CWE-119

High likelihood

Improper Restriction of Operations within the Bounds of a Memory Buffer

Parent: CWE-118 - Incorrect Access of Indexable Resource ('Range Error')

The product performs operations on a memory buffer, but it reads from or writes to a memory location outside the buffer's intended boundary. This may result in read or write operations on unexpected memory locations that could be linked to other variables, data structures, or internal program data.

13,962 vulnerabilities with CWE-119
CVE-2023-49699 MEDIUM
ASR1806 and ASR1803 Firmware < cp01.057.063 - Memory Corruption in IMS VoLTE Streamingmedia Interface
CVSS 6.7
CVE-2023-41139 HIGH
Autodesk AutoCAD <2024 - Code Injection
CVSS 7.8
CVE-2023-29076 CRITICAL
Autodesk AutoCAD <2024 - Memory Corruption
CVSS 9.8
CVE-2023-47580 HIGH
Fujielectric TELLUS and TELLUS Lite < 4.0.17.0 - Memory Corruption via Crafted X1 V8 or V9 File
CVSS 7.8
CVE-2023-22313 LOW
Intel(R) QAT Library <22.07.1 - Info Disclosure
CVSS 2.3
CVE-2023-36033 HIGH KEV
Windows DWM Core Library - Privilege Escalation
CVSS 7.8
CVE-2023-31247 CRITICAL
Weston Embedded uC-HTTP <3.01.01 - Memory Corruption
CVSS 9.0
CVE-2023-28391 CRITICAL
Silabs Gecko Software Development Kit - Out-of-Bounds Write
CVSS 9.0
CVE-2023-28379 CRITICAL
Silabs Gecko Software Development Kit - Out-of-Bounds Write
CVSS 9.0
CVE-2023-24585 HIGH
Weston Embedded uC-HTTP <3.01.01 - Memory Corruption
CVSS 7.7
CVE-2023-4949 HIGH
GRUB < 0.97 - Memory Corruption via XFS File System Implementation
CVSS 8.1
CVE-2023-3889 HIGH
ARM Valhall GPU Kernel Driver r38p0 through r44p0 - Memory Corruption
CVSS 7.8
CVE-2023-28545 HIGH
Qualcomm 315 5G IoT Modem Firmware - Memory Corruption in TZ Secure OS ELF Loader
CVSS 8.2
CVE-2023-40661 MEDIUM
OpenSC < 0.23.0 - Memory Corruption via Crafted Smart Card APDU Responses
CVSS 5.4
CVE-2023-4967 HIGH
Citrix NetScaler ADC and Gateway 12.1-13.0 - Denial of Service in Gateway Configuration
CVSS 8.2
CVE-2023-42856 HIGH
macOS 12.0-12.7.0 - Memory Corruption via File Processing
CVSS 7.8
CVE-2023-42849 MEDIUM
iPadOS < 16.7.2 - Kernel Memory Mitigation Bypass
CVSS 6.5
CVE-2023-42841 HIGH
iPadOS < 16.7.2 - Remote Code Execution
CVSS 7.8
CVE-2023-41983 MEDIUM
Safari < 17.1 - Denial of Service via Memory Handling Issue
CVSS 6.5
CVE-2023-40449 MEDIUM
iPadOS < 16.7.2 - Denial of Service via Memory Handling Issue
CVSS 5.5
CVE-2023-40447 HIGH
Safari < 17.1 - Remote Code Execution via Memory Corruption
CVSS 8.8
CVE-2023-40423 HIGH
iPadOS < 16.7.2 - Remote Code Execution
CVSS 7.8
CVE-2023-40416 MEDIUM
iPadOS < 16.7.2 - Memory Disclosure via Image Processing
CVSS 6.5
CVE-2023-42506 HIGH
OnSinView2 <= 2.0.1 - Memory Corruption via Crafted Project File
CVSS 7.8
CVE-2023-44184 MEDIUM
Junos OS and Junos OS Evolved - Authenticated Denial of Service via NETCONF Command
CVSS 6.5
Details
Vulnerabilities 13,962
Exploit Likelihood High