CWE-787
14,870 CVEs • Abstraction: Base • Likelihood of Exploit: High
Out-of-bounds Write
The product writes data past the end, or before the beginning, of the intended buffer.
CVEs (14,870)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Autodesk 11Autocad Autocad Advance SteelAutocad Architecture+8 moreJun 17, 2026 Oct 21, 2022 N/A· v4 7.8 HIGH· v3 N/A· v2 A malicious crafted .dwf or .pct file when consumed through DesignReview.exe application could lead to memory corruption vulnerability by write access violation. This vulnerability in conjunction with other vulnerabiliti...Show more |
1Autodesk 11Autocad Autocad Advance SteelAutocad Architecture+8 moreJun 17, 2026 Oct 21, 2022 N/A· v4 7.8 HIGH· v3 N/A· v2 A malicious crafted .dwf or .pct file when consumed through DesignReview.exe application could lead to memory corruption vulnerability by write access violation. This vulnerability in conjunction with other vulnerabiliti...Show more |
1Autodesk 11Autocad Autocad Advance SteelAutocad Architecture+8 moreJun 17, 2026 Oct 21, 2022 N/A· v4 7.8 HIGH· v3 N/A· v2 A malicious crafted .dwf or .pct file when consumed through DesignReview.exe application could lead to memory corruption vulnerability by write access violation. This vulnerability in conjunction with other vulnerabiliti...Show more |
1Autodesk 11Autocad Autocad Advance SteelAutocad Architecture+8 moreJun 17, 2026 Oct 21, 2022 N/A· v4 7.8 HIGH· v3 N/A· v2 A malicious crafted .dwf or .pct file when consumed through DesignReview.exe application could lead to memory corruption vulnerability by write access violation. This vulnerability in conjunction with other vulnerabiliti...Show more |
1Autodesk 11Autocad Autocad Advance SteelAutocad Architecture+8 moreJun 17, 2026 Oct 21, 2022 N/A· v4 7.8 HIGH· v3 N/A· v2 A malicious crafted .dwf or .pct file when consumed through DesignReview.exe application could lead to memory corruption vulnerability by write access violation. This vulnerability in conjunction with other vulnerabiliti...Show more |
1Autodesk 11Autocad Autocad Advance SteelAutocad Architecture+8 moreJun 17, 2026 Oct 21, 2022 N/A· v4 7.8 HIGH· v3 N/A· v2 A malicious crafted .dwf or .pct file when consumed through DesignReview.exe application could lead to memory corruption vulnerability by write access violation. This vulnerability in conjunction with other vulnerabiliti...Show more |
1Autodesk 11Autocad Autocad Advance SteelAutocad Architecture+8 moreJun 17, 2026 Oct 21, 2022 N/A· v4 7.8 HIGH· v3 N/A· v2 A malicious crafted .dwf or .pct file when consumed through DesignReview.exe application could lead to memory corruption vulnerability by write access violation. This vulnerability in conjunction with other vulnerabiliti...Show more |
3Debian LibtiffNetapp3Active Iq Unified Manager Debian LinuxLibtiffJun 17, 2026 Oct 21, 2022 N/A· v4 6.5 MEDIUM· v3 N/A· v2 LibTIFF 4.4.0 has an out-of-bounds write in _TIFFmemcpy in libtiff/tif_unix.c:346 when called from extractImageSection, tools/tiffcrop.c:6860, allowing attackers to cause a denial-of-service via a crafted tiff file. For...Show more |
3Debian LibtiffNetapp3Active Iq Unified Manager Debian LinuxLibtiffJun 17, 2026 Oct 21, 2022 N/A· v4 6.5 MEDIUM· v3 N/A· v2 LibTIFF 4.4.0 has an out-of-bounds write in _TIFFmemset in libtiff/tif_unix.c:340 when called from processCropSelections, tools/tiffcrop.c:7619, allowing attackers to cause a denial-of-service via a crafted tiff file. Fo...Show more |
