CWE-119

High likelihood

Improper Restriction of Operations within the Bounds of a Memory Buffer

Parent: CWE-118 - Incorrect Access of Indexable Resource ('Range Error')

The product performs operations on a memory buffer, but it reads from or writes to a memory location outside the buffer's intended boundary. This may result in read or write operations on unexpected memory locations that could be linked to other variables, data structures, or internal program data.

13,962 vulnerabilities with CWE-119
CVE-2024-2929 HIGH
Rockwell Automation Arena Simulation - Memory Corruption
CVSS 7.8
CVE-2024-22080 CRITICAL
Espec G5 <1.1.4.15 - Memory Corruption
CVSS 9.8
CVE-2024-0162 MEDIUM
Dell PowerEdge Server BIOS < 2.0.0 - Out-of-Bounds Read/Write in SMM Communication Buffer
CVSS 5.3
CVE-2024-22041 HIGH
Siemens Cerberus PRO and Sinteso FS20 - Unauthenticated Denial of Service via X.509 Certificate Parsing
CVSS 7.5
CVE-2024-25986 HIGH
Android - Memory Corruption in drm_fw.c ppmp_unprotect_buf
CVSS 7.8
CVE-2024-23257 LOW
iPadOS < 16.7.6 - Memory Disclosure via Image Processing
CVSS 3.3
CVE-2024-26335 MEDIUM
swftools v0.9.2 - Use-After-Free in state_free Function
CVSS 5.5
CVE-2024-1174 HIGH
HP ThinPro <8.0 SP 8 - Info Disclosure
CVSS 8.2
CVE-2024-26149 LOW
vyperlang/vyper < 0.3.10 - Memory Buffer Overflow in _abi_decode Array Index Handling
CVSS 3.7
CVE-2024-26599 HIGH
Linux Kernel 5.17-6.1.74, 6.2.0-6.6.13, 6.7.0-6.7.1 - Out-of-Bounds Memory Access in PWM Subsystem
CVSS 7.8
CVE-2024-26589 HIGH
Linux Kernel 4.20-6.7.1 - Out-of-Bounds Memory Access via BPF PTR_TO_FLOW_KEYS
CVSS 7.8
CVE-2024-26588 HIGH
Linux Kernel 6.1-6.1.74, 6.2-6.6.13, 6.7-6.7.1 - Out-of-Bounds Memory Access in LoongArch BPF JIT
CVSS 7.8
CVE-2024-23133 HIGH
Autodesk AutoCAD 2021-2021.1.4 - Memory Corruption via Malicious STP File
CVSS 7.8
CVE-2024-23132 HIGH
Autodesk AutoCAD 2021-2021.1.4 - Memory Corruption via Malicious STP File
CVSS 7.8
CVE-2024-23131 HIGH
Autodesk AutoCAD Family < 2021.1.4 - Memory Corruption via Malicious STP File
CVSS 7.8
CVE-2024-23130 HIGH
Autodesk AutoCAD 2021-2021.1.4 - Memory Corruption via Malicious SLDASM/SLDPRT File Parsing
CVSS 7.8
CVE-2024-23129 HIGH
Autodesk AutoCAD 2021-<2021.1.4 - Memory Corruption via Crafted MODEL 3DM, STP, or SLDASM File
CVSS 7.8
CVE-2024-23128 HIGH
Autodesk AutoCAD 2021-2021.1.4 - Memory Corruption via Crafted MODEL File
CVSS 7.8
CVE-2024-24476 HIGH
Wireshark <4.2.0 - Buffer Overflow
CVSS 7.5
CVE-2024-1553 HIGH
Firefox < 123 and Firefox ESR < 115.8 - Memory Corruption
CVSS 8.1
CVE-2024-24921 HIGH
Simcenter Femap <V2401.0000 - Memory Corruption
CVSS 7.8
CVE-2024-24577 HIGH
libgit2 <1.6.5 and <1.7.2 - Code Execution via git_index_add Heap Corruption
CVSS 8.6
CVE-2024-20011 CRITICAL
Android - Remote Code Execution via ALAC Decoder Bounds Check Issue
CVSS 9.8
CVE-2024-24560 LOW
vyperlang/vyper < 0.3.10 and pypi/vyper < 0.4.0 - Memory Corruption via Overlapping Input/Return Buffers
CVSS 3.7
CVE-2024-0338 HIGH
XAMPP < 8.2.4 - Buffer Overflow via Long File Debug Argument
CVSS 7.3
Details
Vulnerabilities 13,962
Exploit Likelihood High