CWE-130
Improper Handling of Length Parameter Inconsistency
The product parses a formatted message or structure, but it does not handle or incorrectly handles a length field that is inconsistent with the actual length of the associated data.
104 vulnerabilities with CWE-130
CVE-2026-34831
MEDIUM
Rack: Content-Length mismatch in Rack::Files error responses
CVSS 4.8
CVE-2026-33936
MEDIUM
python-ecdsa: Denial of Service via improper DER length validation in crafted private keys
CVSS 5.3
CVE-2026-4371
HIGH
Out of bounds read in IMAP parsing
CVSS 7.4
CVE-2026-25572
MEDIUM
SICAM SIAPP SDK <V2.1.7 - Buffer Overflow
CVSS 5.1
CVE-2026-25571
MEDIUM
SICAM SIAPP SDK <V2.1.7 - Buffer Overflow
CVSS 5.1
CVE-2026-22861
HIGH
iccDEV < 2.3.1.2 - Heap-Based Buffer Overflow in SIccCalcOp::Describe()
CVSS 8.8
CVE-2026-22255
HIGH
iccdev < 2.3.1.2 - Heap-Based Buffer Overflow in CIccCLUT::Init()
CVSS 8.8
CVE-2026-22047
HIGH
iccDEV < 2.3.1.2 - Heap-Based Buffer Overflow in SIccCalcOp::Describe()
CVSS 8.8
CVE-2026-22046
HIGH
iccdev < 2.3.1.2 - Heap-Based Buffer Overflow in CIccProfileXml::ParseBasic()
CVSS 8.8
CVE-2025-48022
MEDIUM
Yokogawa Electric Corporation - DoS
CVSS 6.5
CVE-2025-14847
HIGH
KEV
MongoDB Memory Disclosure (CVE-2025-14847) - Mongobleed
CVSS 7.5
CVE-2025-8531
MEDIUM
Mitsubishi Electric MELSEC-Q Series - Buffer Overflow
CVSS 6.8
CVE-2025-10458
HIGH
Zephyr < 4.1.0 - Improper Handling of Length Parameter Inconsistency
CVSS 7.6
CVE-2025-26432
MEDIUM
Android - Denial of Service via Missing Length Check
CVSS 5.5
CVE-2025-5514
MEDIUM
Mitsubishi Electric MELSEC iQ-F Series - DoS
CVSS 5.3
CVE-2025-54646
MEDIUM
Huawei EMUI and HarmonyOS - Denial of Service via BLE Packet Length Check
CVSS 5.1
CVE-2025-52949
MEDIUM
Juniper Junos OS and Junos OS Evolved - Denial of Service via Malformed BGP Packet in rpd
CVSS 6.5
CVE-2025-53604
MEDIUM
web-push < 0.10.3 - Denial of Service via Large Content-Length Header
CVSS 4.0
CVE-2025-23247
MEDIUM
NVIDIA CUDA Toolkit - Buffer Overflow
CVSS 4.4
CVE-2025-29784
HIGH
NamelessMC < 2.2.0 - Denial of Service via Forum Search Parameter Length
CVSS 7.5
CVE-2025-29931
LOW
TeleControl Server Basic < V3.1.2.2 - Memory Corruption
CVSS 3.7
CVE-2025-30659
HIGH
Juniper Junos OS SRX Series DoS via Malformed SVR Packet
CVSS 7.5
CVE-2025-32366
MEDIUM
ConnMan < 1.44 - Information Disclosure via DNS Response Parsing
CVSS 4.8
CVE-2024-53856
HIGH
rPGP < 0.14.1 - Denial of Service via Crafted Data
CVSS 7.5
CVE-2024-47293
MEDIUM
Huawei EMUI and HarmonyOS - Out-of-bounds Write in HAL-WIFI Module
CVSS 4.7
Details
Vulnerabilities
104