CWE-190: Integer Overflow

The product performs a calculation that can produce an integer overflow or wraparound, when the logic assumes the result will always be larger than the original value.

530
Total CVEs
104
Critical
306
High
7.8
Avg CVSS

Yearly Trend

2026
31
2025
154
2024
128
2023
83
2022
52

Top Affected Vendors

1 Linux 64
2 Google 55
3 Debian 49
4 Microsoft 43
5 Fedoraproject 34
6 Qualcomm 27
7 Adobe 17
8 Tonybybell 14
9 Redhat 13
10 Oracle 13

All Integer Overflow CVEs (530)

CVE-2023-36916
7.8

This CVE-2023-36916 vulnerability allows arbitrary code execution through integer overflow in GTKWave's FST file parser. Attackers can craft malicious...

Jan 8, 2024
CVE-2023-35057
7.8

An integer overflow vulnerability in GTKWave's LXT2 file parser allows memory corruption when processing specially crafted .lxt2 files. Attackers can ...

Jan 8, 2024
CVE-2023-35632
7.8

This vulnerability in the Windows Ancillary Function Driver for WinSock allows an attacker to gain SYSTEM-level privileges by exploiting an integer ov...

Dec 12, 2023
CVE-2023-48409
7.8

This CVE describes an integer overflow vulnerability in the Mali GPU kernel driver for Google Pixel devices, which could allow local attackers to writ...

Dec 8, 2023
CVE-2023-4295
7.8

CVE-2023-4295 is a use-after-free vulnerability in Arm Mali GPU drivers that allows local non-privileged users to access freed memory through improper...

Nov 7, 2023
CVE-2023-38127
7.8

This vulnerability allows arbitrary code execution through a malicious Ichitaro document. An attacker can exploit an integer overflow in the HyperLink...

Oct 19, 2023
CVE-2023-38150
7.8

This Windows kernel vulnerability allows an authenticated attacker to execute arbitrary code with SYSTEM privileges by exploiting an integer overflow ...

Sep 12, 2023
CVE-2023-4734
7.8

An integer overflow vulnerability in Vim before version 9.0.1846 allows attackers to cause a denial of service or potentially execute arbitrary code b...

Sep 2, 2023
CVE-2023-36900
7.8

This vulnerability in the Windows Common Log File System (CLFS) driver allows an authenticated attacker to gain SYSTEM-level privileges through intege...

Aug 8, 2023
CVE-2023-21241
7.8

This vulnerability allows local privilege escalation on Android devices via an integer overflow in the NFC stack's rw_i93.cc component. Attackers can ...

Jul 13, 2023
CVE-2023-32051
7.8

CVE-2023-32051 is a remote code execution vulnerability in Microsoft's Raw Image Extension that allows attackers to execute arbitrary code by tricking...

Jul 11, 2023
CVE-2023-25004
7.8

This vulnerability in Autodesk products allows attackers to execute arbitrary code by exploiting integer overflow in pskernel.dll. Users running affec...

Jun 27, 2023
CVE-2023-32434
7.8

This CVE-2023-32434 is an integer overflow vulnerability in Apple operating systems that allows malicious applications to execute arbitrary code with ...

Jun 23, 2023
CVE-2023-2603
7.8

An integer overflow vulnerability in libcap's _libcap_strdup() function allows memory corruption when processing extremely large strings (close to 4GB...

Jun 6, 2023
CVE-2023-33204
7.8

CVE-2023-33204 is an integer overflow vulnerability in sysstat's check_overflow function that could allow attackers to cause denial of service or pote...

May 18, 2023
CVE-2021-0872
7.8

This CVE describes an integer overflow vulnerability in the PowerVR kernel driver for Android devices. It allows local attackers to gain escalated pri...

Apr 19, 2023
CVE-2021-0874
7.8

This CVE describes an integer overflow vulnerability in the PowerVR kernel driver on Android devices. It allows local attackers to gain escalated priv...

Apr 19, 2023
CVE-2021-0876
7.8

This CVE describes an integer overflow vulnerability in the PowerVR kernel driver for Android devices. It allows local attackers to gain kernel-level ...

Apr 19, 2023
CVE-2021-0879
7.8

This CVE describes an integer overflow vulnerability in the PowerVR kernel driver for Android devices. It allows local attackers to gain escalated pri...

Apr 19, 2023
CVE-2021-0881
7.8

This CVE describes an integer overflow vulnerability in the PowerVR kernel driver for Android devices. It allows local attackers to gain escalated pri...

Apr 19, 2023
CVE-2021-0883
7.8

This CVE describes an integer overflow vulnerability in the PowerVR kernel driver for Android devices. It allows local attackers to gain escalated pri...

Apr 19, 2023
CVE-2021-0885
7.8

This CVE describes an integer overflow vulnerability in the PowerVR kernel driver for Android devices, allowing local attackers to gain escalated priv...

Apr 19, 2023
CVE-2023-1900
7.8

A heap overflow vulnerability in Avira's network protection feature allows local attackers to cause denial-of-service through memory corruption. This ...

Apr 19, 2023
CVE-2023-25903
7.8

Adobe Dimension versions 3.4.7 and earlier contain an integer overflow vulnerability that could allow arbitrary code execution when a user opens a mal...

Mar 28, 2023
CVE-2023-0179
7.8

A buffer overflow vulnerability in the Linux Kernel's Netfilter subsystem allows local attackers to leak memory addresses and potentially execute arbi...

