CWE-119
14,074 CVEs • Abstraction: Class • Likelihood of Exploit: High
Improper Restriction of Operations within the Bounds of a Memory Buffer
The product performs operations on a memory buffer, but it reads from or writes to a memory location outside the buffer's intended boundary. This may result in read or write operations on unexpected memory locations that could be linked to other variables, data structures, or internal program data.
CVEs (14,074)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
Arm provides multiple helpers to clean & invalidate the cache for a given region. This is, for instance, used when allocating guest memory to ensure any writes (such as the ones during scrubbing) have reached memory bef...Show more |
Arm provides multiple helpers to clean & invalidate the cache for a given region. This is, for instance, used when allocating guest memory to ensure any writes (such as the ones during scrubbing) have reached memory bef...Show more |
There is an illegal memory access vulnerability of ZTE's ZXCLOUD iRAI product.When the vulnerability is exploited by an attacker with the common user permission, the physical machine will be crashed.
|
In Modem IMS Stack, there is a possible system crash due to a missing bounds check. This could lead to remote denial of service with no additional execution privileges needed. User interaction is not needed for exploitat...Show more |
In display drm, there is a possible memory corruption due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitati...Show more |
In netdagent, there is a possible information disclosure due to an incorrect bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for expl...Show more |
2Fedoraproject Sqlite2Fedora SqliteJun 17, 2026 Dec 29, 2023 N/A· v4 7.3 HIGH· v3 5.2 MEDIUM· v2 A vulnerability was found in SQLite SQLite3 up to 3.43.0 and classified as critical. This issue affects the function sessionReadRecord of the file ext/session/sqlite3session.c of the component make alltest Handler. The m...Show more |
1Siemens 96ag1414 3em07 7ab0 Firmware 6ag1416 3es07 7ab0 Firmware6es7412 2ek07 0ab0 Firmware+6 moreJun 17, 2026 Dec 12, 2023 N/A· v4 7.5 HIGH· v3 N/A· v2 A vulnerability has been identified in SIMATIC PC-Station Plus (All versions), SIMATIC S7-400 CPU 412-2 PN V7 (All versions), SIMATIC S7-400 CPU 414-3 PN/DP V7 (All versions), SIMATIC S7-400 CPU 414F-3 PN/DP V7 (All vers...Show more |
Multiple memory corruption issues were addressed with improved input validation. This issue is fixed in macOS Sonoma 14.2. Processing a maliciously crafted file may lead to unexpected app termination or arbitrary code ex...Show more |
An out-of-bounds memory access flaw was found in the io_uring SQ/CQ rings functionality in the Linux kernel. This issue could allow a local user to crash the system. |
1Qualcomm 147Ar8035 Firmware Csra6620 FirmwareCsra6640 Firmware+144 moreJun 17, 2026 Dec 5, 2023 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption while submitting a large list of sync points in an AUX command to the IOCTL_KGSL_GPU_AUX_COMMAND. |
1Qualcomm 90Aqt1000 Firmware Fastconnect 6200 FirmwareFastconnect 6700 Firmware+87 moreJun 17, 2026 Dec 5, 2023 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption while processing pin reply in Bluetooth, when pin code received from APP layer is greater than expected size. |
1Qualcomm 143Apq5053 Aa Firmware Ar8035 FirmwareCsra6620 Firmware+140 moreJun 17, 2026 Dec 5, 2023 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption in Audio while running invalid audio recording from ADSP. |
1Qualcomm 184315 5g Iot Modem Firmware Aqt1000 FirmwareAr8031 Firmware+181 moreJun 17, 2026 Dec 5, 2023 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption in BT controller while parsing debug commands with specific sub-opcodes at HCI interface level. |
1Qualcomm 307315 5g Iot Modem Firmware 9205 Lte Modem FirmwareAqt1000 Firmware+304 moreJun 17, 2026 Dec 5, 2023 N/A· v4 6.5 MEDIUM· v3 N/A· v2 Information disclosure when the trusted application metadata symbol addresses are accessed while loading an ELF in TEE. |
1Qualcomm 275315 5g Iot Modem Firmware 9205 Lte Modem FirmwareAqt1000 Firmware+272 moreJun 17, 2026 Dec 5, 2023 N/A· v4 8.8 HIGH· v3 N/A· v2 Memory corruption while loading an ELF segment in TEE Kernel. |
1Qualcomm 242315 5g Iot Modem Firmware 9205 Lte Modem Firmware9206 Lte Modem Firmware+239 moreJun 17, 2026 Dec 5, 2023 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption in UTILS when modem processes memory specific Diag commands having arbitrary address values as input arguments. |
1Qualcomm 329315 5g Iot Modem Firmware 9205 Lte Modem Firmware9206 Lte Modem Firmware+326 moreJun 17, 2026 Dec 5, 2023 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption in MPP performance while accessing DSM watermark using external memory address. |
1Qualcomm 50Aqt1000 Firmware Fastconnect 6200 FirmwareFastconnect 6800 Firmware+47 moreJun 17, 2026 Dec 5, 2023 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory Corruption in Radio Interface Layer while sending an SMS or writing an SMS to SIM. |
IBM AIX 7.2, 7.3, and VIOS 3.1 could allow a non-privileged local user to exploit a vulnerability in the invscout command to execute arbitrary commands. IBM X-Force ID: 267966. |