CWE-119

High likelihood

Improper Restriction of Operations within the Bounds of a Memory Buffer

Parent: CWE-118 - Incorrect Access of Indexable Resource ('Range Error')

The product performs operations on a memory buffer, but it reads from or writes to a memory location outside the buffer's intended boundary. This may result in read or write operations on unexpected memory locations that could be linked to other variables, data structures, or internal program data.

13,968 vulnerabilities with CWE-119
CVE-2021-21853 HIGH
GPAC 1.0.1 - Heap-Based Buffer Overflow via MPEG-4 Decoding
CVSS 8.8
CVE-2021-21847 HIGH
GPAC 1.0.1 - Heap-Based Buffer Overflow in MPEG-4 stts Decoder
CVSS 8.8
CVE-2021-21846 HIGH
GPAC 1.0.1 - Heap-Based Buffer Overflow via MPEG-4 stsz Decoder
CVSS 8.8
CVE-2021-21845 HIGH
GPAC 1.0.1 - Heap-Based Buffer Overflow via MPEG-4 stsc Decoder
CVSS 8.8
CVE-2021-21844 HIGH
GPAC 1.0.1 - Heap-Based Buffer Overflow via MPEG-4 stco Atom
CVSS 8.8
CVE-2021-21843 HIGH
GPAC 1.0.1 - Heap-Based Buffer Overflow via MPEG-4 Decoding
CVSS 8.8
CVE-2021-21839 HIGH
GPAC Project on Advanced Content 1.0.1 - Heap-Based Buffer Overflow via MPEG-4 Decoding
CVSS 8.8
CVE-2021-21838 HIGH
GPAC 1.0.1 - Heap-Based Buffer Overflow via MPEG-4 Decoding
CVSS 8.8
CVE-2021-3635 MEDIUM
Linux Kernel < 5.5-rc7 - Denial of Service via Netfilter Netflow Commands
CVSS 4.4
CVE-2021-1111 MEDIUM
Jetson Linux 32.1-32.6.1 - Buffer Overflow in NV3P Server via USB Physical Access
CVSS 6.7
CVE-2021-0004 MEDIUM
Intel Ethernet Controller E810 Firmware < 1.5.3.0 - Denial of Service via Improper Buffer Restrictions
CVSS 4.4
CVE-2021-38201 HIGH
Linux Kernel 5.11.0-5.12.19 - Denial of Service via NFS 4.2 READ_PLUS Operations
CVSS 7.5
CVE-2021-38190 CRITICAL
nalgebra <0.27.1 - Memory Corruption
CVSS 9.8
CVE-2021-36754 HIGH
PowerDNS Authoritative Server 4.5.0 - Denial of Service via QTYPE 65535 Query
CVSS 7.5
CVE-2021-33478 MEDIUM
Cisco IP Phone 8800 Series Firmware < 14.0(1) - Unauthenticated Arbitrary Code Execution in TrustZone TEE
CVSS 6.8
CVE-2021-31979 HIGH KEV
Windows Kernel - Elevation of Privilege via Memory Buffer Overflow
CVSS 7.8
CVE-2021-34306 HIGH
Siemens JT2Go and Teamcenter Visualization < 13.2.0 - Memory Corruption via BMP File Parsing
CVSS 7.8
CVE-2021-3571 HIGH
linuxptp <3.1.1, <2.0.1 - Info Disclosure
CVSS 7.1
CVE-2021-3570 HIGH
linuxptp < 1.5.1 - Remote Code Execution via PTP Message Forwarding
CVSS 8.8
CVE-2021-21794 HIGH
Accusoft ImageGear - Out-of-Bounds Write in TIF bits_per_sample Processing
CVSS 7.8
CVE-2021-32537 MEDIUM
Realtek HDA Driver 8155-9150 - Denial of Service via Unexpected Kernel Driver Commands
CVSS 6.5
CVE-2021-3598 MEDIUM
OpenEXR < 3.0.5 - Out-of-Bounds Read in ImfDeepScanLineInputFile
CVSS 5.5
CVE-2021-27477 HIGH
JTEKT Corporation TOYOPUC PLC - DoS
CVSS 7.5
CVE-2021-34378 HIGH
NVIDIA Jetson Linux < 32.5.1 - Memory Corruption in Trusty HDCP Service Command 11
CVSS 7.7
CVE-2021-34377 HIGH
NVIDIA Jetson Linux < 32.5.1 - Trusty HDCP Service TA Command 9 Buffer Overflow
CVSS 7.7
Details
Vulnerabilities 13,968
Exploit Likelihood High