CWE-787

High likelihood

Out-of-bounds Write

Parent: CWE-119 - Improper Restriction of Operations within the Bounds of a Memory Buffer

The product writes data past the end, or before the beginning, of the intended buffer.

14,104 vulnerabilities with CWE-787
CVE-2026-43037 CRITICAL
ip6_tunnel: clear skb2->cb[] in ip4ip6_err()
CVSS 9.8
CVE-2026-43020 HIGH
Bluetooth: MGMT: validate LTK enc_size on load
CVSS 7.8
CVE-2026-31780 HIGH
wifi: wilc1000: fix u8 overflow in SSID scan buffer size calculation
CVSS 7.8
CVE-2026-31772 HIGH
Bluetooth: hci_sync: fix stack buffer overflow in hci_le_big_create_sync
CVSS 7.8
CVE-2026-31748 HIGH
comedi: me_daq: Fix potential overrun of firmware buffer
CVSS 7.8
CVE-2026-31747 HIGH
comedi: me4000: Fix potential overrun of firmware buffer
CVSS 7.8
CVE-2026-31743 HIGH
nvmem: zynqmp_nvmem: Fix buffer size in DMA and memcpy
CVSS 7.8
CVE-2026-31720 HIGH
usb: gadget: f_uac1_legacy: validate control request size
CVSS 7.8
CVE-2026-7582 MEDIUM
AcademySoftwareFoundation OpenImageIO DDS Image ddsinput.cpp out-of-bounds write
CVSS 5.3
CVE-2026-42484 CRITICAL
hashcat 7.1.2 - Heap-Based Buffer Overflow in PKZIP Hash Parser
CVSS 9.8
CVE-2026-42483 CRITICAL
hashcat 7.1.2 - Heap-based Buffer Overflow in Kerberos Hash Parser
CVSS 9.8
CVE-2026-42482 CRITICAL
hashcat 7.1.2 - Stack-based Buffer Overflow via Rule File or -j/-k Options
CVSS 9.8
CVE-2026-31716 HIGH
fs/ntfs3: validate rec->used in journal-replay file record check
CVSS 7.8
CVE-2026-31712 HIGH
ksmbd: require minimum ACE size in smb_check_perm_dacl()
CVSS 8.3
CVE-2026-31707 HIGH
ksmbd: validate response sizes in ipc_validate_msg()
CVSS 7.1
CVE-2026-31705 CRITICAL
ksmbd: fix out-of-bounds write in smb2_get_ea() EA alignment
CVSS 9.8
CVE-2026-31699 HIGH
crypto: ccp: Don't attempt to copy CSR to userspace if PSP command failed
CVSS 7.1
CVE-2026-31698 HIGH
crypto: ccp: Don't attempt to copy PDH cert to userspace if PSP command failed
CVSS 7.1
CVE-2026-31697 HIGH
crypto: ccp: Don't attempt to copy ID to userspace if PSP command failed
CVSS 7.1
CVE-2026-31696 HIGH
rxrpc: Fix missing validation of ticket length in non-XDR key preparsing
CVSS 7.8
CVE-2026-5405 HIGH
Heap-based Buffer Overflow in Wireshark
CVSS 7.8
CVE-2026-5403 HIGH
Heap-based Buffer Overflow in Wireshark
CVSS 7.8
CVE-2026-40685 MEDIUM
Exim < 4.99.2 - Heap-Based Buffer Overflow via Malformed JSON Header Processing
CVSS 6.5
CVE-2026-31786 HIGH
Buffer overflow in drivers/xen/sys-hypervisor.c
CVSS 7.8
CVE-2026-7426 HIGH
Out-of-Bounds Write via Unsanitized Prefix Length in Router Advertisement Processing in FreeRTOS-Plus-TCP
CVSS 8.1
Details
Vulnerabilities 14,104
Exploit Likelihood High