CWE-119

High likelihood

Improper Restriction of Operations within the Bounds of a Memory Buffer

Parent: CWE-118 - Incorrect Access of Indexable Resource ('Range Error')

The product performs operations on a memory buffer, but it reads from or writes to a memory location outside the buffer's intended boundary. This may result in read or write operations on unexpected memory locations that could be linked to other variables, data structures, or internal program data.

13,962 vulnerabilities with CWE-119
CVE-2024-27820 HIGH
Safari < 17.5 - Remote Code Execution via Memory Corruption
CVSS 8.8
CVE-2024-5306 HIGH
Kofax Power PDF - Memory Corruption RCE
CVSS 7.8
CVE-2024-36129 HIGH
OpenTelemetry Collector <0.102.1 - Memory Corruption
CVSS 8.2
CVE-2024-35814 HIGH
Linux Kernel 6.3-6.6.23, 6.7.0-6.7.11, 6.8.0-6.8.2 - Memory Corruption via SWIOTLB Alignment Handling
CVSS 8.8
CVE-2024-23980 HIGH
Intel(R) Server D50FCP - Privilege Escalation
CVSS 7.5
CVE-2024-32058 HIGH
Simcenter Femap <V2406 - Memory Corruption
CVSS 7.8
CVE-2024-0088 MEDIUM
NVIDIA Triton Inference Server 20.10-24.04 - Denial of Service and Data Tampering via Shared Memory APIs
CVSS 5.5
CVE-2024-32761 MEDIUM
BIG-IP 15.1.0-15.1.10 - Memory Data Leak in TMM
CVSS 6.5
CVE-2024-4162 MEDIUM
Panasonic KW Watcher <2.83 - Memory Corruption
CVSS 4.4
CVE-2024-21475 HIGH
Firmware <expected protocol size - Memory Corruption
CVSS 7.8
CVE-2024-33258 HIGH
Jerryscript - Use-After-Free in vm_loop
CVSS 7.1
CVE-2024-22391 HIGH
Grassroot DICOM <3.0.23 - Buffer Overflow
CVSS 7.7
CVE-2024-22373 HIGH
Grassroot DICOM <3.0.23 - Buffer Overflow
CVSS 8.1
CVE-2024-27791 HIGH
iPadOS < 16.7.5 - Memory Corruption in Coprocessor
CVSS 7.1
CVE-2024-30253 HIGH
solana/web3.js - Denial of Service via Memory Exhaustion
CVSS 7.5
CVE-2024-26885 HIGH
Linux Kernel 5.4-6.8.2 Use-After-Free in BPF DEVMAP_HASH
CVSS 7.8
CVE-2024-26884 HIGH
Linux Kernel 3.19-6.8.1 Memory Corruption via BPF Hashtab Overflow
CVSS 7.8
CVE-2024-26883 HIGH
Linux Kernel - Buffer Overflow in BPF Stackmap Hash Bucket Calculation
CVSS 7.8
CVE-2024-3832 HIGH
Google Chrome < 124.0.6367.60 - Remote Code Execution via V8 Object Corruption
CVSS 8.8
CVE-2024-3865 HIGH
Firefox < 125.0 - Memory Corruption
CVSS 8.1
CVE-2024-3864 HIGH
Firefox < 125 and ESR < 115.10 - Memory Corruption
CVSS 8.1
CVE-2024-30398 HIGH
Juniper Junos OS - Unauthenticated Denial of Service via Packet Forwarding Engine Memory Exhaustion
CVSS 7.5
CVE-2024-3159 HIGH
Google Chrome <123.0.6312.105 - Memory Corruption
CVSS 8.8
CVE-2024-25029 CRITICAL
IBM Personal Communications <15.0.1 - RCE
CVSS 9.0
CVE-2024-27344 HIGH
Kofax Power PDF - Memory Corruption RCE
CVSS 7.8
Details
Vulnerabilities 13,962
Exploit Likelihood High