CWE-119

High likelihood

Improper Restriction of Operations within the Bounds of a Memory Buffer

Parent: CWE-118 - Incorrect Access of Indexable Resource ('Range Error')

The product performs operations on a memory buffer, but it reads from or writes to a memory location outside the buffer's intended boundary. This may result in read or write operations on unexpected memory locations that could be linked to other variables, data structures, or internal program data.

13,962 vulnerabilities with CWE-119
CVE-2023-27403 HIGH
Tecnomatix Plant Simulation < 2201.0006 - Memory Corruption via SPP File Parsing
CVSS 7.8
CVE-2023-20049 HIGH
Cisco IOS XR < 7.5.3 - Unauthenticated Denial of Service via Malformed BFD Packet Handling
CVSS 8.6
CVE-2023-23517 HIGH
Safari < 16.3 - Remote Code Execution via Malicious Web Content
CVSS 8.8
CVE-2023-23507 HIGH
macOS 12.0.0-12.6.2 - Remote Code Execution via Memory Corruption
CVSS 7.8
CVE-2023-24564 HIGH
Solid Edge SE2022<222.0MP12,SE2023<223.0Update2 - Memory Corruption
CVSS 7.8
CVE-2023-0251 HIGH
Delta Electronics DIAScreen <1.2.1.23 - Buffer Overflow
CVSS 7.8
CVE-2023-20605 MEDIUM
Android - Out-of-Bounds Read in Keyinstall
CVSS 4.4
CVE-2023-0637 MEDIUM
TRENDnet TEW-811DRU 1.0.10.0 - Memory Corruption in Web Management Interface
CVSS 6.5
CVE-2023-0618 HIGH
TRENDnet TEW-652BRP 3.04B01 - Memory Corruption in Web Service cfg_op.ccp
CVSS 7.5
CVE-2023-0613 HIGH
TRENDnet TEW-811DRU 1.0.10.0 - Memory Corruption in httpd via /wireless/security.asp
CVSS 7.5
CVE-2023-23457 MEDIUM
UPX < 2022-11-23 - Denial of Service via Crafted Input File
CVSS 5.3
CVE-2023-20531 HIGH
AMD EPYC Firmware - Denial of Service via SMU SRAM Address Space Manipulation
CVSS 7.5
CVE-2023-20529 HIGH
AMD EPYC 7002 Series Firmware - Denial of Service via SMU Memory Bound Check Bypass
CVSS 7.5
CVE-2022-38696 CRITICAL
Unisoc SC9863A/T310/T610/T618/T606/T612/T616/T760/T770/T820/S8000/T750/T765 - Memory Buffer Overflow in BootRom
CVSS 9.8
CVE-2022-38693 CRITICAL
Unisoc SC9863A/T310/T610/T618/T606/T612/T616/T760/T770/T820/S8000/T750/T765 - Memory Buffer Overflow in FDL1
CVSS 9.8
CVE-2022-38692 CRITICAL
Unisoc SC9863A/T310/T610/T618/T606/T612/T616/T760/T770/T820/S8000 - RSA Key Size Check Bypass in BootROM
CVSS 9.8
CVE-2022-48940 MEDIUM
Linux Kernel 5.15-5.16 - Use-After-Free in BPF Map Value Copy
CVSS 5.5
CVE-2022-33162 HIGH
IBM Security Directory Integrator <7.2.0 and Security Verify Direct...
CVSS 7.3
CVE-2022-48681 HIGH
Huawei EGRT-00 Firmware - Memory Overflow
CVSS 7.2
CVE-2022-48662 HIGH
Linux Kernel - Use-After-Free in i915 Perf Context Handling
CVSS 7.8
CVE-2022-48655 HIGH
Linux Kernel 5.4-5.19.11 Memory Corruption via SCMI Reset Domain Descriptor Access
CVSS 7.8
CVE-2022-47965 HIGH
macOS < 13.0 - Remote Code Execution
CVSS 7.8
CVE-2022-47915 HIGH
macOS < 13.0 - Remote Code Execution via Memory Corruption
CVSS 7.8
CVE-2022-36765 HIGH
EDK2 < 202311 - Buffer Overflow via CreateHob Function Integer Overflow
CVSS 7.0
CVE-2022-36764 HIGH
EDK2 < 202311 - Heap Buffer Overflow in Tcg2MeasurePeImage()
CVSS 7.0
Details
Vulnerabilities 13,962
Exploit Likelihood High