← Back
CWE-119

14,075 CVEs • Abstraction: Class • Likelihood of Exploit: High

Improper Restriction of Operations within the Bounds of a Memory Buffer

The product performs operations on a memory buffer, but it reads from or writes to a memory location outside the buffer's intended boundary. This may result in read or write operations on unexpected memory locations that could be linked to other variables, data structures, or internal program data.

JSON object

Loading...

CVEs (14,075)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Microsoft
1Malware Protection Engine
Apr 29, 2026
May 15, 2013
N/A· v4
N/A· v3
9.3 HIGH· v2
mpengine.dll in Microsoft Malware Protection Engine before 1.1.9506.0 on x64 platforms allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted file.
1Microsoft
8Windows 7
Windows 8Windows Rt+5 more
Apr 29, 2026
May 15, 2013
N/A· v4
N/A· v3
7.2 HIGH· v2
win32k.sys in the kernel-mode drivers in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows Server 2012, and Windows RT doe...Show more
win32k.sys in the kernel-mode drivers in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows Server 2012, and Windows RT does not properly handle objects in memory, which allows local users to gain privileges via a crafted application, aka "Win32k Window Handle Vulnerability."Show less
1Microsoft
1Windows 7
Apr 29, 2026
May 15, 2013
N/A· v4
N/A· v3
7.2 HIGH· v2
Buffer overflow in win32k.sys in the kernel-mode drivers in Microsoft Windows 7 SP1 allows local users to gain privileges via a crafted application that leverages improper handling of objects in memory, aka "Win32k Buffe...Show more
Buffer overflow in win32k.sys in the kernel-mode drivers in Microsoft Windows 7 SP1 allows local users to gain privileges via a crafted application that leverages improper handling of objects in memory, aka "Win32k Buffer Overflow Vulnerability."Show less
1Microsoft
6Windows 7
Windows 8Windows Rt+3 more
Apr 29, 2026
May 15, 2013
N/A· v4
N/A· v3
7.2 HIGH· v2
dxgkrnl.sys (aka the DirectX graphics kernel subsystem) in the kernel-mode drivers in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows Server 2012, and Windows RT does no...Show more
dxgkrnl.sys (aka the DirectX graphics kernel subsystem) in the kernel-mode drivers in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows Server 2012, and Windows RT does not properly handle objects in memory, which allows local users to gain privileges via a crafted application, aka "DirectX Graphics Kernel Subsystem Double Fetch Vulnerability."Show less
1Microsoft
1Publisher
Apr 29, 2026
May 15, 2013
N/A· v4
N/A· v3
10.0 HIGH· v2
Buffer overflow in Microsoft Publisher 2003 SP3 allows remote attackers to execute arbitrary code via a crafted Publisher file, aka "Publisher Buffer Overflow Vulnerability."
1Microsoft
3Lync
Lync ServerOffice Communicator
Apr 29, 2026
May 15, 2013
N/A· v4
N/A· v3
9.3 HIGH· v2
Microsoft Communicator 2007 R2, Lync 2010, Lync 2010 Attendee, and Lync Server 2013 do not properly handle objects in memory, which allows remote attackers to execute arbitrary code via an invitation that triggers access...Show more
Microsoft Communicator 2007 R2, Lync 2010, Lync 2010 Attendee, and Lync Server 2013 do not properly handle objects in memory, which allows remote attackers to execute arbitrary code via an invitation that triggers access to a deleted object, aka "Lync RCE Vulnerability."Show less
3Canonical
ClamavSuse
3Clamav
Linux Enterprise ServerUbuntu Linux
Apr 29, 2026
May 13, 2013
N/A· v4
N/A· v3
4.3 MEDIUM· v2
pdf.c in ClamAV 0.97.1 through 0.97.7 allows remote attackers to cause a denial of service (out-of-bounds-read) via a crafted length value in an encrypted PDF file.
1Xen
1Xen
Apr 29, 2026
May 13, 2013
N/A· v4
N/A· v3
4.7 MEDIUM· v2
Certain page table manipulation operations in Xen 4.1.x, 4.2.x, and earlier are not preemptible, which allows local PV kernels to cause a denial of service via vectors related to "deep page table traversal."
1Emc
1Alphastor
Apr 29, 2026
May 10, 2013
N/A· v4
N/A· v3
9.3 HIGH· v2
Buffer overflow in the Library Control Program (LCP) in EMC AlphaStor 4.0 before build 910 allows remote attackers to execute arbitrary code via crafted commands.
