CWE-787
14,730 CVEs • Abstraction: Base • Likelihood of Exploit: High
Out-of-bounds Write
The product writes data past the end, or before the beginning, of the intended buffer.
CVEs (14,730)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
An exploitable out of bounds write vulnerability exists in version 2.2 of the Per Face Texture mapping application known as PTEX. The vulnerability is present in the reading of a file without proper parameter checking. T...Show more |
2Debian Libming2Debian Linux LibmingJun 17, 2026 Jan 27, 2018 N/A· v4 8.8 HIGH· v3 6.8 MEDIUM· v2 The printDefineFont2 function (util/listfdb.c) in libming through 0.4.8 is vulnerable to a heap-based buffer overflow, which may allow attackers to cause a denial of service or unspecified other impact via a crafted FDB...Show more |
2Artifex Debian2Debian Linux MupdfJun 17, 2026 Jan 24, 2018 N/A· v4 5.5 MEDIUM· v3 4.3 MEDIUM· v2 In Artifex MuPDF 1.12.0, there is a heap-based buffer overflow vulnerability in the do_pdf_save_document function in the pdf/pdf-write.c file. Remote attackers could leverage the vulnerability to cause a denial of servic...Show more |
1Asuswrt Merlin 1Asuswrt Merlin Jun 17, 2026 Jan 17, 2018 N/A· v4 8.8 HIGH· v3 6.5 MEDIUM· v2 Stack-based buffer overflow in the ej_update_variables function in router/httpd/web.c on ASUS routers (when using software from https://github.com/RMerl/asuswrt-merlin) allows web authenticated attackers to execute code...Show more |
1Pulsesecure 2Pulse Connect Secure Pulse Policy SecureNov 21, 2024 Jan 16, 2018 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 A stack-based Buffer Overflow Vulnerability exists in the web server in Pulse Secure Pulse Connect Secure (PCS) before 8.3R4 and Pulse Policy Secure (PPS) before 5.4R4, leading to memory corruption and possibly remote co...Show more |
1K7computing 5Antivirus EndpointInternet Security+2 moreNov 21, 2024 Jan 16, 2018 N/A· v4 7.0 HIGH· v3 4.4 MEDIUM· v2 K7 Antivirus Premium before 15.1.0.53 allows local users to gain privileges by sending a specific IOCTL after setting the memory in a particular way. |
1K7computing 5Antivirus EndpointInternet Security+2 moreNov 21, 2024 Jan 16, 2018 N/A· v4 7.0 HIGH· v3 4.4 MEDIUM· v2 K7 Antivirus Premium before 15.1.0.53 allows local users to gain privileges by sending a specific IOCTL after setting the memory in a particular way. |
1K7computing 5Antivirus EndpointInternet Security+2 moreNov 21, 2024 Jan 16, 2018 N/A· v4 7.8 HIGH· v3 4.6 MEDIUM· v2 K7 Antivirus Premium before 15.1.0.53 allows local users to write to arbitrary memory locations, and consequently gain privileges, via a specific set of IOCTL calls. |
1K7computing 5Antivirus EndpointInternet Security+2 moreNov 21, 2024 Jan 16, 2018 N/A· v4 7.0 HIGH· v3 4.4 MEDIUM· v2 K7 Antivirus Premium before 15.1.0.53 allows local users to gain privileges by sending a specific IOCTL after setting the memory in a particular way. |
1K7computing 5Antivirus EndpointInternet Security+2 moreNov 21, 2024 Jan 16, 2018 N/A· v4 7.8 HIGH· v3 4.6 MEDIUM· v2 K7 Antivirus Premium before 15.1.0.53 allows local users to write to arbitrary memory locations, and consequently gain privileges, via a specific set of IOCTL calls. |
1K7computing 5Antivirus EndpointInternet Security+2 moreNov 21, 2024 Jan 16, 2018 N/A· v4 7.0 HIGH· v3 4.4 MEDIUM· v2 K7 Antivirus Premium before 15.1.0.53 allows local users to gain privileges by sending a specific IOCTL after setting the memory in a particular way. |
1K7computing 5Antivirus EndpointInternet Security+2 moreNov 21, 2024 Jan 16, 2018 N/A· v4 7.8 HIGH· v3 4.6 MEDIUM· v2 K7 Antivirus Premium before 15.1.0.53 allows local users to write to arbitrary memory locations, and consequently gain privileges, via a specific set of IOCTL calls. |
The tcp_v6_syn_recv_sock function in net/ipv6/tcp_ipv6.c in the Linux kernel through 4.14.11 allows attackers to cause a denial of service (slab out-of-bounds write) or possibly have unspecified other impact via vectors...Show more |
In DisplayFtmItem in the bootloader, there is an out-of-bounds write due to reading a string without verifying that it's null-terminated. This could lead to a secure boot bypass and a local elevation of privilege enablin...Show more |
In ashmem_ioctl of ashmem.c, there is an out-of-bounds write due to insufficient locking when accessing asma. This could lead to a local elevation of privilege enabling code execution as a privileged process with no addi...Show more |
In CameraDeviceClient::submitRequestList of CameraDeviceClient.cpp, there is an out-of-bounds write if metadataSize is too small. This could lead to a local elevation of privilege enabling code execution as a privileged...Show more |
In the onQueueFilled function of SoftAVCDec, there is a possible out-of-bounds write due to a use after free if a bad header causes the decoder to get caught in a loop while another thread frees the memory it's accessing...Show more |
In the ihevcd_allocate_static_bufs and ihevcd_create functions of SoftHEVC, there is a possible out-of-bounds write due to a use after free. Both ps_codec_obj and ps_create_op->s_ivd_create_op_t.pv_handle point to the sa...Show more |
In the initDecoder function of SoftAVCDec, there is a possible out-of-bounds write to mCodecCtx due to a use after free when buffer allocation fails. This could lead to remote code execution as a privileged process with...Show more |
A stack-based buffer overflow in Flexense DiskBoss 8.8.16 and earlier allows unauthenticated remote attackers to execute arbitrary code in the context of a highly privileged account. |