CWE-119
MITRE ↗Improper Restriction of Operations within the Bounds of a Memory Buffer
XnView Classic for Windows Version 2.40 allows attackers to execute arbitrary code or cause a denial of service via a cr
XnView Classic for Windows Version 2.40 allows attackers to execute arbitrary code or cause a denial of service via a cr
XnView Classic for Windows Version 2.40 allows attackers to execute arbitrary code or cause a denial of service via a cr
XnView Classic for Windows Version 2.40 allows attackers to execute arbitrary code or cause a denial of service via a cr
XnView Classic for Windows Version 2.40 allows attackers to execute arbitrary code or cause a denial of service via a cr
XnView Classic for Windows Version 2.40 allows attackers to execute arbitrary code or cause a denial of service via a cr
XnView Classic for Windows Version 2.40 allows attackers to cause a denial of service or possibly have unspecified other
XnView Classic for Windows Version 2.40 allows attackers to cause a denial of service or possibly have unspecified other
XnView Classic for Windows Version 2.40 allows attackers to cause a denial of service or possibly have unspecified other
XnView Classic for Windows Version 2.40 allows attackers to cause a denial of service or possibly have unspecified other
XnView Classic for Windows Version 2.40 allows attackers to cause a denial of service or possibly have unspecified other
XnView Classic for Windows Version 2.40 allows attackers to cause a denial of service or possibly have unspecified other
XnView Classic for Windows Version 2.40 allows attackers to cause a denial of service or possibly have unspecified other
XnView Classic for Windows Version 2.40 allows attackers to cause a denial of service or possibly have unspecified other
XnView Classic for Windows Version 2.40 allows attackers to cause a denial of service or possibly have unspecified other
XnView Classic for Windows Version 2.40 allows attackers to cause a denial of service or possibly have unspecified other
STDU Viewer 1.6.375 allows attackers to execute arbitrary code or cause a denial of service via a crafted .jb2 file, rel
STDU Viewer 1.6.375 allows attackers to execute arbitrary code or cause a denial of service via a crafted .jb2 file, rel
STDU Viewer 1.6.375 allows attackers to execute arbitrary code or cause a denial of service via a crafted .jb2 file, rel
STDU Viewer 1.6.375 allows attackers to execute arbitrary code or cause a denial of service via a crafted .jb2 file, rel
STDU Viewer 1.6.375 allows attackers to execute arbitrary code or cause a denial of service via a crafted .jb2 file, rel
STDU Viewer 1.6.375 allows attackers to execute arbitrary code or cause a denial of service via a crafted .jb2 file, rel
STDU Viewer 1.6.375 allows attackers to execute arbitrary code or cause a denial of service via a crafted .jb2 file, rel
STDU Viewer 1.6.375 allows attackers to execute arbitrary code or cause a denial of service via a crafted .jb2 file, rel
STDU Viewer 1.6.375 allows attackers to execute arbitrary code or cause a denial of service via a crafted .jb2 file, rel
STDU Viewer 1.6.375 allows attackers to execute arbitrary code or cause a denial of service via a crafted .jb2 file, rel
STDU Viewer 1.6.375 allows attackers to execute arbitrary code or cause a denial of service via a crafted .jb2 file, rel
STDU Viewer 1.6.375 allows attackers to execute arbitrary code or cause a denial of service via a crafted .jb2 file, rel
STDU Viewer 1.6.375 allows attackers to execute arbitrary code or cause a denial of service via a crafted .jb2 file, rel
STDU Viewer 1.6.375 allows attackers to execute arbitrary code or cause a denial of service via a crafted .jb2 file, rel
STDU Viewer 1.6.375 allows attackers to execute arbitrary code or cause a denial of service via a crafted .jb2 file, rel
STDU Viewer 1.6.375 allows attackers to execute arbitrary code or cause a denial of service via a crafted .jb2 file, rel
STDU Viewer 1.6.375 allows attackers to cause a denial of service or possibly have unspecified other impact via a crafte
STDU Viewer 1.6.375 allows attackers to cause a denial of service or possibly have unspecified other impact via a crafte
STDU Viewer 1.6.375 allows attackers to cause a denial of service or possibly have unspecified other impact via a crafte
STDU Viewer 1.6.375 allows attackers to cause a denial of service or possibly have unspecified other impact via a crafte
STDU Viewer 1.6.375 allows attackers to cause a denial of service or possibly have unspecified other impact via a crafte
STDU Viewer 1.6.375 allows attackers to cause a denial of service or possibly have unspecified other impact via a crafte
STDU Viewer 1.6.375 allows attackers to cause a denial of service or possibly have unspecified other impact via a crafte
STDU Viewer 1.6.375 allows attackers to cause a denial of service or possibly have unspecified other impact via a crafte
STDU Viewer 1.6.375 allows attackers to cause a denial of service or possibly have unspecified other impact via a crafte
tcprewrite in Tcpreplay 3.4.4 has a Heap-Based Buffer Overflow vulnerability triggered by a crafted PCAP file, a related
A remote code execution vulnerability exists in Microsoft Excel for Mac 2011 when it fails to properly handle objects in
Microsoft Office 2016 allows a remote code execution vulnerability when it fails to properly handle objects in memory, a
A remote code execution vulnerability exists in Microsoft Excel 2010 Service Pack 2, Microsoft Excel 2013 Service Pack 1
A remote code execution vulnerability exists in Microsoft Publisher 2007 Service Pack 3 and Microsoft Publisher 2010 Ser
A remote code execution vulnerability exists in Microsoft PowerPoint 2007 Service Pack 3, Microsoft PowerPoint 2010 Serv
A remote code execution vulnerability exists in Microsoft PowerPoint 2016, Microsoft SharePoint Enterprise Server 2016,
A remote code execution vulnerability exists in Excel Services, Microsoft Excel 2007 Service Pack 3, Microsoft Excel 201
rzpnk.sys in Razer Synapse 2.20.15.1104 allows local users to read and write to arbitrary memory locations, and conseque
Frequently Asked Questions
What is CWE-119?
CWE-119 (Improper Restriction of Operations within the Bounds of a Memory Buffer) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.
How many CVEs are classified as CWE-119?
There are 14,545 CVE records associated with CWE-119 in our database. Of these, 1070 are critical severity, 4554 are high severity, and 1228 are medium severity.
How can I protect against CWE-119 vulnerabilities?
Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-119 using AI-powered security agents.
Detect CWE-119 Vulnerabilities
CyberStrike's AI agents automatically detect improper restriction of operations within the bounds of a memory buffer vulnerabilities across your infrastructure.
Get Started