CWE-119
14,091 CVEs • Abstraction: Class • Likelihood of Exploit: High
Improper Restriction of Operations within the Bounds of a Memory Buffer
The product performs operations on a memory buffer, but it reads from or writes to a memory location outside the buffer's intended boundary. This may result in read or write operations on unexpected memory locations that could be linked to other variables, data structures, or internal program data.
CVEs (14,091)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
Stack-based buffer overflow in ELCSimulator in Eaton ELCSoft 2.4.01 and earlier allows remote attackers to execute arbitrary code via a long packet. |
Heap-based buffer overflow in elcsoft.exe in Eaton ELCSoft 2.4.01 and earlier allows remote authenticated users to execute arbitrary code via a crafted file. |
1Meinberg 12Ims Lantime M1000 Ims Lantime M3000Ims Lantime M500+9 moreMay 6, 2026 Jul 3, 2016 N/A· v4 7.3 HIGH· v3 7.5 HIGH· v2 Multiple stack-based buffer overflows in the NTP time-server interface on Meinberg IMS-LANTIME M3000, IMS-LANTIME M1000, IMS-LANTIME M500, LANTIME M900, LANTIME M600, LANTIME M400, LANTIME M300, LANTIME M200, LANTIME M10...Show more |
1Meinberg 12Ims Lantime M1000 Ims Lantime M3000Ims Lantime M500+9 moreMay 6, 2026 Jul 3, 2016 N/A· v4 7.3 HIGH· v3 7.5 HIGH· v2 Stack-based buffer overflow in the NTP time-server interface on Meinberg IMS-LANTIME M3000, IMS-LANTIME M1000, IMS-LANTIME M500, LANTIME M900, LANTIME M600, LANTIME M400, LANTIME M300, LANTIME M200, LANTIME M100, SyncFir...Show more |
Stack-based buffer overflow in the PlayMacro function in ObjectXMacro.ObjectXMacro in WdMacCtl.ocx in Micro Focus Rumba 9.x before 9.3 HF 11997 and 9.4.x before 9.4 HF 12815 allows remote attackers to execute arbitrary c...Show more |
Multiple stack-based buffer overflows in COM objects in Micro Focus Rumba 9.4.x before 9.4 HF 13960 allow remote attackers to execute arbitrary code via (1) the NetworkName property value to ObjectXSNAConfig.ObjectXSNACo...Show more |
1Apple 1Airport Base Station Firmware May 6, 2026 Jul 3, 2016 N/A· v4 9.8 CRITICAL· v3 10.0 HIGH· v2 Apple AirPort Base Station Firmware before 7.6.7 and 7.7.x before 7.7.7 misparses DNS data, which allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors...Show more |
1Ibm 1Websphere Datapower Xc10 Appliance Firmware May 6, 2026 Jul 2, 2016 N/A· v4 2.7 LOW· v3 5.0 MEDIUM· v2 Buffer overflow in the CLI on IBM WebSphere DataPower XC10 appliances 2.1 and 2.5 allows remote authenticated users to cause a denial of service via unspecified vectors. |
1Cisco 2Evolved Programmable Network Manager Prime InfrastructureMay 6, 2026 Jul 2, 2016 N/A· v4 9.8 CRITICAL· v3 10.0 HIGH· v2 The API in Cisco Prime Infrastructure 1.2 through 3.0 and Evolved Programmable Network Manager (EPNM) 1.2 allows remote attackers to execute arbitrary code or obtain sensitive management information via a crafted HTTP re...Show more |
1Symantec 18Advanced Threat Protection CsapiData Center Security Server+15 moreMay 6, 2026 Jun 30, 2016 N/A· v4 7.8 HIGH· v3 9.3 HIGH· v2 The AntiVirus Decomposer engine in Symantec Advanced Threat Protection (ATP); Symantec Data Center Security:Server (SDCS:S) 6.x through 6.6 MP1; Symantec Web Gateway; Symantec Endpoint Protection (SEP) before 12.1 RU6 MP...Show more |
