CWE-787
14,869 CVEs • Abstraction: Base • Likelihood of Exploit: High
Out-of-bounds Write
The product writes data past the end, or before the beginning, of the intended buffer.
CVEs (14,869)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
H3C Magic R200 R200V200R004L02 was discovered to contain a stack overflow via the HOST parameter at /dotrace.asp. |
H3C Magic R200 R200V200R004L02 was discovered to contain a stack overflow via the INTF parameter at /dotrace.asp. |
H3C Magic R200 R200V200R004L02 was discovered to contain a stack overflow via the DelDNSHnList interface at /goform/aspForm. |
H3C Magic R200 R200V200R004L02 was discovered to contain a stack overflow via the ipqos_lanip_editlist interface at /goform/aspForm. |
H3C Magic R200 R200V200R004L02 was discovered to contain a stack overflow via the Delstlist interface at /goform/aspForm. |
H3C Magic R200 R200V200R004L02 was discovered to contain a stack overflow via the EditSTList interface at /goform/aspForm. |
H3C Magic R200 R200V200R004L02 was discovered to contain a stack overflow via the EdittriggerList interface at /goform/aspForm. |
squashfs filesystem implementation of U-Boot versions from v2020.10-rc2 to v2022.07-rc5 contains a heap-based buffer overflow vulnerability due to a defect in the metadata reading process. Loading a specially crafted squ...Show more |
1Hinet 1Hicos Natural Person Credential Component Client Jun 17, 2026 Jul 20, 2022 N/A· v4 6.8 MEDIUM· v3 N/A· v2 HICOS’ client-side citizen digital certificate component has a stack-based buffer overflow vulnerability when reading IC card due to insufficient parameter length validation for token information. An unauthenticated phys...Show more |
1Hinet 1Hicos Natural Person Credential Component Client Jun 17, 2026 Jul 20, 2022 N/A· v4 6.8 MEDIUM· v3 N/A· v2 HiCOS’ client-side citizen digital certificate component has a stack-based buffer overflow vulnerability when reading IC card due to insufficient parameter length validation for card number. An unauthenticated physical a...Show more |
1Hinet 1Hicos Natural Person Credential Component Client Jun 17, 2026 Jul 20, 2022 N/A· v4 6.8 MEDIUM· v3 N/A· v2 HiCOS’ client-side citizen digital certificate component has a stack-based buffer overflow vulnerability when reading IC card due to insufficient parameter length validation for OS information. An unauthenticated physica...Show more |
Redis is an in-memory database that persists on disk. A specially crafted `XAUTOCLAIM` command on a stream key in a specific state may result with heap overflow, and potentially remote code execution. This problem affect...Show more |
3Debian GstreamerGstreamer Project3Debian Linux GstreamerGstreamerJun 17, 2026 Jul 19, 2022 N/A· v4 7.8 HIGH· v3 N/A· v2 DOS / potential heap overwrite in qtdemux using zlib decompression. Integer overflow in qtdemux element in qtdemux_inflate function which causes a segfault, or could cause a heap overwrite, depending on libc and OS. Depe...Show more |
3Debian GstreamerGstreamer Project3Debian Linux GstreamerGstreamerJun 17, 2026 Jul 19, 2022 N/A· v4 7.8 HIGH· v3 N/A· v2 Integer overflow in matroskademux element in gst_matroska_demux_add_wvpk_header function which allows a heap overwrite while parsing matroska files. Potential for arbitrary code execution through heap overwrite. |
HTMLDoc v1.9.12 and below was discovered to contain a heap overflow via e_node htmldoc/htmldoc/html.cxx:588. |
HTMLDoc v1.9.15 was discovered to contain a heap overflow via (write_header) /htmldoc/htmldoc/html.cxx:273. |
A potential memory corruption issue was found in Capsule Workspace Android app (running on GrapheneOS). This could result in application crashing but could not be used to gather any sensitive information. |
A stack-based buffer overflow vulnerability [CWE-121] in the command line interpreter of FortiOS before 7.0.4 and FortiProxy before 2.0.8 may allow an authenticated attacker to execute unauthorized code or commands via s...Show more |
3Debian LinuxOpenatom3Debian Linux Linux KernelOpeneulerJun 17, 2026 Jul 18, 2022 N/A· v4 6.8 MEDIUM· v3 N/A· v2 When setting font with malicous data by ioctl cmd PIO_FONT,kernel will write memory out of bounds. |
2Debian Linux2Debian Linux Linux KernelJun 17, 2026 Jul 18, 2022 N/A· v4 6.7 MEDIUM· v3 N/A· v2 When sending malicous data to kernel by ioctl cmd FBIOPUT_VSCREENINFO,kernel will write memory out of bounds. |