CWE-190: Integer Overflow

The product performs a calculation that can produce an integer overflow or wraparound, when the logic assumes the result will always be larger than the original value.

533
Total CVEs
105
Critical
308
High
7.8
Avg CVSS

Yearly Trend

2026
31
2025
154
2024
128
2023
83
2022
52

Top Affected Vendors

1 Linux 64
2 Google 56
3 Debian 50
4 Microsoft 43
5 Fedoraproject 34
6 Qualcomm 27
7 Adobe 17
8 Tonybybell 14
9 Redhat 13
10 Apple 13

All Integer Overflow CVEs (533)

CVE-2025-64894
5.5

CVE-2025-64894 is an integer overflow vulnerability in DNG SDK versions 1.7.0 and earlier that allows attackers to cause denial-of-service by tricking...

Dec 9, 2025
CVE-2025-20722
5.5

This CVE describes an integer overflow vulnerability in the GNSS driver that could lead to an out-of-bounds read. If exploited by a malicious actor wi...

Oct 14, 2025
CVE-2023-53661
5.5

This CVE-2023-53661 is an integer overflow vulnerability in the bnxt_get_nvram_directory() function of the Linux kernel's Broadcom NetXtreme Ethernet ...

Oct 7, 2025
CVE-2023-53624
5.5

This CVE describes an integer overflow vulnerability in the Linux kernel's sch_fq (Fair Queue) packet scheduler. When configured with 'initial quantum...

Oct 7, 2025
CVE-2023-53474
5.5

This CVE describes an integer overflow vulnerability in the Linux kernel's x86 MCE/AMD subsystem where the bank_map variable uses a 32-bit integer ins...

Oct 1, 2025
CVE-2022-50399
5.5

This CVE describes an integer overflow vulnerability in the Linux kernel's atomisp media driver. When processing user-supplied height and width values...

Sep 18, 2025
CVE-2023-53309
5.5

This vulnerability is an integer overflow in the Linux kernel's Radeon graphics driver that can cause uninitialized memory to be referenced. Attackers...

Sep 16, 2025
CVE-2022-50330
5.5

This CVE describes an integer overflow vulnerability in the Linux kernel's Cavium crypto driver when loading firmware. An attacker could exploit this ...

Sep 15, 2025
CVE-2025-38193
5.5

A vulnerability in the Linux kernel's SFQ (Stochastic Fairness Queueing) scheduler allows attackers to trigger a race condition by providing invalid p...

Jul 4, 2025
CVE-2022-50167
5.5

This CVE describes a 32-bit integer overflow vulnerability in the Linux kernel's BPF subsystem when accessing large ARRAY maps. Attackers could exploi...

Jun 18, 2025
CVE-2025-37858
5.5

A Linux kernel JFS filesystem integer overflow vulnerability occurs when calculating allocation group sizes on 32-bit systems with large (>2TB) aggreg...

May 9, 2025
CVE-2025-22091
5.5

This CVE describes an integer overflow vulnerability in the Linux kernel's RDMA/mlx5 driver when registering large contiguous memory regions. The over...

Apr 16, 2025
CVE-2025-22081
5.5

This CVE describes an integer overflow vulnerability in the NTFS3 filesystem driver in the Linux kernel on 32-bit systems. When processing NTFS direct...

Apr 16, 2025
CVE-2025-22055
5.5

A heap out-of-bounds read vulnerability exists in the Linux kernel's GENEVE (Generic Network Virtualization Encapsulation) option parsing due to integ...

Apr 16, 2025
CVE-2025-21997
5.5

This CVE describes an integer overflow vulnerability in the Linux kernel's XDP socket (xsk) subsystem. When exploited, it can cause different XDP buff...

Apr 3, 2025
CVE-2025-22001
5.5

This CVE describes an integer overflow vulnerability in the Linux kernel's QAIC (Qualcomm AI Compute) driver. Attackers with local access can trigger ...

Apr 3, 2025
CVE-2025-21962
5.5

An integer overflow vulnerability in the Linux kernel's CIFS filesystem driver allows attackers to cause denial of service or potentially execute arbi...

Apr 1, 2025
CVE-2025-21964
5.5

This CVE-2025-21964 vulnerability in the Linux kernel's CIFS filesystem driver allows integer overflow when processing the acregmax mount option. Atta...

Apr 1, 2025
CVE-2023-53032
5.5

This CVE describes an integer overflow vulnerability in the Linux kernel's netfilter ipset module. When creating bitmap IP sets with specific paramete...

Mar 27, 2025
CVE-2022-49749
5.5

This CVE is an integer overflow vulnerability in the Linux kernel's I2C DesignWare driver that can cause kernel crashes or instability when handling s...

Mar 27, 2025
CVE-2025-21748
5.5

This CVE describes an integer overflow vulnerability in the ksmbd (kernel SMB server) module of the Linux kernel on 32-bit systems. The overflow occur...

Feb 27, 2025
CVE-2025-21736
5.5

This CVE describes an integer overflow vulnerability in the nilfs2 filesystem's fiemap function in the Linux kernel. An attacker could potentially tri...

Feb 27, 2025
CVE-2024-58017
5.5

This CVE addresses a signed integer overflow vulnerability in the Linux kernel's printk subsystem when defining LOG_BUF_LEN_MAX. The vulnerability cou...

Feb 27, 2025
CVE-2024-58010
5.5

This CVE describes an integer overflow vulnerability in the Linux kernel's binfmt_flat binary format loader on 32-bit systems. An attacker could explo...

Feb 27, 2025
CVE-2024-52557
5.5

This CVE addresses an integer overflow vulnerability in the Linux kernel's DisplayPort driver for ZynqMP systems. The flaw could allow local attackers...

