Fallos del tipo CWE-190

1670 resultados

Estouro ou Envolvimento de Inteiro

Ocorre quando uma operação aritmética produz um resultado que excede a capacidade máxima (ou mínima) do tipo de dado inteiro, causando um envolvimento (wraparound) silencioso para um valor inesperado. O perigo está em decisões lógicas baseadas nesse valor corrompido — validações de tamanho, cálculos de alocação de memória ou verificações de limites falham silenciosamente.

Ejemplo

Um aplicativo valida que um tamanho de upload é menor que 2GB comparando `size < 2147483648`. Um atacante fornece um valor de 2147483648 bytes em um inteiro de 32 bits com sinal; o valor sofre wraparound para -2147483648, passa na validação, e a alocação subsequente falha ou aloca memória insuficiente, levando a corrupção de heap.

Cómo mitigar

Use verificações explícitas antes de operações: validar se a adição de dois números não vai ultrapassar o limite antes de somar, preferir tipos sem sinal quando o contexto permite valores positivos apenas, ou usar bibliotecas/linguagens com aritmética segura que lançam exceções em overflow (como Python ou linguagens modernas com verificação de bounds).

CVE-2026-65413MEDIUMAn integer overflow was addressed with improved input validation. This issue is fixed in macOS Golden Gate 27, macOS Sequoia 15.8, macOS TahEPSS 0.2%CVE-2026-21347HIGHBridge | Integer Overflow or Wraparound (CWE-190)EPSS 0.2%CVE-2026-20025MEDIUMA vulnerability in the OSPF protocol of Cisco Secure Firewall ASA Software and Cisco Secure FTD Software could allow an authenticated, adjacEPSS 0.2%CVE-2022-50399HIGHmedia: atomisp: prevent integer overflow in sh_css_set_black_frame()EPSS 0.2%CVE-2021-22556MEDIUMInteger Overflow in Fuchsia KernelEPSS 0.2%CVE-2025-6603MEDIUMcoldfunction qCUDA qcow.c qcow_make_empty integer overflowEPSS 0.2%CVE-2022-49750MEDIUMcpufreq: CPPC: Add u64 casts to avoid overflowingEPSS 0.2%CVE-2022-47451MEDIUMIn wlan driver, there is a possible missing params check. This could lead to local denial of service in wlan services.EPSS 0.2%CVE-2026-2809MEDIUMEndpoint DLP Driver DLLEPSS 0.2%CVE-2026-6192MEDIUMuclouvain openjpeg pi.c opj_pi_initialise_encode integer overflowEPSS 0.2%CVE-2026-3707MEDIUMMrNanko webp4j gif_decoder.c DecodeGifFromMemory integer overflowEPSS 0.2%CVE-2026-57965MEDIUMSpice-vdagent: integer overflow in udscs_write() leading to heap buffer overflowEPSS 0.2%CVE-2026-47251MEDIUMlibheif has an incomplete fix for CVE-2026-3949: integer overflow bypass in vvdec_push_data2EPSS 0.2%CVE-2026-84517MEDIUMAn integer overflow was addressed with improved input validation. This issue is fixed in macOS Golden Gate 27, macOS Sequoia 15.8, macOS TahEPSS 0.2%CVE-2024-36336HIGHInteger overflow within the AMD NPU Driver could allow a local attacker to write out of bounds, potentially leading to a loss of confidentiaEPSS 0.2%CVE-2024-36337HIGHInteger overflow within AMD NPU Driver could allow a local attacker to write out of bounds, potentially leading to loss of confidentiality, EPSS 0.2%CVE-2026-42308MEDIUMPillow: Integer overflow when processing fontsEPSS 0.2%CVE-2026-44983HIGHsmallbitvec: Safe API Triggered Heap Buffer Overflow via Integer OverflowEPSS 0.2%CVE-2024-36316MEDIUMThe integer overflow vulnerability within AMD Graphics driver could allow an attacker to bypass size checks potentially resulting in a deniaEPSS 0.2%CVE-2026-39824LOWInvoking integer overflow in NewNTUnicodeString in golang.org/x/sys/windowsEPSS 0.2%