1Hexagon
1Erdas Er Viewer
Apr 29, 2026
May 5, 2013
N/A· v4
N/A· v3
9.3 HIGH· v2
Stack-based buffer overflow in the ERM_convert_to_correct_webpath function in ermapper_u.dll in ERDAS ER Viewer before 13.00.0001 allows remote attackers to execute arbitrary code via a crafted pathname in an ERS file.
1Cisco
1Ios Xr
Apr 29, 2026
May 3, 2013
N/A· v4
N/A· v3
4.0 MEDIUM· v2
The SNMP module in Cisco IOS XR allows remote authenticated users to cause a denial of service (process restart) via crafted SNMP packets, aka Bug ID CSCue69472.
1Novell
1Iprint
Apr 29, 2026
May 2, 2013
N/A· v4
N/A· v3
10.0 HIGH· v2
Stack-based buffer overflow in Novell iPrint Client before 5.90 allows remote attackers to execute arbitrary code via unspecified vectors.
1Apache
1Subversion
Apr 29, 2026
May 2, 2013
N/A· v4
N/A· v3
5.0 MEDIUM· v2
The mod_dav_svn Apache HTTPD server module in Subversion 1.7.0 through 1.7.8 allows remote attackers to cause a denial of service (segmentation fault and crash) via a log REPORT request with an invalid limit, which trigg...Show more
The mod_dav_svn Apache HTTPD server module in Subversion 1.7.0 through 1.7.8 allows remote attackers to cause a denial of service (segmentation fault and crash) via a log REPORT request with an invalid limit, which triggers an access of an uninitialized variable.Show less
2Apache
Opensuse
2Opensuse
Subversion
Apr 29, 2026
May 2, 2013
N/A· v4
N/A· v3
4.0 MEDIUM· v2
The mod_dav_svn Apache HTTPD server module in Subversion 1.6.x before 1.6.21 and 1.7.0 through 1.7.8 allows remote authenticated users to cause a denial of service (NULL pointer dereference and crash) via a LOCK on an ac...Show more
The mod_dav_svn Apache HTTPD server module in Subversion 1.6.x before 1.6.21 and 1.7.0 through 1.7.8 allows remote authenticated users to cause a denial of service (NULL pointer dereference and crash) via a LOCK on an activity URL.Show less
2Apache
Opensuse
2Opensuse
Subversion
Apr 29, 2026
May 2, 2013
N/A· v4
N/A· v3
2.1 LOW· v2
The mod_dav_svn Apache HTTPD server module in Subversion 1.6.x before 1.6.21 and 1.7.0 through 1.7.8 allows remote authenticated users to cause a denial of service (memory consumption) by (1) setting or (2) deleting a la...Show more
The mod_dav_svn Apache HTTPD server module in Subversion 1.6.x before 1.6.21 and 1.7.0 through 1.7.8 allows remote authenticated users to cause a denial of service (memory consumption) by (1) setting or (2) deleting a large number of properties for a file or directory.Show less
1Cisco
1Unified Communications Domain Manager
Apr 29, 2026
May 1, 2013
N/A· v4
N/A· v3
5.0 MEDIUM· v2
Cisco Unified Communications Domain Manager allows remote attackers to cause a denial of service (CPU consumption) via a flood of malformed UDP packets, aka Bug ID CSCug47057.
1Ibm
1Spss Samplepower
Apr 29, 2026
Apr 30, 2013
N/A· v4
N/A· v3
9.3 HIGH· v2
Buffer overflow in the vsflex7l ActiveX control in IBM SPSS SamplePower 3.0 before FP1 allows remote attackers to execute arbitrary code via unspecified vectors.
1Ibm
1Spss Samplepower
Apr 29, 2026
Apr 30, 2013
N/A· v4
N/A· v3
9.3 HIGH· v2
Buffer overflow in the c1sizer ActiveX control in C1sizer.ocx in IBM SPSS SamplePower 3.0 before FP1 allows remote attackers to execute arbitrary code via a long TabCaption string.
1Ibm
1Spss Samplepower
Apr 29, 2026
Apr 30, 2013
N/A· v4
N/A· v3
9.3 HIGH· v2
Multiple buffer overflows in the Vsflex8l ActiveX control in IBM SPSS SamplePower 3.0 before FP1 allow remote attackers to execute arbitrary code via a long (1) ComboList or (2) ColComboList property value.
1Gnu
1Glibc
Apr 29, 2026
Apr 29, 2013
N/A· v4
N/A· v3
5.0 MEDIUM· v2
Stack-based buffer overflow in the getaddrinfo function in sysdeps/posix/getaddrinfo.c in GNU C Library (aka glibc or libc6) 2.17 and earlier allows remote attackers to cause a denial of service (crash) via a (1) hostnam...Show more
Stack-based buffer overflow in the getaddrinfo function in sysdeps/posix/getaddrinfo.c in GNU C Library (aka glibc or libc6) 2.17 and earlier allows remote attackers to cause a denial of service (crash) via a (1) hostname or (2) IP address that triggers a large number of domain conversion results.Show less