← Back
CWE-787

14,770 CVEs • Abstraction: Base • Likelihood of Exploit: High

Out-of-bounds Write

The product writes data past the end, or before the beginning, of the intended buffer.

JSON object

Loading...

CVEs (14,770)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Pixar
1Openusd
Jun 17, 2026
Nov 13, 2020
N/A· v4
7.8 HIGH· v3
6.8 MEDIUM· v2
A heap overflow vulnerability exists in the Pixar OpenUSD 20.05 while parsing compressed value rep arrays in binary USD files. A specially crafted malformed file can trigger a heap overflow, which can result in remote co...Show more
A heap overflow vulnerability exists in the Pixar OpenUSD 20.05 while parsing compressed value rep arrays in binary USD files. A specially crafted malformed file can trigger a heap overflow, which can result in remote code execution. To trigger this vulnerability, the victim needs to access an attacker-provided malformed file.Show less
1Pixar
1Openusd
Jun 17, 2026
Nov 13, 2020
N/A· v4
7.8 HIGH· v3
6.8 MEDIUM· v2
A heap overflow vulnerability exists in Pixar OpenUSD 20.05 when the software USDC file format SPECS section decompression heap overflow.
1Pixar
1Openusd
Jun 17, 2026
Nov 13, 2020
N/A· v4
7.8 HIGH· v3
6.8 MEDIUM· v2
A heap overflow vulnerability exists in Pixar OpenUSD 20.05 when the software parses compressed sections in binary USD files. To trigger this vulnerability, the victim needs to open an attacker-provided malformed file in...Show more
A heap overflow vulnerability exists in Pixar OpenUSD 20.05 when the software parses compressed sections in binary USD files. To trigger this vulnerability, the victim needs to open an attacker-provided malformed file in an instance in USDC file format PATHS section.Show less
1Pixar
1Openusd
Jun 17, 2026
Nov 13, 2020
N/A· v4
7.8 HIGH· v3
6.8 MEDIUM· v2
A heap overflow vulnerability exists in Pixar OpenUSD 20.05 when the software parses compressed sections in binary USD files. An instance exists in USDC file format FIELDSETS section decompression heap overflow.
2Apple
Pixar
3Ipados
Iphone OsOpenusd
Jun 17, 2026
Nov 13, 2020
N/A· v4
7.8 HIGH· v3
6.8 MEDIUM· v2
A heap overflow vulnerability exists in Pixar OpenUSD 20.05 when the software parses compressed sections in binary USD files. This instance exists in the USDC file format FIELDS section decompression heap overflow.
2Intel
Netapp
3Active Management Technology Firmware
Cloud BackupStandard Manageability
Jun 17, 2026
Nov 12, 2020
N/A· v4
9.8 CRITICAL· v3
7.5 HIGH· v2
Out-of-bounds write in IPv6 subsystem for Intel(R) AMT, Intel(R) ISM versions before 11.8.80, 11.12.80, 11.22.80, 12.0.70, 14.0.45 may allow an unauthenticated user to potentially enable escalation of privileges via netw...Show more
Out-of-bounds write in IPv6 subsystem for Intel(R) AMT, Intel(R) ISM versions before 11.8.80, 11.12.80, 11.22.80, 12.0.70, 14.0.45 may allow an unauthenticated user to potentially enable escalation of privileges via network access.Show less
2Intel
Netapp
6Aff Bios
BiosFas Bios+3 more
Jun 17, 2026
Nov 12, 2020
N/A· v4
6.7 MEDIUM· v3
4.6 MEDIUM· v2
Out of bounds write in Intel BIOS platform sample code for some Intel(R) Processors may allow a privileged user to potentially enable escalation of privilege via local access.
1Intel
1Bios
Jun 17, 2026
Nov 12, 2020
N/A· v4
6.7 MEDIUM· v3
4.6 MEDIUM· v2
Out of bounds write in BIOS firmware for some Intel(R) Processors may allow an authenticated user to potentially enable escalation of privilege and/or denial of service via local access.
1Qualcomm
14Qsm8350 Firmware
Sa6145p FirmwareSa6150p Firmware+11 more
Jun 17, 2026
Nov 12, 2020
N/A· v4
7.8 HIGH· v3
7.2 HIGH· v2
u'Possible integer overflow to heap overflow while processing command due to lack of check of packet length received' in Snapdragon Auto, Snapdragon Compute, Snapdragon Mobile in QSM8350, SA6145P, SA6150P, SA6155, SA6155...Show more
u'Possible integer overflow to heap overflow while processing command due to lack of check of packet length received' in Snapdragon Auto, Snapdragon Compute, Snapdragon Mobile in QSM8350, SA6145P, SA6150P, SA6155, SA6155P, SA8150P, SA8155P, SA8195P, SDX55M, SM8250, SM8350, SM8350P, SXR2130, SXR2130PShow less
1Qualcomm
32Qcm6125 Firmware
Qcs410 FirmwareQcs603 Firmware+29 more
Jun 17, 2026
Nov 12, 2020
N/A· v4
7.8 HIGH· v3
7.2 HIGH· v2
