CWE-119

High likelihood

Improper Restriction of Operations within the Bounds of a Memory Buffer

Parent: CWE-118 - Incorrect Access of Indexable Resource ('Range Error')

The product performs operations on a memory buffer, but it reads from or writes to a memory location outside the buffer's intended boundary. This may result in read or write operations on unexpected memory locations that could be linked to other variables, data structures, or internal program data.

13,960 vulnerabilities with CWE-119
CVE-2025-12234 HIGH
Tenda CH22 1.0.0.1 - Buffer Overflow via SafeMacFilter Page Parameter
CVSS 8.8
CVE-2025-12233 HIGH
Tenda CH22 1.0.0.1 - Buffer Overflow in SafeUrlFilter via Page Argument
CVSS 8.8
CVE-2025-12232 HIGH
Tenda CH22 1.0.0.1 - Buffer Overflow in SafeClientFilter via Page Argument
CVSS 8.8
CVE-2025-12225 HIGH
Tenda AC6 15.03.06.50 - Stack-Based Buffer Overflow via WifiGuestSet shareSpeed Parameter
CVSS 8.8
CVE-2025-12214 HIGH
Tenda O3 1.0.0.10(2478) - Stack-based Buffer Overflow via sysAutoReboot enable Parameter
CVSS 8.8
CVE-2025-12213 HIGH
Tenda O3 1.0.0.10(2478) - Stack-Based Buffer Overflow via setVlanConfig lan Argument
CVSS 8.8
CVE-2025-12212 HIGH
Tenda O3 1.0.0.10(2478) - Stack-based Buffer Overflow via upnpEn Parameter in setNetworkService
CVSS 8.8
CVE-2025-12211 HIGH
Tenda O3 1.0.0.10(2478) - Stack-based Buffer Overflow via dmzIP Argument in setDmzInfo
CVSS 8.8
CVE-2025-12210 HIGH
Tenda O3 1.0.0.10(2478) - Stack-Based Buffer Overflow via AdvSetLanip lanIp Parameter
CVSS 8.8
CVE-2025-12209 HIGH
Tenda O3 1.0.0.10(2478) - Stack-based Buffer Overflow via dhcpEn Parameter in setDhcpConfig
CVSS 8.8
CVE-2025-12205 MEDIUM
Kamailio 5.5 - Use-After-Free in Configuration File Handler
CVSS 5.3
CVE-2025-12204 MEDIUM
Kamailio 5.5 - Heap-Based Buffer Overflow in Configuration File Handler
CVSS 5.3
CVE-2025-26781 HIGH
Samsung Exynos and Modem Firmware - Denial of Service in L2 RLC AM PDU Handling
CVSS 7.5
CVE-2025-11947 MEDIUM
bftpd < 6.2 - Heap-Based Buffer Overflow in Configuration File Handler
CVSS 4.5
CVE-2025-5555 HIGH
Nixdorf Wincor PORT IO Driver <3.0.0.1 - Buffer Overflow
CVSS 7.8
CVE-2025-11840 LOW
GNU Binutils 2.45 - Out-of-Bounds Read in vfinfo Function
CVSS 3.3
CVE-2025-55089 CRITICAL
Eclipse ThreadX FileX < 6.4.2 - Buffer Overflow in RAM Disk Driver
CVSS 9.8
CVE-2025-11683 MEDIUM
YAML::Syck < 1.36 - Out-of-Bounds Read via Missing Null-Terminators
CVSS 6.5
CVE-2025-60016 HIGH
F5 BIG-IP Next 1.1.0-1.3.9 & Service Proxy for Kubernetes 1.7.0-1.9.1 DoS via Brainpool Curve SSL
CVSS 7.5
CVE-2025-33044 HIGH
AMI APTIO V 5.0-5.041 - Memory Corruption via Local BIOS Exploitation
CVSS 7.8
CVE-2025-11721 CRITICAL
Firefox 143 and Thunderbird 143 - Memory Corruption
CVSS 9.8
CVE-2025-11715 HIGH
Firefox and Thunderbird < 144.0 - Memory Corruption
CVSS 8.8
CVE-2025-11714 HIGH
Firefox < 115.29.0 and 140.4-143 - Memory Corruption
CVSS 8.8
CVE-2025-11653 HIGH
UTT HiPER 2620G < 3.1.4 - Buffer Overflow via NTPServerIP Argument in fNTP Function
CVSS 8.8
CVE-2025-11652 HIGH
UTT 518G < 3.2.7-210919-161313 - Buffer Overflow via txtMin2 Parameter
CVSS 8.8
Details
Vulnerabilities 13,960
Exploit Likelihood High