CWE-119
MITRE ↗Improper Restriction of Operations within the Bounds of a Memory Buffer
Improper buffer restrictions for some Display Virtualization for Windows OS driver software within Ring 2: Device Driver
A heap-based buffer overflow in the ionic cloud driver for VMware ESXi could allow an attacker to achieve privilege esca
Improper restriction of operations within the bounds of a memory buffer in the AMD secure processer (ASP) could allow an
Improper buffer restrictions for the Intel(R) NPU Driver for all versions within Ring 3: User Applications may allow a d
Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in radareorg radare2 allows Overfl
A vulnerability, which was classified as critical, has been found in D-Link DAP-1620 1.03. Affected by this issue is the
A vulnerability, which was classified as critical, was found in D-Link DAP-1620 1.03. This affects the function check_dw
A vulnerability has been found in D-Link DAP-1620 1.03 and classified as critical. This vulnerability affects the functi
A vulnerability was found in D-Link DAP-1620 1.03 and classified as critical. This issue affects the function check_dws_
A memory corruption issue was addressed with improved bounds checking. This issue is fixed in iOS 18.4.1 and iPadOS 18.4
A vulnerability exists in the inftrees.c component of the zlib library, which is bundled within the PointCloudLibrary (P
An Out of Bounds Write occurs when the native library attempts PDF rendering, which can be exploited to achieve memory c
Improper Restriction of Operations within the Bounds of a Memory Buffer and Stack-based Buffer Overflow vulnerabilities
A vulnerability was found in WAVLINK QUANTUM D2G, QUANTUM D3G, WL-WN530G3A, WL-WN530HG3, WL-WN532A3 and WL-WN576K1 up to
A vulnerability, which was classified as critical, has been found in TOTOLINK EX1200T 4.1.2cu.5232_B20210713. This issue
A vulnerability was found in D-Link DIR-816 1.10CNB05 and classified as critical. Affected by this issue is the function
A vulnerability was found in D-Link DIR-816 1.10CNB05. It has been classified as critical. This affects the function qos
A vulnerability was found in D-Link DIR-816 1.10CNB05. It has been declared as critical. This vulnerability affects the
A vulnerability has been found in D-Link DIR-816 1.10CNB05 and classified as critical. This vulnerability affects unknow
A vulnerability was found in UTT 进取 750W up to 5.0. It has been classified as critical. This affects the function strcpy
Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability was discovered in Apache NuttX RTO
A vulnerability, which was classified as critical, has been found in D-Link DIR-632 FW103B08. Affected by this issue is
Memory overflow vulnerability leading to unintended control flow and Denial of Service in NetScaler ADC and NetScaler Ga
A vulnerability, which was classified as critical, has been found in D-Link DIR-825 2.10. This issue affects the functio
Memory safety bugs present in Firefox 140 and Thunderbird 140. Some of these bugs showed evidence of memory corruption a
The issue was addressed with improved memory handling. This issue is fixed in iOS 18.6 and iPadOS 18.6, macOS Sequoia 15
A vulnerability was identified in INSTAR 2K+ and 4K 3.11.1 Build 1124. This affects the function base64_decode of the co
An attacker was able to perform memory corruption in the GMP process which processes encrypted media. This process is al
Memory safety bugs present in Firefox 141 and Thunderbird 141. Some of these bugs showed evidence of memory corruption a
In mupen64plus v2.6.0 there is an array overflow vulnerability in the write_rdram_regs and write_rdram_regs functions, w
Memory overflow vulnerability leading to Remote Code Execution and/or Denial of Service in NetScaler ADC and NetScaler G
Memory overflow vulnerability leading to unpredictable or erroneous behavior and Denial of Service in NetScaler ADC and
A vulnerability was detected in Tenda AC1206 15.03.06.23. Affected is the function GetParentControlInfo of the file /gof
A security vulnerability has been detected in Tenda AC21 and AC23 16.03.08.16. Affected is the function GetParentControl
In BootROM, there is a missing size check for RSA keys in Certificate Type 0 validation. This could lead to memory buffe
In FDL1, there is a possible missing payload size check. This could lead to memory buffer overflow without requiring add
In BootRom, there's a possible missing payload size check. This could lead to memory buffer overflow without requiring a
A vulnerability was detected in Mercury KM08-708H GiGA WiFi Wave2 1.1.14. This affects an unknown function of the compon
A vulnerability was found in Tenda AC1206 15.03.06.23. This vulnerability affects the function check_param_changed of th
The issue was addressed with improved memory handling. This issue is fixed in Safari 26, iOS 26 and iPadOS 26, macOS Tah
Memory corruption when the UE receives an RTP packet from the network, during the reassembly of NALUs.
A security vulnerability has been detected in Tenda CH22 up to 1.0.0.1. This issue affects the function formWrlsafeset o
A vulnerability was found in Tenda CH22 1.0.0.1. This affects the function formSafeEmailFilter of the file /goform/SafeE
Memory safety bug present in Firefox 143 and Thunderbird 143. This bug showed evidence of memory corruption and we presu
In FileX before 6.4.2, the file support module for Eclipse Foundation ThreadX, there was a possible buffer overflow in t
A vulnerability was detected in D-Link DIR-816L 2_06_b09_beta. Affected by this vulnerability is the function authentica
JIT miscompilation in the JavaScript Engine: JIT component. This vulnerability was fixed in Firefox 146, Firefox ESR 140
A vulnerability was determined in UTT 进取 512W up to 3.1.7.7-171114. This impacts the function strcpy of the file /goform
A vulnerability was identified in UTT 进取 512W up to 3.1.7.7-171114. Affected is the function strcpy of the file /goform/
A security flaw has been discovered in Tenda WH450 1.0.0.18. Impacted is an unknown function of the file /goform/DhcpLis
Frequently Asked Questions
What is CWE-119?
CWE-119 (Improper Restriction of Operations within the Bounds of a Memory Buffer) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.
How many CVEs are classified as CWE-119?
There are 14,545 CVE records associated with CWE-119 in our database. Of these, 1070 are critical severity, 4554 are high severity, and 1228 are medium severity.
How can I protect against CWE-119 vulnerabilities?
Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-119 using AI-powered security agents.
Detect CWE-119 Vulnerabilities
CyberStrike's AI agents automatically detect improper restriction of operations within the bounds of a memory buffer vulnerabilities across your infrastructure.
Get Started