CWE-787
High likelihoodOut-of-bounds Write
The product writes data past the end, or before the beginning, of the intended buffer.
14,104 vulnerabilities with CWE-787
CVE-2026-43037
CRITICAL
ip6_tunnel: clear skb2->cb[] in ip4ip6_err()
CVSS 9.8
CVE-2026-43020
HIGH
Bluetooth: MGMT: validate LTK enc_size on load
CVSS 7.8
CVE-2026-31780
HIGH
wifi: wilc1000: fix u8 overflow in SSID scan buffer size calculation
CVSS 7.8
CVE-2026-31772
HIGH
Bluetooth: hci_sync: fix stack buffer overflow in hci_le_big_create_sync
CVSS 7.8
CVE-2026-31748
HIGH
comedi: me_daq: Fix potential overrun of firmware buffer
CVSS 7.8
CVE-2026-31747
HIGH
comedi: me4000: Fix potential overrun of firmware buffer
CVSS 7.8
CVE-2026-31743
HIGH
nvmem: zynqmp_nvmem: Fix buffer size in DMA and memcpy
CVSS 7.8
CVE-2026-31720
HIGH
usb: gadget: f_uac1_legacy: validate control request size
CVSS 7.8
CVE-2026-7582
MEDIUM
AcademySoftwareFoundation OpenImageIO DDS Image ddsinput.cpp out-of-bounds write
CVSS 5.3
CVE-2026-42484
CRITICAL
hashcat 7.1.2 - Heap-Based Buffer Overflow in PKZIP Hash Parser
CVSS 9.8
CVE-2026-42483
CRITICAL
hashcat 7.1.2 - Heap-based Buffer Overflow in Kerberos Hash Parser
CVSS 9.8
CVE-2026-42482
CRITICAL
hashcat 7.1.2 - Stack-based Buffer Overflow via Rule File or -j/-k Options
CVSS 9.8
CVE-2026-31716
HIGH
fs/ntfs3: validate rec->used in journal-replay file record check
CVSS 7.8
CVE-2026-31712
HIGH
ksmbd: require minimum ACE size in smb_check_perm_dacl()
CVSS 8.3
CVE-2026-31707
HIGH
ksmbd: validate response sizes in ipc_validate_msg()
CVSS 7.1
CVE-2026-31705
CRITICAL
ksmbd: fix out-of-bounds write in smb2_get_ea() EA alignment
CVSS 9.8
CVE-2026-31699
HIGH
crypto: ccp: Don't attempt to copy CSR to userspace if PSP command failed
CVSS 7.1
CVE-2026-31698
HIGH
crypto: ccp: Don't attempt to copy PDH cert to userspace if PSP command failed
CVSS 7.1
CVE-2026-31697
HIGH
crypto: ccp: Don't attempt to copy ID to userspace if PSP command failed
CVSS 7.1
CVE-2026-31696
HIGH
rxrpc: Fix missing validation of ticket length in non-XDR key preparsing
CVSS 7.8
CVE-2026-5405
HIGH
Heap-based Buffer Overflow in Wireshark
CVSS 7.8
CVE-2026-5403
HIGH
Heap-based Buffer Overflow in Wireshark
CVSS 7.8
CVE-2026-40685
MEDIUM
Exim < 4.99.2 - Heap-Based Buffer Overflow via Malformed JSON Header Processing
CVSS 6.5
CVE-2026-31786
HIGH
Buffer overflow in drivers/xen/sys-hypervisor.c
CVSS 7.8
CVE-2026-7426
HIGH
Out-of-Bounds Write via Unsanitized Prefix Length in Router Advertisement Processing in FreeRTOS-Plus-TCP
CVSS 8.1
Details
Vulnerabilities
14,104
Exploit Likelihood
High