Skip to main content

Over 150 LLM Providers · Over 5,300 Models The most extensible AI-powered pentesting platform. Open source. Star on GitHub

CWE-119

MITRE ↗

Improper Restriction of Operations within the Bounds of a Memory Buffer

1,070
CRITICAL
4,554
HIGH
1,228
MEDIUM
188
LOW
7,064 CVEs · Page 128/142
7.8
CVE-2017-15768

IrfanView version 4.50 - 64bit allows attackers to cause a denial of service or possibly have unspecified other impact v

7.8
CVE-2017-15769

IrfanView 4.50 - 64bit allows attackers to cause a denial of service or possibly have unspecified other impact via a cra

7.8
CVE-2017-15772

XnView Classic for Windows Version 2.43 allows attackers to cause a denial of service or possibly have unspecified other

7.8
CVE-2017-15773

XnView Classic for Windows Version 2.43 allows attackers to cause a denial of service or possibly have unspecified other

7.8
CVE-2017-15774

XnView Classic for Windows Version 2.43 allows attackers to execute arbitrary code or cause a denial of service via a cr

7.8
CVE-2017-15775

XnView Classic for Windows Version 2.43 allows attackers to cause a denial of service or possibly have unspecified other

7.8
CVE-2017-15776

XnView Classic for Windows Version 2.43 allows attackers to cause a denial of service or possibly have unspecified other

7.8
CVE-2017-15777

XnView Classic for Windows Version 2.43 allows attackers to execute arbitrary code or cause a denial of service via a cr

7.8
CVE-2017-15778

XnView Classic for Windows Version 2.43 allows attackers to cause a denial of service or possibly have unspecified other

7.8
CVE-2017-15779

XnView Classic for Windows Version 2.43 allows attackers to execute arbitrary code or cause a denial of service via a cr

7.8
CVE-2017-15780

XnView Classic for Windows Version 2.43 allows attackers to cause a denial of service or possibly have unspecified other

7.8
CVE-2017-15781

XnView Classic for Windows Version 2.43 allows attackers to execute arbitrary code or cause a denial of service via a cr

7.8
CVE-2017-15782

XnView Classic for Windows Version 2.43 allows attackers to execute arbitrary code or cause a denial of service via a cr

7.8
CVE-2017-15783

XnView Classic for Windows Version 2.43 allows attackers to cause a denial of service or possibly have unspecified other

7.8
CVE-2017-15784

XnView Classic for Windows Version 2.43 allows attackers to execute arbitrary code or cause a denial of service via a cr

7.8
CVE-2017-15785

XnView Classic for Windows Version 2.43 allows attackers to execute arbitrary code or cause a denial of service via a cr

7.8
CVE-2017-15786

XnView Classic for Windows Version 2.43 allows attackers to cause a denial of service or possibly have unspecified other

7.8
CVE-2017-15787

XnView Classic for Windows Version 2.43 allows attackers to execute arbitrary code or cause a denial of service via a cr

7.8
CVE-2017-15788

XnView Classic for Windows Version 2.43 allows attackers to execute arbitrary code or cause a denial of service via a cr

7.8
CVE-2017-15789

XnView Classic for Windows Version 2.43 allows attackers to execute arbitrary code or cause a denial of service via a cr

7.8
CVE-2017-7076

An issue was discovered in certain Apple products. Xcode before 9 is affected. The issue involves the "ld64" component.

7.8
CVE-2017-7077

An issue was discovered in certain Apple products. macOS before 10.13 is affected. The issue involves the "IOFireWireFam

7.8
CVE-2017-7114

An issue was discovered in certain Apple products. iOS before 11 is affected. macOS before 10.13 is affected. tvOS befor

7.8
CVE-2017-7127

An issue was discovered in certain Apple products. iOS before 11 is affected. macOS before 10.13 is affected. iCloud bef

7.8
CVE-2017-7134

An issue was discovered in certain Apple products. Xcode before 9 is affected. The issue involves the "ld64" component.

7.8
CVE-2017-7135

An issue was discovered in certain Apple products. Xcode before 9 is affected. The issue involves the "ld64" component.

