Fallos del tipo CWE-190

1670 resultados

Estouro ou Envolvimento de Inteiro

Ocorre quando uma operação aritmética produz um resultado que excede a capacidade máxima (ou mínima) do tipo de dado inteiro, causando um envolvimento (wraparound) silencioso para um valor inesperado. O perigo está em decisões lógicas baseadas nesse valor corrompido — validações de tamanho, cálculos de alocação de memória ou verificações de limites falham silenciosamente.

Ejemplo

Um aplicativo valida que um tamanho de upload é menor que 2GB comparando `size < 2147483648`. Um atacante fornece um valor de 2147483648 bytes em um inteiro de 32 bits com sinal; o valor sofre wraparound para -2147483648, passa na validação, e a alocação subsequente falha ou aloca memória insuficiente, levando a corrupção de heap.

Cómo mitigar

Use verificações explícitas antes de operações: validar se a adição de dois números não vai ultrapassar o limite antes de somar, preferir tipos sem sinal quando o contexto permite valores positivos apenas, ou usar bibliotecas/linguagens com aritmética segura que lançam exceções em overflow (como Python ou linguagens modernas com verificação de bounds).

CVE-2025-24324LOWInteger overflow or wraparound in the Linux kernel-mode driver for some Intel(R) 800 Series Ethernet before version 1.17.2 may allow an authEPSS 0.1%CVE-2022-44432MEDIUMIn wlan driver, there is a possible missing bounds check. This could lead to local denial of service in wlan services.EPSS 0.1%CVE-2022-44426MEDIUMIn wlan driver, there is a possible missing bounds check. This could lead to local denial of service in wlan services.EPSS 0.1%CVE-2023-33038MEDIUMInteger Overflow or Wraparound in Radio Interface LayerEPSS 0.1%CVE-2022-44425MEDIUMIn wlan driver, there is a possible missing bounds check. This could lead to local denial of service in wlan services.EPSS 0.1%CVE-2022-42765MEDIUMIn wlan driver, there is a possible missing bounds check, This could lead to local denial of service in wlan services.EPSS 0.1%CVE-2023-28537HIGHInteger Overflow or Wraparound in AudioEPSS 0.1%CVE-2022-33269CRITICALInteger overflow or wraparound in CoreEPSS 0.1%CVE-2022-40532HIGHInteger overflow or wraparound in WLANEPSS 0.1%CVE-2023-22666HIGHInteger Overflow or Wraparound in AudioEPSS 0.1%CVE-2023-22667HIGHInteger Overflow or Wraparound in AudioEPSS 0.1%CVE-2026-96674MEDIUMalsa-lib through 1.2.16.1 Integer Overflow via Topology FileEPSS 0.1%CVE-2023-21655MEDIUMInteger Overflow or Wraparound in DisplayEPSS 0.1%CVE-2022-33266MEDIUMInteger overflow to buffer overflow in AudioEPSS 0.1%CVE-2026-96611MEDIUMFFmpeg before 9.0 has a signed integer overflow in libavformat/mov.c. In mov_read_ispe(), uint32_t width/height values from a crafted HEIF iEPSS 0.1%CVE-2023-31365LOWAn integer overflow in the SMU could allow a privileged attacker to potentially write memory beyond the end of the reserved dRAM area resultEPSS 0.1%CVE-2022-42767MEDIUMIn wlan driver, there is a possible missing bounds check, This could lead to local denial of service in wlan services.EPSS 0.1%CVE-2026-16890LOWVulnerabilities in IBM AIX and PowerVM VIOSEPSS 0.1%CVE-2023-24288LOWAn issue in Portable Puzzle Collection before 20230116.5782e29 allows attackers to cause a Denial of Service (DoS) via creating an excessiveEPSS 0.1%CVE-2024-45575HIGHInteger Overflow or Wraparound in Camera DriverEPSS 0.1%