CWE-119
MITRE ↗Improper Restriction of Operations within the Bounds of a Memory Buffer
Multiple heap-based buffer overflow vulnerabilities exist in the fstReaderIterBlocks2 fstWritex len functionality of GTK
EDK2 is susceptible to a vulnerability in the Tcg2MeasureGptTable() function, allowing a user to trigger a heap buffer o
EDK2 is susceptible to a vulnerability in the Tcg2MeasurePeImage() function, allowing a user to trigger a heap buffer ov
EDK2 is susceptible to a vulnerability in the CreateHob() function, allowing a user to trigger a integer overflow to buf
Microsoft Streaming Service Elevation of Privilege Vulnerability
Memory corruption during the secure boot process, when the `bootm` command is used, it bypasses the authentication of th
memory corruption when an invalid firehose patch command is invoked.
In netdagent, there is a possible information disclosure due to an incorrect bounds check. This could lead to local esca
In display drm, there is a possible memory corruption due to a missing bounds check. This could lead to local escalation
Under certain conditions, a data leak may occur in the Traffic Management Microkernels (TMMs) of BIG-IP tenants running
Envoy is a cloud-native high-performance edge/middle/service proxy. Envoy will crash when the http async client is handl
CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability exists that could cause a
A vulnerability was found in Netgear R6900 1.0.1.26_1.0.20. It has been declared as critical. Affected by this vulnerabi
A vulnerability classified as critical has been found in TP-Link VN020 F3v(T) TT_V6.2.1021. Affected is an unknown funct
A buffer overflow vulnerability exists in Delta Electronics Delta Industrial Automation DOPSoft version 2 when parsing t
A vulnerability classified as critical has been found in emqx neuron up to 2.10.0. Affected is the function handle_add_p
A vulnerability, which was classified as critical, was found in TP-Link VN020 F3v(T) TT_V6.2.1021. This affects an unkno
Improper conditions check in some Intel(R) BIOS PPAM firmware may allow a privileged user to potentially enable escalati
Improper restriction of write operations in SNP firmware could allow a malicious hypervisor to overwrite a guest's UMC s
Improper input validation in Intel(R) Media SDK software all versions may allow an authenticated user to potentially ena
Improper buffer restrictions in Intel(R) Optimization for TensorFlow before version 2.13.0 may allow an authenticated us
In the Linux kernel, the following vulnerability has been resolved: net: prevent mss overflow in skb_segment() Once ag
swftools v0.9.2 was discovered to contain a segmentation violation via the function state_free at swftools/src/swfc-hist
NVIDIA Triton Inference Server for Linux contains a vulnerability in shared memory APIs, where a user can cause an impro
In the Linux kernel, the following vulnerability has been resolved: virtio-net: fix pages leaking when building skb in
In the Linux kernel, the following vulnerability has been resolved: drm/radeon: fix UBSAN warning in kv_dpm.c Adds bou
Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in HYPR Workforce Access on Window
A vulnerability has been found in Nsasoft Product Key Explorer 4.0.9 and classified as problematic. Affected by this vul
A vulnerability was found in Nsasoft ShareAlarmPro 2.1.4 and classified as problematic. Affected by this issue is some u
A vulnerability was found in Any-Capture Any Sound Recorder 2.93. It has been declared as problematic. This vulnerabilit
Dell PowerEdge Server BIOS and Dell Precision Rack BIOS contain an Improper SMM communication buffer verification vulner
Envoy is a cloud-native high-performance edge/middle/service proxy. Jwt filter will lead to an Envoy crash when clear ro
A vulnerability was found in SourceCodester Airport Booking Management System 1.0 and classified as critical. Affected b
A vulnerability, which was classified as critical, was found in SourceCodester Student Record Management System 1.0. Aff
A vulnerability has been found in SourceCodester Student Record Management System 1.0 and classified as critical. Affect
A vulnerability in the ipsecmgr process of Cisco ASR 5000 Series Software (StarOS) could allow an unauthenticated,
A vulnerability has been found in code-projects Hotel Management System 1.0 and classified as problematic. This vulnerab
A vulnerability was found in code-projects Hotel Management System 1.0 and classified as problematic. This issue affects
A vulnerability, which was classified as critical, was found in SourceCodester Phone Contact Manager System 1.0. Affecte
An improper restriction of operations within the bounds of a memory buffer in the parameter type parser of the Zyxel VMG
An improper restriction of operations within the bounds of a memory buffer in the IPv6 address parser of the Zyxel VMG88
An improper restriction of operations within the bounds of a memory buffer in the MAC address parser of the Zyxel VMG882
An improper restriction of operations within the bounds of a memory buffer in the USB file-sharing handler of the Zyxel
Improper buffer restrictions in Intel(R) Media SDK all versions may allow an authenticated user to potentially enable es
There is an illegal memory access vulnerability of ZTE's ZXCLOUD iRAI product.When the vulnerability is exploited by an
A buffer error in Panasonic KW Watcher versions 1.00 through 2.83 may allow attackers malicious read access to memory.
A vulnerability classified as problematic was found in TOTOLINK EX1800T 9.1.0cu.2112_B20220316. This vulnerability affec
Dell Precision Rack, 14G Intel BIOS versions prior to 2.22.2, contains an Access of Memory Location After End of Buffer
Vyper is a Pythonic Smart Contract Language for the Ethereum Virtual Machine. When calls to external contracts are made,
Vyper is a pythonic Smart Contract Language for the ethereum virtual machine. If an excessively large value is specified
Frequently Asked Questions
What is CWE-119?
CWE-119 (Improper Restriction of Operations within the Bounds of a Memory Buffer) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.
How many CVEs are classified as CWE-119?
There are 14,545 CVE records associated with CWE-119 in our database. Of these, 1070 are critical severity, 4554 are high severity, and 1228 are medium severity.
How can I protect against CWE-119 vulnerabilities?
Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-119 using AI-powered security agents.
Detect CWE-119 Vulnerabilities
CyberStrike's AI agents automatically detect improper restriction of operations within the bounds of a memory buffer vulnerabilities across your infrastructure.
Get Started