Unified Automation UaGateway Certificate Parsing Integer Overflow Denial-of-Service Vulnerability. This vulnerability al
dnsmasq 2.9 is vulnerable to Integer Overflow via forward_query.
TensorFlow is an end-to-end open source platform for machine learning. `array_ops.upper_bound` causes a segfault when no
Transient DOS while parsing the ML IE when a beacon with length field inside the common info of ML IE greater than the M
An issue was discovered in libexpat before 2.6.3. xmlparse.c does not reject a negative length for XML_ParseBuffer.
A malicious value of size in a structure of packed libnv can cause an integer overflow, leading to the allocation of a s
A Business Logic vulnerability in Shopkit 1.0 allows an attacker to add products with negative quantities to the shoppin
Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability
In the Linux kernel, the following vulnerability has been resolved: padata: use integer wrap around to prevent deadlock
Integer Overflow in fast_ping.c in SmartDNS Release46 allows remote attackers to cause a Denial of Service via misaligne
A vulnerability in the Modbus preprocessor of the Snort detection engine could allow an unauthenticated, remote attacker
Bitcoin Core before 0.21.0 allows a network split that is resultant from an integer overflow (calculating the time offse
Integer Overflow or Wraparound vulnerability in Cesanta Mongoose Web Server v7.14 allows an attacker to send an unexpect
An issue was discovered in MBed OS 6.16.0. During processing of HCI packets, the software dynamically determines the len
Transient DOS while parsing the ML IE when a beacon with common info length of the ML IE greater than the ML IE inside w
In the Linux kernel, the following vulnerability has been resolved: svcrdma: Address an integer overflow Dan Carpenter
A buffer overflow was found in Shim in the 32-bit system. The overflow happens due to an addition operation involving a
SpiceDB is an open source, Google Zanzibar-inspired database for creating and managing security-critical application per
In Eclipse ThreadX before 6.4.0, xQueueCreate() and xQueueCreateSet() functions from the FreeRTOS compatibility API (
Windows libarchive Remote Code Execution Vulnerability
An integer overflow vulnerability exists in the boa updateConfigIntoFlash functionality of Realtek rtl819x Jungle SDK v3
Microsoft Windows Performance Data Helper Library Remote Code Execution Vulnerability
Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability
In the Linux kernel, the following vulnerability has been resolved: mm/mremap: fix address wraparound in move_page_tabl
An integer overflow vulnerability exists in the FST_BL_GEOM parsing maxhandle functionality of GTKWave 3.3.115, when com
An integer overflow vulnerability exists in the fstReaderIterBlocks2 time_table tsec_nitems functionality of GTKWave 3.3
An integer overflow vulnerability exists in the FST fstReaderIterBlocks2 vesc allocation functionality of GTKWave 3.3.11
Multiple integer overflow vulnerabilities exist in the VZT vzt_rd_block_vch_decode times parsing functionality of GTKWav
Multiple integer overflow vulnerabilities exist in the VZT vzt_rd_block_vch_decode times parsing functionality of GTKWav
Multiple integer overflow vulnerabilities exist in the VZT vzt_rd_block_vch_decode dict parsing functionality of GTKWave
Multiple integer overflow vulnerabilities exist in the VZT vzt_rd_block_vch_decode dict parsing functionality of GTKWave
In Eclipse ThreadX NetX Duo before 6.4.0, if an attacker can control parameters of __portable_aligned_alloc() could cau
An malicious BLE device can crash BLE victim device by sending malformed gatt packet
Windows Mobile Broadband Driver Remote Code Execution Vulnerability
Windows Mobile Broadband Driver Remote Code Execution Vulnerability
Windows Mobile Broadband Driver Remote Code Execution Vulnerability
Windows Mobile Broadband Driver Remote Code Execution Vulnerability
Windows Mobile Broadband Driver Remote Code Execution Vulnerability
Windows Mobile Broadband Driver Remote Code Execution Vulnerability
Windows Mobile Broadband Driver Remote Code Execution Vulnerability
Windows Mobile Broadband Driver Remote Code Execution Vulnerability
Windows Mobile Broadband Driver Remote Code Execution Vulnerability
Secure Boot Security Feature Bypass Vulnerability
Windows Mobile Broadband Driver Elevation of Privilege Vulnerability
Memory corruption while receiving a message in Bus Socket Transport Server.
In da, there is a possible out of bounds write due to an integer overflow. This could lead to local escalation of privil
Secure Boot Security Feature Bypass Vulnerability
Memory corruption when more scan frequency list or channels are sent from the user space.
Windows Resume Extensible Firmware Interface Security Feature Bypass Vulnerability
In oemCallback of ril.cpp, there is a possible out of bounds write due to an integer overflow. This could lead to lo
Frequently Asked Questions
What is CWE-190?
CWE-190 (Integer Overflow or Wraparound) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.
How many CVEs are classified as CWE-190?
There are 3,987 CVE records associated with CWE-190 in our database. Of these, 404 are critical severity, 1945 are high severity, and 769 are medium severity.
How can I protect against CWE-190 vulnerabilities?
Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-190 using AI-powered security agents.
Detect CWE-190 Vulnerabilities
CyberStrike's AI agents automatically detect integer overflow or wraparound vulnerabilities across your infrastructure.
Get Started