Skip to main content

Over 150 LLM Providers · Over 5,300 Models The most extensible AI-powered pentesting platform. Open source. Star on GitHub

CWE-191

MITRE ↗

CWE-191

65
CRITICAL
283
HIGH
153
MEDIUM
11
LOW
525 CVEs · Page 7/11
7.2
CVE-2024-26208

Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability

7.1
CVE-2022-48665

In the Linux kernel, the following vulnerability has been resolved: exfat: fix overflow for large capacity partition U

7.0
CVE-2023-39413

Multiple integer underflow vulnerabilities exist in the LXT2 lxt2_rd_iter_radix shift operation functionality of GTKWave

7.0
CVE-2023-39414

Multiple integer underflow vulnerabilities exist in the LXT2 lxt2_rd_iter_radix shift operation functionality of GTKWave

6.8
CVE-2024-0565

An out-of-bounds memory read flaw was found in receive_encrypted_standard in fs/smb/client/smb2ops.c in the SMB Client s

6.8
CVE-2024-3077

An malicious BLE device can crash BLE victim device by sending malformed gatt packet

6.8
CVE-2024-6258

BT: Missing length checks of net_buf in rfcomm_handle_data

6.8
CVE-2024-49077

Windows Mobile Broadband Driver Elevation of Privilege Vulnerability

6.5
CVE-2024-30011

Windows Hyper-V Denial of Service Vulnerability

6.5
CVE-2024-21466

Information disclosure while parsing sub-IE length during new IE generation.

5.9
CVE-2024-32975

Envoy is a cloud-native, open source edge and service proxy. There is a crash at `QuicheDataReader::PeekVarInt62Length()

5.5
CVE-2021-46951

In the Linux kernel, the following vulnerability has been resolved: tpm: efi: Use local variable for calculating final

5.5
CVE-2022-48643

In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_tables: fix nft_counters_enabled unde

5.5
CVE-2024-30008

Windows DWM Core Library Information Disclosure Vulnerability

5.5
CVE-2023-52705

In the Linux kernel, the following vulnerability has been resolved: nilfs2: fix underflow in second superblock position

5.5
CVE-2022-48804

In the Linux kernel, the following vulnerability has been resolved: vt_ioctl: fix array_index_nospec in vt_setactivate

5.5
CVE-2024-43867

In the Linux kernel, the following vulnerability has been resolved: drm/nouveau: prime: fix refcount underflow Calling

5.5
CVE-2024-50258

In the Linux kernel, the following vulnerability has been resolved: net: fix crash when config small gso_max_size/gso_i

5.5
CVE-2024-50290

In the Linux kernel, the following vulnerability has been resolved: media: cx24116: prevent overflows on SNR calculus

5.5
CVE-2024-53081

In the Linux kernel, the following vulnerability has been resolved: media: ar0521: don't overflow when checking PLL val

5.3
CVE-2024-52558

The affected product is vulnerable to an integer underflow. An unauthenticated attacker could send a malformed HTTP requ

4.3
CVE-2024-5256

Sonos Era 100 SMB2 Message Handling Integer Underflow Information Disclosure Vulnerability. This vulnerability allows ne

4.3
CVE-2024-20474

A vulnerability in Internet Key Exchange version 2 (IKEv2) processing of Cisco Secure Client Software could allow an una

4.3
CVE-2024-49103

Windows Wireless Wide Area Network Service (WwanSvc) Information Disclosure Vulnerability

9.8
CVE-2022-4338

An integer underflow in Organization Specific TLV was found in various versions of OpenvSwitch.

9.8
CVE-2023-21708

Remote Procedure Call Runtime Remote Code Execution Vulnerability

9.8
CVE-2023-28250

Windows Pragmatic General Multicast (PGM) Remote Code Execution Vulnerability

9.8
CVE-2023-32014

Windows Pragmatic General Multicast (PGM) Remote Code Execution Vulnerability

9.8
CVE-2023-38427

An issue was discovered in the Linux kernel before 6.3.8. fs/smb/server/smb2pdu.c in ksmbd has an integer underflow and

9.8
CVE-2023-32653

An out-of-bounds write vulnerability exists in the dcm_pixel_data_decode functionality of Accusoft ImageGear 20.1. A spe

8.8
CVE-2023-21681

Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability

8.8
CVE-2023-21684

Microsoft PostScript and PCL6 Class Printer Driver Remote Code Execution Vulnerability

8.8
CVE-2023-24864

Microsoft PostScript and PCL6 Class Printer Driver Elevation of Privilege Vulnerability

8.8
CVE-2023-24887

Microsoft PostScript and PCL6 Class Printer Driver Remote Code Execution Vulnerability

8.8
CVE-2023-35387

Windows Bluetooth A2DP driver Elevation of Privilege Vulnerability

8.4
CVE-2023-21630

Memory Corruption in Multimedia Framework due to integer overflow when synx bind is called along with synx signal.

8.1
CVE-2023-21556

Windows Layer 2 Tunneling Protocol (L2TP) Remote Code Execution Vulnerability

8.1
CVE-2022-28733

Integer underflow in grub_net_recv_ip4_packets; A malicious crafted IP packet can lead to an integer underflow in grub_n

7.8
CVE-2023-21718

Microsoft ODBC Driver for SQL Server Remote Code Execution Vulnerability

7.8
CVE-2023-21815

Visual Studio Remote Code Execution Vulnerability

7.8
CVE-2023-28272

Windows Kernel Elevation of Privilege Vulnerability

7.8
CVE-2023-28293

Windows Kernel Elevation of Privilege Vulnerability

7.8
CVE-2023-26421

Adobe Acrobat Reader versions 23.001.20093 (and earlier) and 20.005.30441 (and earlier) are affected by an Integer Under

7.8
CVE-2023-29349

Microsoft ODBC and OLE DB Remote Code Execution Vulnerability

7.8
CVE-2023-33158

Microsoft Excel Remote Code Execution Vulnerability

7.8
CVE-2023-36794

Visual Studio Remote Code Execution Vulnerability

7.8
CVE-2023-36796

Visual Studio Remote Code Execution Vulnerability

7.8
CVE-2023-36785

Microsoft ODBC Driver for SQL Server Remote Code Execution Vulnerability

7.8
CVE-2023-31102

Ppmd7.c in 7-Zip before 23.00 allows an integer underflow and invalid read operation via a crafted 7Z archive.

7.8
CVE-2023-33059

Memory corruption in Audio while processing the VOC packet data from ADSP.

Frequently Asked Questions

What is CWE-191?

CWE-191 (CWE-191) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.

How many CVEs are classified as CWE-191?

There are 621 CVE records associated with CWE-191 in our database. Of these, 65 are critical severity, 283 are high severity, and 153 are medium severity.

How can I protect against CWE-191 vulnerabilities?

Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-191 using AI-powered security agents.

Detect CWE-191 Vulnerabilities

CyberStrike's AI agents automatically detect cwe-191 vulnerabilities across your infrastructure.

Get Started