CWE-119
14,075 CVEs • Abstraction: Class • Likelihood of Exploit: High
Improper Restriction of Operations within the Bounds of a Memory Buffer
The product performs operations on a memory buffer, but it reads from or writes to a memory location outside the buffer's intended boundary. This may result in read or write operations on unexpected memory locations that could be linked to other variables, data structures, or internal program data.
CVEs (14,075)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
2Canonical Freetds2Freetds Ubuntu LinuxJun 17, 2026 Oct 31, 2019 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 FreeTDS through 1.1.11 has a Buffer Overflow. |
2Debian Transmissionbt2Debian Linux TransmissionNov 21, 2024 Oct 30, 2019 N/A· v4 5.3 MEDIUM· v3 5.0 MEDIUM· v2 Transmission before 1.92 allows attackers to prevent download of a file by corrupted data during the endgame. |
Bounds checking in Tianocompress before November 7, 2017 may allow an authenticated user to potentially enable an escalation of privilege via local access. |
Buffer overflow in LabF nfsAxe FTP client 3.7 allows an attacker to execute code remotely. |
2Libpl Droidsonroids Gif Project Whatsapp2Libpl Droidsonroids Gif WhatsappJun 17, 2026 Oct 23, 2019 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 A heap buffer overflow bug in libpl_droidsonroids_gif before 1.2.19, as used in WhatsApp for Android before version 2.19.291 could allow remote attackers to execute arbitrary code or cause a denial of service. |
2Debian Qt2Debian Linux QtbaseJun 17, 2026 Oct 23, 2019 N/A· v4 4.3 MEDIUM· v3 4.3 MEDIUM· v2 An out-of-bounds memory access in the generateDirectionalRuns() function in qtextengine.cpp in Qt qtbase 5.11.x and 5.12.x before 5.12.5 allows attackers to cause a denial of service by crashing an application via a text...Show more |
1Adobe 2Acrobat Dc Acrobat Reader DcJun 17, 2026 Oct 17, 2019 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 Adobe Acrobat and Reader versions , 2019.012.20040 and earlier, 2017.011.30148 and earlier, 2017.011.30148 and earlier, 2015.006.30503 and earlier, and 2015.006.30503 and earlier have an untrusted pointer dereference vul...Show more |
1Adobe 2Acrobat Dc Acrobat Reader DcJun 17, 2026 Oct 17, 2019 N/A· v4 9.8 CRITICAL· v3 10.0 HIGH· v2 Adobe Acrobat and Reader versions , 2019.012.20040 and earlier, 2017.011.30148 and earlier, 2017.011.30148 and earlier, 2015.006.30503 and earlier, and 2015.006.30503 and earlier have an untrusted pointer dereference vul...Show more |
1Adobe 2Acrobat Dc Acrobat Reader DcJun 17, 2026 Oct 17, 2019 N/A· v4 9.8 CRITICAL· v3 10.0 HIGH· v2 Adobe Acrobat and Reader versions , 2019.012.20040 and earlier, 2017.011.30148 and earlier, 2017.011.30148 and earlier, 2015.006.30503 and earlier, and 2015.006.30503 and earlier have an untrusted pointer dereference vul...Show more |
1Adobe 2Acrobat Dc Acrobat Reader DcJun 17, 2026 Oct 17, 2019 N/A· v4 8.8 HIGH· v3 6.8 MEDIUM· v2 Adobe Acrobat and Reader versions , 2019.012.20040 and earlier, 2017.011.30148 and earlier, 2017.011.30148 and earlier, 2015.006.30503 and earlier, and 2015.006.30503 and earlier have an untrusted pointer dereference vul...Show more |
