CWE-119
MITRE ↗Improper Restriction of Operations within the Bounds of a Memory Buffer
An out-of-bounds write vulnerability exists in the Gaussian format orientation functionality of Open Babel 3.1.1 and mas
NVIDIA BMC contains a vulnerability in SPX REST API, where an authorized attacker can read and write to arbitrary locati
AMI BMC contains a vulnerability in the SPX REST API, where an attacker with the required privileges can read and write
Memory Corruption in SIM management while USIMPhase2init
NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in the kernel mode layer handler, where an out-
A vulnerbility was found in OpenSC. This security flaw cause a buffer overrun vulnerability in pkcs15 cardos_have_verify
Snappier is a high performance C# implementation of the Snappy compression algorithm. This is a buffer overrun vulnerabi
Memory corruption in Audio due to use of out-of-range pointer offset while Initiating a voice call session from user spa
Memory corruption in Linux while sending DRM request.
Memory Corruption in Linux while processing QcRilRequestImsRegisterMultiIdentityMessage request.
Memory corruption in Linux while calling system configuration APIs.
In multiple functions of mem_protect.c, there is a possible way to access hypervisor memory due to a memory access check
Memory corruption in Audio during playback session with audio effects enabled.
Memory Corruption while accessing metadata in Display.
Memory Corruption in IMS while calling VoLTE Streamingmedia Interface
Memory Corruption in Radio Interface Layer while sending an SMS or writing an SMS to SIM.
A buffer overflow flaw was found in the Linux kernel Broadcom Full MAC Wi-Fi driver. This issue occurs when a user conne
A memory corruption flaw was found in the Linux kernel’s human interface device (HID) subsystem in how a user inserts a
NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel mode layer, where improper restriction of ope
A vulnerability, which was classified as critical, was found in TRENDnet TEW-811DRU 1.0.10.0. This affects an unknown pa
Zoom clients before version 5.13.5 contain a STUN parsing vulnerability. A malicious actor could send specially crafted
Zoom clients before version 5.13.5 contain a STUN parsing vulnerability. A malicious actor could send specially crafted
An issue was discovered in libbzip3.a in bzip3 before 1.2.3. There is a crash caused by an invalid memmove in bz3_decode
An authenticated, remote attacker may use a Improper Restriction of Operations within the Bounds of a Memory Buffer vuln
A flaw was found in LibRaw. A heap-buffer-overflow in raw2image_ex() caused by a maliciously crafted file may lead to an
A potential heap based buffer overflow was found in _bfd_elf_slurp_version_tables() in bfd/elf.c. This may lead to loss
libvmod-digest before 1.0.3, as used in Varnish Enterprise 6.0.x before 6.0.11r5, has an out-of-bounds memory access dur
Xmlsoft Libxml2 v2.11.0 was discovered to contain an out-of-bounds read via the xmlSAX2StartElement() function at /libxm
An Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in the management daemon (mgd)
The issue was addressed with improved memory handling. This issue is fixed in iOS 17.1 and iPadOS 17.1, macOS Monterey 1
The issue was addressed with improved memory handling. This issue is fixed in macOS Sonoma 14.1, Safari 17.1, iOS 16.7.2
The issue was addressed with improved memory handling. This issue is fixed in iOS 17.1 and iPadOS 17.1, macOS Monterey 1
Transient DOS due to untrusted Pointer Dereference in core while sending USB QMI request.
A vulnerability was found in PHP where setting the environment variable PHP_CLI_SERVER_WORKERS to a large value leads to
A vulnerability in the memory buffer of Cisco Wireless LAN Controller (WLC) AireOS Software could allow an unauthenticat
DGX A100 SBIOS contains a vulnerability in Bds, which may lead to code execution, denial of service, or escalation of pr
Improper buffer restrictions in the Intel(R) C++ Compiler Classic before version 2021.7.1 for some Intel(R) oneAPI Toolk
NVIDIA DGX-1 SBIOS contains a vulnerability in Bds, which may lead to code execution, denial of service, and escalation
Information disclosure when the trusted application metadata symbol addresses are accessed while loading an ELF in TEE.
IBM MQ 9.2 CD, 9.2 LTS, 9.3 CD, and 9.3 LTS could allow a remote attacker to cause a denial of service due to an error p
Forcing the Bluetooth LE stack to segment 'prepare write response' packets can lead to an out-of-bounds memory access.
Improper buffer restrictions in the Intel(R) Media SDK software before version 22.2.2 may allow an authenticated user to
In wcn service, there is a possible missing params check. This could lead to local denial of service in wcn service.
In btm_vendor_specific_evt of btm_devctl.cc, there is a possible out of bounds read due to a missing bounds check. This
NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in the kernel mode layer handler, where an unpr
Irfanview v4.62 allows a user-mode write access violation via a crafted JPEG 2000 file starting at JPEG2000+0x0000000000
Bento4 v1.6.0-639 was discovered to contain an out-of-memory bug in the mp42avc component.
Cesanta MJS v2.20.0 was discovered to contain a SEGV vulnerability via gc_sweep at src/mjs_gc.c. This vulnerability can
llvm-project commit fdbc55a5 was discovered to contain a segmentation fault via the component mlir::IROperand<mlir::OpOp
An issue found in Cesanta MJS v.1.26 allows a local attacker to cause a denial of service via the mjs_execute function i
Frequently Asked Questions
What is CWE-119?
CWE-119 (Improper Restriction of Operations within the Bounds of a Memory Buffer) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.
How many CVEs are classified as CWE-119?
There are 14,545 CVE records associated with CWE-119 in our database. Of these, 1070 are critical severity, 4554 are high severity, and 1228 are medium severity.
How can I protect against CWE-119 vulnerabilities?
Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-119 using AI-powered security agents.
Detect CWE-119 Vulnerabilities
CyberStrike's AI agents automatically detect improper restriction of operations within the bounds of a memory buffer vulnerabilities across your infrastructure.
Get Started