CWE-190: Integer Overflow
The product performs a calculation that can produce an integer overflow or wraparound, when the logic assumes the result will always be larger than the original value.
Yearly Trend
Top Affected Vendors
All Integer Overflow CVEs (530)
CVE-2025-64783 is an integer overflow vulnerability in Adobe DNG SDK versions 1.7.0 and earlier that allows arbitrary code execution when a user opens...
Dec 9, 2025This CVE describes an integer overflow vulnerability in Android kernel's mem_protect.c functions, allowing local privilege escalation without user int...
Dec 8, 2025This vulnerability allows remote attackers to cause memory corruption by sending large input data through a communication interface. It affects system...
Nov 4, 2025This vulnerability allows remote attackers to execute arbitrary code on Ashlar-Vellum Cobalt installations by tricking users into opening malicious XE...
Oct 29, 2025This vulnerability allows remote attackers to execute arbitrary code on GIMP installations by tricking users into opening malicious WBMP image files. ...
Oct 29, 2025This vulnerability allows remote attackers to execute arbitrary code by tricking users into opening malicious FF files in GIMP. The integer overflow d...
Oct 29, 2025This CVE describes an integer overflow vulnerability in the Linux kernel's fbcon_do_set_font function. Attackers with local access can trigger buffer ...
Oct 15, 2025CVE-2025-61807 is an integer overflow vulnerability in Substance3D Stager that allows arbitrary code execution when a user opens a malicious file. Thi...
Oct 14, 2025CVE-2025-61800 is an integer overflow vulnerability in Adobe Dimension versions 4.1.4 and earlier that allows arbitrary code execution when a user ope...
Oct 14, 2025CVE-2025-61803 is an integer overflow vulnerability in Substance3D Stager that allows arbitrary code execution when a user opens a malicious file. Thi...
Oct 14, 2025This CVE describes a memory corruption vulnerability in Qualcomm components that occurs while processing user buffers. Attackers could exploit this to...
Oct 9, 2025This CVE describes an integer overflow vulnerability in the Linux kernel's nl80211 wireless subsystem. When a malicious user with CAP_NET_ADMIN privil...
Oct 4, 2025This CVE describes an integer overflow vulnerability in the iwlwifi driver in the Linux kernel that could lead to heap overflow. However, the vulnerab...
Oct 1, 2025An integer overflow vulnerability in Intel 800 Series Ethernet kernel-mode drivers allows authenticated local users to potentially escalate privileges...
Aug 12, 2025An integer overflow vulnerability in Adobe InCopy allows arbitrary code execution when a user opens a malicious file. This affects users of InCopy ver...
Jun 10, 2025This CVE describes an integer overflow vulnerability in libarchive's RAR handling function that leads to a double-free condition. Attackers can exploi...
Jun 9, 2025An integer overflow vulnerability in Adobe Photoshop allows arbitrary code execution when a user opens a malicious file. This affects Photoshop Deskto...
May 13, 2025This vulnerability allows remote attackers to execute arbitrary code by tricking users into opening malicious XWD image files in GIMP. The integer ove...
Apr 23, 2025This vulnerability allows remote attackers to execute arbitrary code on Ashlar-Vellum Cobalt installations by exploiting an integer overflow in XE fil...
Mar 11, 2025This vulnerability allows remote attackers to execute arbitrary code by tricking users into opening malicious LI files in Ashlar-Vellum Cobalt softwar...
Mar 11, 2025A heap-based buffer overflow vulnerability in grub2's squash4 filesystem module allows attackers to execute arbitrary code by crafting malicious files...
Mar 3, 2025This CVE describes a GDI+ remote code execution vulnerability that allows attackers to execute arbitrary code on affected systems by tricking users in...
Jan 14, 2025CVE-2017-13323 is an integer overflow vulnerability in Android's String16.cpp that allows unprivileged processes to write out of bounds memory. This c...
Nov 27, 2024This vulnerability is an integer overflow in the virtio_ring.h header file that allows local privilege escalation without user interaction. It affects...
Oct 25, 2024Adobe Animate versions 23.0.7, 24.0.4 and earlier contain an integer overflow vulnerability that could allow arbitrary code execution when a user open...
Oct 9, 2024Adobe Illustrator versions 28.6, 27.9.5 and earlier contain an integer overflow vulnerability that could allow arbitrary code execution when a user op...
