CWE-119
14,049 CVEs • Abstraction: Class • Likelihood of Exploit: High
Improper Restriction of Operations within the Bounds of a Memory Buffer
The product performs operations on a memory buffer, but it reads from or writes to a memory location outside the buffer's intended boundary. This may result in read or write operations on unexpected memory locations that could be linked to other variables, data structures, or internal program data.
CVEs (14,049)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
Buffer overflows in Windows NT 4.0 print spooler allow remote attackers to gain privileges or cause a denial of service via a malformed spooler request. |
Buffer overflow in Microsoft Phone Dialer (dialer.exe), via a malformed dialer entry in the dialer.ini file. |
1Microsoft 3Internet Information Server Windows 2000Windows NtApr 16, 2026 Jun 16, 1999 N/A· v4 N/A· v3 10.0 HIGH· v2 Buffer overflow in IIS 4.0 allows remote attackers to cause a denial of service via a malformed request for files with .HTR, .IDC, or .STM extensions. |
Buffer overflow in Internet Explorer 5 allows remote attackers to execute commands via a malformed Favorites icon. |
1Microsoft 1Internet Information Server Apr 16, 2026 Jan 27, 1999 N/A· v4 N/A· v3 7.5 HIGH· v2 A buffer overflow in the FTP list (ls) command in IIS allows remote attackers to conduct a denial of service and, in some cases, execute arbitrary commands. |
Buffer overflow in NetMeeting allows denial of service and remote command execution. |
3Bsdi CalderaRedhat3Bsd Os LinuxOpenlinuxApr 16, 2026 Oct 12, 1998 N/A· v4 N/A· v3 10.0 HIGH· v2 Buffer overflow in NFS mountd gives root access to remote attackers, mostly in Linux systems. |
Solaris ufsrestore buffer overflow. |
root privileges via buffer overflow in eject command on SGI IRIX systems. |