CWE-191: Wrap or Wraparound
The product subtracts one value from another, such that the result is less than the minimum allowable integer value, which produces a value that is not equal to the correct result.
354 tracked CVEs are classified under this weakness.
Highest-risk vulnerabilities
- CVE-2024-23313 — An integer underflow vulnerability exists in the sopen_FAMOS_read functionality of The Biosig Project libbiosig 2.5.0 an
- CVE-2025-2523 — Lack of buffer clearing before reuse may result in incorrect system behavior.
- CVE-2025-30356 — Heap Buffer Overflow via Incomplete Length Check in `Crypto_TC_ApplySecurity`
- CVE-2024-57823 — In Raptor RDF Syntax Library through 2.0.16, there is an integer underflow when normalizing a URI with the turtle parser
- CVE-2025-55118 — BMC Control-M/Agent memory corruption in SSL/TLS communication
- CVE-2025-29913 — CryptoLib's Crypto_TC_Prep_AAD Has Buffer Overflow Due to Integer Underflow
- CVE-2025-29912 — CryptoLib Has Heap Buffer Overflow Due to Unsigned Integer Underflow in Crypto_TC_ProcessSecurity
- CVE-2025-29909 — CryptoLib's Crypto_TC_ApplySecurity() Has a Heap Buffer Overflow Vulnerability
- CVE-2025-66217 — AIS-catcher Integer Underflow in MQTT Packet Parsing leading to Heap Buffer Overflow
- CVE-2024-10838 — Integer Underflow in DDS_Security_Deserialize_ methods may lead to OOB read
- CVE-2026-29078 — Integer Underflow in Lexbor ISO‑2022‑JP Encoder
- CVE-2025-3947 — Integer underflow during processing of short network packets in CDA FTEB responder
- CVE-2025-62291 — In the eap-mschapv2 plugin (client-side) in strongSwan before 6.0.3, a malicious EAP-MSCHAPv2 server can send a crafted
- CVE-2024-32040 — FreeRDP vulnerable to integer underflow in nsc_rle_decode
- CVE-2026-54754 — Klever-Go: Marketplace settlement mints KLV when referral % + royalty % exceed the bid (negative seller share silently skipped)
- CVE-2025-61836 — Illustrator on iPad | Integer Underflow (Wrap or Wraparound) (CWE-191)
- CVE-2025-61835 — Substance3D - Stager | Integer Underflow (Wrap or Wraparound) (CWE-191)
- CVE-2025-61826 — Illustrator on iPad | Integer Underflow (Wrap or Wraparound) (CWE-191)
- CVE-2025-49532 — Illustrator | Integer Underflow (Wrap or Wraparound) (CWE-191)
- CVE-2025-47136 — InDesign Desktop | Integer Underflow (Wrap or Wraparound) (CWE-191)
Recently published
- CVE-2026-81977 — Acrobat Reader | Integer Underflow (Wrap or Wraparound) (CWE-191)
- CVE-2026-66767 — Memory Corruption vulnerability in SAP NetWeaver Application Server for ABAP and ABAP Platform
- CVE-2026-18355 — 389-ds-base: 389-ds-base: heap buffer overflow via sasl wrapped-record length lower-bound underflow in sasl_io_start_packet()
- CVE-2026-85436 — MOOS essential-moos through 10.0.1 pMOOSBridge Heap Corruption via Negative UDP Length
- CVE-2026-9624 — RSLinx Classic® - Multiple Vulnerabilities
- CVE-2026-9622 — RSLinx Classic® - Multiple Vulnerabilities
- CVE-2026-82480 — NASA cFS cFE Software Bus cfe_sb_util.c CFE_SB_GetUserDataLength integer underflow
- CVE-2026-54754 — Klever-Go: Marketplace settlement mints KLV when referral % + royalty % exceed the bid (negative seller share silently skipped)
- CVE-2026-82250 — gitoxide gix-packetline before 0.21.5 Denial of Service
- CVE-2026-19314 — Fireware OS Integer Underflow in iked Allows Unauthenticated Denial of Service (DoS)
- CVE-2026-19317 — Fireware OS Pre-Authentication Out-of-Bounds Read in iked Allows Denial of Service (DoS)
- CVE-2026-78011 — Fireware OS Integer Underflow in Iked Allows Unauthenticated Denial of Service (DoS)
- CVE-2026-19318 — Fireware OS Pre-Authentication Stack Buffer Overflow in iked Allows Remote Code Execution
- CVE-2026-71401 — wicked: integer underflow of the UDP length in ni_capture_inspect_udp_header() leads to an out-of-bounds read
- CVE-2026-18916 — Remote TCP DoS by throttling the TCP receive window
- CVE-2026-76189 — CAI Content Credentials | Integer Underflow (Wrap or Wraparound) (CWE-191)
- CVE-2026-71442 — CAI Content Credentials | Integer Underflow (Wrap or Wraparound) (CWE-191)
- CVE-2026-71444 — CAI Content Credentials | Integer Underflow (Wrap or Wraparound) (CWE-191)
- CVE-2026-16924 — Vulnerabilities in IBM AIX and PowerVM VIOS
- CVE-2026-58087 — Heap out-of-bounds access in semctl(2)