← Back
CWE-787

14,730 CVEs • Abstraction: Base • Likelihood of Exploit: High

Out-of-bounds Write

The product writes data past the end, or before the beginning, of the intended buffer.

JSON object

Loading...

CVEs (14,730)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Gnu
1Gnutls
May 13, 2026
Apr 14, 2017
N/A· v4
7.5 HIGH· v3
5.0 MEDIUM· v2
GnuTLS before 2017-02-20 has an out-of-bounds write caused by an integer overflow and heap-based buffer overflow related to the cdk_pkt_read function in opencdk/read-packet.c. This issue (which is a subset of the vendor'...Show more
GnuTLS before 2017-02-20 has an out-of-bounds write caused by an integer overflow and heap-based buffer overflow related to the cdk_pkt_read function in opencdk/read-packet.c. This issue (which is a subset of the vendor's GNUTLS-SA-2017-3 report) is fixed in 3.5.10.Show less
2Debian
Icu Project
2Debian Linux
International Components For Unicode
May 13, 2026
Apr 14, 2017
N/A· v4
7.5 HIGH· v3
5.0 MEDIUM· v2
International Components for Unicode (ICU) for C/C++ before 2017-02-13 has an out-of-bounds write caused by a heap-based buffer overflow related to the utf8TextAccess function in common/utext.cpp and the utext_moveIndex3...Show more
International Components for Unicode (ICU) for C/C++ before 2017-02-13 has an out-of-bounds write caused by a heap-based buffer overflow related to the utf8TextAccess function in common/utext.cpp and the utext_moveIndex32* function.Show less
2Debian
Icu Project
2Debian Linux
International Components For Unicode
May 13, 2026
Apr 14, 2017
N/A· v4
7.5 HIGH· v3
5.0 MEDIUM· v2
International Components for Unicode (ICU) for C/C++ before 2017-02-13 has an out-of-bounds write caused by a heap-based buffer overflow related to the utf8TextAccess function in common/utext.cpp and the utext_setNativeI...Show more
International Components for Unicode (ICU) for C/C++ before 2017-02-13 has an out-of-bounds write caused by a heap-based buffer overflow related to the utf8TextAccess function in common/utext.cpp and the utext_setNativeIndex* function.Show less
1Ffmpeg
1Ffmpeg
May 13, 2026
Apr 14, 2017
N/A· v4
9.8 CRITICAL· v3
7.5 HIGH· v2
FFmpeg before 2017-01-23 has an out-of-bounds write caused by a stack-based buffer overflow related to the decode_zbuf function in libavcodec/pngdec.c.
2Debian
Ffmpeg
2Debian Linux
Ffmpeg
May 13, 2026
Apr 14, 2017
N/A· v4
9.8 CRITICAL· v3
7.5 HIGH· v2
FFmpeg before 2017-01-24 has an out-of-bounds write caused by a heap-based buffer overflow related to the ipvideo_decode_block_opcode_0xA function in libavcodec/interplayvideo.c and the avcodec_align_dimensions2 function...Show more
FFmpeg before 2017-01-24 has an out-of-bounds write caused by a heap-based buffer overflow related to the ipvideo_decode_block_opcode_0xA function in libavcodec/interplayvideo.c and the avcodec_align_dimensions2 function in libavcodec/utils.c.Show less
1Freetype
1Freetype
May 13, 2026
Apr 14, 2017
N/A· v4
9.8 CRITICAL· v3
7.5 HIGH· v2
FreeType 2 before 2017-02-02 has an out-of-bounds write caused by a heap-based buffer overflow related to the tt_size_reset function in truetype/ttobjs.c.
2Debian
Ffmpeg
2Debian Linux
Ffmpeg
May 13, 2026
Apr 14, 2017
N/A· v4
9.8 CRITICAL· v3
7.5 HIGH· v2
FFmpeg before 2017-02-04 has an out-of-bounds write caused by a heap-based buffer overflow related to the decode_frame_common function in libavcodec/pngdec.c.
1Ffmpeg
1Ffmpeg
May 13, 2026
Apr 14, 2017
N/A· v4
9.8 CRITICAL· v3
7.5 HIGH· v2
FFmpeg before 2017-02-07 has an out-of-bounds write caused by a heap-based buffer overflow related to the decode_frame function in libavcodec/pictordec.c.
1Grpc
1Grpc
May 13, 2026
Apr 14, 2017
N/A· v4
9.8 CRITICAL· v3
7.5 HIGH· v2