Buffer overflow/underflow occurs when typecasting the buffer passed by CPU internally in the library which is not aligned with the actual size of the structure' in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer...Show more
Buffer overflow/underflow occurs when typecasting the buffer passed by CPU internally in the library which is not aligned with the actual size of the structure' in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile in QCM6125, QCS410, QCS603, QCS605, QCS610, QCS6125, SA6145P, SA6155, SA6155P, SA8155, SA8155P, SDA640, SDA670, SDA845, SDM640, SDM670, SDM710, SDM830, SDM845, SDX50M, SDX55, SDX55M, SM6125, SM6150, SM6150P, SM6250, SM6250P, SM7125, SM7150, SM7150P, SM8150, SM8150PShow less
1Microsoft
2Edge
Internet Explorer
Jun 17, 2026
Nov 11, 2020
N/A· v4
7.5 HIGH· v3
7.6 HIGH· v2
Microsoft Browser Memory Corruption Vulnerability
1Microsoft
2Chakracore
Edge
Jun 17, 2026
Nov 11, 2020
N/A· v4
7.5 HIGH· v3
7.6 HIGH· v2
Chakra Scripting Engine Memory Corruption Vulnerability
1Microsoft
1Internet Explorer
Jun 17, 2026
Nov 11, 2020
N/A· v4
7.5 HIGH· v3
7.6 HIGH· v2
Internet Explorer Memory Corruption Vulnerability
1Microsoft
2Edge
Internet Explorer
Jun 17, 2026
Nov 11, 2020
N/A· v4
8.1 HIGH· v3
6.8 MEDIUM· v2
Scripting Engine Memory Corruption Vulnerability
1Microsoft
2Chakracore
Edge
Jun 17, 2026
Nov 11, 2020
N/A· v4
8.1 HIGH· v3
6.8 MEDIUM· v2
Chakra Scripting Engine Memory Corruption Vulnerability
1Sap
13d Visual Enterprise Viewer
Jun 17, 2026
Nov 10, 2020
N/A· v4
7.8 HIGH· v3
6.8 MEDIUM· v2
SAP 3D Visual Enterprise Viewer, version - 9, allows an user to open manipulated HPGL file received from untrusted sources which results in crashing of the application and becoming temporarily unavailable until the user...Show more
SAP 3D Visual Enterprise Viewer, version - 9, allows an user to open manipulated HPGL file received from untrusted sources which results in crashing of the application and becoming temporarily unavailable until the user restarts the application, this is caused due to Improper Input Validation.Show less
2Fedoraproject
Google
2Android
Fedora
Jun 17, 2026
Nov 10, 2020
N/A· v4
9.8 CRITICAL· v3
7.5 HIGH· v2
In exif_entry_get_value of exif-entry.c, there is a possible out of bounds write due to an integer overflow. This could lead to remote code execution if a third party app used this library to process remote image data wi...Show more
In exif_entry_get_value of exif-entry.c, there is a possible out of bounds write due to an integer overflow. This could lead to remote code execution if a third party app used this library to process remote image data with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-8.1 Android-9 Android-10 Android-11 Android-8.0Android ID: A-159625731Show less
1Google
1Android
Jun 17, 2026
Nov 10, 2020
N/A· v4
8.8 HIGH· v3
9.3 HIGH· v2
In sbrDecoder_AssignQmfChannels2SbrChannels of sbrdecoder.cpp, there is a possible out of bounds write due to a heap buffer overflow. This could lead to remote code execution with no additional execution privileges neede...Show more
In sbrDecoder_AssignQmfChannels2SbrChannels of sbrdecoder.cpp, there is a possible out of bounds write due to a heap buffer overflow. This could lead to remote code execution with no additional execution privileges needed. User interaction is needed for exploitation.Product: AndroidVersions: Android-10 Android-11 Android-9 Android-8.0 Android-8.1Android ID: A-158762825Show less
1Google
1Android
Jun 17, 2026
Nov 10, 2020
N/A· v4
8.8 HIGH· v3
9.3 HIGH· v2
In btm_sec_disconnected of btm_sec.cc, there is a possible memory corruption due to a use after free. This could lead to remote code execution in the Bluetooth server with no additional execution privileges needed. User...Show more
In btm_sec_disconnected of btm_sec.cc, there is a possible memory corruption due to a use after free. This could lead to remote code execution in the Bluetooth server with no additional execution privileges needed. User interaction is needed for exploitation.Product: AndroidVersions: Android-9 Android-10 Android-11 Android-8.0 Android-8.1Android ID: A-162497143Show less
1Google
1Android
Jun 17, 2026
Nov 10, 2020
N/A· v4
9.8 CRITICAL· v3
7.5 HIGH· v2
There is a possible out of bounds write due to a missing bounds check.Product: AndroidVersions: Android SoCAndroid ID: A-168251617