A set of carefully crafted ipv6 packets can trigger an integer overflow in the calculation of a fragment reassembled pac
Microsoft Message Queuing Information Disclosure Vulnerability
The Rockwell Automation Thinmanager Thinserver is impacted by an improper input validation vulnerability, an integer ove
NTSC-CRT 2.2.1 has an integer overflow and out-of-bounds write in loadBMP in bmp_rw.c because a file's width, height, an
The web server Tengine 2.2.2 developed in the Nginx version from 0.5.6 thru 1.13.2 is vulnerable to an integer overflow
The OPC UA implementations (ANSI C and C++) in affected products contain an integer overflow vulnerability that could ca
In a non-standard configuration of Firefox, an integer overflow could have occurred based on network traffic (possibly u
Eclipse Jetty provides a web server and servlet container. In versions 11.0.0 through 11.0.15, 10.0.0 through 10.0.15, a
Windows Deployment Services Denial of Service Vulnerability
An integer overflow vulnerability in the source code of the QuickSec IPSec toolkit used in the VPN feature of the Zyxel
Transient DOS in Bluetooth Host while rfc slot allocation.
Apache Guacamole 1.5.3 and older do not consistently ensure that values received from a VNC server will not result in in
Matrix SSL 4.x through 4.6.0 and Rambus TLS Toolkit have a length-subtraction integer overflow for Client Hello Pre-Shar
Texas Instruments TI-RTOS, when configured to use HeapMem heap(default), malloc returns a valid pointer to a smal
Texas Instruments TI-RTOS returns a valid pointer to a small buffer on extremely large values. This can trigger an inte
Texas Instruments TI-RTOS, when configured to use HeapMem heap(default), malloc returns a valid pointer to a small buff
Texas Instruments devices running FREERTOS, malloc returns a valid pointer to a small buffer on extremely large values,
Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability
stb_vorbis is a single file MIT licensed library for processing ogg vorbis files. A crafted file may trigger memory writ
Microsoft Remote Registry Service Remote Code Execution Vulnerability
GPAC MP4box 2.1-DEV-rev574-g9d5bb184b is contains an Integer overflow vulnerability in gf_hevc_read_sps_bs_internal func
NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel mode layer, where an unprivileged user can c
Windows Point-to-Point Protocol over Ethernet (PPPoE) Elevation of Privilege Vulnerability
Windows Authentication Elevation of Privilege Vulnerability
An issue was discovered in Samsung Exynos Mobile Processor and Baseband Modem Processor for Exynos 1280, Exynos 2200, an
In ged, there is a possible out of bounds write due to an integer overflow. This could lead to local escalation of privi
In fdt_next_tag of fdt.c, there is a possible out of bounds write due to an integer overflow. This could lead to local e
In wlan, there is a possible out of bounds write due to an integer overflow. This could lead to local escalation of priv
In wlan, there is a possible out of bounds write due to an integer overflow. This could lead to local escalation of priv
In wlan, there is a possible out of bounds write due to an integer overflow. This could lead to local escalation of priv
In wlan, there is a possible out of bounds write due to an integer overflow. This could lead to local escalation of priv
In keyinstall, there is a possible out of bounds write due to an integer overflow. This could lead to local escalation o
In keyinstall, there is a possible out of bounds write due to an integer overflow. This could lead to local escalation o
Memory corruption in RIL due to Integer Overflow while triggering qcril_uim_request_apdu request.
Memory corruption in Audio while validating and mapping metadata.
In rpmb , there is a possible memory corruption due to a missing bounds check. This could lead to local escalation of pr
In vpu, there is a possible out of bounds write due to an integer overflow. This could lead to local escalation of privi
In apusys, there is a possible out of bounds write due to an integer overflow. This could lead to local escalation of pr
In the Security Element API, there is a possible out of bounds write due to an integer overflow. This could lead to loca
In Secure Element, there is a possible out of bounds write due to an integer overflow. This could lead to local escalati
Integer overflow vulnerability in detectionFindFaceSupportMultiInstance of libFacePreProcessingjni.camera.samsung.so pri
Integer overflow vulnerability in landmarkCopyImageToNative of libFacePreProcessingjni.camera.samsung.so prior to SMR De
Integer Overflow or Wraparound vulnerability in apr_base64 functions of Apache Portable Runtime Utility (APR-util) allow
Libelfin v0.3 was discovered to contain an integer overflow in the load function at elf/mmap_loader.cc. This vulnerabili
Microsoft PostScript and PCL6 Class Printer Driver Information Disclosure Vulnerability
Microsoft PostScript and PCL6 Class Printer Driver Information Disclosure Vulnerability
TensorFlow is an open source platform for machine learning. Prior to versions 2.12.0 and 2.11.1, integer overflow occurs
This vulnerability allows network-adjacent attackers to disclose sensitive information on affected installations of Sono
Prior to version v1.20230419.0, the FormData API implementation was subject to an integer overflow. If a FormData instan
Remote Procedure Call Runtime Denial of Service Vulnerability
Frequently Asked Questions
What is CWE-190?
CWE-190 (Integer Overflow or Wraparound) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.
How many CVEs are classified as CWE-190?
There are 3,987 CVE records associated with CWE-190 in our database. Of these, 404 are critical severity, 1945 are high severity, and 769 are medium severity.
How can I protect against CWE-190 vulnerabilities?
Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-190 using AI-powered security agents.
Detect CWE-190 Vulnerabilities
CyberStrike's AI agents automatically detect integer overflow or wraparound vulnerabilities across your infrastructure.
Get Started