CWE-119
14,089 CVEs • Abstraction: Class • Likelihood of Exploit: High
Improper Restriction of Operations within the Bounds of a Memory Buffer
The product performs operations on a memory buffer, but it reads from or writes to a memory location outside the buffer's intended boundary. This may result in read or write operations on unexpected memory locations that could be linked to other variables, data structures, or internal program data.
CVEs (14,089)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
A remote code execution vulnerability exists in the way Microsoft Office software parses specially crafted email messages, aka "Microsoft Office Memory Corruption Vulnerability". |
Microsoft Edge in Windows 10 1703 allows an attacker to execute arbitrary code in the context of the current user when the Edge JavaScript scripting engine fails to handle objects in memory, aka "Scripting Engine Memory...Show more |
Microsoft Edge in Windows 10 1607 and Windows Server 2016 allows an attacker to execute arbitrary code in the context of the current user when Microsoft Edge improperly accesses objects in memory, aka "Microsoft Edge Mem...Show more |
Microsoft Edge in Windows 10 1607 and Windows Server 2016 allows an attacker to execute arbitrary code in the context of the current user when Microsoft Edge improperly accesses objects in memory, aka "Microsoft Edge Mem...Show more |
1Digital Canal Structural 1Wind Analysis May 13, 2026 Jun 14, 2017 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 A Stack-Based Buffer Overflow issue was discovered in Digital Canal Structural Wind Analysis versions 9.1 and prior. An attacker may be able to run arbitrary code by remotely exploiting an executable to perform a denial-...Show more |
In curl before 7.54.1 on Windows and DOS, libcurl's default protocol function, which is the logic that allows an application to set which protocol libcurl should attempt to use when given a URL without a scheme part, had...Show more |
A remote code execution vulnerability in libhevc in Mediaserver could enable an attacker using a specially crafted file to cause memory corruption during media file and data processing. This issue is rated as Critical du...Show more |
In all Android releases from CAF using the Linux kernel, a buffer overflow vulnerability exists in a WLAN function due to an incorrect message length. |
In all Android releases from CAF using the Linux kernel, a buffer overflow vulnerability exists in a camera function. |
In all Android releases from CAF using the Linux kernel, a buffer overflow vulnerability exists while loading a firmware image. |
In all Android releases from CAF using the Linux kernel, a buffer overflow vulnerability exists in an IPA driver. |
In all Android releases from CAF using the Linux kernel, a race condition exists in a video driver potentially leading to buffer overflow or write to arbitrary pointer location. |
In all Android releases from CAF using the Linux kernel, a buffer overflow vulnerability exists in a syscall handler. |
In all Android releases from CAF using the Linux kernel, an integer underflow leading to buffer overflow vulnerability exists in a syscall handler. |
In all Android releases from CAF using the Linux kernel, a buffer overflow vulnerability exists in a cryptographic routine. |
In all Android releases from CAF using the Linux kernel, a buffer overflow vulnerability exists in a QTEE application. |
In all Android releases from CAF using the Linux kernel, a buffer overflow vulnerability exists in the PlayReady API. |
In all Android releases from CAF using the Linux kernel, a buffer overflow vulnerability exists in WideVine DRM. |
In all Android releases from CAF using the Linux kernel, a buffer overflow vulnerability exists in the PlayReady API. |
The tlslite library before 0.4.9 for Python allows remote attackers to trigger a denial of service (runtime exception and process crash). |