Rosetta Intel
Datasets/KEV CatalogThreat Actors
Rosetta Lab ↗Blur Horizon LLC
Datasets

KEV Catalog

CISA, queryable

Known exploited vulnerabilities as a queryable table — by CVE, vendor or product.

1676 entries·352 Ransomware·Updated 2026-08-25

CWE-190 · Integer overflowDefinition on MITRE ↗Clear

16 results

CVE-2025-48595
2026-06-02
Android Framework Integer Overflow Vulnerability
Android

Android Framework contains an integer overflow vulnerability that allows for code execution that could allow for local privilege escalation.

CWE-190 · Integer overflow
Refssource.android.comnvd.nist.gov
Federal remediation due 2026-06-05
CVE-2021-30952
2026-03-05
Apple Multiple Products Integer Overflow or Wraparound Vulnerability
Apple

Apple tvOS, macOS, Safari, iPadOS and watchOS contain an integer overflow or wraparound vulnerability due to the processing of maliciously crafted web content that may lead to arbitrary code execution.

CWE-190 · Integer overflow
Refssupport.apple.comsupport.apple.comsupport.apple.comsupport.apple.comsupport.apple.comnvd.nist.gov
Federal remediation due 2026-03-26
CVE-2026-21385
2026-03-03
Qualcomm Multiple Chipsets Memory Corruption Vulnerability
Qualcomm

Multiple Qualcomm chipsets contain a memory corruption vulnerability while using alignments for memory allocation.

CWE-190 · Integer overflow
RefsPlease check with specific vendors (OEMs,) for information on patching status. For more information, please seenvd.nist.gov
Federal remediation due 2026-03-24
CVE-2018-14634
2026-01-26
Linux Kernel Integer Overflow Vulnerability
Linux

Linux Kernel contains an integer overflow vulnerability in the create_elf_tables() function which could allow an unprivileged local user with access to SUID (or otherwise privileged) binary to escalate their privileges on the system.

CWE-190 · Integer overflow
RefsThis vulnerability affects a common open-source component, third-party library, or a protocol used by different products. Please check with specific vendors for information on patching status. For more information, please seekernel.orgcve.orgaccess.redhat.comnvd.nist.gov
Federal remediation due 2026-02-16
CVE-2025-24985
2025-03-11
Microsoft Windows Fast FAT File System Driver Integer Overflow Vulnerability
Microsoft

Microsoft Windows Fast FAT File System Driver contains an integer overflow or wraparound vulnerability that allows an unauthorized attacker to execute code locally.

CWE-190 · Integer overflowCWE-122 · Heap buffer overflow
Refsmsrc.microsoft.comnvd.nist.gov
Federal remediation due 2025-04-01
CVE-2022-0185
2024-08-21
Linux Kernel Heap-Based Buffer Overflow Vulnerability
Linux

Linux kernel contains a heap-based buffer overflow vulnerability in the legacy_parse_param function in the Filesystem Context functionality. This allows an attacker to open a filesystem that does not support the Filesystem Context API and ultimately escalate privileges.

CWE-190 · Integer overflow
RefsThis vulnerability affects a common open-source component, third-party library, or a protocol used by different products. For more information, please seenvd.nist.gov
Federal remediation due 2024-09-11
CVE-2024-38080
2024-07-09
Microsoft Windows Hyper-V Privilege Escalation Vulnerability
Microsoft

Microsoft Windows Hyper-V contains a privilege escalation vulnerability that allows a local attacker with user permissions to gain SYSTEM privileges.

CWE-190 · Integer overflow
Refsmsrc.microsoft.comnvd.nist.gov
Federal remediation due 2024-07-30
CVE-2023-33107
2023-12-05
Qualcomm Multiple Chipsets Integer Overflow Vulnerability
Qualcomm

Multiple Qualcomm chipsets contain an integer overflow vulnerability due to memory corruption in Graphics Linux while assigning shared virtual memory region during IOCTL call.

