← Back
CWE-787

14,849 CVEs • Abstraction: Base • Likelihood of Exploit: High

Out-of-bounds Write

The product writes data past the end, or before the beginning, of the intended buffer.

JSON object

Loading...

CVEs (14,849)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Radare
1Radare2
Jun 17, 2026
Mar 24, 2022
N/A· v4
5.5 MEDIUM· v3
2.1 LOW· v2
Heap Buffer Overflow in iterate_chained_fixups in GitHub repository radareorg/radare2 prior to 5.6.6.
1Radare
1Radare2
Jun 17, 2026
Mar 24, 2022
N/A· v4
7.5 HIGH· v3
5.0 MEDIUM· v2
Heap Buffer Overflow in parseDragons in GitHub repository radareorg/radare2 prior to 5.6.8.
1Jhead Project
1Jhead
Jun 17, 2026
Mar 23, 2022
N/A· v4
7.8 HIGH· v3
6.8 MEDIUM· v2
A Heap-based Buffer Overflow vulnerability exists in jhead 3.04 and 3.05 via the RemoveSectionType function in jpgfile.c.
1Jhead Project
1Jhead
Jun 17, 2026
Mar 23, 2022
N/A· v4
7.8 HIGH· v3
6.8 MEDIUM· v2
A Heap-based Buffer Overflow vulnerabilty exists in jhead 3.04 and 3.05 is affected by: Buffer Overflow via the RemoveUnknownSections function in jpgfile.c.
1Tendacn
1Ac10 Firmware
Jun 17, 2026
Mar 23, 2022
N/A· v4
9.8 CRITICAL· v3
7.5 HIGH· v2
Tenda AC10-1200 v15.03.06.23_EN was discovered to contain a buffer overflow via the urls parameter in the saveParentControlInfo function.
5Debian
FedoraprojectLinux+2 more
13Debian Linux
Enterprise LinuxFedora+10 more
Sep 1, 2026
Mar 23, 2022
N/A· v4
7.8 HIGH· v3
4.6 MEDIUM· v2
A heap buffer overflow flaw was found in IPsec ESP transformation code in net/ipv4/esp4.c and net/ipv6/esp6.c. This flaw allows a local attacker with a normal user privilege to overwrite kernel heap objects and may cause...Show more
A heap buffer overflow flaw was found in IPsec ESP transformation code in net/ipv4/esp4.c and net/ipv6/esp6.c. This flaw allows a local attacker with a normal user privilege to overwrite kernel heap objects and may cause a local privilege escalation threat.Show less
1Grame
1Faust
Jun 17, 2026
Mar 22, 2022
N/A· v4
9.8 CRITICAL· v3
7.5 HIGH· v2
Faust v2.35.0 was discovered to contain a heap-buffer overflow in the function realPropagate() at propagate.cpp.
2Debian
Teluu
2Debian Linux
Pjsip
Jun 17, 2026
Mar 22, 2022
N/A· v4
7.5 HIGH· v3
5.0 MEDIUM· v2
PJSIP is a free and open source multimedia communication library written in C. Versions 2.12 and prior contain a stack buffer overflow vulnerability that affects PJSUA2 users or users that call the API `pjmedia_sdp_print...Show more
PJSIP is a free and open source multimedia communication library written in C. Versions 2.12 and prior contain a stack buffer overflow vulnerability that affects PJSUA2 users or users that call the API `pjmedia_sdp_print(), pjmedia_sdp_media_print()`. Applications that do not use PJSUA2 and do not directly call `pjmedia_sdp_print()` or `pjmedia_sdp_media_print()` should not be affected. A patch is available on the `master` branch of the `pjsip/pjproject` GitHub repository. There are currently no known workarounds.Show less
