CWE-130
Improper Handling of Length Parameter Inconsistency
The product parses a formatted message or structure, but it does not handle or incorrectly handles a length field that is inconsistent with the actual length of the associated data.
86 vulnerabilities with CWE-130
CVE-2025-23247
MEDIUM
NVIDIA CUDA Toolkit - Buffer Overflow
CVSS 4.4
CVE-2025-29784
HIGH
Nameless < 2.2.0 - Denial of Service
CVSS 7.5
CVE-2025-29931
LOW
TeleControl Server Basic < V3.1.2.2 - Memory Corruption
CVSS 3.7
CVE-2025-30659
HIGH
Juniper Junos - Denial of Service
CVSS 7.5
CVE-2025-32366
MEDIUM
ConnMan <1.44 - Buffer Overflow
CVSS 4.8
CVE-2024-53856
HIGH
rPGP <0.14.1 - Use After Free
CVSS 7.5
CVE-2024-47293
MEDIUM
HAL-WIFI - Buffer Overflow
CVSS 4.7
CVE-2024-41991
HIGH
Django <5.0.8, <4.2.15 - DoS
CVSS 7.5
CVE-2024-41990
HIGH
Django <5.0.8, <4.2.15 - DoS
CVSS 7.5
CVE-2024-42460
MEDIUM
Elliptic 6.5.6 - Info Disclosure
CVSS 5.3
CVE-2024-20416
MEDIUM
Cisco RV340-345 - RCE
CVSS 6.5
CVE-2024-39614
HIGH
Django <5.0.7, <4.2.14 - DoS
CVSS 7.5
CVE-2024-38875
HIGH
Django < 4.2.14 - Denial of Service
CVSS 7.5
CVE-2024-38011
HIGH
Secure Boot - Privilege Escalation
CVSS 8.0
CVE-2024-38010
HIGH
Secure Boot - Privilege Escalation
CVSS 8.0
CVE-2024-37989
HIGH
Secure Boot - Privilege Escalation
CVSS 8.0
CVE-2024-37988
HIGH
Secure Boot - Privilege Escalation
CVSS 8.0
CVE-2024-37305
HIGH
oqs-provider - Memory Corruption
CVSS 8.2
CVE-2024-35313
HIGH
Tor Arti <1.2.3 - Info Disclosure
CVSS 7.3
CVE-2024-29064
MEDIUM
Microsoft Windows 10 1507 < 10.0.10240.20596 - Denial of Service
CVSS 6.2
CVE-2024-20685
MEDIUM
Azure Private 5G Core - DoS
CVSS 5.9
CVE-2024-24976
MEDIUM
Open Automation Software OAS Platform <19.00.0057 - DoS
CVSS 4.9
CVE-2023-53157
MEDIUM
Rosenpass < 0.2.1 - Denial of Service
CVSS 5.3
CVE-2023-52547
HIGH
Huawei Curiem-wfg9b Firmware - Out-of-Bounds Write
CVSS 7.8
CVE-2023-5393
HIGH
Honeywell - Remote Code Execution
CVSS 7.4
Details
Vulnerabilities
86