CWE-131
218 CVEs • Abstraction: Base • Likelihood of Exploit: High
Incorrect Calculation of Buffer Size
The product does not correctly calculate the size to be used when allocating a buffer, which could lead to a buffer overflow.
CVEs (218)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
HDF5 is software for managing data. Prior to version 1.14.4-2, an attacker who can control an `h5` file parsed by HDF5 can trigger a write-based heap buffer overflow condition. This can lead to a denial-of-service condit...Show more |
IBM DB2 Merge Backup for Linux, UNIX and Windows 12.1.0.0 could allow an authenticated user to cause the program to crash due to the incorrect calculation of a buffer size. |
In the Eclipse OMR port library component since release 0.2.0, an API function to return the textual names of all supported processor features was not accounting for the separator inserted between processor features. If...Show more |
1Opencryptoki Project 1Opencryptoki Jun 17, 2026 Jan 13, 2026 N/A· v4 6.1 MEDIUM· v3 N/A· v2 openCryptoki is a PKCS#11 library and tools for Linux and AIX. In 3.25.0 and 3.26.0, there is a heap buffer overflow vulnerability in the CKM_ECDH_AES_KEY_WRAP implementation allows an attacker with local access to cause...Show more |
iccDEV provides a set of libraries and tools that allow for the interaction, manipulation, and application of ICC color management profiles. Prior to version 2.3.1.2, iccDEV has undefined behavior due to a null pointer p...Show more |
Out-of-bounds write in Azure Monitor Agent allows an authorized attacker to execute code over a network. |
1Aiscatcher 1Ais Catcher Jun 17, 2026 Nov 29, 2025 9.3 CRITICAL· v4 9.8 CRITICAL· v3 N/A· v2 AIS-catcher is a multi-platform AIS receiver. Prior to version 0.64, a heap buffer overflow vulnerability has been identified in the AIS::Message class of AIS-catcher. This vulnerability allows an attacker to write appro...Show more |
A vulnerability has been identified in the GRUB (Grand Unified Bootloader) component. This flaw occurs because the bootloader mishandles string conversion when reading information from a USB device, allowing an attacker...Show more |
1Qualcomm 95Apq8064au Firmware Csr8811 FirmwareImmersive Home 214 Platform Firmware+92 moreJun 17, 2026 Nov 4, 2025 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption while processing a GP command response. |
1Ibm 1Db2 High Performance Unload Load Jun 17, 2026 Oct 28, 2025 N/A· v4 6.5 MEDIUM· v3 N/A· v2 IBM DB2 High Performance Unload 6.1.0.3, 5.1.0.1, 6.1.0.2, 6.5, 6.5.0.0 IF1, 6.1.0.1, 6.1, 5.1, 6.1.0.3, 5.1.0.1, 6.1.0.2, 6.5, 6.5.0.0 IF1, 6.1.0.1, 6.1, 5.1, 6.1.0.3, 5.1.0.1, 6.1.0.2, 6.5, 6.5.0.0 IF1, 6.1.0.1, 6.1, 5...Show more |
1Qualcomm 317215 Mobile Platform Firmware 315 5g Iot Modem Firmware9205 Lte Modem Firmware+314 moreJun 17, 2026 Oct 9, 2025 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption during PlayReady APP usecase while processing TA commands. |
ImageMagick is free and open-source software used for editing and manipulating digital images. ImageMagick versions lower than 14.8.2 include insecure functions: SeekBlob(), which permits advancing the stream offset bey...Show more |
ESF-IDF is the Espressif Internet of Things (IOT) Development Framework. The BluFi example bundled in ESP-IDF was vulnerable to memory overflows in two areas: Wi-Fi credential handling and Diffie–Hellman key exchange. Th...Show more |
1Juniper 2Junos Junos Os EvolvedJun 17, 2026 Jul 11, 2025 7.1 HIGH· v4 6.5 MEDIUM· v3 N/A· v2 An Incorrect Calculation of Buffer Size vulnerability in the routing protocol daemon (rpd) of Juniper Networks Junos OS and Junos OS Evolved allows an adjacent unauthenticated attacker to cause a memory corruption that l...Show more |
1Qualcomm 337215 Mobile Firmware 315 5g Iot Modem FirmwareAqt1000 Firmware+334 moreJun 17, 2026 Jul 8, 2025 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption while processing video packets received from video firmware. |
OpenVM is a performant and modular zkVM framework built for customization and extensibility. In version 1.0.0, OpenVM is vulnerable to overflow through byte decomposition of pc in AUIPC chip. A typo results in the highes...Show more |
2Quickjs Ng Quickjs Project2Quickjs QuickjsJun 17, 2026 Apr 27, 2025 N/A· v4 8.4 HIGH· v3 N/A· v2 quickjs-ng through 0.9.0 has an incorrect size calculation in JS_ReadBigInt for a BigInt, leading to a heap-based buffer overflow. QuickJS before 2025-04-26 is also affected. |
In multispectral MIFF image processing in ImageMagick before 7.1.1-44, packet_size is mishandled (related to the rendering of all channels in an arbitrary order). |
2Debian Imagemagick2Debian Linux ImagemagickJun 17, 2026 Apr 23, 2025 N/A· v4 7.5 HIGH· v3 N/A· v2 In MIFF image processing in ImageMagick before 7.1.1-44, image depth is mishandled after SetQuantumFormat is used. |
In PHP from 8.1.* before 8.1.32, from 8.2.* before 8.2.28, from 8.3.* before 8.3.19, from 8.4.* before 8.4.5, when parsing HTTP redirect in the response to an HTTP request, there is currently limit on the location value...Show more |