← Back
CWE-787

14,853 CVEs • Abstraction: Base • Likelihood of Exploit: High

Out-of-bounds Write

The product writes data past the end, or before the beginning, of the intended buffer.

JSON object

Loading...

CVEs (14,853)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Ntp
1Ntp
Jun 17, 2026
Apr 11, 2023
N/A· v4
5.6 MEDIUM· v3
N/A· v2
mstolfp in libntp/mstolfp.c in NTP 4.2.8p15 has an out-of-bounds write when adding a '\0' character. An adversary may be able to attack a client ntpq process, but cannot attack ntpd.
1Ntp
1Ntp
Jun 17, 2026
Apr 11, 2023
N/A· v4
5.6 MEDIUM· v3
N/A· v2
mstolfp in libntp/mstolfp.c in NTP 4.2.8p15 has an out-of-bounds write when copying the trailing number. An adversary may be able to attack a client ntpq process, but cannot attack ntpd.
1Ntp
1Ntp
Jun 17, 2026
Apr 11, 2023
N/A· v4
5.6 MEDIUM· v3
N/A· v2
mstolfp in libntp/mstolfp.c in NTP 4.2.8p15 has an out-of-bounds write when adding a decimal point. An adversary may be able to attack a client ntpq process, but cannot attack ntpd.
1Ntp
1Ntp
Jun 17, 2026
Apr 11, 2023
N/A· v4
5.6 MEDIUM· v3
N/A· v2
mstolfp in libntp/mstolfp.c in NTP 4.2.8p15 has an out-of-bounds write in the cp<cpdec while loop. An adversary may be able to attack a client ntpq process, but cannot attack ntpd.
1Insyde
1Insydeh2o
Jun 17, 2026
Apr 11, 2023
N/A· v4
8.4 HIGH· v3
N/A· v2
An issue was discovered in IhisiSmm in Insyde InsydeH2O with kernel 5.0 through 5.5. IHISI subfunction execution may corrupt SMRAM. An attacker can pass an address in the RCX save state register that overlaps SMRAM, ther...Show more
An issue was discovered in IhisiSmm in Insyde InsydeH2O with kernel 5.0 through 5.5. IHISI subfunction execution may corrupt SMRAM. An attacker can pass an address in the RCX save state register that overlaps SMRAM, thereby coercing an IHISI subfunction handler to overwrite private SMRAM.Show less
1Insyde
1Insydeh2o
Jun 17, 2026
Apr 11, 2023
N/A· v4
8.8 HIGH· v3
N/A· v2
An issue was discovered in ChipsetSvcSmm in Insyde InsydeH2O with kernel 5.0 through 5.5. There is insufficient input validation in BIOS Guard updates. An attacker can induce memory corruption in SMM by supplying malform...Show more
An issue was discovered in ChipsetSvcSmm in Insyde InsydeH2O with kernel 5.0 through 5.5. There is insufficient input validation in BIOS Guard updates. An attacker can induce memory corruption in SMM by supplying malformed inputs to the BIOS Guard SMI handler.Show less
1Insyde
1Insydeh2o
Jun 17, 2026
Apr 11, 2023
N/A· v4
8.8 HIGH· v3
N/A· v2
An issue was discovered in IhisiSmm in Insyde InsydeH2O with kernel 5.0 through 5.5. A malicious host OS can invoke an Insyde SMI handler with malformed arguments, resulting in memory corruption in SMM.
1Treasuredata
1Fluent Bit
Jun 17, 2026
Apr 11, 2023
N/A· v4
7.8 HIGH· v3
N/A· v2
An issue was discovered in Treasure Data Fluent Bit 1.7.1, a wrong variable is used to get the msgpack data resulting in a heap overflow in flb_msgpack_gelf_value_ext. An attacker can craft a malicious file and tick the...Show more
An issue was discovered in Treasure Data Fluent Bit 1.7.1, a wrong variable is used to get the msgpack data resulting in a heap overflow in flb_msgpack_gelf_value_ext. An attacker can craft a malicious file and tick the victim to open the file with the software, triggering a heap overflow and execute arbitrary code on the target system.Show less
1Google
1Android
Jun 17, 2026
Apr 11, 2023
N/A· v4
5.5 MEDIUM· v3
N/A· v2
In media service, there is a missing permission check. This could lead to local denial of service in media service.
1Lexmark
26Cslbl Firmware
