CWE-119

High likelihood

Improper Restriction of Operations within the Bounds of a Memory Buffer

Parent: CWE-118 - Incorrect Access of Indexable Resource ('Range Error')

The product performs operations on a memory buffer, but it reads from or writes to a memory location outside the buffer's intended boundary. This may result in read or write operations on unexpected memory locations that could be linked to other variables, data structures, or internal program data.

13,989 vulnerabilities with CWE-119
CVE-2018-18601 HIGH
Guardzilla GZ621W Firmware 0.5.1.4 - Buffer Overflow in TK_set_deviceModel_req_handle
CVSS 8.1
CVE-2018-20574 MEDIUM
yaml-cpp 0.6.2 - Denial of Service via Crafted YAML File
CVSS 6.5
CVE-2018-20573 MEDIUM
yaml-cpp 0.6.2 - Denial of Service via Crafted YAML File
CVSS 6.5
CVE-2018-20549 HIGH
libcaca 0.99.beta19 - Memory Corruption via caca_file_read
CVSS 8.8
CVE-2018-20548 HIGH
libcaca 0.99.beta19 - Memory Corruption via 1bpp Image Load
CVSS 8.8
CVE-2018-20547 HIGH
libcaca 0.99.beta19 - Memory Read Out-of-Bounds in get_rgba_default
CVSS 8.1
CVE-2018-20542 HIGH
libxsmm 1.10 - Heap-Based Buffer Overflow in libxsmm_sparse_csc_reader
CVSS 8.8
CVE-2018-20534 MEDIUM
libsolv < 0.7.2 - Denial of Service via Illegal Address Access in Test Suite
CVSS 6.5
CVE-2018-19873 CRITICAL
Qt < 5.11.3 - Buffer Overflow via BMP Data
CVSS 9.8
CVE-2018-20452 HIGH
libxls 1.4.0 - Use-After-Free in ole2_read_header
CVSS 8.8
CVE-2018-20249 HIGH
Foxit Quick PDF Library <16.12 - Memory Corruption
CVSS 8.8
CVE-2018-20248 CRITICAL
Foxit Quick PDF Library <16.12 - Memory Corruption
CVSS 9.8
CVE-2018-18959 HIGH
Epson WorkForce WF-2861 Firmware <=10.52 DoS via AirPrint Bonjour Service
CVSS 7.5
CVE-2018-7796 MEDIUM
Schneider Electric PowerSuite 2 - Buffer Overflow via memcpy
CVSS 6.3
CVE-2018-20331 HIGH
Antiy AVL ATool v1.0.0.22 - Buffer Overflow
CVSS 7.8
CVE-2018-20361 MEDIUM
Freeware Advanced Audio Decoder 2 2.8.8 - Denial of Service via Invalid Memory Address Dereference in hf_assembly
CVSS 5.5
CVE-2018-20360 MEDIUM
Freeware Advanced Audio Decoder < 2.9.0 - Denial of Service via Invalid Memory Address Dereference
CVSS 5.5
CVE-2018-20359 MEDIUM
Freeware Advanced Audio Decoder 2 2.8.8 - Denial of Service via sbrDecodeSingleFramePS Function
CVSS 5.5
CVE-2018-20358 MEDIUM
Freeware Advanced Audio Decoder 2 2.8.8 - Denial of Service via lt_prediction Function
CVSS 5.5
CVE-2018-19242 HIGH
TRENDnet TEW-632BRP/TEW-673GRU <1.010B32 - Buffer Overflow
CVSS 8.8
CVE-2018-19241 HIGH
TRENDnet TV-IP110WN <V1.2.2.65 - Buffer Overflow
CVSS 7.5
CVE-2018-19240 CRITICAL
TRENDnet TV-IP110WN <V1.2.2 - Buffer Overflow
CVSS 9.8
CVE-2018-1000886 MEDIUM
NASM 2.14.01rc5 2.15 - Buffer Overflow in asm/stdscan.c
CVSS 5.5
CVE-2018-1000880 MEDIUM
libarchive 3.2.0-3.3.9 - Denial of Service in WARC Parser
CVSS 6.5
CVE-2018-11986 HIGH
Android - Buffer Overflow in Camera Subsystem Microcontroller FIFOs
CVSS 7.8
Details
Vulnerabilities 13,989
Exploit Likelihood High