CWE-131
High likelihoodIncorrect Calculation of Buffer Size
Parent: CWE-682 - Incorrect Calculation
The product does not correctly calculate the size to be used when allocating a buffer, which could lead to a buffer overflow.
209 vulnerabilities with CWE-131
CVE-2026-43107
MEDIUM
xfrm: account XFRMA_IF_ID in aevent size calculation
CVSS 5.5
CVE-2026-29004
HIGH
BusyBox DHCPv6 Client Heap Buffer Overflow via DNS_SERVERS
CVSS 8.1
CVE-2026-41676
HIGH
rust-openssl 0.9.27-0.10.77 - Memory Corruption
CVSS 7.5
CVE-2026-1949
CRITICAL
Incorrect calculation of buffer size on the stack in AS320T
CVSS 9.8
CVE-2026-41197
CRITICAL
Brillig: Heap corruption in foreign call results with nested tuple arrays
CVE-2026-6752
HIGH
Incorrect boundary conditions in the WebRTC component
CVSS 7.3
CVE-2026-29645
HIGH
NEMU <v2025.12.r2 - Instruction Validation Flaw
CVSS 7.5
CVE-2026-27820
CRITICAL
zlib: Buffer Overflow in Zlib::GzipReader ungetc via large input leads to memory corruption
CVSS 9.8
CVE-2026-40918
MEDIUM
Gimp: gimp: denial of service via crafted pvr image file
CVSS 5.5
CVE-2026-4152
HIGH
GIMP JP2 File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability
CVSS 7.8
CVE-2026-39892
CRITICAL
cryptography 45.0.0-46.0.6 APIs - Buffer Overflow
CVSS 9.8
CVE-2026-20911
CRITICAL
LibRaw - Heap-Based Buffer Overflow in HuffTable::initval
CVSS 9.8
CVE-2026-34986
HIGH
Go JOSE affect by a panic in JWE decryption
CVSS 7.5
CVE-2026-33987
HIGH
FreeRDP: Persistent Cache bmpSize Desync - Heap OOB Write
CVSS 7.1
CVE-2026-33986
HIGH
FreeRDP: H.264 YUV Buffer Dimension Desync - Heap OOB Write
CVSS 7.5
CVE-2026-33985
MEDIUM
FreeRDP: ClearCodec Glyph Cache Count Desync - Heap OOB Read
CVSS 5.9
CVE-2026-33984
HIGH
FreeRDP: ClearCodec resize_vbar_entry() Heap OOB Write
CVSS 7.5
CVE-2026-4695
HIGH
Incorrect boundary conditions in the Audio/Video: Web Codecs component
CVSS 7.5
CVE-2026-31970
HIGH
HTSlib BGZF GZI Index - Heap Buffer Overflow
CVSS 8.1
CVE-2026-31806
CRITICAL
FreeRDP <3.24.0 - Memory Corruption
CVSS 9.8
CVE-2026-28686
MEDIUM
ImageMagick <7.1.2-16/6.9.13-41 - Buffer Overflow
CVSS 6.8
CVE-2026-20049
HIGH
Cisco ASA 9.18.1-9.18.4.65 & FTD 7.2.0-7.2.10 DoS via GCM-Encrypted IKEv2 IPsec Traffic
CVSS 7.7
CVE-2026-2047
HIGH
GIMP - Heap-based Buffer Overflow RCE
CVSS 7.8
CVE-2026-2738
MEDIUM
ovpn-dco-win 2.8.0 - Buffer Overflow
CVE-2026-26200
HIGH
HDF5 < 1.14.4.2 - Heap Buffer Overflow via Crafted h5 File
CVSS 7.8
Details
Vulnerabilities
209
Exploit Likelihood
High