Skip to main content

Over 150 LLM Providers · Over 5,300 Models The most extensible AI-powered pentesting platform. Open source. Star on GitHub

CWE-119

MITRE ↗

Improper Restriction of Operations within the Bounds of a Memory Buffer

1,070
CRITICAL
4,554
HIGH
1,228
MEDIUM
188
LOW
7,064 CVEs · Page 124/142
7.8
CVE-2017-14270

XnView Classic for Windows Version 2.40 allows attackers to execute arbitrary code or cause a denial of service via a cr

7.8
CVE-2017-14271

XnView Classic for Windows Version 2.40 allows attackers to execute arbitrary code or cause a denial of service via a cr

7.8
CVE-2017-14272

XnView Classic for Windows Version 2.40 allows attackers to execute arbitrary code or cause a denial of service via a cr

7.8
CVE-2017-14273

XnView Classic for Windows Version 2.40 allows attackers to execute arbitrary code or cause a denial of service via a cr

7.8
CVE-2017-14274

XnView Classic for Windows Version 2.40 allows attackers to execute arbitrary code or cause a denial of service via a cr

7.8
CVE-2017-14275

XnView Classic for Windows Version 2.40 allows attackers to execute arbitrary code or cause a denial of service via a cr

7.8
CVE-2017-14276

XnView Classic for Windows Version 2.40 allows attackers to cause a denial of service or possibly have unspecified other

7.8
CVE-2017-14277

XnView Classic for Windows Version 2.40 allows attackers to cause a denial of service or possibly have unspecified other

7.8
CVE-2017-14278

XnView Classic for Windows Version 2.40 allows attackers to cause a denial of service or possibly have unspecified other

7.8
CVE-2017-14279

XnView Classic for Windows Version 2.40 allows attackers to cause a denial of service or possibly have unspecified other

7.8
CVE-2017-14280

XnView Classic for Windows Version 2.40 allows attackers to cause a denial of service or possibly have unspecified other

7.8
CVE-2017-14281

XnView Classic for Windows Version 2.40 allows attackers to cause a denial of service or possibly have unspecified other

7.8
CVE-2017-14282

XnView Classic for Windows Version 2.40 allows attackers to cause a denial of service or possibly have unspecified other

7.8
CVE-2017-14283

XnView Classic for Windows Version 2.40 allows attackers to cause a denial of service or possibly have unspecified other

7.8
CVE-2017-14284

XnView Classic for Windows Version 2.40 allows attackers to cause a denial of service or possibly have unspecified other

7.8
CVE-2017-14285

XnView Classic for Windows Version 2.40 allows attackers to cause a denial of service or possibly have unspecified other

7.8
CVE-2017-14286

STDU Viewer 1.6.375 allows attackers to execute arbitrary code or cause a denial of service via a crafted .jb2 file, rel

7.8
CVE-2017-14287

STDU Viewer 1.6.375 allows attackers to execute arbitrary code or cause a denial of service via a crafted .jb2 file, rel

7.8
CVE-2017-14288

STDU Viewer 1.6.375 allows attackers to execute arbitrary code or cause a denial of service via a crafted .jb2 file, rel

7.8
CVE-2017-14289

STDU Viewer 1.6.375 allows attackers to execute arbitrary code or cause a denial of service via a crafted .jb2 file, rel

7.8
CVE-2017-14290

STDU Viewer 1.6.375 allows attackers to execute arbitrary code or cause a denial of service via a crafted .jb2 file, rel

7.8
CVE-2017-14291

STDU Viewer 1.6.375 allows attackers to execute arbitrary code or cause a denial of service via a crafted .jb2 file, rel

7.8
CVE-2017-14292

STDU Viewer 1.6.375 allows attackers to execute arbitrary code or cause a denial of service via a crafted .jb2 file, rel

7.8
CVE-2017-14293

STDU Viewer 1.6.375 allows attackers to execute arbitrary code or cause a denial of service via a crafted .jb2 file, rel

7.8
CVE-2017-14294

STDU Viewer 1.6.375 allows attackers to execute arbitrary code or cause a denial of service via a crafted .jb2 file, rel

7.8
CVE-2017-14295

STDU Viewer 1.6.375 allows attackers to execute arbitrary code or cause a denial of service via a crafted .jb2 file, rel

