Fallos del tipo CWE-190

1670 resultados

Estouro ou Envolvimento de Inteiro

Ocorre quando uma operação aritmética produz um resultado que excede a capacidade máxima (ou mínima) do tipo de dado inteiro, causando um envolvimento (wraparound) silencioso para um valor inesperado. O perigo está em decisões lógicas baseadas nesse valor corrompido — validações de tamanho, cálculos de alocação de memória ou verificações de limites falham silenciosamente.

Ejemplo

Um aplicativo valida que um tamanho de upload é menor que 2GB comparando `size < 2147483648`. Um atacante fornece um valor de 2147483648 bytes em um inteiro de 32 bits com sinal; o valor sofre wraparound para -2147483648, passa na validação, e a alocação subsequente falha ou aloca memória insuficiente, levando a corrupção de heap.

Cómo mitigar

Use verificações explícitas antes de operações: validar se a adição de dois números não vai ultrapassar o limite antes de somar, preferir tipos sem sinal quando o contexto permite valores positivos apenas, ou usar bibliotecas/linguagens com aritmética segura que lançam exceções em overflow (como Python ou linguagens modernas com verificação de bounds).

CVE-2025-20024LOWArkcompiler Ets Runtime has an integer overflow vulnerabilityEPSS 0.2%CVE-2025-0302MEDIUMLiteos_a has an integer overflow read vulnerabilityEPSS 0.2%CVE-2026-0031HIGHIn multiple functions of mem_protect.c, there is a possible out of bounds write due to an integer overflow. This could lead to local escalatEPSS 0.2%CVE-2023-31034MEDIUMCVEEPSS 0.2%CVE-2026-28729LOWInteger overflow in the UEFI firmware for the Intel(R) Slim Bootloader may allow an information disclosure. System software adversary with aEPSS 0.1%CVE-2021-46750LOWFailure to validate the address and size in TEE (Trusted Execution Environment) may allow a malicious x86 attacker to send malformed messageEPSS 0.1%CVE-2026-76149MEDIUMCorvusSKK contains an integer overflow vulnerability, which may allow malicious data to be written to a dictionary file.EPSS 0.1%CVE-2026-56363MEDIUMImageMagick - Division by Zero in Binomial Kernel ProcessingEPSS 0.1%CVE-2021-26377MEDIUMInsufficient parameter validation while allocating process space in the Trusted OS (TOS) may allow for a malicious userspace process to trigEPSS 0.1%CVE-2026-30935MEDIUMImageMagick has a heap Buffer Over-Read in BilateralBlurImageEPSS 0.1%CVE-2026-17091HIGHPower System Integer OverflowEPSS 0.1%CVE-2026-49510MEDIUMInteger overflow or wraparound vulnerability in Samsung Open Source rlottie allows Integer Attacks. This issue affects rlottie: before 2129EPSS 0.1%CVE-2026-43788MEDIUMAn integer overflow was addressed with improved input validation. This issue is fixed in macOS Golden Gate 27. Processing a maliciously crafEPSS 0.1%CVE-2026-34238MEDIUMImageMagick: Integer overflow in despeckle operation causes heap buffer overflow on 32-bit buildsEPSS 0.1%CVE-2026-34353MEDIUMIn OCaml through 4.14.3, Bigarray.reshape allows an integer overflow, and resultant reading of arbitrary memory, when untrusted data is procEPSS 0.1%CVE-2026-54679MEDIUMjq: potential integer overflow in jvp_string_appendEPSS 0.1%CVE-2026-1464MEDIUMA possible integer overflow vulnerability in RawTherapee/RawTherapeeEPSS 0.1%CVE-2026-73074HIGHVim: Heap Buffer Overflow in Text Property HandlingEPSS 0.1%CVE-2026-70628HIGHFFmpeg 0.5 < 9.0 DVB Subtitle Parser Heap Buffer Overflow via WTV FileEPSS 0.1%CVE-2024-1633LOWFIP Header Integer OverflowEPSS 0.1%