← Back
CWE-119

14,089 CVEs • Abstraction: Class • Likelihood of Exploit: High

Improper Restriction of Operations within the Bounds of a Memory Buffer

The product performs operations on a memory buffer, but it reads from or writes to a memory location outside the buffer's intended boundary. This may result in read or write operations on unexpected memory locations that could be linked to other variables, data structures, or internal program data.

JSON object

Loading...

CVEs (14,089)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Google
1Android
May 6, 2026
Oct 6, 2015
N/A· v4
N/A· v3
10.0 HIGH· v2
libstagefright in Android before 5.1.1 LMY48T allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted media file, aka internal bug 22935234.
1Google
1Android
May 6, 2026
Oct 6, 2015
N/A· v4
N/A· v3
10.0 HIGH· v2
libstagefright in Android before 5.1.1 LMY48T allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted media file, aka internal bug 22882938.
1Google
1Android
May 6, 2026
Oct 6, 2015
N/A· v4
N/A· v3
10.0 HIGH· v2
libstagefright in Android before 5.1.1 LMY48T allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted media file, aka internal bug 23416608.
1Google
1Android
May 6, 2026
Oct 6, 2015
N/A· v4
N/A· v3
10.0 HIGH· v2
Skia, as used in Android before 5.1.1 LMY48T, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted media file, aka internal bug 20723696.
1Google
1Android
May 6, 2026
Oct 6, 2015
N/A· v4
N/A· v3
10.0 HIGH· v2
libutils in Android before 5.1.1 LMY48T allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted audio file, aka internal bug 22952485.
1Google
1Android
May 6, 2026
Oct 6, 2015
N/A· v4
N/A· v3
10.0 HIGH· v2
The Sonivox components in Android before 5.1.1 LMY48T allow remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted media file, aka internal bugs 23335715, 23307276, and...Show more
The Sonivox components in Android before 5.1.1 LMY48T allow remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted media file, aka internal bugs 23335715, 23307276, and 23286323.Show less
1Google
1Android
May 6, 2026
Oct 6, 2015
N/A· v4
N/A· v3
10.0 HIGH· v2
libstagefright in Android before 5.1.1 LMY48T allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted media file, aka internal bugs 23016072, 23248776, 23247055, 2...Show more
libstagefright in Android before 5.1.1 LMY48T allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted media file, aka internal bugs 23016072, 23248776, 23247055, 22845824, 22008959, 21814993, 21048776, 20718524, 20674674, 22388975, 20674086, 21443020, and 22077698, a different vulnerability than CVE-2015-7716.Show less
1Google
1Android
May 6, 2026
Oct 6, 2015
N/A· v4
N/A· v3
10.0 HIGH· v2
libstagefright in Android before 5.1.1 LMY48T allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted media file, aka internal bug 23346388.
1Google
1Android
May 6, 2026
Oct 6, 2015
N/A· v4
N/A· v3
10.0 HIGH· v2
libstagefright in Android before 5.1.1 LMY48T allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted media file, aka internal bug 23031033.
1Google
1Android
May 6, 2026
Oct 6, 2015
N/A· v4
N/A· v3
10.0 HIGH· v2
libstagefright in Android before 5.1.1 LMY48T allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted media file, aka internal bug 22771132.
1Google
1Android
May 6, 2026
Oct 6, 2015
N/A· v4
N/A· v3
10.0 HIGH· v2
libstagefright in Android before 5.1.1 LMY48T allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted media file, aka internal bug 23036083.
1Google
1Android
May 6, 2026
Oct 6, 2015
N/A· v4
N/A· v3
10.0 HIGH· v2
libstagefright in Android before 5.1.1 LMY48T allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted media file, aka internal bug 23270724.
1Google
1Android
May 6, 2026
Oct 6, 2015
N/A· v4
N/A· v3
10.0 HIGH· v2
libstagefright in Android before 5.1.1 LMY48T allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted media file, aka internal bug 23213430.
1Google
1Android
May 6, 2026
Oct 6, 2015
N/A· v4
N/A· v3
10.0 HIGH· v2
libstagefright in Android before 5.1.1 LMY48T allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted media file, aka internal bug 21335999.
1Freeswitch
1Freeswitch
May 6, 2026
Oct 5, 2015
N/A· v4
N/A· v3
7.5 HIGH· v2
Heap-based buffer overflow in the parse_string function in libs/esl/src/esl_json.c in FreeSWITCH before 1.4.23 and 1.6.x before 1.6.2 allows remote attackers to execute arbitrary code via a trailing \u in a json string t...Show more
Heap-based buffer overflow in the parse_string function in libs/esl/src/esl_json.c in FreeSWITCH before 1.4.23 and 1.6.x before 1.6.2 allows remote attackers to execute arbitrary code via a trailing \u in a json string to cJSON_Parse.Show less
1Canarylabs
1Trendweb
May 6, 2026
Oct 2, 2015
N/A· v4
N/A· v3
7.5 HIGH· v2
Buffer overflow in Canary Labs Trend Web Server before 9.5.2 allows remote attackers to execute arbitrary code via a crafted TCP packet.
1Google
1Android
May 6, 2026
Oct 1, 2015
N/A· v4
N/A· v3
9.3 HIGH· v2
Multiple heap-based buffer overflows in libeffects in the Audio Policy Service in mediaserver in Android before 5.1.1 LMY48I allow attackers to execute arbitrary code via a crafted application, aka internal bug 21953516.
1Google
1Android
May 6, 2026
Oct 1, 2015
N/A· v4
N/A· v3
9.3 HIGH· v2
Buffer overflow in the OMXNodeInstance::emptyBuffer function in omx/OMXNodeInstance.cpp in libstagefright in Android before 5.1.1 LMY48I allows attackers to execute arbitrary code via a crafted application, aka internal...Show more
Buffer overflow in the OMXNodeInstance::emptyBuffer function in omx/OMXNodeInstance.cpp in libstagefright in Android before 5.1.1 LMY48I allows attackers to execute arbitrary code via a crafted application, aka internal bug 20634516.Show less
1Google
1Android
May 6, 2026
Oct 1, 2015
N/A· v4
N/A· v3
10.0 HIGH· v2
Multiple buffer overflows in MPEG4Extractor.cpp in libstagefright in Android before 5.1.1 LMY48I allow remote attackers to execute arbitrary code via invalid size values of NAL units in MP4 data, aka internal bug 1964153...Show more
Multiple buffer overflows in MPEG4Extractor.cpp in libstagefright in Android before 5.1.1 LMY48I allow remote attackers to execute arbitrary code via invalid size values of NAL units in MP4 data, aka internal bug 19641538.Show less
1Google
1Android
May 6, 2026
Oct 1, 2015
N/A· v4
N/A· v3
9.3 HIGH· v2
Buffer overflow in the readAt function in BpMediaHTTPConnection in media/libmedia/IMediaHTTPConnection.cpp in the mediaserver service in Android before 5.1.1 LMY48I allows attackers to execute arbitrary code via a crafte...Show more
Buffer overflow in the readAt function in BpMediaHTTPConnection in media/libmedia/IMediaHTTPConnection.cpp in the mediaserver service in Android before 5.1.1 LMY48I allows attackers to execute arbitrary code via a crafted application, aka internal bug 19400722.Show less