CWE-119
14,075 CVEs • Abstraction: Class • Likelihood of Exploit: High
Improper Restriction of Operations within the Bounds of a Memory Buffer
The product performs operations on a memory buffer, but it reads from or writes to a memory location outside the buffer's intended boundary. This may result in read or write operations on unexpected memory locations that could be linked to other variables, data structures, or internal program data.
CVEs (14,075)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Adobe 2Acrobat Dc Acrobat Reader DcJun 17, 2026 May 24, 2019 N/A· v4 8.8 HIGH· v3 9.3 HIGH· v2 Adobe Acrobat and Reader versions 2019.010.20069 and earlier, 2019.010.20069 and earlier, 2017.011.30113 and earlier version, and 2015.006.30464 and earlier have an untrusted pointer dereference vulnerability. Successful...Show more |
1Adobe 2Acrobat Dc Acrobat Reader DcJun 17, 2026 May 24, 2019 N/A· v4 9.8 CRITICAL· v3 10.0 HIGH· v2 Adobe Acrobat and Reader versions 2019.010.20069 and earlier, 2019.010.20069 and earlier, 2017.011.30113 and earlier version, and 2015.006.30464 and earlier have a buffer errors vulnerability. Successful exploitation cou...Show more |
1Qualcomm 12Qcs605 Firmware Sd 670 FirmwareSd 675 Firmware+9 moreJun 17, 2026 May 24, 2019 N/A· v4 7.8 HIGH· v3 7.2 HIGH· v2 Kernel can write to arbitrary memory address passed by user while freeing/stopping a thread in Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile in QCS605, SD 675, SD 712 / SD 710...Show more |
1Qualcomm 33215 Firmware Mdm9150 FirmwareMdm9206 Firmware+30 moreJun 17, 2026 May 24, 2019 N/A· v4 7.8 HIGH· v3 4.6 MEDIUM· v2 Buffer overflow can occur if invalid header tries to overwrite the existing buffer which fix size allocation in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial...Show more |
1Qualcomm 21Mdm9206 Firmware Mdm9607 FirmwareMdm9650 Firmware+18 moreNov 21, 2024 May 24, 2019 N/A· v4 7.8 HIGH· v3 7.2 HIGH· v2 While updating blacklisting region shared buffered memory region is not validated against newly updated black list, causing boot-up to be compromised in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer Electronic...Show more |
1Qualcomm 24Mdm9150 Firmware Mdm9206 FirmwareMdm9607 Firmware+21 moreNov 21, 2024 May 24, 2019 N/A· v4 9.8 CRITICAL· v3 10.0 HIGH· v2 Lack of check in length before using memcpy in WLAN function can lead to OOB access in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile in MDM9150, MDM9206, MDM96...Show more |
1Qualcomm 42Ipq8074 Firmware Mdm9206 FirmwareMdm9607 Firmware+39 moreNov 21, 2024 May 24, 2019 N/A· v4 7.8 HIGH· v3 7.2 HIGH· v2 Lack of check on length parameter may cause buffer overflow while processing WMI commands in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer...Show more |
1Qualcomm 28Mdm9150 Firmware Mdm9206 FirmwareMdm9607 Firmware+25 moreNov 21, 2024 May 24, 2019 N/A· v4 7.8 HIGH· v3 4.6 MEDIUM· v2 Improper buffer length check before copying can lead to integer overflow and then a buffer overflow in WMA event handler in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdra...Show more |
1Schneider Electric 5140cra312xxx Firmware Bmx/e Cra FirmwareM340 Firmware+2 moreJun 17, 2026 May 22, 2019 N/A· v4 6.5 MEDIUM· v3 6.8 MEDIUM· v2 CWE-119: Buffer errors vulnerability exists in Modicon M580 with firmware prior to V2.50, Modicon M340 with firmware prior to V3.01, BMxCRA312xx with firmware prior to V2.40, All firmware versions of Modicon Premium and...Show more |