Sep 13, 2024This CVE describes an integer overflow vulnerability in the Android kernel's memory management unit (MMU) that allows local privilege escalation. An a...
Aug 15, 2024This CVE describes an integer overflow vulnerability in Android's BinaryXmlSerializer that allows arbitrary XML injection. It enables local privilege ...
Aug 15, 2024This CVE describes an integer overflow vulnerability in Adobe InDesign that could allow arbitrary code execution when a user opens a malicious file. A...
Aug 14, 2024CVE-2024-41858 is an integer overflow vulnerability in Adobe InCopy that could allow arbitrary code execution when a user opens a malicious file. This...
Aug 14, 2024This vulnerability in the Windows Cloud Files Mini Filter Driver allows an attacker to gain SYSTEM-level privileges on affected systems. It affects Wi...
Aug 13, 2024This CVE describes a signed integer overflow vulnerability in the Linux kernel's CD-ROM driver that could lead to kernel crashes or potential privileg...
Jul 30, 2024This CVE-2022-48837 is an integer overflow vulnerability in the Linux kernel's RNDIS USB gadget driver. When exploited, it could allow local attackers...
Jul 16, 2024This CVE describes an integer overflow vulnerability in the Linux kernel's Precision Time Protocol (PTP) subsystem. When setting the maximum number of...
Jul 12, 2024This CVE describes a signed integer overflow vulnerability in the Linux kernel's block/ioctl.c file. The vulnerability occurs during overflow checking...
Jul 12, 2024This vulnerability allows local attackers to achieve kernel privilege escalation through an integer overflow leading to out-of-bounds write in the And...
Jul 9, 2024CVE-2024-39684 is an integer overflow vulnerability in Tencent RapidJSON's ParseNumber() function that allows privilege escalation when parsing malici...
Jul 9, 2024This vulnerability allows remote attackers to execute arbitrary code by tricking users into opening malicious PSP image files in GIMP. An integer over...
May 3, 2024An integer overflow vulnerability in Adobe Animate allows arbitrary code execution when a user opens a malicious file. This affects users running Anim...
Apr 11, 2024This vulnerability allows memory corruption when processing QMI requests for memory allocation in DHMS-supported subsystems. It affects Qualcomm chips...
Mar 4, 2024This CVE describes an integer overflow vulnerability in Adobe Acrobat Reader that could allow arbitrary code execution when a user opens a malicious P...
Feb 15, 2024This Windows kernel vulnerability allows an authenticated attacker to execute arbitrary code with SYSTEM privileges by exploiting an integer overflow ...
Jan 9, 2024CVE-2023-39316 is an integer overflow vulnerability in GTKWave's LXT2 file parser that can lead to arbitrary code execution when processing malicious ...
Jan 8, 2024CVE-2023-39272 is an integer overflow vulnerability in GTKWave's LXT2 file parser that can lead to arbitrary code execution when a malicious .lxt2 fil...
Jan 8, 2024CVE-2023-39274 is an integer overflow vulnerability in GTKWave's LXT2 file parser that allows arbitrary code execution when a user opens a malicious ....
Jan 8, 2024This CVE describes integer overflow vulnerabilities in GTKWave's LXT2 file parser that can lead to arbitrary code execution when a malicious .lxt2 fil...
Jan 8, 2024This CVE describes integer overflow vulnerabilities in GTKWave's VZT facgeometry parsing that can lead to arbitrary code execution when a malicious .v...
Jan 8, 2024This CVE describes integer overflow vulnerabilities in GTKWave's VZT facgeometry parsing that can lead to arbitrary code execution when a malicious .v...
Jan 8, 2024This CVE describes integer overflow vulnerabilities in GTKWave's VZT facgeometry parsing that can lead to arbitrary code execution when a malicious .v...
Jan 8, 2024This integer overflow vulnerability in GTKWave's FST file parser allows arbitrary code execution when a user opens a specially crafted malicious .fst ...
Jan 8, 2024About Integer Overflow (CWE-190)
The product performs a calculation that can produce an integer overflow or wraparound, when the logic assumes the result will always be larger than the original value.
Our database tracks 530 CVEs classified as CWE-190, with 104 rated critical and 306 rated high severity. The average CVSS score for Integer Overflow vulnerabilities is 7.8.
External reference: View CWE-190 on MITRE CWE →
Monitor Integer Overflow Vulnerabilities
Get alerted when new Integer Overflow CVEs affect your infrastructure.
Start Monitoring Free