CWE-119

High likelihood

Improper Restriction of Operations within the Bounds of a Memory Buffer

Parent: CWE-118 - Incorrect Access of Indexable Resource ('Range Error')

The product performs operations on a memory buffer, but it reads from or writes to a memory location outside the buffer's intended boundary. This may result in read or write operations on unexpected memory locations that could be linked to other variables, data structures, or internal program data.

13,962 vulnerabilities with CWE-119
CVE-2023-0202 HIGH
NVIDIA DGX A100 SBIOS - Privilege Escalation
CVSS 7.5
CVE-2023-29571 MEDIUM
Cesanta MJS 2.20.0 - Denial of Service via gc_sweep in mjs_gc.c
CVSS 5.5
CVE-2023-29574 MEDIUM
Bento4 v1.6.0-639 - Out-of-Bounds Memory Access in mp42avc Component
CVSS 5.5
CVE-2023-25755 HIGH
Screen Creator Advance 2 < 0.1.1.4 - Memory Corruption via Project File Processing
CVSS 7.8
CVE-2023-27729 HIGH
Nginx NJS v0.7.10 - Buffer Overflow via njs_vmcode_return Function
CVSS 7.5
CVE-2023-29420 MEDIUM
bzip3 < 1.2.3 - Denial of Service via Invalid Memmove in bz3_decode_block
CVSS 6.5
CVE-2023-26974 MEDIUM
Irfanview <4.62 - Memory Corruption
CVSS 5.5
CVE-2023-1579 HIGH
GNU binutils - Heap-based Buffer Overflow in bfd_getl64
CVSS 7.8
CVE-2023-27286 HIGH
IBM Aspera Cargo/Connect 4.2.5 - Buffer Overflow
CVSS 8.4
CVE-2023-27284 HIGH
IBM Aspera Cargo/Connect <4.2.5 - Buffer Overflow
CVSS 8.4
CVE-2023-0198 MEDIUM
NVIDIA GPU Display Driver - Memory Corruption
CVSS 6.6
CVE-2023-0191 HIGH
NVIDIA Virtual GPU < 11.12 - Denial of Service or Data Tampering via Kernel Mode Layer Handler
CVSS 7.1
CVE-2023-0188 MEDIUM
NVIDIA GPU Display Driver - Memory Corruption
CVSS 5.5
CVE-2023-1679 MEDIUM
DriverGenius 9.70.0.346 - Memory Corruption
CVSS 5.3
CVE-2023-1678 MEDIUM
DriverGenius 9.70.0.346 - Memory Corruption
CVSS 5.3
CVE-2023-1676 HIGH
DriverGenius 9.70.0.346 - Memory Corruption
CVSS 7.8
CVE-2023-28638 HIGH
Snappier 1.1.0 - Buffer Overrun via Garbage Collection Compaction
CVSS 7.0
CVE-2023-1073 MEDIUM
Linux Kernel - Memory Corruption in HID Subsystem via Malicious USB Device
CVSS 6.6
CVE-2023-1626 MEDIUM
Jianming Antivirus 16.2.2022.418 - Memory Corruption
CVSS 5.3
CVE-2023-1629 MEDIUM
JiangMin Antivirus 16.2.2022.418 - Memory Corruption
CVSS 5.3
CVE-2023-21047 MEDIUM
Android - Out-of-Bounds Read in ConvertToHalMetadata
CVSS 4.4
CVE-2023-21044 MEDIUM
Android - Local Information Disclosure via VendorGraphicBufferMeta Bounds Check Bypass
CVSS 4.4
CVE-2023-20972 MEDIUM
Android 13 - Out-of-Bounds Read in btm_vendor_specific_evt
CVSS 5.5
CVE-2023-22882 MEDIUM
Zoom < 5.13.5 - Denial of Service via STUN Parsing
CVSS 6.5
CVE-2023-22881 MEDIUM
Zoom < 5.13.5 - Denial of Service via STUN Parsing
CVSS 6.5
Details
Vulnerabilities 13,962
Exploit Likelihood High