Feb 27, 2025
CVE-2025-21711
5.5

This CVE describes an integer overflow vulnerability in the Linux kernel's ROSE protocol implementation. Attackers could trigger this vulnerability by...

Feb 27, 2025
CVE-2024-57953
5.5

This CVE describes an integer overflow vulnerability in the Linux kernel's TPS6594 RTC driver on 32-bit systems. When setting RTC offset values, multi...

Feb 27, 2025
CVE-2022-49727
5.5

This CVE describes an integer overflow vulnerability in the Linux kernel's IPv6 L2TP implementation. When sending L2TP over IPv6 packets, improper bou...

Feb 26, 2025
CVE-2022-49642
5.5

A Linux kernel vulnerability in the Synopsys DWC Ethernet driver for Tegra194 systems causes integer overflow when split header feature is enabled. Th...

Feb 26, 2025
CVE-2022-49451
5.5

This vulnerability in the Linux kernel's SCMI firmware subsystem involves an integer overflow when validating protocol enumeration responses. It could...

Feb 26, 2025
CVE-2022-49404
5.5

This CVE describes an integer overflow vulnerability in the Linux kernel's RDMA/hfi1 driver. An attacker could potentially cause denial of service or ...

Feb 26, 2025
CVE-2022-49320
5.5

This CVE addresses an integer overflow vulnerability in the ZynqMP DMA driver in the Linux kernel. The vulnerability could allow an attacker to cause ...

Feb 26, 2025
CVE-2022-49279
5.5

This CVE describes an integer overflow vulnerability in the Linux kernel's NFSD (Network File System Daemon) that affects 32-bit systems. When process...

Feb 26, 2025
CVE-2022-49197
5.5

This is a Linux kernel vulnerability in the netlink subsystem where an out-of-bounds shift occurs when processing multicast group IDs above 32. This c...

Feb 26, 2025
CVE-2025-0302
5.5

An integer overflow vulnerability in OpenHarmony v4.1.2 and earlier allows local attackers to cause denial of service (DoS) by triggering system crash...

Feb 7, 2025
CVE-2024-57938
5.5

This CVE-2024-57938 is an integer overflow vulnerability in the Linux kernel's SCTP protocol implementation. It allows attackers to trigger a kernel p...

Jan 21, 2025
CVE-2024-56368
5.5

A Linux kernel integer overflow vulnerability in the ring buffer subsystem allows local attackers to trigger a slab-out-of-bounds memory access during...

Jan 11, 2025
CVE-2024-53146
5.5

This CVE describes an integer overflow vulnerability in the Linux kernel's NFSD (Network File System Daemon) component. If exploited, it could allow a...

Dec 24, 2024
CVE-2024-53107
5.5

This CVE describes an integer overflow vulnerability in the Linux kernel's pagemap_scan_get_args() function. An attacker with local access could trigg...

Dec 2, 2024
CVE-2024-53111
5.5

A 32-bit integer overflow vulnerability in the Linux kernel's mremap() function can cause data loss when moving memory regions. If userspace attempts ...

Dec 2, 2024
CVE-2024-49994
5.5

This CVE describes an integer overflow vulnerability in the Linux kernel's BLKSECDISCARD ioctl command. An attacker with local access can trigger a ne...

Oct 21, 2024
CVE-2024-49888
5.5

This CVE addresses a signed division overflow vulnerability in the Linux kernel's BPF subsystem. When a BPF program performs specific signed division ...

Oct 21, 2024
CVE-2024-47739
5.5

A race condition in the Linux kernel's padata subsystem can cause a deadlock when more than 4.29 billion padata objects are submitted. This affects sy...

Oct 21, 2024
CVE-2024-46726
5.5

This CVE addresses integer overflow and array index overrun vulnerabilities in the AMD display driver within the Linux kernel. Attackers could potenti...

Sep 18, 2024
CVE-2024-44981
5.5

This CVE-2024-44981 is an integer overflow vulnerability in the Linux kernel's workqueue subsystem that can cause kernel panic during boot. It affects...

Sep 4, 2024
CVE-2024-43890
5.5

A Linux kernel vulnerability in the tracing subsystem allows integer overflow in get_free_elt(), potentially causing CPU hangs. This affects systems u...

Aug 26, 2024
CVE-2022-48938
5.5

This CVE describes an integer overflow vulnerability in the Linux kernel's CDC-NCM network driver. A malicious or broken USB device could trigger this...

Aug 22, 2024
CVE-2024-43838
5.5

A Linux kernel BPF subsystem vulnerability allows incorrect overflow checking in jump offset calculations, potentially enabling local privilege escala...

Aug 17, 2024
CVE-2024-42066
5.5

This CVE describes an integer overflow vulnerability in the Linux kernel's Xe graphics driver. The flaw occurs during page size calculations and could...

Jul 29, 2024
CVE-2024-37356
5.5

This CVE describes an integer overflow vulnerability in the Linux kernel's DCTCP congestion control module. Attackers with local access can trigger a ...

Jun 21, 2024

About Integer Overflow (CWE-190)

The product performs a calculation that can produce an integer overflow or wraparound, when the logic assumes the result will always be larger than the original value.

Our database tracks 533 CVEs classified as CWE-190, with 105 rated critical and 308 rated high severity. The average CVSS score for Integer Overflow vulnerabilities is 7.8.

External reference: View CWE-190 on MITRE CWE →

Monitor Integer Overflow Vulnerabilities

Get alerted when new Integer Overflow CVEs affect your infrastructure.

Start Monitoring Free