Skip to main content

Over 150 LLM Providers · Over 5,300 Models The most extensible AI-powered pentesting platform. Open source. Star on GitHub

CWE-190

MITRE ↗

Integer Overflow or Wraparound

404
CRITICAL
1,945
HIGH
769
MEDIUM
87
LOW
3,248 CVEs · Page 50/65
7.8
CVE-2017-15818

In all android releases (Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, while loadin

7.8
CVE-2017-15828

In all android releases (Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, while access

7.8
CVE-2018-11826

In all android releases (Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, lack of chec

7.8
CVE-2018-11886

In all android releases (Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, lack of chec

7.8
CVE-2018-11894

In all android releases (Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, while proces

7.8
CVE-2018-11292

In Snapdragon (Automobile, Mobile, Wear) in version MDM9206, MDM9607, MDM9640, MDM9650, MSM8909W, MSM8996AU, QCA6574AU,

7.8
CVE-2018-14634 KEV

An integer overflow flaw was found in the Linux kernel's create_elf_tables() function. An unprivileged local user with a

7.8
CVE-2018-9473

In ihevcd_parse_sei_payload of ihevcd_parse_headers.c, there is a possible out-of-bounds write due to an integer overflo

7.8
CVE-2018-9491

In AMediaCodecCryptoInfo_new of NdkMediaCodec.cpp, there is a possible out-of-bounds write due to an integer overflow. T

7.8
CVE-2018-9498

In SkSampler::Fill of SkSampler.cpp, there is a possible out of bounds write due to an integer overflow. This could lead

7.8
CVE-2018-18483

The get_count function in cplus-dem.c in GNU libiberty, as distributed in GNU Binutils 2.31, allows remote attackers to

7.8
CVE-2017-18172

In a device, with screen size 1440x2560, the check of contiguous buffer will overflow on certain buffer size resulting i

7.8
CVE-2018-11821

Possible integer overflow may happen in WLAN during memory allocation in Snapdragon Mobile, Snapdragon Wear in version I

7.8
CVE-2018-11822

A possible integer overflow may happen in WLAN during memory allocation in Snapdragon Mobile in version SD 835, SD 845,

7.8
CVE-2018-11865

Integer overflow may happen when calculating an internal structure size due to lack of validation of the input length in

7.8
CVE-2018-11866

Integer overflow may happen in WLAN when calculating an internal structure size due to lack of validation of the input l

7.8
CVE-2018-11879

When the buffer length passed is very large, bounds check could be bypassed leading to potential buffer overwrite in Sna

7.8
CVE-2018-11260

In all android releases(Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, while process

7.8
CVE-2018-11985

In all android releases(Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, When allocati

7.8
CVE-2018-1000876

binutils version 2.32 and earlier contains a Integer Overflow vulnerability in objdump, bfd_get_dynamic_reloc_upper_boun

7.6
CVE-2018-10893

Multiple integer overflow and buffer overflow issues were discovered in spice-client's handling of LZ compressed frames.

7.5
CVE-2017-1000470

EmbedThis GoAhead Webserver versions 4.0.0 and earlier is vulnerable to an integer overflow in the HTTP listener resulti

7.5
CVE-2018-5709

An issue was discovered in MIT Kerberos 5 (aka krb5) through 1.16. There is a variable "dbentry->n_key_data" in kadmin/d

7.5
CVE-2017-15343

Huawei AR3200 with software V200R006C10, V200R006C11, V200R007C00, V200R007C01, V200R007C02, V200R008C00, V200R008C10, V

7.5
CVE-2017-15344

Huawei AR3200 with software V200R006C10, V200R006C11, V200R007C00, V200R007C01, V200R007C02, V200R008C00, V200R008C10, V

7.5
CVE-2018-1000098

Teluu PJSIP version 2.7.1 and earlier contains a Integer Overflow vulnerability in pjmedia SDP parsing that can result i

7.5
CVE-2018-1000127

memcached version prior to 1.4.37 contains an Integer Overflow vulnerability in items.c:item_free() that can result in d

7.5
CVE-2018-6917

In FreeBSD before 11.1-STABLE, 11.1-RELEASE-p9, 10.4-STABLE, 10.4-RELEASE-p8 and 10.3-RELEASE-p28, insufficient validati

7.5
CVE-2018-1084

corosync before version 2.4.4 is vulnerable to an integer overflow in exec/totemcrypto.c.

