CompoundDraft
CWE-680Integer Overflow to Buffer Overflow
Category: memory
Description
The product performs a calculation to determine how much memory to allocate, but an integer overflow can occur that causes less memory to be allocated than expected, leading to a buffer overflow.
Common consequences· 1
- Integrity / Availability / Confidentiality — Modify Memory, DoS: Crash, Exit, or Restart, Execute Unauthorized Code or Commands
Related CAPEC attack patterns· 11
References
Exploits (incoming)11
| Type | Target | Confidence | Tier |
|---|---|---|---|
| AttackPattern | Buffer Overflow via Environment Variablescapec-10 | 100% | live |
| AttackPattern | Client-side Injection-induced Buffer Overflowcapec-14 | 100% | live |
| AttackPattern | Buffer Overflow via Symbolic Linkscapec-45 | 100% | live |
| AttackPattern | String Format Overflow in syslog()capec-67 | 100% | live |
| AttackPattern | Forced Integer Overflowcapec-92 | 100% | live |
| AttackPattern | Overflow Variables and Tagscapec-46 | 100% | live |
| AttackPattern | Buffer Overflow in Local Command-Line Utilitiescapec-9 | 100% | live |
| AttackPattern | Buffer Overflow via Parameter Expansioncapec-47 | 100% | live |
| AttackPattern | Overflow Bufferscapec-100 | 100% | live |
| AttackPattern | Filter Failure through Buffer Overflowcapec-24 | 100% | live |
| AttackPattern | Buffer Overflow in an API Callcapec-8 | 100% | live |
(incoming)7
| Type | Target | Confidence | Tier |
|---|---|---|---|
| Vulnerability | CVE-2025-20263cve-2025-20263 | 0% | live |
| Vulnerability | CVE-2025-32468cve-2025-32468 | 0% | live |
| Vulnerability | CVE-2025-46407cve-2025-46407 | 0% | live |
| Vulnerability | CVE-2025-52456cve-2025-52456 | 0% | live |
| Vulnerability | CVE-2025-52930cve-2025-52930 | 0% | live |
| Vulnerability | CVE-2025-53510cve-2025-53510 | 0% | live |
| Vulnerability | CVE-2025-54952cve-2025-54952 | 0% | live |
Related by meaning· 6
Nearest entities by semantic similarity across the cs-graph corpus.