CWE-119

High likelihood

Improper Restriction of Operations within the Bounds of a Memory Buffer

Parent: CWE-118 - Incorrect Access of Indexable Resource ('Range Error')

The product performs operations on a memory buffer, but it reads from or writes to a memory location outside the buffer's intended boundary. This may result in read or write operations on unexpected memory locations that could be linked to other variables, data structures, or internal program data.

13,968 vulnerabilities with CWE-119
CVE-2021-34376 HIGH
Jetson Linux < 32.5.1 - Memory Corruption in HDCP Service Trusted Application
CVSS 7.7
CVE-2021-32992 CRITICAL
FATEK Automation WinProladder <3.30 - Buffer Overflow
CVSS 9.8
CVE-2021-34550 HIGH
Tor < 0.3.5.15 - Out-of-Bounds Memory Access via v3 Onion Service Descriptor Parsing
CVSS 7.5
CVE-2021-32493 HIGH
djvulibre < 3.5.28 - Heap Buffer Overflow in DJVU::GBitmap::decode()
CVSS 7.8
CVE-2021-32492 HIGH
djvulibre < 3.5.28 - Out-of-Bounds Read in DataPool::has_data()
CVSS 7.8
CVE-2021-32490 HIGH
djvulibre < 3.5.28 - Out-of-Bounds Write in DJVU::filter_bv()
CVSS 7.8
CVE-2021-33004 HIGH
WebAccess HMI Designer <2.1.9.95 - Memory Corruption
CVSS 7.8
CVE-2021-20019 HIGH
SonicOS 7.0.0-7.0.0.376 - Memory Leak via HTTP Server Response
CVSS 7.5
CVE-2021-31495 HIGH
OpenText Brava! Desktop 16.6.3.84 - Remote Code Execution via DXF File Parsing
CVSS 7.8
CVE-2021-31493 HIGH
OpenText Brava! Desktop 16.6.3.84 - Remote Code Execution via DXF File Parsing
CVSS 7.8
CVE-2021-21833 CRITICAL
Accusoft ImageGear 19.9 - Out-of-Bounds Write via TIF IP_planar_raster_unpack
CVSS 9.8
CVE-2021-21808 HIGH
Accusoft ImageGear 19.9 - Heap Buffer Overflow in PNG Palette Processing
CVSS 8.8
CVE-2021-22761 HIGH
IGSS Definition <15.0.0.21140 - Memory Corruption
CVSS 7.8
CVE-2021-25387 CRITICAL
libsflacextractor <SMR MAY-2021 Release 1 - RCE
CVSS 9.0
CVE-2021-25386 CRITICAL
libsdffextractor <SMR MAY-2021 Release 1 - RCE
CVSS 9.0
CVE-2021-25385 CRITICAL
libsdffextractor <SMR MAY-2021 Release 1 - RCE
CVSS 9.0
CVE-2021-25383 CRITICAL
libsapeextractor <SMR MAY-2021 Release 1 - RCE
CVSS 9.0
CVE-2021-0054 MEDIUM
Intel NUC M15 and NUC 11 Firmware - Privilege Escalation via Improper Buffer Restrictions
CVSS 6.7
CVE-2021-31977 HIGH
Windows 10 and Windows Server 2016/2019 - Denial of Service in Hyper-V
CVSS 8.6
CVE-2021-30530 HIGH
Google Chrome <91.0.4472.77 - Memory Corruption
CVSS 8.8
CVE-2021-1527 MEDIUM
Cisco Webex Player < 41.5 - Memory Corruption via Malicious WRF File
CVSS 5.3
CVE-2021-1526 HIGH
Cisco Webex Player < 41.5 - Remote Code Execution via Malicious WRF File
CVSS 7.8
CVE-2021-1503 HIGH
Cisco Webex Player < 41.2 - Remote Code Execution via Malicious ARF or WRF File
CVSS 7.8
CVE-2021-1502 HIGH
Cisco Webex Network Recording Player and Webex Player - Remote Code Execution via Malicious ARF or WRF File
CVSS 7.8
CVE-2021-3489 HIGH
Linux Kernel 5.8-5.10.37 - Out-of-Bounds Write via eBPF RINGBUF bpf_ringbuf_reserve
CVSS 7.8
Details
Vulnerabilities 13,968
Exploit Likelihood High