1Symantec 18Advanced Threat Protection CsapiData Center Security Server+15 moreMay 6, 2026 Jun 30, 2016 N/A· v4 7.3 HIGH· v3 9.0 HIGH· v2 Buffer overflow in Dec2LHA.dll in the AntiVirus Decomposer engine in Symantec Advanced Threat Protection (ATP); Symantec Data Center Security:Server (SDCS:S) 6.x through 6.6 MP1; Symantec Web Gateway; Symantec Endpoint P...Show more |
1Symantec 18Advanced Threat Protection CsapiData Center Security Server+15 moreMay 6, 2026 Jun 30, 2016 N/A· v4 7.3 HIGH· v3 9.0 HIGH· v2 Buffer overflow in Dec2SS.dll in the AntiVirus Decomposer engine in Symantec Advanced Threat Protection (ATP); Symantec Data Center Security:Server (SDCS:S) 6.x through 6.6 MP1; Symantec Web Gateway; Symantec Endpoint Pr...Show more |
2Canonical Haproxy2Haproxy Ubuntu LinuxMay 6, 2026 Jun 30, 2016 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 HAproxy 1.6.x before 1.6.6, when a deny comes from a reqdeny rule, allows remote attackers to cause a denial of service (uninitialized memory access and crash) or possibly have unspecified other impact via unknown vector...Show more |
4Canonical Libexpat ProjectMcafee+1 more4Libexpat Policy AuditorPython+1 moreMay 6, 2026 Jun 30, 2016 N/A· v4 8.1 HIGH· v3 6.8 MEDIUM· v2 The overflow protection in Expat is removed by compilers with certain optimization settings, which allows remote attackers to cause a denial of service (crash) or possibly execute arbitrary code via crafted XML data. NO...Show more |
Buffer overflow in Huawei Mate8 NXT-AL before NXT-AL10C00B182, NXT-CL before NXT-CL00C92B182, NXT-DL before NXT-DL00C17B182, and NXT-TL before NXT-TL00C01B182 allows attackers to cause a denial of service (system crash)...Show more |
4Canonical DebianLinux+1 more4Debian Linux Linux KernelSuse Linux Enterprise Real Time Extension+1 moreMay 6, 2026 Jun 27, 2016 N/A· v4 7.8 HIGH· v3 7.2 HIGH· v2 Multiple heap-based buffer overflows in the hiddev_ioctl_usage function in drivers/hid/usbhid/hiddev.c in the Linux kernel through 4.6.3 allow local users to cause a denial of service or possibly have unspecified other i...Show more |
2Debian Linux2Debian Linux Linux KernelMay 6, 2026 Jun 27, 2016 N/A· v4 6.3 MEDIUM· v3 5.4 MEDIUM· v2 Race condition in the vop_ioctl function in drivers/misc/mic/vop/vop_vringh.c in the MIC VOP driver in the Linux kernel before 4.6.1 allows local users to obtain sensitive information from kernel memory or cause a denial...Show more |
4Canonical DebianLinux+1 more10Debian Linux Linux KernelSuse Linux Enterprise Debuginfo+7 moreMay 6, 2026 Jun 27, 2016 N/A· v4 7.8 HIGH· v3 7.2 HIGH· v2 The ecryptfs_privileged_open function in fs/ecryptfs/kthread.c in the Linux kernel before 4.6.3 allows local users to gain privileges or cause a denial of service (stack memory consumption) via vectors involving crafted...Show more |
Heap-based buffer overflow in the KeyView PDF filter in IBM Domino 8.5.x before 8.5.3 FP6 IF13 and 9.x before 9.0.1 FP6 allows remote attackers to execute arbitrary code via a crafted PDF document, a different vulnerabil...Show more |
1Apple 5Airport Base Station Firmware Iphone OsMac Os X+2 moreMay 6, 2026 Jun 26, 2016 N/A· v4 9.8 CRITICAL· v3 6.8 MEDIUM· v2 Multiple buffer overflows in mDNSResponder before 625.41.2 allow remote attackers to read or write to out-of-bounds memory locations via vectors involving the (1) GetValueForIPv4Addr, (2) GetValueForMACAddr, (3) rfc3110_...Show more |