1Cisco 2Spa112 Firmware Spa122 FirmwareJun 17, 2026 Oct 16, 2019 N/A· v4 8.0 HIGH· v3 5.2 MEDIUM· v2 Multiple vulnerabilities in Cisco SPA100 Series Analog Telephone Adapters (ATAs) could allow an authenticated, adjacent attacker to execute arbitrary code with elevated privileges. The vulnerabilities are due to improper...Show more |
1Cisco 2Spa112 Firmware Spa122 FirmwareJun 17, 2026 Oct 16, 2019 N/A· v4 8.0 HIGH· v3 5.2 MEDIUM· v2 Multiple vulnerabilities in Cisco SPA100 Series Analog Telephone Adapters (ATAs) could allow an authenticated, adjacent attacker to execute arbitrary code with elevated privileges. The vulnerabilities are due to improper...Show more |
1Cisco 2Spa112 Firmware Spa122 FirmwareJun 17, 2026 Oct 16, 2019 N/A· v4 8.0 HIGH· v3 5.2 MEDIUM· v2 Multiple vulnerabilities in Cisco SPA100 Series Analog Telephone Adapters (ATAs) could allow an authenticated, adjacent attacker to execute arbitrary code with elevated privileges. The vulnerabilities are due to improper...Show more |
1Cisco 2Spa112 Firmware Spa122 FirmwareJun 17, 2026 Oct 16, 2019 N/A· v4 8.0 HIGH· v3 5.2 MEDIUM· v2 Multiple vulnerabilities in Cisco SPA100 Series Analog Telephone Adapters (ATAs) could allow an authenticated, adjacent attacker to execute arbitrary code with elevated privileges. The vulnerabilities are due to improper...Show more |
1Cisco 2Spa112 Firmware Spa122 FirmwareJun 17, 2026 Oct 16, 2019 N/A· v4 8.0 HIGH· v3 5.2 MEDIUM· v2 Multiple vulnerabilities in Cisco SPA100 Series Analog Telephone Adapters (ATAs) could allow an authenticated, adjacent attacker to execute arbitrary code with elevated privileges. The vulnerabilities are due to improper...Show more |
1Cisco 2Spa112 Firmware Spa122 FirmwareJun 17, 2026 Oct 16, 2019 N/A· v4 8.0 HIGH· v3 5.2 MEDIUM· v2 Multiple vulnerabilities in Cisco SPA100 Series Analog Telephone Adapters (ATAs) could allow an authenticated, adjacent attacker to execute arbitrary code with elevated privileges. The vulnerabilities are due to improper...Show more |
1Cisco 2Spa112 Firmware Spa122 FirmwareJun 17, 2026 Oct 16, 2019 N/A· v4 8.0 HIGH· v3 5.2 MEDIUM· v2 Multiple vulnerabilities in Cisco SPA100 Series Analog Telephone Adapters (ATAs) could allow an authenticated, adjacent attacker to execute arbitrary code with elevated privileges. The vulnerabilities are due to improper...Show more |
1Cisco 2Spa112 Firmware Spa122 FirmwareJun 17, 2026 Oct 16, 2019 N/A· v4 8.0 HIGH· v3 5.2 MEDIUM· v2 Multiple vulnerabilities in Cisco SPA100 Series Analog Telephone Adapters (ATAs) could allow an authenticated, adjacent attacker to execute arbitrary code with elevated privileges. The vulnerabilities are due to improper...Show more |
1Cisco 2Spa112 Firmware Spa122 FirmwareJun 17, 2026 Oct 16, 2019 N/A· v4 8.0 HIGH· v3 5.2 MEDIUM· v2 Multiple vulnerabilities in Cisco SPA100 Series Analog Telephone Adapters (ATAs) could allow an authenticated, adjacent attacker to execute arbitrary code with elevated privileges. The vulnerabilities are due to improper...Show more |
1Cisco 2Spa112 Firmware Spa122 FirmwareJun 17, 2026 Oct 16, 2019 N/A· v4 8.0 HIGH· v3 5.2 MEDIUM· v2 Multiple vulnerabilities in Cisco SPA100 Series Analog Telephone Adapters (ATAs) could allow an authenticated, adjacent attacker to execute arbitrary code with elevated privileges. The vulnerabilities are due to improper...Show more |