CWE-119
14,075 CVEs • Abstraction: Class • Likelihood of Exploit: High
Improper Restriction of Operations within the Bounds of a Memory Buffer
The product performs operations on a memory buffer, but it reads from or writes to a memory location outside the buffer's intended boundary. This may result in read or write operations on unexpected memory locations that could be linked to other variables, data structures, or internal program data.
CVEs (14,075)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
An exploitable pool corruption vulnerability exists in the 0x8200E804 IOCTL handler functionality of WIBU-SYSTEMS WibuKey.sys Version 6.40 (Build 2400). A specially crafted IRP request can cause a buffer overflow, result...Show more |
2Canonical Mozilla2Firefox Ubuntu LinuxNov 21, 2024 Feb 5, 2019 N/A· v4 8.8 HIGH· v3 6.8 MEDIUM· v2 When JavaScript is used to create and manipulate an audio buffer, a potentially exploitable crash may occur because of a compartment mismatch in some situations. This vulnerability affects Firefox < 65. |
2Canonical Mozilla2Firefox Ubuntu LinuxNov 21, 2024 Feb 5, 2019 N/A· v4 9.8 CRITICAL· v3 10.0 HIGH· v2 Mozilla developers and community members reported memory safety bugs present in Firefox 64. Some of these bugs showed evidence of memory corruption and we presume that with enough effort that some of these could be explo...Show more |
4Canonical DebianMozilla+1 more10Debian Linux Enterprise Linux DesktopEnterprise Linux Server+7 moreNov 21, 2024 Feb 5, 2019 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 Mozilla developers and community members reported memory safety bugs present in Firefox 64 and Firefox ESR 60.4. Some of these bugs showed evidence of memory corruption and we presume that with enough effort that some of...Show more |
In OpenJDK + Eclipse OpenJ9 version 0.11.0 builds, the public jdk.crypto.jniprovider.NativeCrypto class contains public static natives which accept pointer values that are dereferenced in the native code. |
A vulnerability in the vContainer of the Cisco SD-WAN Solution could allow an authenticated, remote attacker to cause a denial of service (DoS) condition and execute arbitrary code as the root user. The vulnerability is...Show more |
1Cisco 2Webex Meetings Online Webex Meetings ServerJun 17, 2026 Jan 23, 2019 N/A· v4 7.8 HIGH· v3 9.3 HIGH· v2 A vulnerability in the Cisco Webex Network Recording Player for Microsoft Windows and the Cisco Webex Player for Microsoft Windows could allow an attacker to execute arbitrary code on an affected system. The vulnerabilit...Show more |
1Cisco 2Webex Meetings Online Webex Meetings ServerJun 17, 2026 Jan 23, 2019 N/A· v4 7.8 HIGH· v3 9.3 HIGH· v2 A vulnerability in the Cisco Webex Network Recording Player for Microsoft Windows and the Cisco Webex Player for Microsoft Windows could allow an attacker to execute arbitrary code on an affected system. The vulnerabilit...Show more |
1Cisco 2Webex Meetings Online Webex Meetings ServerJun 17, 2026 Jan 23, 2019 N/A· v4 7.8 HIGH· v3 9.3 HIGH· v2 A vulnerability in the Cisco Webex Network Recording Player for Microsoft Windows and the Cisco Webex Player for Microsoft Windows could allow an attacker to execute arbitrary code on an affected system. The vulnerabilit...Show more |
