Skip to main content

Over 150 LLM Providers · Over 5,300 Models The most extensible AI-powered pentesting platform. Open source. Star on GitHub

CWE-119

MITRE ↗

Improper Restriction of Operations within the Bounds of a Memory Buffer

1,070
CRITICAL
4,554
HIGH
1,228
MEDIUM
188
LOW
7,064 CVEs · Page 125/142
7.8
CVE-2017-6008

A kernel pool overflow in the driver hitmanpro37.sys in Sophos SurfRight HitmanPro before 3.7.20 Build 286 (included in

7.8
CVE-2017-7441

In Sophos SurfRight HitmanPro before 3.7.20 Build 286 (included in the HitmanPro.Alert solution and Sophos Clean), a cra

7.8
CVE-2017-14497

The tpacket_rcv function in net/packet/af_packet.c in the Linux kernel before 4.13 mishandles vnet headers, which might

7.8
CVE-2017-14538

XnView Classic for Windows Version 2.40 allows attackers to execute arbitrary code or cause a denial of service via a cr

7.8
CVE-2017-14539

IrfanView 4.44 - 32bit allows attackers to cause a denial of service or possibly have unspecified other impact via a cra

7.8
CVE-2017-14540

IrfanView 4.44 - 32bit allows attackers to cause a denial of service or possibly have unspecified other impact via a cra

7.8
CVE-2017-14541

XnView Classic for Windows Version 2.40 allows attackers to cause a denial of service or possibly have unspecified other

7.8
CVE-2017-14542

STDU Viewer 1.6.375 allows attackers to execute arbitrary code or cause a denial of service via a crafted .epub file, re

7.8
CVE-2017-14543

STDU Viewer 1.6.375 allows attackers to cause a denial of service or possibly have unspecified other impact via a crafte

7.8
CVE-2017-14544

STDU Viewer 1.6.375 allows attackers to cause a denial of service or possibly have unspecified other impact via a crafte

7.8
CVE-2017-14545

STDU Viewer 1.6.375 allows attackers to cause a denial of service or possibly have unspecified other impact via a crafte

7.8
CVE-2017-14546

STDU Viewer 1.6.375 allows attackers to cause a denial of service or possibly have unspecified other impact via a crafte

7.8
CVE-2017-14547

STDU Viewer 1.6.375 allows attackers to cause a denial of service or possibly have unspecified other impact via a crafte

7.8
CVE-2017-14548

STDU Viewer 1.6.375 allows attackers to execute arbitrary code or cause a denial of service via a crafted .djvu file, re

7.8
CVE-2017-14549

STDU Viewer 1.6.375 allows attackers to execute arbitrary code or cause a denial of service via a crafted .djvu file, re

7.8
CVE-2017-14550

STDU Viewer 1.6.375 allows attackers to cause a denial of service or possibly have unspecified other impact via a crafte

7.8
CVE-2017-14551

STDU Viewer 1.6.375 allows attackers to cause a denial of service or possibly have unspecified other impact via a crafte

7.8
CVE-2017-14552

STDU Viewer 1.6.375 allows attackers to execute arbitrary code or cause a denial of service via a crafted .djvu file, re

7.8
CVE-2017-14553

STDU Viewer 1.6.375 allows attackers to execute arbitrary code or cause a denial of service via a crafted .djvu file, re

7.8
CVE-2017-14554

STDU Viewer 1.6.375 allows attackers to cause a denial of service or possibly have unspecified other impact via a crafte

7.8
CVE-2017-14555

STDU Viewer 1.6.375 allows attackers to cause a denial of service or possibly have unspecified other impact via a crafte

7.8
CVE-2017-14556

STDU Viewer 1.6.375 allows attackers to execute arbitrary code or cause a denial of service via a crafted .djvu file, re

7.8
CVE-2017-14557

STDU Viewer 1.6.375 allows attackers to execute arbitrary code or cause a denial of service via a crafted .djvu file, re

7.8
CVE-2017-14558

STDU Viewer 1.6.375 allows attackers to execute arbitrary code or cause a denial of service via a crafted .djvu file, re

7.8
CVE-2017-14559

STDU Viewer 1.6.375 allows attackers to execute arbitrary code or cause a denial of service via a crafted .xps file, rel

7.8
CVE-2017-14560

STDU Viewer 1.6.375 allows attackers to cause a denial of service or possibly have unspecified other impact via a crafte

