Integer Overflow Remote Code Execution VulnerabilityEPSS 0.3%CVE-2026-30910HIGHCrypt::Sodium::XS versions through 0.001000 for Perl has potential integer overflowsEPSS 0.3%CVE-2026-49346HIGHlibde265 has a heap buffer overflow in de265_image_get_buffer via SPS dimension integer overflowEPSS 0.3%CVE-2026-65799MEDIUMWindows DNS Elevation of Privilege VulnerabilityEPSS 0.3%CVE-2023-45854HIGHA Business Logic vulnerability in Shopkit 1.0 allows an attacker to add products with negative quantities to the shopping cart via the qtd pEPSS 0.3%CVE-2026-24830CRITICALInteger Overflow or Wraparound in IronOSEPSS 0.3%CVE-2026-11378HIGHIBM MQ queue manager is vulnerable to remote code executionEPSS 0.3%CVE-2026-16402CRITICALInteger overflow in the Graphics: ImageLib componentEPSS 0.3%CVE-2026-16395CRITICALInteger overflow in the Audio/Video componentEPSS 0.3%CVE-2024-41851HIGHAdobe InDesign (Beta) has an integer overflow vulnerability when parsing SVG fileEPSS 0.3%CVE-2025-59942HIGHgo-f3 module vulnerable to integer overflow leading to panicEPSS 0.3%