CWE-787

High likelihood

Out-of-bounds Write

Parent: CWE-119 - Improper Restriction of Operations within the Bounds of a Memory Buffer

The product writes data past the end, or before the beginning, of the intended buffer.

14,406 vulnerabilities with CWE-787
CVE-2026-53148 HIGH
thunderbolt: Clamp XDomain response data copy to allocation size
CVSS 7.8
CVE-2026-53143 HIGH
drm/amdkfd: Fix buffer overflow in SDMA queue checkpoint/restore on GFX11
CVSS 7.8
CVE-2026-53137 HIGH
drm/amd/display: Clamp HDMI HDCP2 rx_id_list read to buffer size
CVSS 7.8
CVE-2026-53136 HIGH
drm/amd/display: Clamp VBIOS HDMI retimer register count to array size
CVSS 7.8
CVE-2026-13033 HIGH
Google Chrome - Out-of-bounds Read
CVSS 8.8
CVE-2026-53059 HIGH
Linux - Out-of-Bounds Access
CVSS 7.8
CVE-2026-53043 CRITICAL
ocfs2/dlm: validate qr_numregions in dlm_match_regions()
CVSS 9.1
CVE-2026-53041 HIGH
ocfs2: fix listxattr handling when the buffer is full
CVSS 7.1
CVE-2026-53016 HIGH
crypto: ccp - copy IV using skcipher ivsize
CVSS 7.8
CVE-2026-53004 HIGH
sctp: fix OOB write to userspace in sctp_getsockopt_peer_auth_chunks
CVSS 7.8
CVE-2026-53002 CRITICAL
netfilter: conntrack: remove sprintf usage
CVSS 9.8
CVE-2026-52992 HIGH
fs/adfs: validate nzones in adfs_validate_bblk()
CVSS 7.8
CVE-2026-52962 HIGH
ceph: fix a buffer leak in __ceph_setxattr()
CVSS 7.8
CVE-2026-52935 HIGH
xfrm: espintcp: do not reuse an in-progress partial send
CVSS 7.8
CVE-2026-52914 CRITICAL
batman-adv: fix fragment reassembly length accounting
CVSS 9.8
CVE-2026-56114 MEDIUM
dhcpcd Stack Out-of-Bounds Write in dhcp6_makemessage()
CVSS 5.3
CVE-2026-10658 HIGH
Zephyr Bluetooth Host ISO RX - Denial of Service
CVSS 7.1
CVE-2026-56340 HIGH
vLLM - Denial of Service via Unvalidated Multimodal Embeddings
CVSS 8.8
CVE-2026-49295 HIGH
libde265 has an out-of-bounds write in process_reference_picture_set via predicted short-term RPS
CVSS 7.1
CVE-2026-48773 CRITICAL
ProxySQL pre-auth heap overflow in MySQL and PostgreSQL first-packet handling
CVSS 9.8
CVE-2026-56211 HIGH
Libaom: libaom: remote code execution via svc layer context handling with attacker-controlled frames
CVSS 7.1
CVE-2026-56209 HIGH
Libaom: libaom: arbitrary address write via svc layer context oob and cyclic refresh map pointer hijack
CVSS 7.1
CVE-2026-44663 MEDIUM
OpenEXR: Integer overflow in the HTJ2K decoder leads to heap-buffer-overflow
CVSS 6.1
CVE-2026-8461 HIGH
Heap out-of-bounds write via odd slice_height in FFmpeg MagicYUV decoder
CVSS 8.8
CVE-2026-39199 LOW
Snes9X - Out-of-bounds Write
CVSS 2.9
Details
Vulnerabilities 14,406
Exploit Likelihood High