3Debian LibtiffNetapp3Active Iq Unified Manager Debian LinuxLibtiffJun 17, 2026 Oct 21, 2022 N/A· v4 6.5 MEDIUM· v3 N/A· v2 LibTIFF 4.4.0 has an out-of-bounds write in extractContigSamplesShifted24bits in tools/tiffcrop.c:3604, allowing attackers to cause a denial-of-service via a crafted tiff file. For users that compile libtiff from sources...Show more |
3Debian LibtiffNetapp3Active Iq Unified Manager Debian LinuxLibtiffJun 17, 2026 Oct 21, 2022 N/A· v4 6.5 MEDIUM· v3 N/A· v2 LibTIFF 4.4.0 has an out-of-bounds write in _TIFFmemcpy in libtiff/tif_unix.c:346 when called from extractImageSection, tools/tiffcrop.c:6826, allowing attackers to cause a denial-of-service via a crafted tiff file. For...Show more |
Multiple heap buffer overflows in tiffcrop.c utility in libtiff library Version 4.4.0 allows attacker to trigger unsafe or out of bounds memory access via crafted TIFF image file which could result into application crash...Show more |
1Softing 6Edgeaggregator EdgeconnectorOpc+3 moreJun 17, 2026 Oct 20, 2022 N/A· v4 7.5 HIGH· v3 N/A· v2 An issue was discovered in Softing OPC UA C++ SDK before 6.10. A buffer overflow or an excess allocation happens due to unchecked array and matrix bounds in structure data types. |
An out-of-bounds memory write flaw was found in the Linux kernel’s Kid-friendly Wired Controller driver. This flaw allows a local user to crash or potentially escalate their privileges on the system. It is in bigben_prob...Show more |
1Siemens 2Jt2go Teamcenter VisualizationJun 17, 2026 Oct 20, 2022 N/A· v4 7.8 HIGH· v3 N/A· v2 The APDFL.dll in Siemens JT2Go prior to V13.3.0.5 and Siemens Teamcenter Visualization prior to V14.0.0.2 contains an out of bounds write past the fixed-length heap-based buffer while parsing specially crafted PDF files....Show more |
1F5 2Nginx Ingress Controller Nginx PlusJun 17, 2026 Oct 19, 2022 N/A· v4 7.0 HIGH· v3 N/A· v2 NGINX Plus before versions R27 P1 and R26 P1 have a vulnerability in the module ngx_http_hls_module that might allow a local attacker to corrupt NGINX worker memory, resulting in its crash or potential other impact using...Show more |
3Debian F5Fedoraproject4Debian Linux FedoraNginx+1 moreJun 17, 2026 Oct 19, 2022 N/A· v4 7.1 HIGH· v3 N/A· v2 NGINX Open Source before versions 1.23.2 and 1.22.1, NGINX Open Source Subscription before versions R2 P1 and R1 P1, and NGINX Plus before versions R27 P1 and R26 P1 have a vulnerability in the module ngx_http_mp4_module...Show more |
3Debian F5Fedoraproject4Debian Linux FedoraNginx+1 moreJun 17, 2026 Oct 19, 2022 N/A· v4 7.8 HIGH· v3 N/A· v2 NGINX Open Source before versions 1.23.2 and 1.22.1, NGINX Open Source Subscription before versions R2 P1 and R1 P1, and NGINX Plus before versions R27 P1 and R26 P1 have a vulnerability in the module ngx_http_mp4_module...Show more |
Tenda TX3 US_TX3V1.0br_V16.03.13.11_multi_TDE01 was discovered to contain a stack overflow via the time parameter at /goform/SetSysTimeCfg. |
Tenda TX3 US_TX3V1.0br_V16.03.13.11_multi_TDE01 was discovered to contain a stack overflow via the timeZone parameter at /goform/SetSysTimeCfg. |