CWE-190 · Integer overflow
RefsThis vulnerability affects a common open-source component, third-party library, or a protocol used by different products. Please check with specific vendors for information on patching status. For more information, please seenvd.nist.gov
Federal remediation due 2023-12-26
CVE-2023-6345
2023-11-30
Google Skia Integer Overflow Vulnerability
Google / Chromium Skia

Google Chromium Skia contains an integer overflow vulnerability that allows a remote attacker, who has compromised the renderer process, to potentially perform a sandbox escape via a malicious file. This vulnerability affects Google Chrome and ChromeOS, Android, Flutter, and possibly other products.

CWE-190 · Integer overflow
RefsThis vulnerability affects a common open-source component, third-party library, or a protocol used by different products. Please check with specific vendors for information on patching status. For more information, please seenvd.nist.gov
Federal remediation due 2023-12-21
CVE-2023-32434
2023-06-23
Apple Multiple Products Integer Overflow Vulnerability
Apple

Apple iOS. iPadOS, macOS, and watchOS contain an integer overflow vulnerability that could allow an application to execute code with kernel privileges.

CWE-190 · Integer overflow
Refssupport.apple.comnvd.nist.gov
Federal remediation due 2023-07-14
CVE-2023-2136
2023-04-21
Google Chrome Skia Integer Overflow Vulnerability
Google / Chromium Skia

Google Chromium Skia contains an integer overflow vulnerability that allows a remote attacker, who has compromised the renderer process, to potentially perform a sandbox escape via a crafted HTML page. This vulnerability affects Google Chrome and ChromeOS, Android, Flutter, and possibly other products.

CWE-190 · Integer overflow
Refschromereleases.googleblog.comnvd.nist.gov
Federal remediation due 2023-05-12
CVE-2023-21823
2023-02-14
Microsoft Windows Graphic Component Privilege Escalation Vulnerability
Microsoft

Microsoft Windows Graphic Component contains an unspecified vulnerability that allows for privilege escalation.

CWE-190 · Integer overflow
Refsmsrc.microsoft.comnvd.nist.gov
Federal remediation due 2023-03-07
CVE-2018-6065
2022-06-08
Google Chromium V8 Integer Overflow Vulnerability
Google

Google Chromium V8 Engine contains an integer overflow vulnerability that allows a remote attacker to potentially exploit heap corruption via a crafted HTML page. This vulnerability could affect multiple web browsers that utilize Chromium, including, but not limited to, Google Chrome, Microsoft Edge, and Opera.

CWE-190 · Integer overflowCWE-787 · Out-of-bounds write
Refsnvd.nist.gov
Federal remediation due 2022-06-22
CVE-2016-1010
2022-05-25
Adobe Flash Player and AIR Integer Overflow Vulnerability
Adobe

Integer overflow vulnerability in Adobe Flash Player and AIR allows attackers to execute code.

CWE-190 · Integer overflow
Refsnvd.nist.gov
Federal remediation due 2022-06-15
CVE-2021-30860
2021-11-03
Apple Multiple Products Integer Overflow Vulnerability
Apple

Apple iOS, iPadOS, macOS, and watchOS CoreGraphics contain an integer overflow vulnerability which may allow code execution when processing a maliciously crafted PDF. The vulnerability is also known under the moniker of FORCEDENTRY.

CWE-20 · Improper input validationCWE-190 · Integer overflow
Refsnvd.nist.gov
Federal remediation due 2021-11-17
CVE-2021-30663
2021-11-03
Apple Multiple Products WebKit Integer Overflow Vulnerability
Apple

Apple iOS, iPadOS, macOS, tvOS, and Safari WebKit contain an integer overflow vulnerability that leads to code execution when processing maliciously crafted web content. This vulnerability could impact HTML parsers that use WebKit, including but not limited to Apple Safari and non-Apple products which rely on WebKit for HTML processing.

CWE-20 · Improper input validationCWE-190 · Integer overflow
Refsnvd.nist.gov
Federal remediation due 2021-11-17