Fallos del tipo CWE-190

1670 resultados

Estouro ou Envolvimento de Inteiro

Ocorre quando uma operação aritmética produz um resultado que excede a capacidade máxima (ou mínima) do tipo de dado inteiro, causando um envolvimento (wraparound) silencioso para um valor inesperado. O perigo está em decisões lógicas baseadas nesse valor corrompido — validações de tamanho, cálculos de alocação de memória ou verificações de limites falham silenciosamente.

Ejemplo

Um aplicativo valida que um tamanho de upload é menor que 2GB comparando `size < 2147483648`. Um atacante fornece um valor de 2147483648 bytes em um inteiro de 32 bits com sinal; o valor sofre wraparound para -2147483648, passa na validação, e a alocação subsequente falha ou aloca memória insuficiente, levando a corrupção de heap.

Cómo mitigar

Use verificações explícitas antes de operações: validar se a adição de dois números não vai ultrapassar o limite antes de somar, preferir tipos sem sinal quando o contexto permite valores positivos apenas, ou usar bibliotecas/linguagens com aritmética segura que lançam exceções em overflow (como Python ou linguagens modernas com verificação de bounds).

CVE-2023-24288LOWAn issue in Portable Puzzle Collection before 20230116.5782e29 allows attackers to cause a Denial of Service (DoS) via creating an excessiveEPSS 0.1%CVE-2026-15551MEDIUMSamsung rlottie: Numeric truncation in gray_hline() leads to heap-based buffer overflow when rendering a crafted Lottie animation at native canvas sizeEPSS 0.1%CVE-2023-43530MEDIUMInteger Overflow or Wraparound in HLOSEPSS 0.1%CVE-2025-15584MEDIUMEndpoint DLP Driver Filter Communication Port Integer OverflowEPSS 0.1%CVE-2026-0095HIGHIn l2c_fcr_clone_buf of l2c_fcr.cc, there is a possible way to trigger controlled heap corruption within the privileged Bluetooth process duEPSS 0.1%CVE-2025-48637HIGHIn multiple functions of mem_protect.c, there is a possible out of bounds write due to an integer overflow. This could lead to local escalatEPSS 0.1%CVE-2026-41977MEDIUMDoS vulnerability in the log service. Impact: Successful exploitation of this vulnerability may affect availability.EPSS 0.1%CVE-2024-23695HIGHIn CacheOpPMRExec of cache_km.c, there is a possible out of bounds write due to an integer overflow. This could lead to local escalation of EPSS 0.1%CVE-2024-33022HIGHInteger Overflow or Wraparound in Automotive GPUEPSS 0.1%CVE-2026-21366HIGHInteger Overflow or Wraparound in Data Network Stack & ConnectivityEPSS 0.1%CVE-2026-88035MEDIUMHeap buffer overflow via wrapped size check during SASL username canonicalization in MongoDB C DriverEPSS 0.1%CVE-2023-43545MEDIUMInteger Overflow or Wraparound in WLAN HOSTEPSS 0.1%CVE-2021-26380LOWA compromised Trusted OS (TOS) driver could issue a malformed call that could potentially allow memory access outside the intended range reEPSS 0.1%CVE-2024-53025MEDIUMInteger Overflow or Wraparound in BT ControllerEPSS 0.1%CVE-2024-31333HIGHIn _MMU_AllocLevel of mmu_common.c, there is a possible arbitrary code execution due to an integer overflow. This could lead to local escalaEPSS 0.1%CVE-2026-56889MEDIUMIn multiple locations, there is a possible permission bypass due to an integer overflow. This could lead to local escalation of privilege wiEPSS 0.1%CVE-2025-47364MEDIUMInteger Overflow or Wraparound in AutomotiveEPSS 0.1%CVE-2025-47363MEDIUMInteger Overflow or Wraparound in AutomotiveEPSS 0.1%CVE-2023-20602MEDIUMIn ged, there is a possible out of bounds write due to an integer overflow. This could lead to local escalation of privilege with System exeEPSS 0.1%CVE-2026-55351HIGHIn VPU, there is a possible out-of-bounds write due to an integer overflow. This could lead to local escalation of privilege with no additioEPSS 0.1%