Skip to content
Noroxi

CWE-190 · 3,189 records

Integer Overflow or Wraparound

CVEs in this class

3,193 records

  • Integer overflow in Adobe Reader and Acrobat 9.x before 9.5.5, 10.x before 10.1.7, and 11.x before 11.0.03 allows attackers to execute arbit

    CriticalCVSS 9.8KEVWeaponizedEPSS 67%

    adobe · acrobatMay 16, 2013

  • Integer overflow in Adobe Flash Player before 18.0.0.324 and 19.x and 20.x before 20.0.0.267 on Windows and OS X and before 11.2.202.559 on

    HighCVSS 8.8KEVWeaponizedEPSS 68%

    adobe · air sdkDec 28, 2015

  • An integer overflow was addressed with improved input validation.

    HighCVSS 7.8KEVWeaponizedEPSS 76%

    apple · ipadosAug 24, 2021

  • Integer overflow in computing the required allocation size when instantiating a new javascript object in V8 in Google Chrome prior to 65.0.3

    HighCVSS 8.8KEVWeaponizedEPSS 60%

    google · chromeNov 14, 2018

  • CVE-2023-32434
    76This week

    An integer overflow was addressed with improved input validation.

    HighCVSS 7.8KEVWeaponizedEPSS 52%

    apple · ipadosJun 23, 2023

  • CVE-2011-1823
    73This week

    The vold volume manager daemon on Android 3.0 and 2.x before 2.3.4 trusts messages that are received from a PF_NETLINK socket, which allows

    HighCVSS 7.8KEVWeaponizedEPSS 41%

    google · androidJun 9, 2011

  • CVE-2023-6345
    73This week

    Integer overflow in Skia in Google Chrome prior to 119.0.6045.199 allowed a remote attacker who had compromised the renderer process to pote

    CriticalCVSS 9.6KEVWeaponizedEPSS 16%

    google · chromeNov 29, 2023

  • CVE-2022-0185
    71This week

    A heap-based buffer overflow flaw was found in the way the legacy_parse_param function in the Filesystem Context functionality of the Linux

    HighCVSS 8.4KEVWeaponizedEPSS 25%

    linux · linux kernelFeb 11, 2022

  • CVE-2012-5054
    71This week

    Integer overflow in the copyRawDataTo method in the Matrix3D class in Adobe Flash Player before 11.4.402.265 allows remote attackers to exec

    HighCVSS 8.8KEVWeaponizedEPSS 21%

    adobe · flash playerSep 24, 2012

  • CVE-2016-1010
    71This week

    Integer overflow in Adobe Flash Player before 18.0.0.333 and 19.x through 21.x before 21.0.0.182 on Windows and OS X and before 11.2.202.577

    HighCVSS 8.8KEVWeaponizedEPSS 19%

    adobe · flash playerMar 12, 2016

  • CVE-2023-2136
    70This week

    Integer overflow in Skia in Google Chrome prior to 112.0.5615.137 allowed a remote attacker who had compromised the renderer process to pote

    CriticalCVSS 9.6KEVWeaponizedEPSS 6%

    google · chromeApr 19, 2023

  • CVE-2021-30663
    66This week

    An integer overflow was addressed with improved input validation.

    HighCVSS 8.8KEVWeaponizedEPSS 3%

    apple · safariSep 8, 2021

  • CVE-2018-14634
    65This week

    An integer overflow flaw was found in the Linux kernel's create_elf_tables() function.

    HighCVSS 7.8KEVWeaponizedEPSS 15%

    linux · linux kernelSep 25, 2018

  • CVE-2014-0569
    64This week

    Integer overflow in Adobe Flash Player before 13.0.0.250 and 14.x and 15.x before 15.0.0.189 on Windows and OS X and before 11.2.202.411 on

    CriticalCVSS 9.3WeaponizedEPSS 91%

    adobe · flash playerOct 15, 2014

  • CVE-2023-21716
    64This week

    Microsoft Word Remote Code Execution Vulnerability

    CriticalCVSS 9.8Proof of conceptEPSS 85%

    microsoft · officeFeb 14, 2023

  • CVE-2025-48595
    64This week

    In multiple locations, there is a possible way to achieve code execution due to an integer overflow.

    HighCVSS 8.4KEVWeaponizedEPSS 2%

    google · androidJun 1, 2026

  • CVE-2024-38080
    63This week

    Windows Hyper-V Elevation of Privilege Vulnerability

    HighCVSS 7.8KEVWeaponizedEPSS 7%

    microsoft · windows 11 21h2Jul 9, 2024

  • CVE-2021-30952
    63This week

    An integer overflow was addressed with improved input validation.

    HighCVSS 7.8KEVWeaponizedEPSS 7%

    apple · safariAug 24, 2021

  • CVE-2023-21823
    63This week

    Windows Graphics Component Remote Code Execution Vulnerability

    HighCVSS 7.8KEVWeaponizedEPSS 6%

    microsoft · windows 10 1507Feb 14, 2023

  • CVE-2013-2596
    62This week

    Integer overflow in the fb_mmap function in drivers/video/fbmem.c in the Linux kernel before 3.8.9, as used in a certain Motorola build of A

    HighCVSS 7.8KEVWeaponizedEPSS 3%

    linux · linux kernelApr 12, 2013

  • CVE-2019-11072
    61This week

    lighttpd before 1.4.54 has a signed integer overflow, which might allow remote attackers to cause a denial of service (application crash) or

    CriticalCVSS 9.8No exploitEPSS 74%

    lighttpd · lighttpdApr 10, 2019

  • CVE-2024-49112
    61This week

    Windows Lightweight Directory Access Protocol (LDAP) Remote Code Execution Vulnerability

    CriticalCVSS 9.8Proof of conceptEPSS 72%

    microsoft · windows 10 1507Dec 11, 2024

  • CVE-2026-21385
    61This week

    Integer Overflow or Wraparound in Graphics

    HighCVSS 7.8KEVWeaponizedEPSS 1%

    qualcomm · sm7675p firmwareMar 2, 2026

  • CVE-2023-33107
    61This week

    Integer Overflow or Wraparound in Graphics Linux

    HighCVSS 7.8KEVWeaponizedEPSS 1%

    qualcomm · 315 5g iot modem firmwareDec 4, 2023

  • CVE-2019-11477
    60This week

    Integer overflow in TCP_SKB_CB(skb)->tcp_gso_segs

    HighCVSS 7.5Proof of conceptEPSS 99%

    linux · linux kernelJun 18, 2019

All vulnerability classes