NVIDIA driver contains an integer overflow vulnerability which could cause a use after free and possibly lead to an elev
In the sendFormatChange function of ACodec, there is a possible integer overflow which could lead to an out-of-bounds wr
The elf_object_p function in elfcode.h in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU B
In GNU Binutils 2.30, there's an integer overflow in the function load_specific_debug_section() in objdump.c, which resu
The futex_requeue function in kernel/futex.c in the Linux kernel before 4.14.15 might allow attackers to cause a denial
In all Qualcomm products with Android releases from CAF using the Linux kernel, in wma_unified_link_radio_stats_event_ha
In all Qualcomm products with Android releases from CAF using the Linux kernel, the num_failure_info value from firmware
In all Qualcomm products with Android releases from CAF using the Linux kernel, multiple values received from firmware a
KingView 7.5SP1 has an integer overflow during stgopenstorage API read operations.
The display_debug_ranges function in dwarf.c in GNU Binutils 2.30 allows remote attackers to cause a denial of service (
Huawei Mate 9 Pro smartphones with software LON-AL00BC00B139D; LON-AL00BC00B229 have an integer overflow vulnerability.
In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, in the p
In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, in the f
The Bdat driver of Prague smart phones with software versions earlier than Prague-AL00AC00B211, versions earlier than Pr
The perf_cpu_time_max_percent_handler function in kernel/events/core.c in the Linux kernel before 4.11 allows local user
The udl_fb_mmap function in drivers/gpu/drm/udl/udl_fb.c at the Linux kernel version 3.4 and up to and including 4.15 ha
An exploitable integer overflow exists in the upgrade of a legacy Mesh attribute of the Blender open-source 3d creation
An exploitable integer overflow exists in the 'CustomData' Mesh loading functionality of the Blender open-source 3d crea
An exploitable integer overflow exists in the 'BKE_mesh_calc_normals_tessface' functionality of the Blender open-source
An exploitable integer overflow exists in the upgrade of the legacy Mesh attribute 'tface' of the Blender open-source 3d
An exploitable integer overflow exists in the 'multires_load_old_dm' functionality of the Blender open-source 3d creatio
An exploitable integer overflow exists in the 'modifier_mdef_compact_influences' functionality of the Blender open-sourc
An exploitable integer overflow exists in the way that the Blender open-source 3d creation suite v2.78c converts curves
An exploitable integer overflow exists in the way that the Blender open-source 3d creation suite v2.78c converts text re
An exploitable integer overflow exists in the way that the Blender open-source 3d creation suite v2.78c draws a Particle
An exploitable integer overflow exists in the way that the Blender open-source 3d creation suite v2.78c applies a partic
An exploitable integer overflow exists in the TIFF loading functionality of the Blender open-source 3d creation suite ve
An exploitable integer overflow exists in the PNG loading functionality of the Blender open-source 3d creation suite ver
An exploitable integer overflow exists in the IRIS loading functionality of the Blender open-source 3d creation suite ve
An exploitable integer overflow exists in the DPX loading functionality of the Blender open-source 3d creation suite ver
An exploitable integer overflow exists in the DPX loading functionality of the Blender open-source 3d creation suite ver
An exploitable integer overflow exists in the RADIANCE loading functionality of the Blender open-source 3d creation suit
An exploitable integer overflow exists in the bmp loading functionality of the Blender open-source 3d creation suite ver
An exploitable integer overflow exists in the animation playing functionality of the Blender open-source 3d creation sui
An exploitable integer overflow exists in the animation playing functionality of the Blender open-source 3d creation sui
An exploitable integer overflow exists in the thumbnail functionality of the Blender open-source 3d creation suite versi
An exploitable integer overflow exists in the Image loading functionality of the Blender open-source 3d creation suite v
procps-ng before version 3.3.15 is vulnerable to multiple integer overflows leading to a heap corruption in file2strvec
In Android before the 2018-06-05 security patch level, NVIDIA TLK TrustZone contains a possible out of bounds write due
An issue was discovered in certain Apple products. iOS before 11.4 is affected. macOS before 10.13.5 is affected. tvOS b
The value of fix_param->num_chans is received from firmware and if it is too large, an integer overflow can occur in wma
In wma_ndp_end_response_event_handler(), the variable len_end_rsp is a uint32 which can be overflowed if the value of va
In the function wmi_set_ie(), the length validation code does not handle unsigned integer overflow properly. As a result
An integer overflow in the uvesafb_setcmap function in drivers/video/fbdev/uvesafb.c in the Linux kernel before 4.17.4 c
Integer overflow can occur in msm_pcm_adsp_stream_cmd_put() function if the user supplied data "param_length" goes beyon
Possible buffer overflow in msm_adsp_stream_callback_put due to lack of input validation of user-provided data that lead
Possible buffer overflow in msm_adsp_stream_callback_put due to lack of input validation of user-provided data that lead
In the Linux kernel before version 4.12, Kerberos 5 tickets decoded when using the RXRPC keys incorrectly assumes the si
An elevation of privilege vulnerability exists due to an integer overflow in Windows Subsystem for Linux, aka "Windows S
The ProcessGpsInfo function of the gpsinfo.c file of jhead 3.00 may allow a remote attacker to cause a denial-of-service
Frequently Asked Questions
What is CWE-190?
CWE-190 (Integer Overflow or Wraparound) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.
How many CVEs are classified as CWE-190?
There are 3,987 CVE records associated with CWE-190 in our database. Of these, 404 are critical severity, 1945 are high severity, and 769 are medium severity.
How can I protect against CWE-190 vulnerabilities?
Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-190 using AI-powered security agents.
Detect CWE-190 Vulnerabilities
CyberStrike's AI agents automatically detect integer overflow or wraparound vulnerabilities across your infrastructure.
Get Started