CWE-787
14,779 CVEs • Abstraction: Base • Likelihood of Exploit: High
Out-of-bounds Write
The product writes data past the end, or before the beginning, of the intended buffer.
CVEs (14,779)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
Espruino 2v20 (commit fcc9ba4) was discovered to contain a Stack Overflow via the jspeFactorFunctionCall at src/jsparse.c. |
Jsish v3.5.0 was discovered to contain a heap-buffer-overflow in ./src/jsiUtils.c. |
Jsish v3.5.0 (commit 42c694c) was discovered to contain a stack-overflow via the component IterGetKeysCallback at /jsish/src/jsiValue.c. |
Heap buffer overflow in Skia in Google Chrome prior to 121.0.6167.160 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High) |
A flaw was found in indent, a program for formatting C code. This issue may allow an attacker to trick a user into processing a specially crafted file to trigger a heap-based buffer overflow, causing the application to c...Show more |
A flaw was found in the GNU coreutils "split" program. A heap overflow with user-controlled data of multiple hundred bytes in length could occur in the line_bytes_split() function, potentially leading to an application c...Show more |
1Qualcomm 69Ar8035 Firmware Fastconnect 6900 FirmwareFastconnect 7800 Firmware+66 moreJun 17, 2026 Feb 6, 2024 N/A· v4 9.8 CRITICAL· v3 N/A· v2 Memory corruption when AP includes TID to link mapping IE in the beacons and STA is parsing the beacon TID to link mapping IE. |
1Qualcomm 147Aqt1000 Firmware Fastconnect 6200 FirmwareFastconnect 6700 Firmware+144 moreJun 17, 2026 Feb 6, 2024 N/A· v4 9.8 CRITICAL· v3 N/A· v2 Memory corruption in video while parsing invalid mp2 clip. |
1Qualcomm 19Qam8255p Firmware Qam8295p FirmwareQam8650p Firmware+16 moreJun 17, 2026 Feb 6, 2024 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption in Automotive Multimedia due to improper access control in HAB. |
1Qualcomm 8Fastconnect 6900 Firmware Fastconnect 7800 FirmwareQcm8550 Firmware+5 moreJun 17, 2026 Feb 6, 2024 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption when malformed message payload is received from firmware. |
1Qualcomm 261315 5g Iot Modem Firmware Apq8017 FirmwareAqt1000 Firmware+258 moreJun 17, 2026 Feb 6, 2024 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption while processing the event ring, the context read pointer is untrusted to HLOS and when it is passed with arbitrary values, may point to address in the middle of ring element. |
1Qualcomm 147Aqt1000 Firmware Ar8035 FirmwareFastconnect 6200 Firmware+144 moreJun 17, 2026 Feb 6, 2024 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption in Core when updating rollback version for TA and OTA feature is enabled. |
1Qualcomm 1109206 Lte Modem Firmware Aqt1000 FirmwareAr8035 Firmware+107 moreJun 17, 2026 Feb 6, 2024 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption in Audio while calling START command on host voice PCM multiple times for the same RX or TX tap points. |
1Qualcomm 48Ar8035 Firmware Fastconnect 6900 FirmwareFastconnect 7800 Firmware+45 moreJun 17, 2026 Feb 6, 2024 N/A· v4 7.0 HIGH· v3 N/A· v2 Memory corruption in Trusted Execution Environment while deinitializing an object used for license validation. |
Out-of-bounds Write vulnerabilities in svc1td_vld_plh_ap of libsthmbc.so prior to SMR Feb-2024 Release 1 allows local attackers to trigger buffer overflow. |
Out-of-bounds Write vulnerabilities in svc1td_vld_elh of libsthmbc.so prior to SMR Feb-2024 Release 1 allows local attackers to trigger buffer overflow. |
Out-of-bounds Write vulnerabilities in svc1td_vld_slh of libsthmbc.so prior to SMR Feb-2024 Release 1 allows local attackers to trigger buffer overflow. |
Out-of-bounds Write in padmd_vld_qtbl of libpadm.so prior to SMR Feb-2024 Release 1 allows local attacker to execute arbitrary code. |
Out-of-bounds Write in padmd_vld_htbl of libpadm.so prior to SMR Feb-2024 Release 1 allows local attacker to execute arbitrary code. |
D-Link Go-RT-AC750 GORTAC750_A1_FW_v101b03 contains a stack-based buffer overflow via the function genacgi_main. This vulnerability allows attackers to enable telnet service via a specially crafted payload. |