CWE-787

High likelihood

Out-of-bounds Write

Parent: CWE-119 - Improper Restriction of Operations within the Bounds of a Memory Buffer

The product writes data past the end, or before the beginning, of the intended buffer.

14,172 vulnerabilities with CWE-787
CVE-2024-38667 HIGH
Linux Kernel Secondary Idle Threads - Memory Corruption
CVSS 7.8
CVE-2024-38621 HIGH
Linux Kernel <=6.9.3 - Out-of-bounds Write in stk1160_copy_video()
CVSS 7.1
CVE-2024-6154 MEDIUM
Parallels Desktop - Privilege Escalation
CVSS 6.7
CVE-2024-37676 HIGH
htop-dev htop <2.20 - Memory Corruption
CVSS 8.4
CVE-2024-6189 HIGH
Tenda A301 15.13.08.12 - Buffer Overflow
CVSS 8.8
CVE-2024-29013 MEDIUM
SonicOS < 7.0.1-5161 - Authenticated Denial of Service via memcpy Heap-based Buffer Overflow
CVSS 6.5
CVE-2024-29012 HIGH
SonicOS < 7.0.1-5161 - Authenticated Denial of Service via sscanf Buffer Overflow
CVSS 7.5
CVE-2024-6102 HIGH
Chrome < 126.0.6478.114 - Out-of-bounds Read in Dawn via Crafted HTML Page
CVSS 8.8
CVE-2024-38586 HIGH
Linux Kernel 5.7-6.9.2 - Out-of-bounds Write in r8169 Tx Packet Handling
CVSS 7.8
CVE-2024-38578 HIGH
Linux Kernel Out-of-bounds Write in eCryptfs Tag 66 Packet Handling
CVSS 7.8
CVE-2024-36978 HIGH
Linux Kernel 5.4-6.9.6 - Out-of-bounds Write in multiq_tune()
CVSS 7.8
CVE-2024-6146 HIGH
Actiontec WCB6200Q Firmware - Unauthenticated Stack-based Buffer Overflow in HTTP Server
CVSS 8.8
CVE-2024-6144 HIGH
Actiontec WCB6200Q Firmware - Unauthenticated Stack-based Buffer Overflow via HTTP Server
CVSS 8.8
CVE-2024-37080 CRITICAL
VMware vCenter Server - Heap-based Buffer Overflow via DCERPC Protocol
CVSS 9.8
CVE-2024-37079 CRITICAL KEV
VMware Cloud Foundation 4.0-5.1 - Remote Code Execution via DCERPC Heap Overflow
CVSS 9.8
CVE-2024-38439 CRITICAL
netatalk 2.0.0-2.4.0 - Heap-Based Buffer Overflow in FPLoginExt
CVSS 9.8
CVE-2024-36501 MEDIUM
Huawei EMUI and HarmonyOS - Out-of-bounds Write in BootTime Module
CVSS 5.6
CVE-2024-0090 HIGH
NVIDIA GPU Display Driver 470-475.06, 470-470.256.02, Virtual GPU < 13.11, Cloud Gaming < 555.99 - Out-of-bounds Write
CVSS 7.8
CVE-2024-32925 HIGH
Android - Remote Code Execution via Missing Bounds Check in dhd_prot_txstatus_process
CVSS 8.8
CVE-2024-32921 HIGH
Android - Out-of-bounds Write in lwis_initialize_transaction_fences
CVSS 7.4
CVE-2024-32917 HIGH
Android - Out-of-bounds Write in pl330_dma_from_peri_start()
CVSS 7.1
CVE-2024-32913 CRITICAL
Android - Remote Code Execution via Integer Overflow in wl_notify_rx_mgmt_frame
CVSS 9.8
CVE-2024-32909 HIGH
Android - Out-of-bounds Write in main.cpp handle_msg
CVSS 7.8
CVE-2024-32905 CRITICAL
Android - Out-of-Bounds Write in circ_read
CVSS 9.8
CVE-2024-32903 HIGH
Android - Local Privilege Escalation via Improper Input Validation in lwis_transaction.c
CVSS 7.8
Details
Vulnerabilities 14,172
Exploit Likelihood High