CWE
Home > CWE List > CWE- Individual Dictionary Definition (1.1)  
Search by ID:

CWE-680: Integer Overflow to Buffer Overflow

Individual Definition in a New Window
Integer Overflow to Buffer Overflow
Status: Draft
Compound Element ID: 680 (Compound Element Base: Chain)
Description
Summary

The product performs a calculation to determine how much memory to allocate, but an integer overflow can occur that causes less memory to be allocated than expected, leading to a buffer overflow.

Relevant Properties
* Validity
Relationships
NatureTypeIDNameView(s) this relationship pertains toView(s)Named Chain(s) this relationship pertains toChain(s)
ChildOfWeakness ClassWeakness ClassWeakness Class20Insufficient Input Validation
Research Concepts (primary)1000
StartsWithWeakness BaseWeakness BaseWeakness Base190Integer Overflow (Wrap or Wraparound)
Named Chains (primary)709
Integer Overflow to Buffer Overflow680
Applicable Platforms
Languages
All
Content History
Modifications
Eric Dalci. Cigital. 2008-07-01. (External)
updated Time_of_Introduction
CWE Content Team. MITRE. 2008-09-08. (Internal)
updated Relationships
Page Last Updated: November 24, 2008