CWE-119

High likelihood

Improper Restriction of Operations within the Bounds of a Memory Buffer

Parent: CWE-118 - Incorrect Access of Indexable Resource ('Range Error')

The product performs operations on a memory buffer, but it reads from or writes to a memory location outside the buffer's intended boundary. This may result in read or write operations on unexpected memory locations that could be linked to other variables, data structures, or internal program data.

13,962 vulnerabilities with CWE-119
CVE-2023-32331 HIGH
IBM Sterling Connect:Express for UNIX 1.5.0 - Denial of Service via Browser UI Buffer Overflow
CVSS 7.5
CVE-2023-52464 HIGH
Linux kernel 4.12.0-4.19.306 - Buffer Overflow in EDAC thunderx Driver via strncat Misuse
CVSS 7.8
CVE-2023-52444 HIGH
Linux Kernel 4.2.0-4.19.306 - Memory Corruption via f2fs_rename Directory Entry Handling
CVSS 7.8
CVE-2023-52441 HIGH
Linux Kernel 5.15.0-5.15.145 - Out-of-Bounds Write in ksmbd SMB2 Response Header Initialization
CVSS 7.8
CVE-2023-52440 HIGH
Linux Kernel 5.17.0-6.1.52 - Buffer Overflow in ksmbd_decode_ntlmssp_auth_blob
CVSS 7.8
CVE-2023-52435 MEDIUM
Linux Kernel < 5.4.269 - Denial of Service via MSS Overflow in skb_segment()
CVSS 5.5
CVE-2023-52434 HIGH
Linux Kernel - Out-of-Bounds Read in SMB2 Parse Contexts
CVSS 8.0
CVE-2023-30767 MEDIUM
Intel Optimization for TensorFlow < 2.13.0 - Authenticated Privilege Escalation via Improper Buffer Restrictions
CVSS 5.5
CVE-2023-43534 HIGH
Qualcomm TID to Link Mapping Firmware - Memory Corruption
CVSS 8.6
CVE-2023-42881 HIGH
macOS < 14.2 - Memory Corruption via File Processing
CVSS 7.8
CVE-2023-5131 HIGH
Delta Electronics ISPSoft - Buffer Overflow
CVSS 8.2
CVE-2023-5130 HIGH
Delta Electronics WPLSoft - Buffer Overflow
CVSS 8.2
CVE-2023-43824 HIGH
Delta Industrial Automation DOPSoft 2.00.00.00-2.00.07.03 - Remote Code Execution via Buffer Overflow
CVSS 8.8
CVE-2023-43823 HIGH
Delta Industrial Automation DOPSoft - Buffer Overflow
CVSS 8.8
CVE-2023-43822 HIGH
Delta Industrial Automation DOPSoft - Buffer Overflow
CVSS 8.8
CVE-2023-43821 HIGH
Delta Electronics DOPSoft 2.00.00.00-2.00.07.04 - Stack-Based Buffer Overflow via DPS File
CVSS 8.8
CVE-2023-43820 HIGH
Delta Industrial Automation DOPSoft 2.00.00.00-2.00.07.04 - RCE via DPS File Buffer Overflow
CVSS 8.8
CVE-2023-43819 HIGH
Delta Industrial Automation DOPSoft 2.00.00.00-2.00.07.04 - Remote Code Execution via Buffer Overflow
CVSS 8.8
CVE-2023-43818 HIGH
Delta Industrial Automation DOPSoft 2.00.00.00-2.00.07.04 - Unauthenticated Remote Code Execution via Crafted DPS File
CVSS 8.8
CVE-2023-43817 HIGH
Delta Industrial Automation DOPSoft <2 - Buffer Overflow
CVSS 7.5
CVE-2023-43816 MEDIUM
Delta Industrial Automation DOPSoft 2.00.00.00-2.00.07.04 - Buffer Overflow via DPS File wKPFStringLen
CVSS 6.3
CVE-2023-43815 HIGH
Delta Electronics DOPSoft 2.00.00.00-2.00.07.04 - Unauthenticated Buffer Overflow via DPS File wScreenDESCTextLen Field
CVSS 7.1
CVE-2023-40052 HIGH
Progress OpenEdge 11.7-11.7.17 and 12.2-12.2.12 - Denial of Service via Malformed Web Request
CVSS 7.5
CVE-2023-6549 HIGH KEV
NetScaler ADC & NetScaler Gateway - DoS
CVSS 8.2
CVE-2023-6334 MEDIUM
HYPR Workforce Access <8.7 - Buffer Overflow
CVSS 5.3
Details
Vulnerabilities 13,962
Exploit Likelihood High