CWE-787
14,348 CVEs • Abstraction: Base • Likelihood of Exploit: High
Out-of-bounds Write
The product writes data past the end, or before the beginning, of the intended buffer.
CVEs (14,348)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
Vinchin Backup & Recovery through 9.0.0.86562 contains a heap buffer overflow vulnerability that allows unauthenticated remote attackers to cause process crash or memory corruption by sending a malformed TCP packet with...Show more |
A heap buffer overflow vulnerability was found in GStreamer's rfbsrc plugin. When a client connects to a malicious RFB/VNC server that advertises a 16bpp framebuffer and sends Hextile-encoded updates, the Hextile backgro...Show more |
Out-of-bounds read, Out-of-bounds write vulnerability in Samsung Open Source Escargot allows Overflow Buffers.
This issue affects Escargot: before 779f6bedf58f334dec64b0a51ebb724b4708b84a. |
Out of bounds read and write in Codecs in Google Chrome prior to 150.0.7871.115 allowed a remote attacker to potentially exploit heap corruption via a crafted video file. (Chromium security severity: High) |
Multiple buffer overflow vulnerabilities in the User-ID Terminal Server Agent (TSA) component of Palo Alto Networks PAN-OS software allow an unauthenticated attacker with network access to cause a denial of service (DoS)...Show more |
Composer is a dependency Manager for the PHP language. Prior to 2.2.29 and 2.10.2, a maliciously crafted package from an untrusted repository other than Packagist.org or Private Packagist can cause Composer to write atta...Show more |
The application opened a PDF file containing an abnormal Unity 3D object. During parsing, the application incorrectly resolved a portion of the abnormal object as a pointer and used it as a valid address, ultimately caus...Show more |
DBI versions before 1.650 for Perl have a heap overflow when preparsing SQL statements with an extreme number of placeholders. The fix for CVE-2026-10879 did not allocate enough memory to handle approximately 1.2-millio...Show more |
The application contains an out-of-bounds write vulnerability that can be exploited by an attacker to cause the program to write data past the end of an allocated memory buffer. This can lead to arbitrary code execution. |
1Qualcomm 79Fastconnect 6700 Firmware Fastconnect 6900 FirmwareFastconnect 7800 Firmware+76 moreJul 7, 2026 Jul 6, 2026 N/A· v4 5.3 MEDIUM· v3 N/A· v2 Memory Corruption when updating prepared commands with invalid port indices based on user space input exceeds supported read client limits. |
1Qualcomm 90Fastconnect 6700 Firmware Fastconnect 6900 FirmwareFastconnect 7800 Firmware+87 moreJul 7, 2026 Jul 6, 2026 N/A· v4 5.3 MEDIUM· v3 N/A· v2 Memory Corruption when validating input batch size and buffer plane count exceeds maximum allowed values. |
1Qualcomm 107Fastconnect 6200 Firmware Fastconnect 6700 FirmwareFastconnect 6900 Firmware+104 moreJul 7, 2026 Jul 6, 2026 N/A· v4 5.3 MEDIUM· v3 N/A· v2 Memory Corruption when handling flash commands due to outdated LED count values being used after userspace modification. |
1Qualcomm 90Fastconnect 6700 Firmware Fastconnect 6900 FirmwareFastconnect 7800 Firmware+87 moreJul 7, 2026 Jul 6, 2026 N/A· v4 5.3 MEDIUM· v3 N/A· v2 Memory Corruption when parsing jpeg commands due to unaccounted extra writes to the buffer during validation checks. |
OP-TEE is a Trusted Execution Environment (TEE) designed as companion to a non-secure Linux kernel running on Arm; Cortex-A cores using the TrustZone technology. Starting in version 3.21.0 and prior to version 4.11.0, th...Show more |
Two off-by-one errors in the FreeIPA ipa-otpd daemon's OAuth2 device authorization handler can cause out-of-bounds memory access when processing an oversized response from a configured external OAuth2/OIDC Identity Provi...Show more |
An Out-of-bounds Write vulnerability in WatchGuard Fireware OS wgagent process could allow an authenticated privileged user to execute arbitrary code via a specially crafted requests to the Management Web UI.This vulnera...Show more |
An Out-of-bounds Write vulnerability in WatchGuard Fireware OS ikestubd process could allow an authenticated privileged user to execute arbitrary code via a specially crafted requests to the Management Web UI.This vulner...Show more |
An Out-of-bounds Write vulnerability in WatchGuard Fireware OS's CLI could allow an authenticated privileged user to execute arbitrary code via a specially crafted CLI command. This vulnerability affects Fireware OS 11....Show more |
An Out-of-bounds Write vulnerability in WatchGuard Fireware OS networkd process could allow an authenticated privileged user to execute arbitrary code via a specially crafted requests to the Management Web UI.This vulner...Show more |
Out of bounds read and write in Tint in Google Chrome prior to 150.0.7871.46 allowed a remote attacker to potentially perform out of bounds memory access via a crafted HTML page. (Chromium security severity: High) |