CWE-119
14,086 CVEs • Abstraction: Class • Likelihood of Exploit: High
Improper Restriction of Operations within the Bounds of a Memory Buffer
The product performs operations on a memory buffer, but it reads from or writes to a memory location outside the buffer's intended boundary. This may result in read or write operations on unexpected memory locations that could be linked to other variables, data structures, or internal program data.
CVEs (14,086)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
2Adobe Redhat4Enterprise Linux Desktop Enterprise Linux ServerEnterprise Linux Workstation+1 moreMay 13, 2026 Dec 1, 2017 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 Adobe Flash Player has an exploitable memory corruption vulnerability in the text handling function. Successful exploitation could lead to arbitrary code execution. This affects 26.0.0.151 and earlier. |
1Cisco 2Webex Meetings Webex Meetings ServerMay 13, 2026 Nov 30, 2017 N/A· v4 9.6 CRITICAL· v3 6.8 MEDIUM· v2 A "Cisco WebEx Network Recording Player Remote Code Execution Vulnerability" exists in Cisco WebEx Network Recording Player for Advanced Recording Format (ARF) and WebEx Recording Format (WRF) files. A remote attacker co...Show more |
A "Cisco WebEx Network Recording Player Remote Code Execution Vulnerability" exists in Cisco WebEx Network Recording Player for Advanced Recording Format (ARF) and WebEx Recording Format (WRF) files. A remote attacker co...Show more |
A "Cisco WebEx Network Recording Player Remote Code Execution Vulnerability" exists in Cisco WebEx Network Recording Player for Advanced Recording Format (ARF) and WebEx Recording Format (WRF) files. A remote attacker co...Show more |
A "Cisco WebEx Network Recording Player Out-of-Bounds Vulnerability" exists in Cisco WebEx Network Recording Player for Advanced Recording Format (ARF) and WebEx Recording Format (WRF) files. A remote attacker could expl...Show more |
1Cisco 2Webex Meetings Webex Meetings ServerMay 13, 2026 Nov 30, 2017 N/A· v4 9.6 CRITICAL· v3 6.8 MEDIUM· v2 A "Cisco WebEx Network Recording Player Remote Code Execution Vulnerability" exists in Cisco WebEx Network Recording Player for Advanced Recording Format (ARF) and WebEx Recording Format (WRF) files. A remote attacker co...Show more |
1Cisco 1Webex Meetings Server May 13, 2026 Nov 30, 2017 N/A· v4 9.6 CRITICAL· v3 6.8 MEDIUM· v2 A "Cisco WebEx Network Recording Player Denial of Service Vulnerability" exists in Cisco WebEx Network Recording Player for Advanced Recording Format (ARF) and WebEx Recording Format (WRF) files. A remote attacker could...Show more |
1Cisco 2Webex Meeting Center Webex Meetings ServerMay 13, 2026 Nov 30, 2017 N/A· v4 6.5 MEDIUM· v3 4.3 MEDIUM· v2 A Buffer Overflow vulnerability in Cisco WebEx Network Recording Player for Advanced Recording Format (.arf) files could allow an attacker to execute arbitrary code on a system. An attacker could exploit this vulnerabili...Show more |
curl and libcurl before 7.57.0 on 32-bit platforms allow attackers to cause a denial of service (out-of-bounds access and application crash) or possibly have unspecified other impact because too little memory is allocate...Show more |
An issue was discovered in EMC ScaleIO 2.0.1.x. A buffer overflow vulnerability in the SDBG service may potentially allow a remote unauthenticated attacker to execute arbitrary commands with root privileges on an affecte...Show more |
4Canonical DebianRedhat+1 more6Debian Linux Enterprise Linux DesktopEnterprise Linux Server+3 moreMay 13, 2026 Nov 27, 2017 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 Samba before 4.7.3 might allow remote attackers to obtain sensitive information by leveraging failure of the server to clear allocated heap memory. |
The Hipchat for Mac desktop client is vulnerable to client-side remote code execution via video call link parsing. Hipchat for Mac desktop clients at or above version 4.0 and before version 4.30 are affected by this vuln...Show more |
A global buffer overflow in OptiPNG 0.7.6 allows remote attackers to cause a denial-of-service attack or other unspecified impact with a maliciously crafted GIF format file, related to an uncontrolled loop in the LZWRead...Show more |
parser.c in libxml2 before 2.9.5 mishandles parameter-entity references because the NEXTL macro calls the xmlParserHandlePEReference function in the case of a '%' character in a DTD name. |
plugins/preauth/pkinit/pkinit_crypto_openssl.c in MIT Kerberos 5 (aka krb5) through 1.15.2 mishandles Distinguished Name (DN) fields, which allows remote attackers to execute arbitrary code or cause a denial of service (...Show more |
2Debian Neutrinolabs2Debian Linux XrdpMay 13, 2026 Nov 23, 2017 N/A· v4 8.4 HIGH· v3 7.2 HIGH· v2 The scp_v0s_accept function in sesman/libscp/libscp_v0.c in the session manager in xrdp through 0.9.4 uses an untrusted integer as a write length, which allows local users to cause a denial of service (buffer overflow an...Show more |
1Huawei 2Honor 5c Firmware Honor 6x FirmwareMay 13, 2026 Nov 22, 2017 N/A· v4 7.8 HIGH· v3 9.3 HIGH· v2 The driver of honor 5C,honor 6x Huawei smart phones with software of versions earlier than NEM-AL10C00B356, versions earlier than Berlin-L21HNC432B360 have a buffer overflow vulnerability due to the lack of parameter val...Show more |
1Huawei 2Honor 5c Firmware Honor 6x FirmwareMay 13, 2026 Nov 22, 2017 N/A· v4 7.8 HIGH· v3 9.3 HIGH· v2 The driver of honor 5C,honor 6x Huawei smart phones with software of versions earlier than NEM-AL10C00B356, versions earlier than Berlin-L21HNC432B360 have a buffer overflow vulnerability due to the lack of parameter val...Show more |
1Huawei 2Honor 5c Firmware Honor 6x FirmwareMay 13, 2026 Nov 22, 2017 N/A· v4 7.8 HIGH· v3 9.3 HIGH· v2 The driver of honor 5C,honor 6x Huawei smart phones with software of versions earlier than NEM-AL10C00B356, versions earlier than Berlin-L21HNC432B360 have a buffer overflow vulnerability due to the lack of parameter val...Show more |
1Huawei 2Honor 5c Firmware Honor 6x FirmwareMay 13, 2026 Nov 22, 2017 N/A· v4 7.8 HIGH· v3 9.3 HIGH· v2 The driver of honor 5C,honor 6x Huawei smart phones with software of versions earlier than NEM-AL10C00B356, versions earlier than Berlin-L21HNC432B360 have a buffer overflow vulnerability due to the lack of parameter val...Show more |