CWE-119
MITRE ↗Improper Restriction of Operations within the Bounds of a Memory Buffer
A vulnerability was found in the libtiff library. This flaw causes a heap buffer overflow issue via the TIFFTAG_INKNAMES
A vulnerability was found in the libtiff library. This security flaw causes a heap buffer overflow in extractContigSampl
In setProfileName of DevicePolicyManagerService.java, there is a possible way to crash the SystemUI menu due to a missin
Improper buffer restrictions in the Intel(R) Optimization for Tensorflow software before version 2.12 may allow an authe
A memory leak flaw was found in Libtiff's tiffcrop utility. This issue occurs when tiffcrop operates on a TIFF image fil
The issue was addressed with improved memory handling. This issue is fixed in iOS 17.1 and iPadOS 17.1, macOS Monterey 1
Insufficient bounds checking in the ASP (AMD Secure Processor) may allow an attacker to access memory outside the bounds
An out-of-bounds memory access flaw was found in the io_uring SQ/CQ rings functionality in the Linux kernel. This issue
A vulnerability was found in SQLite SQLite3 up to 3.43.0 and classified as critical. This issue affects the function ses
Several memory vulnerabilities were identified within the OpenSC packages, particularly in the card enrollment process u
The software interfaces to ASP and SMU may not enforce the SNP memory security policy resulting in a potential loss of i
A Segmentation fault was found in UPX in PackLinuxElf64::invert_pt_dynamic() in p_lx_elf.cpp. An attacker with a crafted
A CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability exists that could cause
A vulnerability classified as critical was found in JiangMin Antivirus 16.2.2022.418. Affected by this vulnerability is
A vulnerability was found in Jianming Antivirus 16.2.2022.418. It has been declared as critical. This vulnerability affe
A vulnerability classified as critical has been found in DriverGenius 9.70.0.346. This affects the function 0x9C40A0D8/0
A vulnerability classified as critical was found in DriverGenius 9.70.0.346. This vulnerability affects the function 0x9
A vulnerability classified as critical was found in Twister Antivirus 8. This vulnerability affects the function 0x804f2
An improper array index validation vulnerability exists in the GraphPlanar::Write functionality of Diagon v1.0.139. A sp
A CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability exists that could caus
Improper buffer restrictions in the BIOS firmware for some Intel(R) Processors may allow a privileged user to potentiall
Improper buffer restrictions in some Intel(R) RealSense(TM) ID software for Intel(R) RealSense(TM) 450 FA in version 0.2
Dell Alienware m17 R5 BIOS version prior to 1.2.2 contain a buffer access vulnerability. A malicious user with admin pr
In keyinstall, there is a possible out of bounds read due to a missing bounds check. This could lead to local informatio
In init of VendorGraphicBufferMeta, there is a possible out of bounds read due to a missing bounds check. This could lea
In ConvertToHalMetadata of aidl_utils.cc, there is a possible out of bounds read due to a missing bounds check. This cou
In spipe drive, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial o
Improper buffer restrictions in some Intel(R) RealSense(TM) ID software for Intel(R) RealSense(TM) 450 FA in version 0.2
Dell PowerEdge BIOS and Dell Precision BIOS contain an improper input validation vulnerability. A local authenticated
A vulnerability classified as problematic was found in MindSpore 2.0.0-alpha/2.0.0-rc1. This vulnerability affects the f
A vulnerability in SiLabs Z/IP Gateway 7.18.01 and earlier allows an authenticated attacker within Z-Wave range to manip
An issue was discovered in the Arm Mali GPU Kernel Driver. A non-privileged user can make improper GPU memory processing
An issue was discovered in the Arm Mali Kernel Driver. A non-privileged user can make improper GPU memory processing ope
Improper buffer restriction in software for the Intel QAT Driver for Linux before version 1.7.l.4.12 may allow an authen
Improper buffer restrictions in some Intel(R) QAT Library software before version 22.07.1 may allow a privileged user to
Dell PowerEdge BIOS and Dell Precision BIOS contain an Improper SMM communication buffer verification vulnerability.
A vulnerability regarding improper restriction of operations within the bounds of a memory buffer is found in the packet
A vulnerability regarding improper restriction of operations within the bounds of a memory buffer is found in the messag
In ASQ in Stormshield Network Security (SNS) 1.0.0 through 2.7.8, 2.8.0 through 2.16.0, 3.0.0 through 3.7.20, 3.8.0 thro
There is a vulnerability of unstrict input parameter verification in the audio assembly.Successful exploitation of this
njs through 0.7.0, used in NGINX, was discovered to contain an out-of-bounds array access via njs_vmcode_typeof in /src/
Missing fixes for CVE-2021-40438 and CVE-2021-26691 in the versions of httpd, as shipped in Red Hat Enterprise Linux 8.5
A flaw was found in mbsync versions prior to 1.4.4. Due to inadequate handling of extremely large (>=2GiB) IMAP literals
There is a memory address out of bounds in smartphones. Successful exploitation of this vulnerability may cause maliciou
There is a memory address out of bounds in smartphones. Successful exploitation of this vulnerability may cause maliciou
There is a vulnerability when configuring permission isolation in smartphones. Successful exploitation of this vulnerabi
There is a vulnerability when configuring permission isolation in smartphones. Successful exploitation of this vulnerabi
There is a memory address out of bounds in smartphones. Successful exploitation of this vulnerability may cause maliciou
There is a memory address out of bounds vulnerability in smartphones. Successful exploitation of this vulnerability may
An issue was discovered in FIS GT.M through V7.0-000 (related to the YottaDB code base). Using crafted input, an attacke
Frequently Asked Questions
What is CWE-119?
CWE-119 (Improper Restriction of Operations within the Bounds of a Memory Buffer) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.
How many CVEs are classified as CWE-119?
There are 14,545 CVE records associated with CWE-119 in our database. Of these, 1070 are critical severity, 4554 are high severity, and 1228 are medium severity.
How can I protect against CWE-119 vulnerabilities?
Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-119 using AI-powered security agents.
Detect CWE-119 Vulnerabilities
CyberStrike's AI agents automatically detect improper restriction of operations within the bounds of a memory buffer vulnerabilities across your infrastructure.
Get Started