Skip to main content

Over 150 LLM Providers · Over 5,300 Models The most extensible AI-powered pentesting platform. Open source. Star on GitHub

CWE-190

MITRE ↗

Integer Overflow or Wraparound

404
CRITICAL
1,945
HIGH
769
MEDIUM
87
LOW
3,248 CVEs · Page 25/65
8.4
CVE-2022-40532

Memory corruption due to integer overflow or wraparound in WLAN while sending WMI cmd from host to target.

8.4
CVE-2023-21630

Memory Corruption in Multimedia Framework due to integer overflow when synx bind is called along with synx signal.

8.4
CVE-2023-22667

Memory Corruption in Audio while allocating the ion buffer during the music playback.

8.4
CVE-2023-22666

Memory Corruption in Audio while playing amrwbplus clips with modified content.

8.4
CVE-2023-28537

Memory corruption while allocating memory in COmxApeDec module in Audio.

8.4
CVE-2023-33022

Memory corruption in HLOS while invoking IOCTL calls from user-space.

8.4
CVE-2023-33107 KEV

Memory corruption in Graphics Linux while assigning shared virtual memory region during IOCTL call.

8.3
CVE-2023-4424

An malicious BLE device can cause buffer overflow by sending malformed advertising packet BLE device using Zephyr OS, le

8.2
CVE-2023-37536

An integer overflow in xerces-c++ 3.2.3 in BigFix Platform allows remote attackers to cause out-of-bound access via HTTP

8.1
CVE-2022-43974

MatrixSSL 4.0.4 through 4.5.1 has an integer overflow in matrixSslDecodeTls13. A remote attacker might be able to send a

8.1
CVE-2023-23405

Remote Procedure Call Runtime Remote Code Execution Vulnerability

8.1
CVE-2023-24869

Remote Procedure Call Runtime Remote Code Execution Vulnerability

8.1
CVE-2023-24908

Remote Procedure Call Runtime Remote Code Execution Vulnerability

8.1
CVE-2023-4949

An attacker with local access to a system (either through a disk or external drive) can present a modified XFS partition

7.8
CVE-2022-47660

GPAC MP4Box 2.1-DEV-rev644-g5c4df2a67 is has an integer overflow in isomedia/isom_write.c

7.8
CVE-2023-21561

Microsoft Cryptographic Services Elevation of Privilege Vulnerability

7.8
CVE-2023-21730

Microsoft Cryptographic Services Elevation of Privilege Vulnerability

7.8
CVE-2023-21754

Windows Kernel Elevation of Privilege Vulnerability

7.8
CVE-2023-21765

Windows Print Spooler Elevation of Privilege Vulnerability

7.8
CVE-2023-23559

In rndis_query_oid in drivers/net/wireless/rndis_wlan.c in the Linux kernel through 6.1.5, there is an integer overflow

7.8
CVE-2023-21579

Adobe Acrobat Reader versions 22.003.20282 (and earlier), 22.003.20281 (and earlier) and 20.005.30418 (and earlier) are

7.8
CVE-2022-33248

Memory corruption in User Identity Module due to integer overflow to buffer overflow when a segement is received via qmi

7.8
CVE-2023-21704

Microsoft ODBC Driver for SQL Server Remote Code Execution Vulnerability

7.8
CVE-2023-21802

Windows Media Remote Code Execution Vulnerability

7.8
CVE-2023-21823 KEV

Windows Graphics Component Remote Code Execution Vulnerability

7.8
CVE-2023-26242

afu_mmio_region_get_by_offset in drivers/fpga/dfl-afu-region.c in the Linux kernel through 6.1.12 has an integer overflo

7.8
CVE-2023-22436

The kernel subsystem function check_permission_for_set_tokenid within OpenHarmony-v3.1.5 and prior versions has an UAF

7.8
CVE-2022-25705

Memory corruption in modem due to integer overflow to buffer overflow while handling APDU response

7.8
CVE-2023-23410

Windows HTTP.sys Elevation of Privilege Vulnerability

7.8
CVE-2023-23417

Windows Partition Management Driver Elevation of Privilege Vulnerability

7.8
CVE-2023-0179

A buffer overflow vulnerability was found in the Netfilter subsystem in the Linux Kernel. This issue could allow the lea

7.8
CVE-2023-25903

Adobe Dimension versions 3.4.7 (and earlier) is affected by an Integer Overflow or Wraparound vulnerability that could r

7.8
CVE-2023-28237

Windows Kernel Remote Code Execution Vulnerability

7.8
CVE-2023-28248

Windows Kernel Elevation of Privilege Vulnerability

7.8
CVE-2023-27913

A maliciously crafted X_B file when parsed through Autodesk® AutoCAD® 2023 can be used to cause an Integer Overflow. A m

7.8
CVE-2023-1900

A vulnerability within the Avira network protection feature allowed an attacker with local execution rights to cause an

7.8
CVE-2021-0872

In PVRSRVBridgeRGXKickVRDM of the PowerVR kernel driver, a missing size check means there is a possible integer overflow

7.8
CVE-2021-0873

In PVRSRVBridgeRGXKickRS of the PowerVR kernel driver, a missing size check means there is a possible integer overflow t

7.8
CVE-2021-0874

In PVRSRVBridgeDevicememHistorySparseChange of the PowerVR kernel driver, a missing size check means there is a possible

7.8
CVE-2021-0875

In PVRSRVBridgeChangeSparseMem of the PowerVR kernel driver, a missing size check means there is a possible integer over

7.8
CVE-2021-0876

In PVRSRVBridgePhysmemNewRamBackedLockedPMR of the PowerVR kernel driver, a missing size check means there is a possible

7.8
CVE-2021-0878

In PVRSRVBridgeServerSyncGetStatus of the PowerVR kernel driver, a missing size check means there is a possible integer

7.8
CVE-2021-0879

In PVRSRVBridgeRGXTDMSubmitTransfer of the PowerVR kernel driver, a missing size check means there is a possible integer

7.8
CVE-2021-0880

In PVRSRVBridgeRGXKickTA3D of the PowerVR kernel driver, a missing size check means there is a possible integer overflow

7.8
CVE-2021-0881

In PVRSRVBridgeRGXKickCDM of the PowerVR kernel driver, a missing size check means there is a possible integer overflow

7.8
CVE-2021-0882

In PVRSRVBridgeRGXKickSync of the PowerVR kernel driver, a missing size check means there is a possible integer overflow

7.8
CVE-2021-0883

In PVRSRVBridgeCacheOpQueue of the PowerVR kernel driver, a missing size check means there is a possible integer overflo

7.8
CVE-2021-0884

In PVRSRVBridgePhysmemImportSparseDmaBuf of the PowerVR kernel driver, a missing size check means there is a possible in

7.8
CVE-2021-0885

In PVRSRVBridgeSyncPrimOpTake of the PowerVR kernel driver, a missing size check means there is a possible integer overf

7.8
CVE-2023-27937

An integer overflow was addressed with improved input validation. This issue is fixed in macOS Ventura 13.3, iOS 16.4 an

Frequently Asked Questions

What is CWE-190?

CWE-190 (Integer Overflow or Wraparound) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.

How many CVEs are classified as CWE-190?

There are 3,987 CVE records associated with CWE-190 in our database. Of these, 404 are critical severity, 1945 are high severity, and 769 are medium severity.

How can I protect against CWE-190 vulnerabilities?

Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-190 using AI-powered security agents.

Detect CWE-190 Vulnerabilities

CyberStrike's AI agents automatically detect integer overflow or wraparound vulnerabilities across your infrastructure.

Get Started