Google gRPC before 2017-02-22 has an out-of-bounds write related to the gpr_free function in core/lib/support/alloc.c.
1Grpc
1Grpc
May 13, 2026
Apr 14, 2017
N/A· v4
9.8 CRITICAL· v3
7.5 HIGH· v2
Google gRPC before 2017-02-22 has an out-of-bounds write caused by a heap-based buffer overflow related to the parse_unix function in core/ext/client_channel/parse_address.c.
1Ffmpeg
1Ffmpeg
May 13, 2026
Apr 14, 2017
N/A· v4
9.8 CRITICAL· v3
7.5 HIGH· v2
FFmpeg before 2017-03-05 has an out-of-bounds write caused by a heap-based buffer overflow related to the ff_h264_slice_context_init function in libavcodec/h264dec.c.
1Freetype
1Freetype
May 13, 2026
Apr 14, 2017
N/A· v4
9.8 CRITICAL· v3
7.5 HIGH· v2
FreeType 2 before 2017-03-07 has an out-of-bounds write related to the TT_Get_MM_Var function in truetype/ttgxvar.c and the sfnt_init_face function in sfnt/sfobjs.c.
1Freetype
1Freetype
May 13, 2026
Apr 14, 2017
N/A· v4
9.8 CRITICAL· v3
7.5 HIGH· v2
FreeType 2 before 2017-03-08 has an out-of-bounds write caused by a heap-based buffer overflow related to the TT_Get_MM_Var function in truetype/ttgxvar.c and the sfnt_init_face function in sfnt/sfobjs.c.
1Libreoffice
1Libreoffice
May 13, 2026
Apr 14, 2017
N/A· v4
9.8 CRITICAL· v3
7.5 HIGH· v2
LibreOffice before 2017-03-11 has an out-of-bounds write caused by a heap-based buffer overflow in the SVMConverter::ImplConvertFromSVM1 function in vcl/source/gdi/svmconverter.cxx.
2Freetype
Oracle
2Freetype
Outside In Technology
May 13, 2026
Apr 14, 2017
N/A· v4
9.8 CRITICAL· v3
7.5 HIGH· v2
FreeType 2 before 2016-12-16 has an out-of-bounds write caused by a heap-based buffer overflow related to the cff_parser_run function in cff/cffparse.c.
1Libreoffice
1Libreoffice
May 13, 2026
Apr 14, 2017
N/A· v4
9.8 CRITICAL· v3
7.5 HIGH· v2
LibreOffice before 2016-12-22 has an out-of-bounds write caused by a heap-based buffer overflow related to the EnhWMFReader::ReadEnhWMF function in vcl/source/filter/wmf/enhwmf.cxx.
2Debian
Qemu
2Debian Linux
Qemu
May 13, 2026
Apr 13, 2017
N/A· v4
7.5 HIGH· v3
5.0 MEDIUM· v2
The Human Monitor Interface support in QEMU allows remote attackers to cause a denial of service (out-of-bounds write and application crash).
4Game Music Emu Project
OpensuseOpensuse Project+1 more
9Game Music Emu
LeapLeap+6 more
May 13, 2026
Apr 12, 2017
N/A· v4
7.8 HIGH· v3
6.8 MEDIUM· v2
game-music-emu before 0.6.1 allows remote attackers to generate out of bounds 8-bit values.
1Adobe
4Acrobat
Acrobat DcAcrobat Reader Dc+1 more
May 13, 2026
Apr 12, 2017
N/A· v4
7.8 HIGH· v3
9.3 HIGH· v2
Adobe Acrobat Reader versions 11.0.19 and earlier, 15.006.30280 and earlier, 15.023.20070 and earlier have an exploitable memory corruption vulnerability in the image conversion engine, related to parsing of GIF files. S...Show more
Adobe Acrobat Reader versions 11.0.19 and earlier, 15.006.30280 and earlier, 15.023.20070 and earlier have an exploitable memory corruption vulnerability in the image conversion engine, related to parsing of GIF files. Successful exploitation could lead to arbitrary code execution.Show less
1Adobe
4Acrobat
Acrobat DcAcrobat Reader Dc+1 more
May 13, 2026
Apr 12, 2017
N/A· v4
7.8 HIGH· v3
9.3 HIGH· v2
Adobe Acrobat Reader versions 11.0.19 and earlier, 15.006.30280 and earlier, 15.023.20070 and earlier have an exploitable memory corruption vulnerability in the JPEG 2000 engine, related to image scaling. Successful expl...Show more
Adobe Acrobat Reader versions 11.0.19 and earlier, 15.006.30280 and earlier, 15.023.20070 and earlier have an exploitable memory corruption vulnerability in the JPEG 2000 engine, related to image scaling. Successful exploitation could lead to arbitrary code execution.Show less