This is a broad category. Some examples include: (1) simple math errors,
(2) incorrectly updating parallel counters, (3) not accounting for size
differences when "transforming" one input to another format (e.g. URL
canonicalization or other transformation that can generate a result that's
larger than the original input, i.e. "expansion").
This level of detail is rarely available in public reports, so it is
difficult to find good examples.
Content History
Submissions
Submission Date
Submitter
Organization
Source
PLOVER
Externally Mined
Modifications
Modification Date
Modifier
Organization
Source
2008-07-01
Eric Dalci
Cigital
External
updated Potential Mitigations,
Time of Introduction
2008-09-08
CWE Content Team
MITRE
Internal
updated Applicable Platforms, Maintenance Notes,
Relationships, Taxonomy Mappings, Type