1Fromsoftware
1Dark Souls Iii
Jun 17, 2026
Mar 20, 2022
N/A· v4
9.8 CRITICAL· v3
7.5 HIGH· v2
A buffer overflow in the NRSessionSearchResult parser in Bandai Namco FromSoftware Dark Souls III through 2022-03-19 allows remote attackers to execute arbitrary code via matchmaking servers, a different vulnerability th...Show more
A buffer overflow in the NRSessionSearchResult parser in Bandai Namco FromSoftware Dark Souls III through 2022-03-19 allows remote attackers to execute arbitrary code via matchmaking servers, a different vulnerability than CVE-2021-34170.Show less
1Tenda
1Ac6 Firmware
Jun 17, 2026
Mar 18, 2022
N/A· v4
9.8 CRITICAL· v3
10.0 HIGH· v2
Tenda AC6 v15.03.05.09_multi was discovered to contain a stack overflow via the startip parameter in the SetPptpServerCfg function.
1Tenda
1Ac6 Firmware
Jun 17, 2026
Mar 18, 2022
N/A· v4
9.8 CRITICAL· v3
10.0 HIGH· v2
Tenda AC6 v15.03.05.09_multi was discovered to contain a stack overflow via the endip parameter in the SetPptpServerCfg function.
1Tenda
1Ac6 Firmware
Jun 17, 2026
Mar 18, 2022
N/A· v4
9.8 CRITICAL· v3
10.0 HIGH· v2
Tenda AC6 v15.03.05.09_multi was discovered to contain a stack overflow via the S1 parameter in the SetSysTimeCfg function.
1Tenda
1Ac6 Firmware
Jun 17, 2026
Mar 18, 2022
N/A· v4
9.8 CRITICAL· v3
10.0 HIGH· v2
Tenda AC6 v15.03.05.09_multi was discovered to contain a stack overflow via the cmdinput parameter in the exeCommand function.
1Tenda
1Ac6 Firmware
Jun 17, 2026
Mar 18, 2022
N/A· v4
9.8 CRITICAL· v3
10.0 HIGH· v2
Tenda AC6 v15.03.05.09_multi was discovered to contain a stack overflow via the ntpserver parameter in the SetSysTimeCfg function.
1Tenda
1Ac6 Firmware
Jun 17, 2026
Mar 18, 2022
N/A· v4
9.8 CRITICAL· v3
10.0 HIGH· v2
Tenda AC6 v15.03.05.09_multi was discovered to contain a stack overflow via the security_5g parameter in the WifiBasicSet function.
1Tenda
1Ac6 Firmware
Jun 17, 2026
Mar 18, 2022
N/A· v4
9.8 CRITICAL· v3
10.0 HIGH· v2
Tenda AC6 v15.03.05.09_multi was discovered to contain a stack overflow via the list parameter in the SetIpMacBind function.
1Tenda
1Ac6 Firmware
Jun 17, 2026
Mar 18, 2022
N/A· v4
9.8 CRITICAL· v3
10.0 HIGH· v2
Tenda AC6 v15.03.05.09_multi was discovered to contain a stack overflow via the loginpwd parameter in the SetFirewallCfg function.
1Tenda
1Ac6 Firmware
Jun 17, 2026
Mar 18, 2022
N/A· v4
9.8 CRITICAL· v3
10.0 HIGH· v2
Tenda AC6 v15.03.05.09_multi was discovered to contain a stack overflow via the time parameter in the saveParentControlInfo function.
1Tenda
1Ac6 Firmware
Jun 17, 2026
Mar 18, 2022
N/A· v4
9.8 CRITICAL· v3
10.0 HIGH· v2
Tenda AC6 v15.03.05.09_multi was discovered to contain a stack overflow via the URLs parameter in the saveParentControlInfo function.
1Tenda
1Ac6 Firmware
Jun 17, 2026
Mar 18, 2022
N/A· v4
9.8 CRITICAL· v3
10.0 HIGH· v2
Tenda AC6 V15.03.05.09_multi was discovered to contain a stack overflow via the list parameter in the setstaticroutecfg function.