7.5
CVE-2018-10299

An integer overflow in the batchTransfer function of a smart contract implementation for Beauty Ecosystem Coin (BEC), th

7.5
CVE-2018-10376

An integer overflow in the transferProxy function of a smart contract implementation for SmartMesh (aka SMT), an Ethereu

7.5
CVE-2018-10706

An integer overflow in the transferMulti function of a smart contract implementation for Social Chain (SCA), an Ethereum

7.5
CVE-2018-10973

An integer overflow in the transferMulti function of a smart contract implementation for KoreaShow, an Ethereum ERC20 to

7.5
CVE-2018-11239

An integer overflow in the _transfer function of a smart contract implementation for Hexagon (HXG), an Ethereum ERC20 to

7.5
CVE-2018-12617

qmp_guest_file_read in qga/commands-posix.c and qga/commands-win32.c in qemu-ga (aka QEMU Guest Agent) in QEMU 2.12.50 h

7.5
CVE-2018-11446

The buy function of a smart contract implementation for Gold Reward (GRX), an Ethereum ERC20 token, allows a potential t

7.5
CVE-2018-12062

The sell function of a smart contract implementation for SwftCoin (SWFTC), a tradable Ethereum ERC20 token, allows a pot

7.5
CVE-2018-12063

The sell function of a smart contract implementation for Internet Node Token (INT), a tradable Ethereum ERC20 token, all

7.5
CVE-2018-12067

The sell function of a smart contract implementation for Substratum (SUB), a tradable Ethereum ERC20 token, allows a pot

7.5
CVE-2018-12068

The sell function of a smart contract implementation for Target Coin (TGT), a tradable Ethereum ERC20 token, allows a po

7.5
CVE-2018-12070

The sell function of a smart contract implementation for SEC, a tradable Ethereum ERC20 token, allows a potential trap t

7.5
CVE-2018-13041

The mint function of a smart contract implementation for Link Platform (LNK), an Ethereum ERC20 token, has an integer ov

7.5
CVE-2018-13068

The mintToken function of a smart contract implementation for AzurionToken (AZU), an Ethereum token, has an integer over

7.5
CVE-2018-13069

The mintToken function of a smart contract implementation for DYchain (DYC), an Ethereum token, has an integer overflow

7.5
CVE-2018-13070

The mintToken function of a smart contract implementation for EncryptedToken (ECC), an Ethereum token, has an integer ov

7.5
CVE-2018-13071

The mintToken function of a smart contract implementation for CCindex10 (T10), an Ethereum token, has an integer overflo

7.5
CVE-2018-13072

The mintToken function of a smart contract implementation for Coffeecoin (COFFEE), an Ethereum token, has an integer ove

7.5
CVE-2018-13073

The mintToken function of a smart contract implementation for ETHEREUMBLACK (ETCBK), an Ethereum token, has an integer o

7.5
CVE-2018-13074

The mintToken function of a smart contract implementation for FIBToken (FIB), an Ethereum token, has an integer overflow

7.5
CVE-2018-13075

The mintToken function of a smart contract implementation for Carbon Exchange Coin Token (CEC), an Ethereum token, has a

Frequently Asked Questions

What is CWE-190?

CWE-190 (Integer Overflow or Wraparound) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.

How many CVEs are classified as CWE-190?

There are 3,987 CVE records associated with CWE-190 in our database. Of these, 404 are critical severity, 1945 are high severity, and 769 are medium severity.

How can I protect against CWE-190 vulnerabilities?

Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-190 using AI-powered security agents.

Detect CWE-190 Vulnerabilities

CyberStrike's AI agents automatically detect integer overflow or wraparound vulnerabilities across your infrastructure.

Get Started