← Back
CWE-787

14,830 CVEs • Abstraction: Base • Likelihood of Exploit: High

Out-of-bounds Write

The product writes data past the end, or before the beginning, of the intended buffer.

JSON object

Loading...

CVEs (14,830)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Tsmuxer Project
1Tsmuxer
Jun 17, 2026
Dec 3, 2021
N/A· v4
9.8 CRITICAL· v3
7.5 HIGH· v2
tsMuxer v2.6.16 was discovered to contain a heap-based buffer overflow via the function BitStreamReader::getCurVal in bitStream.h.
1Tendacn
1Ac15 Firmware
Jun 17, 2026
Dec 3, 2021
N/A· v4
9.8 CRITICAL· v3
7.5 HIGH· v2
A Stack-based Buffer Overflow vulnerability exists in the Tenda AC15 V15.03.05.18_multi device via the list parameter in a post request in goform/SetIpMacBind.
1Gnu
1Libredwg
Jun 17, 2026
Dec 2, 2021
N/A· v4
9.8 CRITICAL· v3
7.5 HIGH· v2
LibreDWG v0.12.3 was discovered to contain a heap-buffer overflow via decode_preR13.
1Aomedia
1Aomedia
Jun 17, 2026
Dec 2, 2021
N/A· v4
8.8 HIGH· v3
6.8 MEDIUM· v2
AOM v2.0.1 was discovered to contain a stack buffer overflow via the component stats/rate_hist.c.
1Aomedia
1Aomedia
Jun 17, 2026
Dec 2, 2021
N/A· v4
8.8 HIGH· v3
6.8 MEDIUM· v2
AOM v2.0.1 was discovered to contain a stack buffer overflow via the component src/aom_image.c.
1Dlink
1Dir 809 Firmware
Jun 17, 2026
Dec 1, 2021
N/A· v4
9.8 CRITICAL· v3
10.0 HIGH· v2
D-Link DIR-809 devices with firmware through DIR-809Ax_FW1.12WWB03_20190410 were discovered to contain a stack buffer overflow vulnerability in the function FUN_80040af8 in /formWlanSetup. This vulnerability is triggered...Show more
D-Link DIR-809 devices with firmware through DIR-809Ax_FW1.12WWB03_20190410 were discovered to contain a stack buffer overflow vulnerability in the function FUN_80040af8 in /formWlanSetup. This vulnerability is triggered via a crafted POST request.Show less
1Dlink
1Dir 809 Firmware
Jun 17, 2026
Dec 1, 2021
N/A· v4
9.8 CRITICAL· v3
10.0 HIGH· v2
D-Link DIR-809 devices with firmware through DIR-809Ax_FW1.12WWB03_20190410 were discovered to contain a stack buffer overflow vulnerability in the function sub_80046EB4 in /formSetPortTr. This vulnerability is triggered...Show more
D-Link DIR-809 devices with firmware through DIR-809Ax_FW1.12WWB03_20190410 were discovered to contain a stack buffer overflow vulnerability in the function sub_80046EB4 in /formSetPortTr. This vulnerability is triggered via a crafted POST request.Show less
1Dlink
1Dir 809 Firmware
Jun 17, 2026
Dec 1, 2021
N/A· v4
9.8 CRITICAL· v3
10.0 HIGH· v2
D-Link DIR-809 devices with firmware through DIR-809Ax_FW1.12WWB03_20190410 were discovered to contain a stack buffer overflow vulnerability in the function FUN_800462c4 in /formAdvFirewall. This vulnerability is trigger...Show more
D-Link DIR-809 devices with firmware through DIR-809Ax_FW1.12WWB03_20190410 were discovered to contain a stack buffer overflow vulnerability in the function FUN_800462c4 in /formAdvFirewall. This vulnerability is triggered via a crafted POST request.Show less
1Dlink
1Dir 809 Firmware
Jun 17, 2026
Dec 1, 2021
N/A· v4
9.8 CRITICAL· v3
10.0 HIGH· v2
D-Link DIR-809 devices with firmware through DIR-809Ax_FW1.12WWB03_20190410 were discovered to contain a stack buffer overflow vulnerability in the function FUN_8004776c in /formVirtualServ. This vulnerability is trigger...Show more
D-Link DIR-809 devices with firmware through DIR-809Ax_FW1.12WWB03_20190410 were discovered to contain a stack buffer overflow vulnerability in the function FUN_8004776c in /formVirtualServ. This vulnerability is triggered via a crafted POST request.Show less
1Dlink
1Dir 809 Firmware
Jun 17, 2026
Dec 1, 2021
N/A· v4
9.8 CRITICAL· v3
10.0 HIGH· v2
D-Link DIR-809 devices with firmware through DIR-809Ax_FW1.12WWB03_20190410 were discovered to contain a stack buffer overflow vulnerability in the function sub_8003183C in /fromLogin. This vulnerability is triggered via...Show more
D-Link DIR-809 devices with firmware through DIR-809Ax_FW1.12WWB03_20190410 were discovered to contain a stack buffer overflow vulnerability in the function sub_8003183C in /fromLogin. This vulnerability is triggered via a crafted POST request.Show less
1Dlink
1Dir 809 Firmware
Jun 17, 2026
Dec 1, 2021
N/A· v4
9.8 CRITICAL· v3
10.0 HIGH· v2
D-Link DIR-809 devices with firmware through DIR-809Ax_FW1.12WWB03_20190410 were discovered to contain a stack buffer overflow vulnerability in the function FUN_80034d60 in /formStaticDHCP. This vulnerability is triggere...Show more
D-Link DIR-809 devices with firmware through DIR-809Ax_FW1.12WWB03_20190410 were discovered to contain a stack buffer overflow vulnerability in the function FUN_80034d60 in /formStaticDHCP. This vulnerability is triggered via a crafted POST request.Show less