7.8
CVE-2017-7136

An issue was discovered in certain Apple products. Xcode before 9 is affected. The issue involves the "ld64" component.

7.8
CVE-2017-7137

An issue was discovered in certain Apple products. Xcode before 9 is affected. The issue involves the "ld64" component.

7.8
CVE-2017-12705

A Heap-Based Buffer Overflow issue was discovered in Advantech WebOP. A maliciously crafted project file may be able to

7.8
CVE-2017-15996

elfcomm.c in readelf in GNU Binutils 2.29 allows remote attackers to cause a denial of service (excessive memory allocat

7.8
CVE-2017-15950

Flexense SyncBreeze Enterprise version 10.1.16 is vulnerable to a buffer overflow that can be exploited for arbitrary co

7.8
CVE-2017-16357

In radare 2.0.1, a memory corruption vulnerability exists in store_versioninfo_gnu_verdef() and store_versioninfo_gnu_ve

7.8
CVE-2017-10870

Memory corruption vulnerability in Rakuraku Hagaki (Rakuraku Hagaki 2018, Rakuraku Hagaki 2017, Rakuraku Hagaki 2016) an

7.8
CVE-2017-16513

Ipswitch WS_FTP Professional before 12.6.0.3 has buffer overflows in the local search field and the backup locations fie

7.8
CVE-2017-16526

drivers/uwb/uwbd.c in the Linux kernel before 4.13.6 allows local users to cause a denial of service (general protection

7.8
CVE-2017-12824

Special crafted InPage document leads to arbitrary code execution in InPage reader.

7.8
CVE-2017-16793

The wav_convert2mono function in lib/wav.c in SWFTools 0.9.2 does not properly validate WAV data, which allows remote at

7.8
CVE-2017-16796

In SWFTools 0.9.2, the png_load function in lib/png.c does not check the return value of a realloc call, which allows re

7.8
CVE-2017-13799

An issue was discovered in certain Apple products. iOS before 11.1 is affected. macOS before 10.13.1 is affected. tvOS b

7.8
CVE-2017-13800

An issue was discovered in certain Apple products. macOS before 10.13.1 is affected. The issue involves the "APFS" compo

7.8
CVE-2017-13808

An issue was discovered in certain Apple products. macOS before 10.13.1 is affected. The issue involves the "Remote Mana

7.8
CVE-2017-13811

An issue was discovered in certain Apple products. macOS before 10.13.1 is affected. The issue involves the "fsck_msdos"

7.8
CVE-2017-13812

An issue was discovered in certain Apple products. macOS before 10.13.1 is affected. The issue involves the "libarchive"

7.8
CVE-2017-13813

An issue was discovered in certain Apple products. macOS before 10.13.1 is affected. The issue involves the "libarchive"

7.8
CVE-2017-13814

An issue was discovered in certain Apple products. macOS before 10.13.1 is affected. The issue involves the "ImageIO" co

7.8
CVE-2017-13816

An issue was discovered in certain Apple products. macOS before 10.13.1 is affected. The issue involves the "libarchive"

7.8
CVE-2017-13824

An issue was discovered in certain Apple products. macOS before 10.13.1 is affected. The issue involves the "Open Script

7.8
CVE-2017-13829

An issue was discovered in certain Apple products. macOS before 10.13.1 is affected. The issue involves the "CFNetwork"

7.8
CVE-2017-13830

An issue was discovered in certain Apple products. macOS before 10.13.1 is affected. The issue involves the "HFS" compon

7.8
CVE-2017-13833

An issue was discovered in certain Apple products. macOS before 10.13.1 is affected. The issue involves the "CFNetwork"

Frequently Asked Questions

What is CWE-119?

CWE-119 (Improper Restriction of Operations within the Bounds of a Memory Buffer) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.

How many CVEs are classified as CWE-119?

There are 14,545 CVE records associated with CWE-119 in our database. Of these, 1070 are critical severity, 4554 are high severity, and 1228 are medium severity.

How can I protect against CWE-119 vulnerabilities?

Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-119 using AI-powered security agents.

Detect CWE-119 Vulnerabilities

CyberStrike's AI agents automatically detect improper restriction of operations within the bounds of a memory buffer vulnerabilities across your infrastructure.

Get Started