1Cisco 2Webex Meetings Online Webex Meetings ServerJun 17, 2026 Jan 23, 2019 N/A· v4 7.8 HIGH· v3 9.3 HIGH· v2 A vulnerability in the Cisco Webex Network Recording Player for Microsoft Windows and the Cisco Webex Player for Microsoft Windows could allow an attacker to execute arbitrary code on an affected system. The vulnerabilit...Show more |
1Cisco 2Webex Meetings Online Webex Meetings ServerJun 17, 2026 Jan 23, 2019 N/A· v4 7.8 HIGH· v3 9.3 HIGH· v2 A vulnerability in the Cisco Webex Network Recording Player for Microsoft Windows and the Cisco Webex Player for Microsoft Windows could allow an attacker to execute arbitrary code on an affected system. The vulnerabilit...Show more |
1Qualcomm 16Mdm9206 Firmware Mdm9607 FirmwareSd 205 Firmware+13 moreJun 17, 2026 Jan 18, 2019 N/A· v4 8.8 HIGH· v3 8.3 HIGH· v2 Improper validation of buffer length checks in the lwm2m device management protocol can leads to a buffer overflow in snapdragon mobile and snapdragon wear in versions MDM9206, MDM9607, SD 210/SD 212/SD 205, SD 425, SD 4...Show more |
1Qualcomm 16Mdm9206 Firmware Mdm9607 FirmwareSd 205 Firmware+13 moreJun 17, 2026 Jan 18, 2019 N/A· v4 7.8 HIGH· v3 7.2 HIGH· v2 Improper data length check while processing an event report indication can lead to a buffer overflow in snapdragon mobile and snapdragon wear in versions MDM9206, MDM9607, SD 210/SD 212/SD 205, SD 425, SD 427, SD 430, SD...Show more |
1Qualcomm 16Msm8996au Firmware Sd 425 FirmwareSd 430 Firmware+13 moreJun 17, 2026 Jan 18, 2019 N/A· v4 7.8 HIGH· v3 7.2 HIGH· v2 Lack of checking input size can lead to buffer overflow In WideVine in snapdragon automobile and snapdragon mobile in versions MSM8996AU, SD 425, SD 430, SD 450, SD 625, SD 712 / SD 710 / SD 670, SD 820, SD 820A, SD 835,...Show more |
1Qualcomm 38Mdm9206 Firmware Mdm9607 FirmwareMdm9635m Firmware+35 moreJun 17, 2026 Jan 18, 2019 N/A· v4 7.8 HIGH· v3 7.2 HIGH· v2 Lack of checking input size can lead to buffer overflow In WideVine in snapdragon automobile, snapdragon mobile and snapdragon wear in versions MDM9206, MDM9607, MDM9635M, MDM9650, MDM9655, MSM8996AU, SD 210/SD 212/SD 20...Show more |
1Qualcomm 46Mdm9206 Firmware Mdm9607 FirmwareMdm9615 Firmware+43 moreNov 21, 2024 Jan 18, 2019 N/A· v4 8.8 HIGH· v3 8.3 HIGH· v2 Lack of check of input size can make device memory get corrupted because of buffer overflow in snapdragon automobile, snapdragon mobile and snapdragon wear in versions MDM9206, MDM9607, MDM9615, MDM9625, MDM9635M, MDM964...Show more |
1Adobe 2Acrobat Dc Acrobat Reader DcNov 21, 2024 Jan 18, 2019 N/A· v4 7.8 HIGH· v3 9.3 HIGH· v2 Adobe Acrobat and Reader versions 2019.008.20081 and earlier, 2019.008.20080 and earlier, 2019.008.20081 and earlier, 2017.011.30106 and earlier version, 2017.011.30105 and earlier version, 2015.006.30457 and earlier, an...Show more |
1Adobe 2Acrobat Dc Acrobat Reader DcNov 21, 2024 Jan 18, 2019 N/A· v4 7.8 HIGH· v3 9.3 HIGH· v2 Adobe Acrobat and Reader versions 2019.008.20081 and earlier, 2019.008.20080 and earlier, 2019.008.20081 and earlier, 2017.011.30106 and earlier version, 2017.011.30105 and earlier version, 2015.006.30457 and earlier, an...Show more |
In iOS before 11.4 and macOS High Sierra before 10.13.5, a memory corruption issue exists and was addressed with improved memory handling. |
In iOS before 11.4, a memory corruption issue exists and was addressed with improved memory handling. |