CWE-787
14,833 CVEs • Abstraction: Base • Likelihood of Exploit: High
Out-of-bounds Write
The product writes data past the end, or before the beginning, of the intended buffer.
CVEs (14,833)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
2Debian Fig2dev Project2Debian Linux Fig2devJun 17, 2026 Jan 12, 2022 N/A· v4 5.5 MEDIUM· v3 4.3 MEDIUM· v2 A denial of service vulnerabiity exists in fig2dev through 3.28a due to a segfault in the open_stream function in readpics.c. |
A heap-based buffer overflow vulnerability exists in GPAC v1.0.1 in the gf_isom_dovi_config_get function in MP4Box, which causes a denial of service or execute arbitrary code via a crafted file. |
3Debian FedoraprojectGnome3Debian Linux FedoraGdkpixbufJun 17, 2026 Jan 12, 2022 N/A· v4 8.8 HIGH· v3 6.8 MEDIUM· v2 GNOME gdk-pixbuf 2.42.6 is vulnerable to a heap-buffer overflow vulnerability when decoding the lzw compressed stream of image data in GIF files with lzw minimum code size equals to 12. |
1Microsoft 1Hevc Video Extensions Jun 17, 2026 Jan 11, 2022 N/A· v4 7.8 HIGH· v3 9.3 HIGH· v2 HEVC Video Extensions Remote Code Execution Vulnerability |
1Microsoft 9Windows 10 1809 Windows 10 1909Windows 10 20h2+6 moreAug 15, 2026 Jan 11, 2022 N/A· v4 7.8 HIGH· v3 7.2 HIGH· v2 Win32k Elevation of Privilege Vulnerability |
1Cisco 3Adaptive Security Appliance Software Firepower Threat DefenseSecure Firewall Threat DefenseAug 11, 2026 Jan 11, 2022 N/A· v4 7.5 HIGH· v3 7.1 HIGH· v2 A vulnerability in the web services interface of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to trigger a denial of s...Show more |
1Cisco 4Adaptive Security Appliance Adaptive Security Appliance SoftwareFirepower Threat Defense+1 moreAug 11, 2026 Jan 11, 2022 N/A· v4 7.5 HIGH· v3 7.1 HIGH· v2 A vulnerability in the web services interface of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to trigger a denial of s...Show more |
A heab-based buffer overflow vulnerability exists in MP4Box in GPAC 1.0.1 via media.c, which allows attackers to cause a denial of service or execute arbitrary code via a crafted file. |
A heap-based buffer overflow vulnerability exists in MP4Box in GPAC 1.0.1 via the gp_rtp_builder_do_mpeg12_video function, which allows attackers to possibly have unspecified other impact via a crafted file in the MP4Box...Show more |
2Debian Struktur2Debian Linux Libde265Jun 17, 2026 Jan 10, 2022 N/A· v4 5.5 MEDIUM· v3 4.3 MEDIUM· v2 A stack-buffer-overflow exists in libde265 v1.0.8 via fallback-motion.cc in function put_epel_hv_fallback when running program dec265. |
3Apple FedoraprojectVim3Fedora MacosVimJun 17, 2026 Jan 10, 2022 N/A· v4 3.3 LOW· v3 4.3 MEDIUM· v2 vim is vulnerable to Heap-based Buffer Overflow |
2Debian Htmldoc Project2Debian Linux HtmldocJun 17, 2026 Jan 10, 2022 N/A· v4 7.8 HIGH· v3 6.8 MEDIUM· v2 A stack-based buffer overflow in image_load_bmp() in HTMLDOC <= 1.9.13 results in remote code execution if the victim converts an HTML document linking to a crafted BMP file. |
The eID module has an out-of-bounds memory write vulnerability,Successful exploitation of this vulnerability may affect data integrity. |
1Huawei 3Emui HarmonyosMagic UiJun 17, 2026 Jan 10, 2022 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 There is a Heap-based buffer overflow vulnerability in the AOD module in smartphones. Successful exploitation of this vulnerability may affect service integrity. |
The eID module has an out-of-bounds memory write vulnerability,Successful exploitation of this vulnerability may affect data confidentiality. |
The bone voice ID trusted application (TA) has a heap overflow vulnerability. Successful exploitation of this vulnerability may affect data confidentiality. |
1Huawei 3Emui HarmonyosMagic UiJun 17, 2026 Jan 10, 2022 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 The bone voice ID TA has a heap overflow vulnerability.Successful exploitation of this vulnerability may result in malicious code execution. |
1Huawei 3Emui HarmonyosMagic UiJun 17, 2026 Jan 10, 2022 N/A· v4 5.3 MEDIUM· v3 5.0 MEDIUM· v2 There is an Out-of-bounds write vulnerability in the AOD module in smartphones. Successful exploitation of this vulnerability may affect service integrity. |
The Bluetooth module has an out-of-bounds write vulnerability. Successful exploitation of this vulnerability may result in malicious command execution at the remote end. |
The Bluetooth module has an out-of-bounds write vulnerability. Successful exploitation of this vulnerability may result in malicious command execution at the remote end. |