Cslbn FirmwareCsnzj Firmware+23 more
Jun 17, 2026
Apr 10, 2023
N/A· v4
9.8 CRITICAL· v3
N/A· v2
Certain Lexmark devices through 2023-02-19 have an Out-of-bounds Write.
1Apple
3Ipados
Iphone OsMacos
Jun 17, 2026
Apr 10, 2023
N/A· v4
8.6 HIGH· v3
N/A· v2
An out-of-bounds write issue was addressed with improved input validation. This issue is fixed in macOS Monterey 12.6.5, iOS 16.4.1 and iPadOS 16.4.1, macOS Ventura 13.3.1, iOS 15.7.5 and iPadOS 15.7.5, macOS Big Sur 11....Show more
An out-of-bounds write issue was addressed with improved input validation. This issue is fixed in macOS Monterey 12.6.5, iOS 16.4.1 and iPadOS 16.4.1, macOS Ventura 13.3.1, iOS 15.7.5 and iPadOS 15.7.5, macOS Big Sur 11.7.6. An app may be able to execute arbitrary code with kernel privileges. Apple is aware of a report that this issue may have been actively exploited.Show less
1Apple
1Iphone Os
Jun 17, 2026
Apr 10, 2023
N/A· v4
9.8 CRITICAL· v3
N/A· v2
A memory corruption issue was addressed with improved state management. This issue is fixed in macOS Ventura 13, iOS 16. An app may be able to execute arbitrary code with kernel privileges
1Apple
1Macos
Jun 17, 2026
Apr 10, 2023
N/A· v4
7.8 HIGH· v3
N/A· v2
A memory corruption issue was addressed with improved input validation. This issue is fixed in macOS Ventura 13.1. An app may be able to execute arbitrary code with kernel privileges
1Lua
1Lua
Jun 17, 2026
Apr 10, 2023
N/A· v4
7.5 HIGH· v3
N/A· v2
In Lua 5.4.3, an erroneous finalizer called during a tail call leads to a heap-based buffer over-read.
1Dlink
1Dir 878 Firmware
Jun 17, 2026
Apr 9, 2023
N/A· v4
9.8 CRITICAL· v3
N/A· v2
D-Link DIR878 1.30B08 was discovered to contain a stack overflow in the sub_48d630 function. This vulnerability allows attackers to cause a Denial of Service (DoS) or execute arbitrary code via a crafted payload.
1Dlink
1Dir878 Firmware
Jun 17, 2026
Apr 9, 2023
N/A· v4
9.8 CRITICAL· v3
N/A· v2
D-Link DIR878 1.30B08 was discovered to contain a stack overflow in the sub_478360 function. This vulnerability allows attackers to cause a Denial of Service (DoS) or execute arbitrary code via a crafted payload.
1Dlink
1Dir878 Firmware
Jun 17, 2026
Apr 9, 2023
N/A· v4
9.8 CRITICAL· v3
N/A· v2
D-Link DIR878 1.30B08 was discovered to contain a stack overflow in the sub_498308 function. This vulnerability allows attackers to cause a Denial of Service (DoS) or execute arbitrary code via a crafted payload.
1Tcpdump
1Tcpdump
Jun 17, 2026
Apr 7, 2023
N/A· v4
6.5 MEDIUM· v3
N/A· v2
The SMB protocol decoder in tcpdump version 4.99.3 can perform an out-of-bounds write when decoding a crafted network packet.
1H3c
1Magic R100 Firmware
Jun 17, 2026
Apr 7, 2023
N/A· v4
4.9 MEDIUM· v3
N/A· v2
H3C Magic R100 R100V100R005.bin was discovered to contain a stack overflow via the ipqos_lanip_editlist interface at /goform/aspForm. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted p...Show more
H3C Magic R100 R100V100R005.bin was discovered to contain a stack overflow via the ipqos_lanip_editlist interface at /goform/aspForm. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted payload.Show less
1H3c
1Magic R100 Firmware
Jun 17, 2026
Apr 7, 2023
N/A· v4
4.9 MEDIUM· v3
N/A· v2
H3C Magic R100 R100V100R005.bin was discovered to contain a stack overflow via the DeltriggerList interface at /goform/aspForm. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted payload...Show more
H3C Magic R100 R100V100R005.bin was discovered to contain a stack overflow via the DeltriggerList interface at /goform/aspForm. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted payload.Show less