CWE-119

High likelihood

Improper Restriction of Operations within the Bounds of a Memory Buffer

Parent: CWE-118 - Incorrect Access of Indexable Resource ('Range Error')

The product performs operations on a memory buffer, but it reads from or writes to a memory location outside the buffer's intended boundary. This may result in read or write operations on unexpected memory locations that could be linked to other variables, data structures, or internal program data.

13,962 vulnerabilities with CWE-119
CVE-2025-6271 LOW
swftools <0.9.2 - Out-of-Bounds Read
CVSS 3.3
CVE-2025-6270 MEDIUM
HDF5 < 2.0.0 - Heap-Based Buffer Overflow in H5FS__sect_find_node
CVSS 5.3
CVE-2025-6269 MEDIUM
HDF5 < 1.14.6 - Heap-Based Buffer Overflow in H5C__reconstruct_cache_entry
CVSS 5.3
CVE-2025-49847 HIGH
llama.cpp < b5662 - Buffer Overflow via Malicious GGUF Model Vocabulary
CVSS 8.8
CVE-2025-6165 HIGH
TOTOLINK X15 1.0.0-B20230714.1105 - Buffer Overflow via submit-url Parameter
CVSS 8.8
CVE-2025-6164 HIGH
TOTOLINK A3002R 4.0.0-B20230531.1404 - Buffer Overflow via submit-url Parameter in MultiAP Form Handler
CVSS 8.8
CVE-2025-6163 HIGH
TOTOLINK A3002RU 3.0.0-B20230809.1615 - Buffer Overflow via submit-url Parameter
CVSS 8.8
CVE-2025-6162 HIGH
TOTOLINK EX1200T 4.1.2cu.5232_B20210713 - Buffer Overflow via submit-url Parameter in /boafrm/formMultiAP
CVSS 8.8
CVE-2025-6158 HIGH
D-Link DIR-665 1.00 - Stack-Based Buffer Overflow in HTTP POST Request Handler
CVSS 8.8
CVE-2025-6151 HIGH
TP-Link TL-WR940N V4 and TL-WR841N V11 - Buffer Overflow in WanSlaacCfgRpm.htm
CVE-2025-6150 HIGH
TOTOLINK X15 1.0.0-B20230714.1105 - Buffer Overflow via submit-url Parameter
CVSS 8.8
CVE-2025-6149 HIGH
TOTOLINK A3002R 4.0.0-B20230531.1404 - Buffer Overflow via HTTP POST Request Handler
CVSS 8.8
CVE-2025-6148 HIGH
TOTOLINK A3002RU 3.0.0-B20230809.1615 - Buffer Overflow via HTTP POST Request Handler
CVSS 8.8
CVE-2025-6147 HIGH
TOTOLINK A702R 4.0.0-B20230721.1521 - Buffer Overflow via HTTP POST Request Handler
CVSS 8.8
CVE-2025-6146 HIGH
TOTOLINK X15 1.0.0-B20230714.1105 - Buffer Overflow via HTTP POST Request Handler
CVSS 8.8
CVE-2025-6145 HIGH
TOTOLINK EX1200T 4.1.2cu.5232_B20210713 - Buffer Overflow via HTTP POST Request Handler
CVSS 8.8
CVE-2025-6144 HIGH
TOTOLINK EX1200T 4.1.2cu.5232_B20210713 - Buffer Overflow via HTTP POST Request Handler
CVSS 8.8
CVE-2025-6143 HIGH
TOTOLINK EX1200T 4.1.2cu.5232_B20210713 - Buffer Overflow via NTP Form POST Request
CVSS 8.8
CVE-2025-6141 LOW
GNU ncurses <6.5-20250322 - Buffer Overflow
CVSS 3.3
CVE-2025-6138 HIGH
TOTOLINK T10 4.1.8cu.5207 - Buffer Overflow via setWizardCfg ssid5g Argument
CVSS 8.8
CVE-2025-6137 HIGH
TOTOLINK T10 4.1.8cu.5207 - Buffer Overflow via setWiFiScheduleCfg desc Parameter
CVSS 8.8
CVE-2025-6130 HIGH
TOTOLINK EX1200T 4.1.2cu.5232_B20210713 - Buffer Overflow via HTTP POST Request Handler
CVSS 8.8
CVE-2025-6129 HIGH
TOTOLINK EX1200T 4.1.2cu.5232_B20210713 - Buffer Overflow via HTTP POST Request Handler
CVSS 8.8
CVE-2025-6128 HIGH
TOTOLINK EX1200T 4.1.2cu.5232_B20210713 - Buffer Overflow via Wireless Table POST Request
CVSS 8.8
CVE-2025-6121 CRITICAL
D-Link DIR-632 FW103B08 - Stack-Based Buffer Overflow via Content-Length Manipulation
CVSS 9.8
Details
Vulnerabilities 13,962
Exploit Likelihood High