Mar 27, 2023
CVE-2023-23417
7.8

This vulnerability in the Windows Partition Management Driver allows an authenticated attacker to execute arbitrary code with SYSTEM privileges. It af...

Mar 14, 2023
CVE-2023-23410
7.8

This vulnerability in Windows HTTP.sys allows an attacker to gain elevated privileges on affected systems by exploiting an integer overflow condition....

Mar 14, 2023
CVE-2023-22436
7.8

A use-after-free vulnerability in OpenHarmony's kernel subsystem allows local attackers to escalate privileges to root. This affects OpenHarmony versi...

Mar 10, 2023
CVE-2023-26242
7.8

This CVE describes an integer overflow vulnerability in the Linux kernel's FPGA (Field Programmable Gate Array) driver component. Attackers could expl...

Feb 21, 2023
CVE-2022-2454
7.8

CVE-2022-2454 is an integer overflow vulnerability in the GPAC multimedia framework that could allow attackers to cause denial of service or potential...

Jul 19, 2022
CVE-2022-32545
7.8

This CVE-2022-32545 is an integer overflow vulnerability in ImageMagick's PSD file parser. When processing specially crafted or untrusted PSD files, i...

Jun 16, 2022
CVE-2022-21154
7.8

An integer overflow vulnerability in Leadtools 22's fltSaveCMP function when processing BMP files can lead to buffer overflow. Attackers can exploit t...

Apr 14, 2022
CVE-2021-39732
7.8

This CVE describes an integer overflow vulnerability in the Android kernel's lwis_ioctl.c file that allows local privilege escalation. An attacker cou...

Mar 16, 2022
CVE-2022-0545
7.8

CVE-2022-0545 is an integer overflow vulnerability in Blender's 2D image processing that allows attackers to achieve arbitrary code execution or infor...

Feb 24, 2022
CVE-2021-35069
7.8

This vulnerability allows improper validation of data length from DMA buffers, leading to memory corruption in Qualcomm Snapdragon chipsets. It affect...

Feb 11, 2022
CVE-2021-44711
7.8

This CVE describes an integer overflow vulnerability in Adobe Acrobat Reader DC that could allow arbitrary code execution when a user opens a maliciou...

Jan 14, 2022
CVE-2021-30319
7.8

This vulnerability allows integer overflow in Qualcomm Snapdragon chipsets when processing WMI commands due to improper validation of command length p...

Jan 13, 2022
CVE-2022-20012
7.8

CVE-2022-20012 is an integer overflow vulnerability in MediaTek's MDP driver that could allow local attackers to execute arbitrary code with kernel pr...

Jan 4, 2022
CVE-2021-33106
7.8

This CVE describes an integer overflow vulnerability in Intel's Safestring library that could allow an authenticated attacker with local access to pot...

Nov 17, 2021
CVE-2021-22451
7.8

This integer overflow vulnerability in HarmonyOS allows local attackers to trigger memory corruption through arithmetic operations that exceed buffer ...

Oct 28, 2021
CVE-2021-30760
7.8

An integer overflow vulnerability in Apple's font processing allows arbitrary code execution when processing malicious font files. This affects iOS, m...

Sep 8, 2021
CVE-2021-39254
7.8

CVE-2021-39254 is an integer overflow vulnerability in NTFS-3G that can lead to heap-based buffer overflow when processing a malicious NTFS image. Thi...

Sep 7, 2021
CVE-2021-30860
7.8

This vulnerability allows arbitrary code execution when processing malicious PDF files due to an integer overflow in Apple's PDF processing components...

Aug 24, 2021
CVE-2021-38166
7.8

CVE-2021-38166 is an integer overflow vulnerability in the Linux kernel's BPF hashtab implementation that can lead to out-of-bounds writes. This vulne...

Aug 7, 2021
CVE-2021-22418
7.8

This CVE describes an integer overflow vulnerability in HarmonyOS that allows local attackers to trigger memory corruption. Attackers could exploit th...

Aug 3, 2021
CVE-2021-22422
7.8

This CVE describes an integer overflow vulnerability in HarmonyOS that allows local attackers to trigger memory corruption. Attackers could exploit th...

Aug 3, 2021
CVE-2021-34512
7.8

This vulnerability allows an authenticated attacker to execute arbitrary code with SYSTEM privileges on Windows systems using Storage Spaces Controlle...

Jul 14, 2021
CVE-2021-34510
7.8

This vulnerability allows an authenticated attacker to execute arbitrary code with SYSTEM privileges on Windows systems using Storage Spaces Controlle...

Jul 14, 2021
CVE-2020-11306
7.8

This CVE describes an integer overflow vulnerability in the RPMB (Replay Protected Memory Block) counter in Qualcomm Snapdragon chipsets. Attackers co...

Jun 9, 2021
CVE-2020-11235
7.8

CVE-2020-11235 is a buffer overflow vulnerability in Qualcomm Snapdragon chipsets that occurs when parsing unified commands without proper input valid...

Jun 9, 2021

About Integer Overflow (CWE-190)

The product performs a calculation that can produce an integer overflow or wraparound, when the logic assumes the result will always be larger than the original value.

Our database tracks 530 CVEs classified as CWE-190, with 104 rated critical and 306 rated high severity. The average CVSS score for Integer Overflow vulnerabilities is 7.8.

External reference: View CWE-190 on MITRE CWE →

Monitor Integer Overflow Vulnerabilities

Get alerted when new Integer Overflow CVEs affect your infrastructure.

Start Monitoring Free