Fallos del tipo CWE-190

1670 resultados

Estouro ou Envolvimento de Inteiro

Ocorre quando uma operação aritmética produz um resultado que excede a capacidade máxima (ou mínima) do tipo de dado inteiro, causando um envolvimento (wraparound) silencioso para um valor inesperado. O perigo está em decisões lógicas baseadas nesse valor corrompido — validações de tamanho, cálculos de alocação de memória ou verificações de limites falham silenciosamente.

Ejemplo

Um aplicativo valida que um tamanho de upload é menor que 2GB comparando `size < 2147483648`. Um atacante fornece um valor de 2147483648 bytes em um inteiro de 32 bits com sinal; o valor sofre wraparound para -2147483648, passa na validação, e a alocação subsequente falha ou aloca memória insuficiente, levando a corrupção de heap.

Cómo mitigar

Use verificações explícitas antes de operações: validar se a adição de dois números não vai ultrapassar o limite antes de somar, preferir tipos sem sinal quando o contexto permite valores positivos apenas, ou usar bibliotecas/linguagens com aritmética segura que lançam exceções em overflow (como Python ou linguagens modernas com verificação de bounds).

CVE-2026-34333HIGHWindows Win32k Elevation of Privilege VulnerabilityEPSS 0.3%CVE-2026-61937HIGHWindows HTTP.sys Elevation of Privilege VulnerabilityEPSS 0.3%CVE-2026-69738HIGHWindows Biometric Service Elevation of Privilege VulnerabilityEPSS 0.3%CVE-2026-69707HIGHWindows USB Audio Class driver (usbaudio.sys) Elevation of Privilege VulnerabilityEPSS 0.3%CVE-2026-54115HIGHWindows Message Queuing (MSMQ) Elevation of Privilege VulnerabilityEPSS 0.3%CVE-2026-69298HIGHWindows Biometric Service Elevation of Privilege VulnerabilityEPSS 0.3%CVE-2026-45593HIGHWindows SDK Elevation of Privilege VulnerabilityEPSS 0.3%CVE-2026-34330HIGHWin32k Elevation of Privilege VulnerabilityEPSS 0.3%CVE-2026-72995HIGHWindows Biometric Service Elevation of Privilege VulnerabilityEPSS 0.3%CVE-2026-45592HIGHWindows Internet (wininet.dll) Elevation of Privilege VulnerabilityEPSS 0.3%CVE-2026-48486HIGHSignum Node: Integer overflow in SMART_FEES fee distribution allows arbitrary miner reward inflationEPSS 0.3%CVE-2026-59127HIGHWindows Installer Elevation of Privilege VulnerabilityEPSS 0.3%CVE-2026-49800HIGHWindows Web Proxy Auto-Discovery Protocol (WPAD) Elevation of Privilege VulnerabilityEPSS 0.3%CVE-2026-62735HIGHWindows HTTP.sys Elevation of Privilege VulnerabilityEPSS 0.3%CVE-2026-69584HIGHWindows USB Video Driver Elevation of Privilege VulnerabilityEPSS 0.3%CVE-2025-49179HIGHXorg-x11-server-xwayland: xorg-x11-server: tigervnc: integer overflow in x record extensionEPSS 0.3%CVE-2026-46463MEDIUMDell PowerProtect Data Domain, versions 7.7.1.0 through 8.7, LTS2026 release version 8.6.1.0 through 8.6.1.10, LTS2025 release version 8.3.1EPSS 0.3%CVE-2026-53910LOWHeap-based Buffer Overflow in GNU diffutilsEPSS 0.3%CVE-2026-59088MEDIUMGimp: gimp: denial of service via signed integer overflow in fli file processingEPSS 0.3%CVE-2026-18300HIGHGIMP HDR File Parsing Integer Overflow Remote Code Execution VulnerabilityEPSS 0.3%