CWE-119

High likelihood

Improper Restriction of Operations within the Bounds of a Memory Buffer

Parent: CWE-118 - Incorrect Access of Indexable Resource ('Range Error')

The product performs operations on a memory buffer, but it reads from or writes to a memory location outside the buffer's intended boundary. This may result in read or write operations on unexpected memory locations that could be linked to other variables, data structures, or internal program data.

13,962 vulnerabilities with CWE-119
CVE-2022-41175 HIGH
SAP 3D Visual Enterprise Author <9 - RCE
CVSS 7.8
CVE-2022-41174 MEDIUM
SAP 3D Visual Enterprise Author <9 - Memory Corruption
CVSS 5.5
CVE-2022-41173 MEDIUM
SAP 3D Visual Enterprise Author <9 - Memory Corruption
CVSS 5.5
CVE-2022-41172 HIGH
SAP 3D Visual Enterprise Author <9 - RCE
CVSS 7.8
CVE-2022-41171 MEDIUM
SAP 3D Visual Enterprise Author <9 - Memory Corruption
CVSS 5.5
CVE-2022-41170 HIGH
SAP 3D Visual Enterprise Author <9 - RCE
CVSS 7.8
CVE-2022-41169 MEDIUM
SAP 3D Visual Enterprise Author <9 - Memory Corruption
CVSS 5.5
CVE-2022-41168 HIGH
SAP 3D Visual Enterprise Author <9 - RCE
CVSS 7.8
CVE-2022-41167 HIGH
SAP 3D Visual Enterprise Author <9 - RCE
CVSS 7.8
CVE-2022-41166 MEDIUM
SAP 3D Visual Enterprise Author <9 - Memory Corruption
CVSS 5.5
CVE-2022-39808 HIGH
SAP 3D Visual Enterprise Author 9 - Remote Code Execution via Malicious Wavefront Object File
CVSS 7.8
CVE-2022-39807 MEDIUM
SAP 3D Visual Enterprise Author 9 - Denial of Service via Malformed SolidWorks Drawing File
CVSS 5.5
CVE-2022-39806 HIGH
SAP 3D Visual Enterprise Author 9 - Remote Code Execution via Malicious SolidWorks Drawing File
CVSS 7.8
CVE-2022-39805 HIGH
SAP 3D Visual Enterprise Author 9 - Remote Code Execution via Malicious CGM File
CVSS 7.8
CVE-2022-39804 HIGH
SAP 3D Visual Enterprise Author 9 - Remote Code Execution via Malicious SolidWorks Part File
CVSS 7.8
CVE-2022-39803 HIGH
SAP 3D Visual Enterprise Author 9 - Remote Code Execution via Malicious ACIS File
CVSS 7.8
CVE-2022-3435 MEDIUM
Linux Kernel - Out-of-Bounds Read in IPv4 Handler fib_nh_match
CVSS 4.3
CVE-2022-29503 CRITICAL
uClibC 0.9.33.2 and uClibC-ng 1.0.40 - Memory Corruption in libpthread linuxthreads
CVSS 9.8
CVE-2022-1270 HIGH
GraphicsMagick - Heap Buffer Overflow in MIFF Parser
CVSS 7.8
CVE-2022-3349 MEDIUM
Sony PlayStation 4 and 5 Firmware - Heap-Based Buffer Overflow in exFAT Handler
CVSS 6.8
CVE-2022-32847 CRITICAL
iPadOS < 15.6 - Remote Denial of Service via Memory Corruption
CVSS 9.1
CVE-2022-35032 MEDIUM
otfcc - Use-After-Free via otfccdump
CVSS 6.5
CVE-2022-35024 MEDIUM
otfcc - Use-After-Free via memmove-vec-unaligned-erms.S
CVSS 6.5
CVE-2022-39974 HIGH
wasm3 v0.5.0 - Segmentation Fault in op_Select_i32_srs
CVSS 7.5
CVE-2022-3213 MEDIUM
ImageMagick < 6.9.12-62 - Denial of Service via Malformed TIFF File
CVSS 5.5
Details
Vulnerabilities 13,962
Exploit Likelihood High