1Dlink
1Dir 809 Firmware
Jun 17, 2026
Dec 1, 2021
N/A· v4
9.8 CRITICAL· v3
10.0 HIGH· v2
D-Link DIR-809 devices with firmware through DIR-809Ax_FW1.12WWB03_20190410 were discovered to contain a stack buffer overflow vulnerability in the function FUN_8004776c in /formVirtualApp. This vulnerability is triggere...Show more
D-Link DIR-809 devices with firmware through DIR-809Ax_FW1.12WWB03_20190410 were discovered to contain a stack buffer overflow vulnerability in the function FUN_8004776c in /formVirtualApp. This vulnerability is triggered via a crafted POST request.Show less
1Dlink
1Dir 809 Firmware
Jun 17, 2026
Dec 1, 2021
N/A· v4
9.8 CRITICAL· v3
7.2 HIGH· v2
D-Link DIR-809 devices with firmware through DIR-809Ax_FW1.12WWB03_20190410 were discovered to contain a stack buffer overflow vulnerability in the function FUN_80046eb4 in /formSetPortTr. This vulnerability is triggered...Show more
D-Link DIR-809 devices with firmware through DIR-809Ax_FW1.12WWB03_20190410 were discovered to contain a stack buffer overflow vulnerability in the function FUN_80046eb4 in /formSetPortTr. This vulnerability is triggered via a crafted POST request.Show less
3Debian
FedoraprojectVim
3Debian Linux
FedoraVim
Jun 17, 2026
Dec 1, 2021
N/A· v4
7.8 HIGH· v3
6.8 MEDIUM· v2
vim is vulnerable to Heap-based Buffer Overflow
4Debian
FedoraprojectNeovim+1 more
4Debian Linux
FedoraNeovim+1 more
Jun 17, 2026
Dec 1, 2021
N/A· v4
7.8 HIGH· v3
6.8 MEDIUM· v2
vim is vulnerable to Heap-based Buffer Overflow
2Bluez
Debian
2Bluez
Debian Linux
Jun 17, 2026
Nov 29, 2021
N/A· v4
8.8 HIGH· v3
5.8 MEDIUM· v2
A heap-based buffer overflow was discovered in bluetoothd in BlueZ through 5.48. There isn't any check on whether there is enough space in the destination buffer. The function simply appends all data passed to it. The va...Show more
A heap-based buffer overflow was discovered in bluetoothd in BlueZ through 5.48. There isn't any check on whether there is enough space in the destination buffer. The function simply appends all data passed to it. The values of all attributes that are requested are appended to the output buffer. There are no size checks whatsoever, resulting in a simple heap overflow if one can craft a request where the response is large enough to overflow the preallocated buffer. This issue exists in service_attr_req gets called by process_request (in sdpd-request.c), which also allocates the response buffer.Show less
1Afreecatv
1Afreecatv
Jun 17, 2026
Nov 26, 2021
N/A· v4
8.8 HIGH· v3
6.5 MEDIUM· v2
The vulnerability function is enabled when the streamer service related to the AfreecaTV communicated through web socket using 21201 port. A stack-based buffer overflow leading to remote code execution was discovered in...Show more
The vulnerability function is enabled when the streamer service related to the AfreecaTV communicated through web socket using 21201 port. A stack-based buffer overflow leading to remote code execution was discovered in strcpy() operate by "FanTicket" field. It is because of stored data without validation of length.Show less
1Dell
2Emc Idrac8 Firmware
Emc Idrac9 Firmware
Jun 17, 2026
Nov 23, 2021
N/A· v4
7.2 HIGH· v3
6.5 MEDIUM· v2
Dell iDRAC 9 prior to version 4.40.40.00 and iDRAC 8 prior to version 2.80.80.80 contain a Stack Buffer Overflow in Racadm. An authenticated remote attacker may potentially exploit this vulnerability to control process e...Show more
Dell iDRAC 9 prior to version 4.40.40.00 and iDRAC 8 prior to version 2.80.80.80 contain a Stack Buffer Overflow in Racadm. An authenticated remote attacker may potentially exploit this vulnerability to control process execution and gain access to the underlying operating system.Show less
1Huawei
1Harmonyos
Jun 17, 2026
Nov 23, 2021
N/A· v4
9.8 CRITICAL· v3
10.0 HIGH· v2
There is a Heap-based Buffer Overflow vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability will cause root permission which can be escalated.
3Debian
FedoraprojectIsync Project
3Debian Linux
FedoraIsync
Jun 17, 2026
Nov 22, 2021
N/A· v4
9.8 CRITICAL· v3
7.5 HIGH· v2
A flaw was found in mbsync in isync 1.4.0 through 1.4.3. Due to an unchecked condition, a malicious or compromised IMAP server could use a crafted mail message that lacks headers (i.e., one that starts with an empty line...Show more
A flaw was found in mbsync in isync 1.4.0 through 1.4.3. Due to an unchecked condition, a malicious or compromised IMAP server could use a crafted mail message that lacks headers (i.e., one that starts with an empty line) to provoke a heap overflow, which could conceivably be exploited for remote code execution.Show less