← Back
CWE-787

14,869 CVEs • Abstraction: Base • Likelihood of Exploit: High

Out-of-bounds Write

The product writes data past the end, or before the beginning, of the intended buffer.

JSON object

Loading...

CVEs (14,869)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Tenda
1M3 Firmware
Jun 17, 2026
Jul 1, 2022
N/A· v4
7.5 HIGH· v3
7.8 HIGH· v2
Tenda M3 V1.0.0.12 was discovered to contain a stack overflow via the items parameter in the function formdelMasteraclist.
1Tenda
1Ax1806 Firmware
Jun 17, 2026
Jul 1, 2022
N/A· v4
7.5 HIGH· v3
7.8 HIGH· v2
Tenda AX1806 v1.0.0.1 was discovered to contain a stack overflow via the function formSetVirtualSer.
1Tenda
1Ax1806 Firmware
Jun 17, 2026
Jul 1, 2022
N/A· v4
9.8 CRITICAL· v3
10.0 HIGH· v2
Tenda AX1806 v1.0.0.1 was discovered to contain a stack overflow via the deviceList parameter in the function formAddMacfilterRule.
1Tenda
1Ax1806 Firmware
Jun 17, 2026
Jul 1, 2022
N/A· v4
7.5 HIGH· v3
7.8 HIGH· v2
Tenda AX1806 v1.0.0.1 was discovered to contain a stack overflow via the list parameter in the function fromSetRouteStatic.
1Tenda
1Ax1806 Firmware
Jun 17, 2026
Jul 1, 2022
N/A· v4
7.5 HIGH· v3
7.8 HIGH· v2
Tenda AX1806 v1.0.0.1 was discovered to contain a stack overflow via the list parameter in the function formSetQosBand.
1Denx
1U Boot
Jun 17, 2026
Jul 1, 2022
N/A· v4
7.8 HIGH· v3
4.6 MEDIUM· v2
Das U-Boot from v2020.10 to v2022.07-rc3 was discovered to contain an out-of-bounds write via the function sqfs_readdir().
2Fedoraproject
Lua
2Fedora
Lua
Jun 17, 2026
Jul 1, 2022
N/A· v4
7.5 HIGH· v3
5.0 MEDIUM· v2
An issue in the component luaG_runerror of Lua v5.4.4 and below leads to a heap-buffer overflow when a recursive error occurs.
2Netapp
Openssl
7H300s Firmware
H410c FirmwareH410s Firmware+4 more
Jun 17, 2026
Jul 1, 2022
N/A· v4
9.8 CRITICAL· v3
10.0 HIGH· v2
The OpenSSL 3.0.4 release introduced a serious bug in the RSA implementation for X86_64 CPUs supporting the AVX512IFMA instructions. This issue makes the RSA implementation with 2048 bit private keys incorrect on such ma...Show more
The OpenSSL 3.0.4 release introduced a serious bug in the RSA implementation for X86_64 CPUs supporting the AVX512IFMA instructions. This issue makes the RSA implementation with 2048 bit private keys incorrect on such machines and memory corruption will happen during the computation. As a consequence of the memory corruption an attacker may be able to trigger a remote code execution on the machine performing the computation. SSL/TLS servers or other servers using 2048 bit RSA private keys running on machines supporting AVX512IFMA instructions of the X86_64 architecture are affected by this issue.Show less
1Tp Link
2Archer A5 Firmware
Archer C50 Firmware
Jun 17, 2026
Jun 30, 2022
N/A· v4
7.5 HIGH· v3
7.8 HIGH· v2
A stack overflow in the function DM_ In fillobjbystr() of TP-Link Archer C50&A5(US)_V5_200407 allows attackers to cause a Denial of Service (DoS) via a crafted HTTP request.
1Denx
1U Boot
Jun 17, 2026
Jun 30, 2022
N/A· v4
9.8 CRITICAL· v3
7.5 HIGH· v2
In Das U-Boot through 2022.07-rc5, an integer signedness error and resultant stack-based buffer overflow in the "i2c md" command enables the corruption of the return address pointer of the do_i2c_md function.
1Zephyrproject
1Zephyr
Jun 17, 2026
