CWE-119

High likelihood

Improper Restriction of Operations within the Bounds of a Memory Buffer

Parent: CWE-118 - Incorrect Access of Indexable Resource ('Range Error')

The product performs operations on a memory buffer, but it reads from or writes to a memory location outside the buffer's intended boundary. This may result in read or write operations on unexpected memory locations that could be linked to other variables, data structures, or internal program data.

14,073 vulnerabilities with CWE-119
CVE-2026-51251 HIGH
ESP32-audioI2S 3.4.5 - Buffer Overflow in MP3Decoder::decode via Untrusted mainDataBegin and nSlots Values
CVSS 7.5
CVE-2026-64771 CRITICAL
Apple Ios And iPadOS - Buffer Overflow
CVSS 9.8
CVE-2026-64758 HIGH
Apple Ios And iPadOS - Denial of Service
CVSS 7.8
CVE-2026-64757 HIGH
Apple Safari - Denial of Service
CVSS 8.8
CVE-2026-64749 HIGH
Apple Ios And iPadOS - Denial of Service
CVSS 7.8
CVE-2026-64726 CRITICAL
Apple Ios And iPadOS - Denial of Service
CVSS 9.8
CVE-2026-64716 HIGH
Apple Ios And iPadOS - Denial of Service
CVSS 7.8
CVE-2026-64698 CRITICAL
macOS < 14.8.8, < 15.7.8, < 26.6 - Kernel Memory Disclosure and Denial of Service via Memory Handling Flaw
CVSS 9.8
CVE-2026-64697 CRITICAL
macOS < 14.8.8, < 15.7.8, < 26.6 - Memory Corruption and Unexpected System Termination via Kernel Memory Handling
CVSS 9.8
CVE-2026-64696 CRITICAL
macOS < 14.8.8, < 15.7.8, < 26.6 - Remote Kernel Memory Corruption and Denial of Service via Memory Handling Issue
CVSS 9.8
CVE-2026-64695 CRITICAL
macOS < 14.8.8, < 15.7.8, < 26.6 - Remote Kernel Memory Corruption via Memory Handling Flaw
CVSS 9.8
CVE-2026-43810 CRITICAL
Apple Ios And iPadOS - Denial of Service
CVSS 9.8
CVE-2026-43767 MEDIUM
macOS < 14.8.8, < 15.7.8, < 26.6 - Denial of Service via Memory Handling
CVSS 5.0
CVE-2026-43733 HIGH
Apple Ios And iPadOS - Denial of Service
CVSS 7.8
CVE-2026-43729 HIGH
Apple Ios And iPadOS - Denial of Service
CVSS 7.8
CVE-2026-43711 HIGH
Apple Ios And iPadOS - Denial of Service
CVSS 7.8
CVE-2026-43710 CRITICAL
macOS < 14.8.8, < 15.7.8, < 26.6 - Memory Corruption and Unexpected System Termination
CVSS 9.8
CVE-2026-43694 CRITICAL
macOS < 14.8.8, < 15.7.8, < 26.6 - Memory Corruption leading to Unexpected System Termination or Kernel Memory Write
CVSS 9.8
CVE-2026-43682 CRITICAL
macOS < 14.8.8, < 15.7.8, < 26.6 - Remote Kernel Memory Corruption via Memory Handling Flaw
CVSS 9.8
CVE-2026-43673 HIGH
Apple Ios And iPadOS - Denial of Service
CVSS 7.8
CVE-2026-39877 HIGH
macOS < 14.8.8 and < 15.7.8 - Unprotected Kernel Memory Disclosure via Memory Corruption
CVSS 7.8
CVE-2026-39873 CRITICAL
macOS < 14.8.8 / < 15.7.8 / < 26.6 - Denial of Service via Malicious SMB Server
CVSS 9.8
CVE-2026-28911 CRITICAL
macOS <14.8.8 and <26.6 - Memory Corruption via Malicious Application
CVSS 9.8
CVE-2026-28896 HIGH
macOS < 14.8.8 and < 15.7.8 - Kernel Memory Disclosure and Denial of Service via Memory Handling Issue
CVSS 7.7
CVE-2026-17512 LOW
ggml-org whisper.cpp log_mel_spectrogram out-of-bounds
CVSS 3.3
Details
Vulnerabilities 14,073
Exploit Likelihood High