CWE-787
14,772 CVEs • Abstraction: Base • Likelihood of Exploit: High
Out-of-bounds Write
The product writes data past the end, or before the beginning, of the intended buffer.
CVEs (14,772)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
flb_gzip_compress in flb_gzip.c in Fluent Bit before 1.6.4 has an out-of-bounds write because it does not use the correct calculation of the maximum gzip data-size expansion. |
1Oppo 2Find X2 Pro Firmware Reno3 Pro FirmwareJun 17, 2026 Dec 31, 2020 N/A· v4 5.5 MEDIUM· v3 2.1 LOW· v2 In /SM8250_Q_Master/android/vendor/oppo_charger/oppo/charger_ic/oppo_da9313.c, failure to check the parameter buf in the function proc_work_mode_write in proc_work_mode_write causes a vulnerability. |
1Oppo 2Find X2 Pro Firmware Reno3 Pro FirmwareJun 17, 2026 Dec 31, 2020 N/A· v4 5.5 MEDIUM· v3 2.1 LOW· v2 In /SM8250_Q_Master/android/vendor/oppo_charger/oppo/oppo_vooc.c, the function proc_fastchg_fw_update_write in proc_fastchg_fw_update_write does not check the parameter len, resulting in a vulnerability. |
1Oppo 2Find X2 Pro Firmware Reno3 Pro FirmwareJun 17, 2026 Dec 31, 2020 N/A· v4 5.5 MEDIUM· v3 2.1 LOW· v2 In /SM8250_Q_Master/android/vendor/oppo_charger/oppo/charger_ic/oppo_mp2650.c, the function mp2650_data_log_write in mp2650_data_log_write does not check the parameter len which causes a vulnerability. |
1Oppo 2Find X2 Pro Firmware Reno3 Pro FirmwareJun 17, 2026 Dec 31, 2020 N/A· v4 5.5 MEDIUM· v3 2.1 LOW· v2 In functions charging_limit_current_write and charging_limit_time_write in /SM8250_Q_Master/android/vendor/oppo_charger/oppo/oppo_charger.c have not checked the parameters, which causes a vulnerability. |
An issue was discovered in the stack crate before 0.3.1 for Rust. ArrayVec has an out-of-bounds write via element insertion. |
1Traitobject Project 1Traitobject Jun 17, 2026 Dec 31, 2020 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 An issue was discovered in the traitobject crate through 2020-06-01 for Rust. It has false expectations about fat pointers, possibly causing memory corruption in, for example, Rust 2.x. |
1Lucet Runtime Internals Project 1Lucet Runtime Internals Jun 17, 2026 Dec 31, 2020 N/A· v4 9.1 CRITICAL· v3 6.4 MEDIUM· v2 An issue was discovered in the lucet-runtime-internals crate before 0.5.1 for Rust. It mishandles sigstack allocation. Guest programs may be able to obtain sensitive information, or guest programs can experience memory c...Show more |
An issue was discovered in the prost crate before 0.6.1 for Rust. There is stack consumption via a crafted message, causing a denial of service (e.g., x86) or possibly remote code execution (e.g., ARM). |
1Serde Cbor Project 1Serde Cbor Jun 17, 2026 Dec 31, 2020 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 An issue was discovered in the serde_cbor crate before 0.10.2 for Rust. The CBOR deserializer can cause stack consumption via nested semantic tags. |
An issue was discovered in the try-mutex crate before 0.3.0 for Rust. TryMutex<T> allows cross-thread sending of a non-Send type. |
1Panorama 1Nhiservisignadapter Jun 17, 2026 Dec 31, 2020 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 The digest generation function of NHIServiSignAdapter has not been verified for parameter’s length, which leads to a stack overflow loophole. Remote attackers can use the leak to execute code without privilege. |
1Panorama 1Nhiservisignadapter Jun 17, 2026 Dec 31, 2020 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 NHIServiSignAdapter fails to verify the length of digital credential files’ path which leads to a heap overflow loophole. Remote attackers can use the leak to execute code without privilege. |
In MatrixSSL before 4.2.2 Open, the DTLS server can encounter an invalid pointer free (leading to memory corruption and a daemon crash) via a crafted incoming network message, a different vulnerability than CVE-2019-1443...Show more |
1Netgear 46D3600 Firmware D6000 FirmwareD6200 Firmware+43 moreJun 17, 2026 Dec 30, 2020 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 Certain NETGEAR devices are affected by a stack-based buffer overflow by an unauthenticated attacker. This affects D3600 before 1.0.0.76, D6000 before 1.0.0.78, D6200 before 1.1.00.32, D7000 before 1.0.1.68, D7800 before...Show more |
3Debian FedoraprojectWavpack3Debian Linux FedoraWavpackJun 17, 2026 Dec 28, 2020 N/A· v4 6.1 MEDIUM· v3 5.8 MEDIUM· v2 WavPack 5.3.0 has an out-of-bounds write in WavpackPackSamples in pack_utils.c because of an integer overflow in a malloc argument. NOTE: some third-parties claim that there are later "unofficial" releases through 5.3.2,...Show more |
Spamsniper 5.0 ~ 5.2.7 contain a stack-based buffer overflow vulnerability caused by improper boundary checks when parsing MAIL FROM command. It leads remote attacker to execute arbitrary code via crafted packet. |
2Fedoraproject Xpdfreader2Fedora XpdfJun 17, 2026 Dec 26, 2020 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 Xpdf 4.02 allows stack consumption because of an incorrect subroutine reference in a Type 1C font charstring, related to the FoFiType1C::getOp() function. |
DCTStream::getChars in DCTStream.cc in Poppler 20.12.1 has a heap-based buffer overflow via a crafted PDF document. NOTE: later reports indicate that this only affects builds from Poppler git clones in late December 2020...Show more |
Arm Compiler 5 through 5.06u6 has an error in a stack protection feature designed to help spot stack-based buffer overflows in local arrays. When this feature is enabled, a protected function writes a guard value to the...Show more |