Jun 28, 2022
N/A· v4
7.8 HIGH· v3
4.6 MEDIUM· v2
Stack based buffer overflow in le_ecred_conn_req(). Zephyr versions >= v2.5.0 Stack-based Buffer Overflow (CWE-121). For more information, see https://github.com/zephyrproject-rtos/zephyr/security/advisories/GHSA-8w87-6r...Show more
Stack based buffer overflow in le_ecred_conn_req(). Zephyr versions >= v2.5.0 Stack-based Buffer Overflow (CWE-121). For more information, see https://github.com/zephyrproject-rtos/zephyr/security/advisories/GHSA-8w87-6rfp-cfrmShow less
1Xpdfreader
1Xpdf
Jun 17, 2026
Jun 28, 2022
N/A· v4
7.8 HIGH· v3
6.8 MEDIUM· v2
XPDF v4.04 was discovered to contain a stack overflow vulnerability via the Object::Copy class of object.cc files.
1Trendnet
2Tew 751dr Firmware
Tew 752dru Firmware
Jun 17, 2026
Jun 27, 2022
N/A· v4
8.8 HIGH· v3
5.8 MEDIUM· v2
TRENDnet Wi-Fi routers TEW751DR v1.03 and TEW-752DRU v1.03 were discovered to contain a stack overflow via the function genacgi_main.
1Gpac
1Gpac
Jun 17, 2026
Jun 27, 2022
N/A· v4
5.5 MEDIUM· v3
4.3 MEDIUM· v2
In GPAC MP4Box v1.1.0, there is a heap-buffer-overflow in the function filter_parse_dyn_args function in filter_core/filter.c:1454, as demonstrated by GPAC. This can cause a denial of service (DOS).
1Mindspore
1Mindspore
Jun 17, 2026
Jun 27, 2022
N/A· v4
7.5 HIGH· v3
5.0 MEDIUM· v2
When performing the inference shape operation of the Tile operator, if the input data type is not int or int32, it will access data outside of bounds of heap allocated buffers.
2Fedoraproject
Vim
2Fedora
Vim
Jun 17, 2026
Jun 27, 2022
N/A· v4
7.8 HIGH· v3
6.8 MEDIUM· v2
Out-of-bounds Write in GitHub repository vim/vim prior to 8.2.
1Espressif
1Esp Idf
Jun 17, 2026
Jun 25, 2022
N/A· v4
8.8 HIGH· v3
8.3 HIGH· v2
ESP-IDF is the official development framework for Espressif SoCs. In Espressif’s Bluetooth Mesh SDK (`ESP-BLE-MESH`), a memory corruption vulnerability can be triggered during provisioning, because there is no check for...Show more
ESP-IDF is the official development framework for Espressif SoCs. In Espressif’s Bluetooth Mesh SDK (`ESP-BLE-MESH`), a memory corruption vulnerability can be triggered during provisioning, because there is no check for the `SegN` field of the Transaction Start PDU. This can result in memory corruption related attacks and potentially attacker gaining control of the entire system. Patch commits are available on the 4.1, 4.2, 4.3 and 4.4 branches and users are recommended to upgrade. The upgrade is applicable for all applications and users of `ESP-BLE-MESH` component from `ESP-IDF`. As it is implemented in the Bluetooth Mesh stack, there is no workaround for the user to fix the application layer without upgrading the underlying firmware.Show less
1Gnu
1Libredwg
Jun 17, 2026
Jun 23, 2022
N/A· v4
7.8 HIGH· v3
6.8 MEDIUM· v2
LibreDWG v0.12.4.4608 was discovered to contain a stack overflow via the function copy_bytes at decode_r2007.c.
1Gnu
1Libredwg
Jun 17, 2026
Jun 23, 2022
N/A· v4
7.8 HIGH· v3
6.8 MEDIUM· v2
LibreDWG v0.12.4.4608 was discovered to contain a heap-buffer-overflow via the function decode_preR13_section_hdr at decode_r11.c.
1Gnu
1Libredwg
Jun 17, 2026
Jun 23, 2022
N/A· v4
7.8 HIGH· v3
6.8 MEDIUM· v2
LibreDWG v0.12.4.4608 was discovered to contain a heap buffer overflow via the function dwg_add_object at decode.c.