CWE-119

High likelihood

Improper Restriction of Operations within the Bounds of a Memory Buffer

Parent: CWE-118 - Incorrect Access of Indexable Resource ('Range Error')

The product performs operations on a memory buffer, but it reads from or writes to a memory location outside the buffer's intended boundary. This may result in read or write operations on unexpected memory locations that could be linked to other variables, data structures, or internal program data.

13,968 vulnerabilities with CWE-119
CVE-2021-20239 LOW
Linux kernel <5.4.92 - Info Disclosure
CVSS 3.3
CVE-2021-22894 HIGH KEV
Pulse Connect Secure <9.1R11.4 - RCE
CVSS 8.8
CVE-2021-30499 HIGH
libcaca - Buffer Overflow in export_troff Function
CVSS 7.8
CVE-2021-3561 HIGH
fig2dev 3.2.8a - Out-of-Bounds Write in read_objects()
CVSS 7.1
CVE-2021-30472 HIGH
PoDoFo 0.9.7 - Stack-Based Buffer Overflow in PdfEncryptMD5Base::ComputeOwnerKey
CVSS 7.8
CVE-2021-25217 HIGH
ISC DHCP <4.1-ESV-R16, 4.4.0-4.4.2 - Info Disclosure
CVSS 7.4
CVE-2021-3549 HIGH
GNU binutils objdump <2.36 - Buffer Overflow
CVSS 7.1
CVE-2021-22705 HIGH
Vijeo Designer/EcoStruxure Machine Expert - Memory Corruption
CVSS 7.8
CVE-2021-22543 HIGH
Linux Kernel - Use-After-Free via KVM VM_IO|VM_PFNMAP Handling
CVSS 7.8
CVE-2021-3559 MEDIUM
libvirt 6.10.0-6.12.0 - Denial of Service via virConnectListAllNodeDevices API
CVSS 6.5
CVE-2021-20589 HIGH
Mitsubishi GOT2000 and GOT SIMPLE Series Firmware - Denial of Service via Crafted MODBUS/TCP Packets
CVSS 7.5
CVE-2021-29579 LOW
TensorFlow < 2.1.4 - Heap Buffer Overflow in MaxPoolGrad
CVSS 2.5
CVE-2021-29578 LOW
TensorFlow < 2.1.4 - Heap Buffer Overflow in FractionalAvgPoolGrad
CVSS 2.5
CVE-2021-29577 LOW
TensorFlow < 2.1.4 - Heap Buffer Overflow in AvgPool3DGrad
CVSS 2.5
CVE-2021-29576 LOW
TensorFlow < 2.1.4 - Heap Buffer Overflow in MaxPool3DGradGrad
CVSS 2.5
CVE-2021-29575 LOW
TensorFlow < 2.1.4 - Denial of Service via ReverseSequence Op
CVSS 2.5
CVE-2021-20988 HIGH
Hilscher rcX RTOS < 2.1.14.1 - Denial of Service via UDP Packet Length Mismatch
CVSS 8.6
CVE-2021-27397 HIGH
Tecnomatix Plant Simulation < V16.0.5 - Memory Corruption
CVSS 7.8
CVE-2021-25660 HIGH
SIMATIC HMI Comfort Outdoor Panels 7" & 15" < V15.1 Update 6 - Denial of Service via SmartVNC Memory Access
CVSS 7.5
CVE-2021-31472 HIGH
Foxitsoftware 3D < 9.7.4.29600 - Out-of-Bounds Write
CVSS 7.8
CVE-2021-3507 MEDIUM
QEMU <= 6.0.0 - Heap Buffer Overflow in Floppy Disk Emulator
CVSS 6.1
CVE-2021-20204 CRITICAL
getdata 0.10.0 - Use-After-Free in Dirfile Database Processing
CVSS 9.8
CVE-2021-1521 MEDIUM
Cisco Video Surveillance 8000 Series IP Cameras < 1.0.9-11 - DoS via Cisco Discovery Protocol
CVSS 6.5
CVE-2021-1511 HIGH
Cisco SD-WAN vEdge Firmware 20.4 - Remote Code Execution and Denial of Service
CVSS 7.5
CVE-2021-1510 HIGH
Cisco vEdge 100/1000/100B/100M/100WM/2000/5000/Cloud Firmware 20.4 - Remote Code Execution and Denial of Service
CVSS 7.5
Details
Vulnerabilities 13,968
Exploit Likelihood High