CWE-787
14,796 CVEs • Abstraction: Base • Likelihood of Exploit: High
Out-of-bounds Write
The product writes data past the end, or before the beginning, of the intended buffer.
CVEs (14,796)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
A vulnerability has been identified in syngo fastView (All versions). The affected application lacks proper validation of user-supplied data when parsing BMP files. This could result in an out-of-bounds write past the en...Show more |
A vulnerability has been identified in syngo fastView (All versions). The affected application lacks proper validation of user-supplied data when parsing DICOM files. This could result in an out-of-bounds write past the...Show more |
1Hitachienergy 4Rtu520 Firmware Rtu530 FirmwareRtu540 Firmware+1 moreJun 17, 2026 Jan 4, 2024 N/A· v4 7.5 HIGH· v3 N/A· v2 A vulnerability exists in the HCI Modbus TCP function included in the product versions listed above. If the HCI Modbus TCP is enabled and configured, an attacker could exploit the vulnerability by sending a specially cra...Show more |
Heap buffer overflow in ANGLE in Google Chrome prior to 120.0.6099.199 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High) |
Heap buffer overflow in paddle.repeat_interleave in PaddlePaddle before 2.6.0. This flaw can lead to a denial of service, information disclosure, or more damage is possible.
|
Stack overflow in paddle.linalg.lu_unpack in PaddlePaddle before 2.6.0. This flaw can lead to a denial of service, or even more damage.
|
Stack overflow in paddle.searchsorted in PaddlePaddle before 2.6.0. This flaw can lead to a denial of service, or even more damage.
|
An Out of Bounds Write in Cesanta mjs 2.20.0 allows a remote attacker to cause a denial of service via the mjs_op_json_stringify function in the msj.c file. |
vmm-sys-util is a collection of modules that provides helpers and utilities used by multiple rust-vmm components. Starting in version 0.5.0 and prior to version 0.12.0, an issue in the `FamStructWrapper::deserialize` imp...Show more |
1Silabs 1Gecko Software Development Kit Jun 17, 2026 Jan 2, 2024 N/A· v4 9.8 CRITICAL· v3 N/A· v2 An unvalidated input in Silicon Labs TrustZone implementation in v4.3.x and earlier of the Gecko SDK allows an attacker to access the trusted region of memory from the untrusted region. |
3Fedoraproject QemuRedhat3Enterprise Linux FedoraQemuJun 17, 2026 Jan 2, 2024 N/A· v4 5.3 MEDIUM· v3 N/A· v2 A stack based buffer overflow was found in the virtio-net device of QEMU. This issue occurs when flushing TX in the virtio_net_flush_tx function if guest features VIRTIO_NET_F_HASH_REPORT, VIRTIO_F_VERSION_1 and VIRTIO_N...Show more |
A vulnerability was found in Perl. This security issue occurs while Perl for Windows relies on the system path environment variable to find the shell (`cmd.exe`). When running an executable that uses the Windows Perl int...Show more |
1Qualcomm 122Ar8035 Firmware Csra6620 FirmwareCsra6640 Firmware+119 moreJun 17, 2026 Jan 2, 2024 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption when resource manager sends the host kernel a reply message with multiple fragments. |
1Qualcomm 139315 5g Iot Modem Firmware Aqt1000 FirmwareAr8035 Firmware+136 moreJun 17, 2026 Jan 2, 2024 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption while receiving a message in Bus Socket Transport Server. |
1Qualcomm 259315 5g Iot Modem Firmware 9205 Lte Modem Firmware9206 Lte Modem Firmware+256 moreJun 17, 2026 Jan 2, 2024 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption in Audio during playback with speaker protection. |
1Qualcomm 1179205 Lte Modem Firmware Aqt1000 FirmwareAr8031 Firmware+114 moreJun 17, 2026 Jan 2, 2024 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption in TZ Secure OS while requesting a memory allocation from TA region. |
1Qualcomm 293315 5g Iot Modem Firmware 9205 Lte Modem Firmware9206 Lte Modem Firmware+290 moreJun 17, 2026 Jan 2, 2024 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption in HLOS while running playready use-case. |
2Google Mediatek5Android Lr13Nr15+2 moreJun 17, 2026 Jan 2, 2024 N/A· v4 6.7 MEDIUM· v3 N/A· v2 In bluetooth service, there is a possible out of bounds write due to improper input validation. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for...Show more |
In Modem IMS Call UA, there is a possible out of bounds write due to a missing bounds check. This could lead to remote denial of service with no additional execution privileges needed. User interaction is not needed for...Show more |
In Modem IMS Call UA, there is a possible out of bounds write due to a missing bounds check. This could lead to remote denial of service with no additional execution privileges needed. User interaction is not needed for...Show more |