Fallos del tipo CWE-190

1670 resultados

Estouro ou Envolvimento de Inteiro

Ocorre quando uma operação aritmética produz um resultado que excede a capacidade máxima (ou mínima) do tipo de dado inteiro, causando um envolvimento (wraparound) silencioso para um valor inesperado. O perigo está em decisões lógicas baseadas nesse valor corrompido — validações de tamanho, cálculos de alocação de memória ou verificações de limites falham silenciosamente.

Ejemplo

Um aplicativo valida que um tamanho de upload é menor que 2GB comparando `size < 2147483648`. Um atacante fornece um valor de 2147483648 bytes em um inteiro de 32 bits com sinal; o valor sofre wraparound para -2147483648, passa na validação, e a alocação subsequente falha ou aloca memória insuficiente, levando a corrupção de heap.

Cómo mitigar

Use verificações explícitas antes de operações: validar se a adição de dois números não vai ultrapassar o limite antes de somar, preferir tipos sem sinal quando o contexto permite valores positivos apenas, ou usar bibliotecas/linguagens com aritmética segura que lançam exceções em overflow (como Python ou linguagens modernas com verificação de bounds).

CVE-2025-55647MEDIUMAn Out-of-Memory in the mp4_mux_cenc_insert_pssh function (filters/mux_isom.c) of GPAC MP4Box v2.4 allows attackers to cause a Denial of SerEPSS 0.2%CVE-2024-52559HIGHdrm/msm/gem: prevent integer overflow in msm_ioctl_gem_submit()EPSS 0.2%CVE-2025-67125MEDIUMA signed integer overflow in docopt.cpp v0.6.2 (LeafPattern::match in docopt_private.h) when merging occurrence counters (e.g., default LONGEPSS 0.2%CVE-2024-36617MEDIUMFFmpeg n6.1.1 has an integer overflow vulnerability in the FFmpeg CAF decoder.EPSS 0.2%CVE-2023-4949HIGHMemory Corruption Vulnerability in Grub-Legacy's XFS ImplementationEPSS 0.2%CVE-2026-40250HIGHOpenEXR has integer overflow in DWA decoder outBufferEnd pointer arithmetic (missed variant of CVE-2026-34589)EPSS 0.2%CVE-2025-2295LOWPotential iSCSI R2T PDU VulnerabilityEPSS 0.2%CVE-2023-26242HIGHafu_mmio_region_get_by_offset in drivers/fpga/dfl-afu-region.c in the Linux kernel through 6.1.12 has an integer overflow.EPSS 0.2%CVE-2021-41199MEDIUMOverflow/crash in `tf.image.resize` when size is largeEPSS 0.2%CVE-2021-41198MEDIUMOverflow/crash in `tf.tile` when tiling tensor is largeEPSS 0.2%CVE-2024-35369MEDIUMIn FFmpeg version n6.1.1, specifically within the avcodec/speexdec.c module, a potential security vulnerability exists due to insufficient vEPSS 0.2%CVE-2025-7458MEDIUMSQLite integer overflow in key info allocation may lead to information disclosure.EPSS 0.2%CVE-2024-53187MEDIUMio_uring: check for overflows in io_pin_pagesEPSS 0.2%CVE-2023-27913HIGHA maliciously crafted X_B file when parsed through Autodesk® AutoCAD® 2023 can be used to cause an Integer Overflow. A malicious actor can lEPSS 0.2%CVE-2025-6196MEDIUMLibgepub: integer overflow in libgepub's epub archive handlingEPSS 0.2%CVE-2020-13603MEDIUMInteger Overflow in memory allocating functionsEPSS 0.2%CVE-2022-46720HIGHAn integer overflow was addressed with improved input validation. This issue is fixed in iOS 16.2 and iPadOS 16.2, macOS Ventura 13.1. An apEPSS 0.2%CVE-2025-43238MEDIUMAn integer overflow was addressed with improved input validation. This issue is fixed in macOS Sequoia 15.6, macOS Sonoma 14.7.7, macOS VentEPSS 0.2%CVE-2026-66757MEDIUMGimp: signed integer overflow in file-sgi (sgi-lib) causes the plugin to crash on rle sgi imagesEPSS 0.2%CVE-2026-70638HIGHllama.cpp b1886–b7445 Integer Overflow via new_1batch() in llama-android.cppEPSS 0.2%