CWE-119

High likelihood

Improper Restriction of Operations within the Bounds of a Memory Buffer

Parent: CWE-118 - Incorrect Access of Indexable Resource ('Range Error')

The product performs operations on a memory buffer, but it reads from or writes to a memory location outside the buffer's intended boundary. This may result in read or write operations on unexpected memory locations that could be linked to other variables, data structures, or internal program data.

13,962 vulnerabilities with CWE-119
CVE-2022-3964 MEDIUM
ffmpeg 4.4-4.4.4 - Out-of-Bounds Read in QuickTime RPZA Video Encoder
CVSS 4.3
CVE-2022-32569 HIGH
Intel NUC M15 Laptop Kit LAPBC510 and LAPBC710 Firmware < BCTGL357.0074 - Privilege Escalation via BIOS Buffer Overflow
CVSS 7.5
CVE-2022-29486 MEDIUM
Intel Hyperscan < 5.4.0 - Unauthenticated Buffer Overflow via Network Access
CVSS 4.3
CVE-2022-26367 MEDIUM
Intel XMM 7560 Modem <M2_7560_R_01.2146.00 - Privilege Escalation
CVSS 6.0
CVE-2022-26124 HIGH
Intel NUC <CHAPLCEL.0059 - Privilege Escalation
CVSS 7.5
CVE-2022-26045 LOW
Intel XMM 7560 Modem <M2_7560_R_01.2146.00 - Privilege Escalation
CVSS 3.3
CVE-2022-39392 MEDIUM
Wasmtime < 1.0.2 and 2.0.0-2.0.2 - Memory Corruption via Pooling Instance Allocator Misconfiguration
CVSS 5.9
CVE-2022-32588 HIGH
Accusoft ImageGear 20.0 - Out-of-Bounds Write in PICT Parsing
CVSS 7.8
CVE-2022-41211 HIGH
SAP 3D Visual Enterprise Author and Viewer - Arbitrary Code Execution via Memory Corruption
CVSS 7.0
CVE-2022-24936 HIGH
Silicon Labs Gecko Bootloader < 4.0.1 - Out-of-Bounds Write in GBL Parser
CVSS 8.3
CVE-2022-42809 HIGH
macOS < 13.0 - Remote Code Execution via Malicious GCX File
CVSS 7.8
CVE-2022-42798 MEDIUM
iPadOS < 15.7.1 - Memory Corruption via Malicious Audio File
CVSS 5.5
CVE-2022-32940 HIGH
iPadOS < 16.0 - Arbitrary Code Execution with Kernel Privileges
CVSS 7.8
CVE-2022-32939 HIGH
iPadOS < 15.7.1 - Remote Code Execution
CVSS 7.8
CVE-2022-32934 HIGH
macOS 11.0-11.6 - Remote Code Execution via Memory Corruption
CVSS 8.8
CVE-2022-32926 MEDIUM
iPadOS < 15.7.1 - Authenticated Memory Corruption
CVSS 6.7
CVE-2022-3785 MEDIUM
Bento4 - Heap-Based Buffer Overflow in AP4_DataBuffer::SetDataSize
CVSS 6.3
CVE-2022-3784 MEDIUM
Bento4 - Heap-Based Buffer Overflow in AP4_Mp4AudioDsiParser::ReadBits
CVSS 6.3
CVE-2022-3705 MEDIUM
vim < 9.0.0805 - Use-After-Free in quickfix.c autocmd Handler
CVSS 5.0
CVE-2022-3670 HIGH
Bento4 - Heap-Based Buffer Overflow in mp42hevc WriteSample Function
CVSS 7.3
CVE-2022-3667 HIGH
Bento4 - Heap-Based Buffer Overflow in AP4_MemoryByteStream::WritePartial
CVSS 7.3
CVE-2022-3666 HIGH
Bento4 - Use-After-Free in AP4_LinearReader::Advance
CVSS 7.3
CVE-2022-3665 HIGH
Bento4 - Heap-Based Buffer Overflow in AvcInfo.cpp
CVSS 7.3
CVE-2022-3664 HIGH
Bento4 - Heap-Based Buffer Overflow in AP4_BitStream::WriteBytes
CVSS 7.3
CVE-2022-3662 HIGH
Bento4 - Use-After-Free in Ap4Sample.h GetOffset Function
CVSS 7.3
Details
Vulnerabilities 13,962
Exploit Likelihood High