CWE-119

High likelihood

Improper Restriction of Operations within the Bounds of a Memory Buffer

Parent: CWE-118 - Incorrect Access of Indexable Resource ('Range Error')

The product performs operations on a memory buffer, but it reads from or writes to a memory location outside the buffer's intended boundary. This may result in read or write operations on unexpected memory locations that could be linked to other variables, data structures, or internal program data.

13,962 vulnerabilities with CWE-119
CVE-2021-47367 MEDIUM
Linux Kernel 5.13-5.14.9 - Memory Leak in virtio-net Big Mode SKB Building
CVSS 5.5
CVE-2021-47348 CRITICAL
Linux Kernel < 5.10.51 - Buffer Over-Read in DRM AMD Display HDCP Handling
CVSS 9.1
CVE-2021-46757 HIGH
ASP Secure OS - Privilege Escalation
CVSS 7.8
CVE-2021-38405 HIGH
Datalogics APDFL - Memory Corruption
CVSS 7.8
CVE-2021-46748 MEDIUM
Intel Radeon RX Vega M Firmware < 23.10.01.46 - Denial of Service via ASP Memory Bounds Check Bypass
CVSS 5.5
CVE-2021-46760 CRITICAL
AMD Ryzen 3945WX-3995WX Firmware - Out-of-Bounds Memory Access via Malformed System Call
CVSS 9.8
CVE-2021-33797 CRITICAL
Artifex MuJS 1.0.1-1.1.1 - Buffer Overflow in jsdtoa.c
CVSS 9.8
CVE-2021-43317 HIGH
UPX < 4.0.0 - Heap-Based Buffer Overflow in PackLinuxElf64::elf_lookup()
CVSS 7.5
CVE-2021-43316 HIGH
upx < 4.0.0 - Heap-Based Buffer Overflow in get_le64()
CVSS 7.5
CVE-2021-43315 HIGH
UPX < 4.0.0 - Heap-Based Buffer Overflow in PackLinuxElf32::elf_lookup()
CVSS 7.5
CVE-2021-43314 HIGH
UPX < 4.0.0 - Heap-Based Buffer Overflow in PackLinuxElf32::elf_lookup()
CVSS 7.5
CVE-2021-43313 HIGH
UPX < 4.0.0 - Heap-Based Buffer Overflow in PackLinuxElf32::invert_pt_dynamic
CVSS 7.5
CVE-2021-43312 HIGH
UPX < 4.0.0 - Heap-Based Buffer Overflow in PackLinuxElf64::invert_pt_dynamic
CVSS 7.5
CVE-2021-43311 HIGH
UPX < 4.0.0 - Heap-Based Buffer Overflow in PackLinuxElf32::elf_lookup()
CVSS 7.5
CVE-2021-3674 HIGH
rizin < 0.2.1 - Memory Corruption via Crafted ELF Section Headers
CVSS 7.8
CVE-2021-46023 HIGH
mruby <3.1.0-rc - Memory Corruption
CVSS 7.5
CVE-2021-3942 CRITICAL
HP Color LaserJet CM4540 MFP CC419A Firmware 3.0-3.9.8 - Remote Code Execution and Buffer Overflow via LLMNR
CVSS 9.8
CVE-2021-3826 MEDIUM
GCC - Heap/Stack Buffer Overflow in dlang_lname Function
CVSS 6.5
CVE-2021-4204 HIGH
Linux Kernel < 5.8.0 - Out-of-Bounds Memory Access in eBPF
CVSS 7.1
CVE-2021-33847 HIGH
Intel Wi-Fi 6 AX411 Firmware < 22.120 - Authenticated Privilege Escalation via Buffer Overflow
CVSS 7.8
CVE-2021-26257 MEDIUM
Intel Wi-Fi and Bluetooth Firmware < 22.120 - Authenticated Denial of Service via Buffer Overflow
CVSS 5.5
CVE-2021-35098 MEDIUM
Qualcomm Snapdragon Firmware - Memory Corruption via PCM Routing Session ID Validation
CVSS 6.7
CVE-2021-44975 MEDIUM
radare2 5.5.2 - Buffer Overflow in mach-o Parser
CVSS 5.5
CVE-2021-42659 MEDIUM
Tenda AC9 Firmware - Buffer Overflow via Virtual Service List Parameter
CVSS 6.5
CVE-2021-46786 CRITICAL
Huawei EMUI and Magic UI - Out-of-Bounds Memory Access in Audio Module
CVSS 9.8
Details
Vulnerabilities 13,962
Exploit Likelihood High