1Citrix 2Netscaler Application Delivery Controller Firmware Netscaler Gateway FirmwareJun 17, 2026 May 22, 2019 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 A Buffer Overflow exists in Citrix NetScaler Gateway 10.5.x before 10.5.70.x, 11.1.x before 11.1.59.10, 12.0.x before 12.0.59.8, and 12.1.x before 12.1.49.23 and Citrix Application Delivery Controller 10.5.x before 10.5....Show more |
1Intel 1Converged Security Management Engine Firmware Jun 17, 2026 May 17, 2019 N/A· v4 6.7 MEDIUM· v3 4.6 MEDIUM· v2 Buffer overflow in subsystem in Intel(R) DAL before version 12.0.35 may allow a privileged user to potentially enable escalation of privilege via local access. |
1Intel 1Converged Security Management Engine Firmware Jun 17, 2026 May 17, 2019 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 Buffer overflow in subsystem in Intel(R) CSME 12.0.0 through 12.0.34 may allow an unauthenticated user to potentially enable escalation of privilege via network access. |
1Intel 92Hns2400lp Firmware Hns2600bpb24 FirmwareHns2600bpb Firmware+89 moreJun 17, 2026 May 17, 2019 N/A· v4 6.7 MEDIUM· v3 7.2 HIGH· v2 Buffer overflow vulnerability in system firmware for Intel(R) Xeon(R) Processor D Family, Intel(R) Xeon(R) Scalable Processor, Intel(R) Server Board, Intel(R) Server System and Intel(R) Compute Module may allow a privile...Show more |
Insufficient bounds checking in Intel(R) Graphics Drivers before version 10.18.14.5067 (aka 15.36.x.5067) and 10.18.10.5069 (aka 15.33.x.5069) may allow an authenticated user to potentially enable a denial of service via...Show more |
A vulnerability in the implementation of a specific CLI command for Cisco NX-OS Software could allow an authenticated, local attacker with administrator credentials to cause a buffer overflow condition or perform command...Show more |
1Cisco 4Webex Business Suite Webex Business Suite LockdownWebex Meetings Online+1 moreJun 17, 2026 May 15, 2019 N/A· v4 7.8 HIGH· v3 9.3 HIGH· v2 A vulnerability in the Cisco Webex Network Recording Player for Microsoft Windows and the Cisco Webex Player for Microsoft Windows could allow an attacker to execute arbitrary code on an affected system. The vulnerabilit...Show more |
1Cisco 4Webex Business Suite Webex Business Suite LockdownWebex Meetings Online+1 moreJun 17, 2026 May 15, 2019 N/A· v4 7.8 HIGH· v3 9.3 HIGH· v2 A vulnerability in the Cisco Webex Network Recording Player for Microsoft Windows and the Cisco Webex Player for Microsoft Windows could allow an attacker to execute arbitrary code on an affected system. The vulnerabilit...Show more |
1Cisco 4Webex Business Suite Webex Business Suite LockdownWebex Meetings Online+1 moreJun 17, 2026 May 15, 2019 N/A· v4 7.8 HIGH· v3 6.9 MEDIUM· v2 A vulnerability in the Cisco Webex Network Recording Player for Microsoft Windows and the Cisco Webex Player for Microsoft Windows could allow an attacker to execute arbitrary code on an affected system. The vulnerabilit...Show more |
A vulnerability in the implementation of a specific CLI command for Cisco NX-OS Software could allow an authenticated, local attacker with administrator credentials to cause a buffer overflow condition or perform command...Show more |
1Anker In 1Roav Dashcam A1 Firmware Nov 21, 2024 May 13, 2019 N/A· v4 7.5 HIGH· v3 7.8 HIGH· v2 An exploitable denial-of-service vulnerability exists in the XML_GetRawEncJpg Wi-Fi command of the NT9665X Chipset firmware, running on the Anker Roav A1 Dashcam, version RoavA1SWV1.9. A specially crafted packet can caus...Show more |