CWE-119
14,074 CVEs • Abstraction: Class • Likelihood of Exploit: High
Improper Restriction of Operations within the Bounds of a Memory Buffer
The product performs operations on a memory buffer, but it reads from or writes to a memory location outside the buffer's intended boundary. This may result in read or write operations on unexpected memory locations that could be linked to other variables, data structures, or internal program data.
CVEs (14,074)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
Use of Out-of-range Pointer Offset in Homebrew mruby prior to 3.2. |
njs through 0.7.0, used in NGINX, was discovered to contain an out-of-bounds array access via njs_vmcode_typeof in /src/njs_vmcode.c. |
4Apple DebianFedoraproject+1 more4Debian Linux FedoraMacos+1 moreJun 17, 2026 Feb 10, 2022 N/A· v4 7.8 HIGH· v3 6.8 MEDIUM· v2 Use of Out-of-range Pointer Offset in GitHub repository vim/vim prior to 8.2. |
There is a vulnerability of unstrict input parameter verification in the audio assembly.Successful exploitation of this vulnerability may cause out-of-bounds access. |
1Microsoft 7365 Apps ExcelOffice+4 moreJun 17, 2026 Feb 9, 2022 N/A· v4 5.5 MEDIUM· v3 4.3 MEDIUM· v2 Microsoft Excel Information Disclosure Vulnerability |
A vulnerability has been identified in Simcenter Femap V2020.2 (All versions), Simcenter Femap V2021.1 (All versions). Affected application contains a memory corruption vulnerability while parsing NEU files. This could a...Show more |
A vulnerability has been identified in Simcenter Femap V2020.2 (All versions), Simcenter Femap V2021.1 (All versions). Affected application contains a memory corruption vulnerability while parsing NEU files. This could a...Show more |
1Siemens 3Jt2go Solid EdgeTeamcenter VisualizationJun 17, 2026 Feb 9, 2022 N/A· v4 7.8 HIGH· v3 6.8 MEDIUM· v2 A vulnerability has been identified in JT2Go (All versions < V13.2.0.7), Solid Edge SE2021 (All versions < SE2021MP9), Solid Edge SE2022 (All versions < SE2022MP1), Teamcenter Visualization V13.1 (All versions < V13.1.0....Show more |
1Siemens 3Jt2go Solid EdgeTeamcenter VisualizationJun 17, 2026 Feb 9, 2022 N/A· v4 7.8 HIGH· v3 6.8 MEDIUM· v2 A vulnerability has been identified in JT2Go (All versions < V13.2.0.7), Solid Edge SE2021 (All versions < SE2021MP9), Solid Edge SE2022 (All versions < SE2022MP1), Teamcenter Visualization V13.1 (All versions < V13.1.0....Show more |
2Fedoraproject Radare2Fedora Radare2Jun 17, 2026 Feb 8, 2022 N/A· v4 7.1 HIGH· v3 5.8 MEDIUM· v2 Access of Memory Location Before Start of Buffer in NPM radare2.js prior to 5.6.2. |
2Fedoraproject Radare2Fedora Radare2Jun 17, 2026 Feb 8, 2022 N/A· v4 7.1 HIGH· v3 5.8 MEDIUM· v2 Access of Memory Location After End of Buffer in GitHub repository radareorg/radare2 prior to 5.6.2. |
2Fedoraproject Radare2Fedora Radare2Jun 17, 2026 Feb 8, 2022 N/A· v4 7.1 HIGH· v3 5.8 MEDIUM· v2 Buffer Access with Incorrect Length Value in GitHub repository radareorg/radare2 prior to 5.6.2. |
An issue was discovered in NvmExpressDxe in the kernel 5.0 through 5.5 in Insyde InsydeH2O. Because of an Untrusted Pointer Dereference that causes SMM memory corruption, an attacker may be able to write fixed or predict...Show more |
2Insyde Siemens15Insydeh2o Simatic Field Pg M5 FirmwareSimatic Field Pg M6 Firmware+12 moreJun 17, 2026 Feb 3, 2022 N/A· v4 8.2 HIGH· v3 7.2 HIGH· v2 An issue was discovered in SdHostDriver in the kernel 5.0 through 5.5 in Insyde InsydeH2O. There is an SMM callout that allows an attacker to access the System Management Mode and execute arbitrary code. This occurs beca...Show more |
2Insyde Siemens15Insydeh2o Simatic Field Pg M5 FirmwareSimatic Field Pg M6 Firmware+12 moreJun 17, 2026 Feb 3, 2022 N/A· v4 8.2 HIGH· v3 7.2 HIGH· v2 An issue was discovered in AhciBusDxe in the kernel 5.0 through 5.5 in Insyde InsydeH2O. Because of an Untrusted Pointer Dereference that causes SMM memory corruption, an attacker may be able to write fixed or predictabl...Show more |
2Insyde Siemens15Insydeh2o Simatic Field Pg M5 FirmwareSimatic Field Pg M6 Firmware+12 moreJun 17, 2026 Feb 3, 2022 N/A· v4 8.2 HIGH· v3 7.2 HIGH· v2 An issue was discovered in Insyde InsydeH2O Kernel 5.0 before 05.09.11, 5.1 before 05.17.11, 5.2 before 05.27.11, 5.3 before 05.36.11, 5.4 before 05.44.11, and 5.5 before 05.52.11 affecting FwBlockServiceSmm. Software SM...Show more |
3Insyde NetappSiemens18Fas/aff Bios Insydeh2oRuggedcom Ape1808 Firmware+15 moreJun 17, 2026 Feb 3, 2022 N/A· v4 7.5 HIGH· v3 6.9 MEDIUM· v2 An issue was discovered in Kernel 5.x in Insyde InsydeH2O, affecting HddPassword. Software SMI services that use the Communicate() function of the EFI_SMM_COMMUNICATION_PROTOCOL do not check whether the address of the bu...Show more |
1Stormshield 1Stormshield Network Security Jun 17, 2026 Jan 31, 2022 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 In ASQ in Stormshield Network Security (SNS) 1.0.0 through 2.7.8, 2.8.0 through 2.16.0, 3.0.0 through 3.7.20, 3.8.0 through 3.11.8, and 4.0.1 through 4.2.2, mishandling of memory management can lead to remote code execut...Show more |
3Apple DebianVim3Debian Linux MacosVimJun 17, 2026 Jan 25, 2022 N/A· v4 7.8 HIGH· v3 4.6 MEDIUM· v2 Access of Memory Location Before Start of Buffer in GitHub repository vim/vim prior to 8.2. |
There is an Assertion ''ecma_object_is_typedarray (obj_p)'' failed at /jerry-core/ecma/operations/ecma-typedarray-object.c in Jerryscript 3.0.0. |