CWE-119

High likelihood

Improper Restriction of Operations within the Bounds of a Memory Buffer

Parent: CWE-118 - Incorrect Access of Indexable Resource ('Range Error')

The product performs operations on a memory buffer, but it reads from or writes to a memory location outside the buffer's intended boundary. This may result in read or write operations on unexpected memory locations that could be linked to other variables, data structures, or internal program data.

13,986 vulnerabilities with CWE-119
CVE-2019-1901 HIGH
Cisco NX-OS < 13.2(7f) - Unauthenticated Buffer Overflow via LLDP TLV Fields
CVSS 8.8
CVE-2019-10142 HIGH
Linux kernel <5.0.17 - Memory Corruption
CVSS 7.1
CVE-2019-14296 HIGH
UPX 3.95 - Denial of Service via Crafted UPX Packed File
CVSS 7.8
CVE-2019-2328 HIGH
Qualcomm Snapdragon - Buffer Overflow
CVSS 7.8
CVE-2019-2327 CRITICAL
Qualcomm Snapdragon Auto/Mobile/Compute/IOT/Wearables - Buffer Over...
CVSS 9.8
CVE-2019-2322 CRITICAL
Qualcomm Snapdragon - Buffer Overflow
CVSS 9.8
CVE-2019-2312 HIGH
Qualcomm Snapdragon Firmware - Buffer Overflow via Vendor Command Handling
CVSS 7.8
CVE-2019-2272 HIGH
Snapdragon Auto/Mobile/IOT/Wearables - Buffer Overflow
CVSS 7.8
CVE-2019-2254 CRITICAL
Qualcomm Snapdragon - Info Disclosure
CVSS 9.8
CVE-2019-2235 HIGH
Qualcomm Snapdragon - Buffer Overflow
CVSS 7.8
CVE-2019-11729 HIGH
Firefox ESR <60.8-Firefox <68-Thunderbird <60.8 - Memory Corruption
CVSS 7.5
CVE-2019-1010208 LOW
IDRIX Truecrypt Prior to 1.23-Hotfix-1 - Buffer Overflow
CVSS 3.3
CVE-2019-4267 HIGH
IBM Spectrum Protect <8.1 - Buffer Overflow
CVSS 7.8
CVE-2019-2269 CRITICAL
Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapd...
CVSS 9.8
CVE-2019-2243 MEDIUM
Snapdragon Auto/Mobile/... - Buffer Overflow
CVSS 5.5
CVE-2019-14215 HIGH
Foxit PhantomPDF <8.3.11 - Memory Corruption
CVSS 7.5
CVE-2019-1010069 MEDIUM
moinejf abcm2ps 8.13.20 - Denial of Service via Crafted File in txt_add Function
CVSS 5.5
CVE-2019-13619 HIGH
Wireshark <3.0.2/<2.6.9/<2.4.15 - Buffer Overflow
CVSS 7.5
CVE-2019-1010060 CRITICAL
NASA CFITSIO <3.43 - Buffer Overflow
CVSS 9.8
CVE-2019-6824 CRITICAL
ProClima < 8.0.0 - Unauthenticated Remote Code Execution
CVSS 9.8
CVE-2019-1010302 MEDIUM
jhead 3.03 - Denial of Service in iptc.c show_IPTC()
CVSS 5.5
CVE-2019-1010300 HIGH
mz-automation libiec61850 <1.3.2 - Buffer Overflow
CVSS 7.5
CVE-2019-1010305 MEDIUM
libmspack 0.9.1alpha - Buffer Overflow
CVSS 5.5
CVE-2019-1010022 CRITICAL
glibc - Stack Guard Protection Bypass via nptl
CVSS 9.8
CVE-2019-1892 HIGH
Cisco Small Business - Memory Corruption
CVSS 7.5
Details
Vulnerabilities 13,986
Exploit Likelihood High