CWE-787
14,826 CVEs • Abstraction: Base • Likelihood of Exploit: High
Out-of-bounds Write
The product writes data past the end, or before the beginning, of the intended buffer.
CVEs (14,826)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
5Debian FedoraprojectNetapp+2 more5Clustered Data Ontap Communications Diameter Signaling RouterDebian Linux+2 moreJun 17, 2026 Oct 25, 2021 N/A· v4 7.0 HIGH· v3 6.9 MEDIUM· v2 In PHP versions 7.3.x up to and including 7.3.31, 7.4.x below 7.4.25 and 8.0.x below 8.0.12, when running PHP FPM SAPI with main FPM daemon process running as root and child worker processes running as lower-privileged u...Show more |
1Tonec 1Internet Download Manager Jun 17, 2026 Oct 22, 2021 N/A· v4 6.7 MEDIUM· v3 7.2 HIGH· v2 Internet Download Manager 6.37.11.1 was discovered to contain a stack buffer overflow in the Search function. This vulnerability allows attackers to escalate local process privileges via unspecified vectors. |
1Tonec 1Internet Download Manager Jun 17, 2026 Oct 22, 2021 N/A· v4 7.1 HIGH· v3 6.6 MEDIUM· v2 Internet Download Manager 6.37.11.1 was discovered to contain a stack buffer overflow in the Export/Import function. This vulnerability allows attackers to escalate local process privileges via a crafted ef2 file. |
Many API function codes receive raw pointers remotely from the user and trust these pointers as valid in-bound memory regions. An attacker can manipulate API functions by writing arbitrary data into the resolved address...Show more |
The affected product’s code base doesn’t properly control arguments for specific functions, which could lead to a stack overflow. |
2Fedoraproject Freerdp2Fedora FreerdpJun 17, 2026 Oct 21, 2021 N/A· v4 8.8 HIGH· v3 6.8 MEDIUM· v2 FreeRDP is a free implementation of the Remote Desktop Protocol (RDP), released under the Apache license. In affected versions a malicious server might trigger out of bound writes in a connected client. Connections using...Show more |
2Fedoraproject Freerdp2Fedora FreerdpJun 17, 2026 Oct 21, 2021 N/A· v4 8.8 HIGH· v3 6.8 MEDIUM· v2 FreeRDP is a free implementation of the Remote Desktop Protocol (RDP), released under the Apache license. All FreeRDP clients prior to version 2.4.1 using gateway connections (`/gt:rpc`) fail to validate input data. A ma...Show more |
3Fedoraproject LinuxNetapp10Fedora H300e FirmwareH300s Firmware+7 moreJun 17, 2026 Oct 21, 2021 N/A· v4 6.7 MEDIUM· v3 4.6 MEDIUM· v2 dp_link_settings_write in drivers/gpu/drm/amd/display/amdgpu_dm/amdgpu_dm_debugfs.c in the Linux kernel through 5.14.14 allows a heap-based buffer overflow by an attacker who can write a string to the AMD GPU display dri...Show more |
1Trendmicro 3Apex One Worry Free Business SecurityWorry Free Business Security ServicesJun 17, 2026 Oct 21, 2021 N/A· v4 7.8 HIGH· v3 4.6 MEDIUM· v2 A stack-based buffer overflow vulnerability in Trend Micro Apex One, Apex One as a Service and Worry-Free Business Security 10.0 SP1 could allow a local attacker to escalate privileges on affected installations. Please n...Show more |
ZTE MF971R product has two stack-based buffer overflow vulnerabilities. An attacker could exploit the vulnerabilities to execute arbitrary code. |
ZTE MF971R product has two stack-based buffer overflow vulnerabilities. An attacker could exploit the vulnerabilities to execute arbitrary code. |
2Netapp Oracle3Mysql Cluster Oncommand InsightSnapcenterJun 17, 2026 Oct 20, 2021 N/A· v4 6.3 MEDIUM· v3 4.0 MEDIUM· v2 Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are 7.4.33 and prior, 7.5.23 and prior, 7.6.19 and prior and 8.0.26 and prior. Difficult to e...Show more |
2Netapp Oracle3Mysql Cluster Oncommand InsightSnapcenterJun 17, 2026 Oct 20, 2021 N/A· v4 6.3 MEDIUM· v3 6.5 MEDIUM· v2 Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are 7.4.33 and prior, 7.5.23 and prior, 7.6.19 and prior and 8.0.26 and prior. Difficult to e...Show more |
5Debian FedoraprojectLinux+2 more8Communications Cloud Native Core Binding Support Function Communications Cloud Native Core Network Exposure FunctionCommunications Cloud Native Core Policy+5 moreJun 17, 2026 Oct 20, 2021 N/A· v4 6.7 MEDIUM· v3 4.6 MEDIUM· v2 The firewire subsystem in the Linux kernel through 5.14.13 has a buffer overflow related to drivers/media/firewire/firedtv-avc.c and drivers/media/firewire/firedtv-ci.c, because avc_ca_pmt mishandles bounds checking. |
1Qualcomm 91Apq8017 Firmware Apq8053 FirmwareApq8064au Firmware+88 moreJun 17, 2026 Oct 20, 2021 N/A· v4 7.8 HIGH· v3 7.2 HIGH· v2 Possible memory corruption due to lack of validation of client data used for memory allocation in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdrag...Show more |
1Qualcomm 90Apq8017 Firmware Apq8053 FirmwareApq8064au Firmware+87 moreJun 17, 2026 Oct 20, 2021 N/A· v4 7.8 HIGH· v3 7.2 HIGH· v2 Possible memory corruption due to lack of validation of client data used for memory allocation in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdrag...Show more |
1Qualcomm 196Apq8009 Firmware Apq8053 FirmwareApq8096au Firmware+193 moreJun 17, 2026 Oct 20, 2021 N/A· v4 7.8 HIGH· v3 7.2 HIGH· v2 Possible stack overflow due to improper length check of TLV while copying the TLV to a local stack variable in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, S...Show more |
1Qualcomm 97Apq8017 Firmware Apq8053 FirmwareApq8064au Firmware+94 moreJun 17, 2026 Oct 20, 2021 N/A· v4 7.8 HIGH· v3 7.2 HIGH· v2 Possible buffer overflow due to improper size calculation of payload received in VR service in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon...Show more |
1Qualcomm 77Apq8017 Firmware Apq8053 FirmwareAqt1000 Firmware+74 moreJun 17, 2026 Oct 20, 2021 N/A· v4 7.8 HIGH· v3 7.2 HIGH· v2 Possible out of bound read or write in VR service due to lack of validation of DSP selection values in Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT |
1Qualcomm 77Apq8017 Firmware Apq8053 FirmwareAqt1000 Firmware+74 moreJun 17, 2026 Oct 20, 2021 N/A· v4 7.8 HIGH· v3 7.2 HIGH· v2 Possible stack overflow due to improper validation of camera name length before copying the name in VR Service in Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT |