CWE-119

High likelihood

Improper Restriction of Operations within the Bounds of a Memory Buffer

Parent: CWE-118 - Incorrect Access of Indexable Resource ('Range Error')

The product performs operations on a memory buffer, but it reads from or writes to a memory location outside the buffer's intended boundary. This may result in read or write operations on unexpected memory locations that could be linked to other variables, data structures, or internal program data.

13,982 vulnerabilities with CWE-119
CVE-2020-10060 HIGH
Zephyr 2.1.0-2.3.0 - Denial of Service via JSON Parsing in updatehub_probe
CVSS 8.0
CVE-2020-11865 HIGH
libEMF < 1.0.11 - Out-of-Bounds Memory Access
CVSS 7.8
CVE-2020-11046 MEDIUM
FreeRDP 1.0.0-2.0.0 - Out-of-Bounds Read via Stream Seek in update_read_synchronize
CVSS 5.5
CVE-2020-3310 MEDIUM
Cisco Firepower Device Manager - RCE
CVSS 4.9
CVE-2020-3283 HIGH
Cisco Firepower Threat Defense 6.4.0-6.4.0.8 - Unauthenticated Denial of Service via Crafted SSL/TLS Message
CVSS 8.6
CVE-2020-8896 MEDIUM
Google Earth Pro <7.3.3 - Buffer Overflow
CVSS 4.2
CVE-2020-6867 MEDIUM
ZTE ZENIC ONE R22b V16.19.10P02SP002 and V16.19.10P02SP005 - Memory Overflow via RPC Calls
CVSS 5.5
CVE-2020-7452 CRITICAL
FreeBSD Kernel Memory Corruption via epair Module
CVSS 9.1
CVE-2020-3273 HIGH
Cisco Wireless LAN Controller - DoS
CVSS 7.5
CVE-2020-3194 HIGH
Cisco Webex Network Recording Player < 40.2 - Remote Code Execution via Malicious ARF/WRF File
CVSS 7.8
CVE-2020-7261 MEDIUM
McAfee Endpoint Security - Buffer Overflow via Environment Variables in AMSI Component
CVSS 6.1
CVE-2020-5861 HIGH
F5 BIG-IP 12.1.0-12.1.5 - Memory Corruption in Ram Cache Optimization
CVSS 7.5
CVE-2020-3776 HIGH
Adobe Photoshop CC <20.0.8-21.1 - Buffer Overflow
CVSS 8.8
CVE-2020-3775 CRITICAL
Adobe Photoshop CC <20.0.8 & 21.1 - Buffer Overflow
CVSS 9.8
CVE-2020-3774 HIGH
Adobe Photoshop CC <20.0.8 & 21.1 - RCE
CVSS 8.8
CVE-2020-3772 HIGH
Adobe Photoshop CC <20.0.8 & 21.1 - Buffer Overflow
CVSS 8.8
CVE-2020-10848 CRITICAL
Samsung mobile devices O(8.x)-Q(10.0) - Memory Mapping
CVSS 9.8
CVE-2020-3264 HIGH
Cisco SD-WAN Solution - Buffer Overflow
CVSS 7.1
CVE-2020-5542 CRITICAL
Mitsubishi Electric MELQIC IU1 <1.0.7 - Buffer Overflow
CVSS 9.8
CVE-2020-10565 HIGH
grub2-bhyve <525916 2020-02-12 - Code Execution
CVSS 7.8
CVE-2020-0796 CRITICAL KEV
Windows 10 1903/1909 and Windows Server 1903/1909 - Remote Code Execution via SMBv3 Compression Buffer Overflow
CVSS 10.0
CVE-2020-0033 HIGH
Android - Use-After-Free in CryptoPlugin::decrypt
CVSS 7.8
CVE-2020-5254 LOW
NetHack 3.6.1-3.6.6 - Memory Corruption via hilite_status Option
CVSS 3.9
CVE-2020-3846 HIGH
iCloud < 7.17 - Buffer Overflow via Malicious XML Processing
CVSS 8.8
CVE-2020-3840 HIGH
iPadOS < 13.3.1 - Memory Corruption via Racoon Configuration File
CVSS 7.8
Details
Vulnerabilities 13,982
Exploit Likelihood High