7.8
CVE-2017-14561

STDU Viewer 1.6.375 allows attackers to execute arbitrary code or cause a denial of service via a crafted .xps file, rel

7.8
CVE-2017-14562

STDU Viewer 1.6.375 allows attackers to cause a denial of service or possibly have unspecified other impact via a crafte

7.8
CVE-2017-14563

STDU Viewer 1.6.375 allows attackers to execute arbitrary code or cause a denial of service via a crafted .xps file, rel

7.8
CVE-2017-14564

STDU Viewer 1.6.375 allows attackers to cause a denial of service or possibly have unspecified other impact via a crafte

7.8
CVE-2017-14565

STDU Viewer 1.6.375 allows attackers to cause a denial of service or possibly have unspecified other impact via a crafte

7.8
CVE-2017-14566

STDU Viewer 1.6.375 allows attackers to execute arbitrary code or cause a denial of service via a crafted .xps file, rel

7.8
CVE-2017-14567

STDU Viewer 1.6.375 allows attackers to execute arbitrary code or cause a denial of service via a crafted .xps file, rel

7.8
CVE-2017-14568

STDU Viewer 1.6.375 allows attackers to execute arbitrary code or cause a denial of service via a crafted .xps file, rel

7.8
CVE-2017-14569

STDU Viewer 1.6.375 allows attackers to cause a denial of service or possibly have unspecified other impact via a crafte

7.8
CVE-2017-14570

STDU Viewer 1.6.375 allows attackers to execute arbitrary code or cause a denial of service via a crafted .xps file, rel

7.8
CVE-2017-14571

STDU Viewer 1.6.375 allows attackers to execute arbitrary code or cause a denial of service via a crafted .xps file, rel

7.8
CVE-2017-14572

STDU Viewer 1.6.375 allows attackers to execute arbitrary code or cause a denial of service via a crafted .xps file, rel

7.8
CVE-2017-14573

STDU Viewer 1.6.375 allows attackers to execute arbitrary code or cause a denial of service via a crafted .xps file, rel

7.8
CVE-2017-14574

STDU Viewer 1.6.375 allows attackers to execute arbitrary code or cause a denial of service via a crafted .xps file, rel

7.8
CVE-2017-14575

STDU Viewer 1.6.375 allows attackers to execute arbitrary code or cause a denial of service via a crafted .xps file, rel

7.8
CVE-2017-14576

STDU Viewer 1.6.375 allows attackers to cause a denial of service or possibly have unspecified other impact via a crafte

7.8
CVE-2017-14577

STDU Viewer 1.6.375 allows attackers to execute arbitrary code or cause a denial of service via a crafted .xps file, rel

7.8
CVE-2017-14578

IrfanView 4.44 - 32bit allows attackers to cause a denial of service or possibly have unspecified other impact via a cra

7.8
CVE-2017-14579

STDU Viewer 1.6.375 allows attackers to execute arbitrary code or cause a denial of service via a crafted .jb2 file, rel

7.8
CVE-2017-14580

XnView Classic for Windows Version 2.41 allows attackers to execute arbitrary code or cause a denial of service via a cr

7.8
CVE-2017-10997

In all Qualcomm products with Android releases from CAF using the Linux kernel, using a debugfs node, a write to a PCIe

7.8
CVE-2017-10998

In all Qualcomm products with Android releases from CAF using the Linux kernel, in audio_aio_ion_lookup_vaddr, the buffe

7.8
CVE-2017-10999

In all Qualcomm products with Android releases from CAF using the Linux kernel, concurrent calls into ioctl RMNET_IOCTL_

7.8
CVE-2017-11000

In all Qualcomm products with Android releases from CAF using the Linux kernel, in an ISP Camera kernel driver function,

Frequently Asked Questions

What is CWE-119?

CWE-119 (Improper Restriction of Operations within the Bounds of a Memory Buffer) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.

How many CVEs are classified as CWE-119?

There are 14,545 CVE records associated with CWE-119 in our database. Of these, 1070 are critical severity, 4554 are high severity, and 1228 are medium severity.

How can I protect against CWE-119 vulnerabilities?

Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-119 using AI-powered security agents.

Detect CWE-119 Vulnerabilities

CyberStrike's AI agents automatically detect improper restriction of operations within the bounds of a memory buffer vulnerabilities across your infrastructure.

Get Started