7.8
CVE-2017-14296

STDU Viewer 1.6.375 allows attackers to execute arbitrary code or cause a denial of service via a crafted .jb2 file, rel

7.8
CVE-2017-14297

STDU Viewer 1.6.375 allows attackers to execute arbitrary code or cause a denial of service via a crafted .jb2 file, rel

7.8
CVE-2017-14298

STDU Viewer 1.6.375 allows attackers to execute arbitrary code or cause a denial of service via a crafted .jb2 file, rel

7.8
CVE-2017-14299

STDU Viewer 1.6.375 allows attackers to execute arbitrary code or cause a denial of service via a crafted .jb2 file, rel

7.8
CVE-2017-14300

STDU Viewer 1.6.375 allows attackers to execute arbitrary code or cause a denial of service via a crafted .jb2 file, rel

7.8
CVE-2017-14301

STDU Viewer 1.6.375 allows attackers to execute arbitrary code or cause a denial of service via a crafted .jb2 file, rel

7.8
CVE-2017-14302

STDU Viewer 1.6.375 allows attackers to cause a denial of service or possibly have unspecified other impact via a crafte

7.8
CVE-2017-14303

STDU Viewer 1.6.375 allows attackers to cause a denial of service or possibly have unspecified other impact via a crafte

7.8
CVE-2017-14304

STDU Viewer 1.6.375 allows attackers to cause a denial of service or possibly have unspecified other impact via a crafte

7.8
CVE-2017-14305

STDU Viewer 1.6.375 allows attackers to cause a denial of service or possibly have unspecified other impact via a crafte

7.8
CVE-2017-14306

STDU Viewer 1.6.375 allows attackers to cause a denial of service or possibly have unspecified other impact via a crafte

7.8
CVE-2017-14307

STDU Viewer 1.6.375 allows attackers to cause a denial of service or possibly have unspecified other impact via a crafte

7.8
CVE-2017-14308

STDU Viewer 1.6.375 allows attackers to cause a denial of service or possibly have unspecified other impact via a crafte

7.8
CVE-2017-14309

STDU Viewer 1.6.375 allows attackers to cause a denial of service or possibly have unspecified other impact via a crafte

7.8
CVE-2017-14310

STDU Viewer 1.6.375 allows attackers to cause a denial of service or possibly have unspecified other impact via a crafte

7.8
CVE-2017-14266

tcprewrite in Tcpreplay 3.4.4 has a Heap-Based Buffer Overflow vulnerability triggered by a crafted PCAP file, a related

7.8
CVE-2017-8567

A remote code execution vulnerability exists in Microsoft Excel for Mac 2011 when it fails to properly handle objects in

7.8
CVE-2017-8630

Microsoft Office 2016 allows a remote code execution vulnerability when it fails to properly handle objects in memory, a

7.8
CVE-2017-8632

A remote code execution vulnerability exists in Microsoft Excel 2010 Service Pack 2, Microsoft Excel 2013 Service Pack 1

7.8
CVE-2017-8725

A remote code execution vulnerability exists in Microsoft Publisher 2007 Service Pack 3 and Microsoft Publisher 2010 Ser

7.8
CVE-2017-8742

A remote code execution vulnerability exists in Microsoft PowerPoint 2007 Service Pack 3, Microsoft PowerPoint 2010 Serv

7.8
CVE-2017-8743

A remote code execution vulnerability exists in Microsoft PowerPoint 2016, Microsoft SharePoint Enterprise Server 2016,

7.8
CVE-2017-8744

A remote code execution vulnerability exists in Excel Services, Microsoft Excel 2007 Service Pack 3, Microsoft Excel 201

7.8
CVE-2017-14398

rzpnk.sys in Razer Synapse 2.20.15.1104 allows local users to read and write to arbitrary memory locations, and conseque

Frequently Asked Questions

What is CWE-119?

CWE-119 (Improper Restriction of Operations within the Bounds of a Memory Buffer) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.

How many CVEs are classified as CWE-119?

There are 14,545 CVE records associated with CWE-119 in our database. Of these, 1070 are critical severity, 4554 are high severity, and 1228 are medium severity.

How can I protect against CWE-119 vulnerabilities?

Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-119 using AI-powered security agents.

Detect CWE-119 Vulnerabilities

CyberStrike's AI agents automatically detect improper restriction of operations within the bounds of a memory buffer vulnerabilities across your infrastructure.

Get Started