CWE-119
MITRE ↗Improper Restriction of Operations within the Bounds of a Memory Buffer
A vulnerability, which was classified as problematic, was found in FFmpeg 2.0. This affects the function decode_nal_unit
A vulnerability was found in FFmpeg 2.0 and classified as problematic. This issue affects the function cmv_process_heade
A vulnerability was found in FFmpeg 2.0. It has been classified as problematic. Affected is the function shorten_decode_
A vulnerability was found in FFmpeg 2.0. It has been declared as problematic. Affected by this vulnerability is the func
A vulnerability classified as problematic has been found in FFmpeg 2.0. This affects the function decode_pulses. The man
A vulnerability was found in Linux Kernel. It has been classified as problematic. Affected is an unknown function of the
Information disclosure due to untrusted pointer dereference in kernel in Snapdragon Auto, Snapdragon Compute, Snapdragon
A vulnerability classified as problematic was found in pacparser up to 1.3.x. Affected by this vulnerability is the func
A vulnerability classified as critical has been found in uTorrent. This affects an unknown part. The manipulation leads
A vulnerability has been found in Nintendo Game Boy Color and classified as problematic. This vulnerability affects unkn
A vulnerability was found in vim and classified as problematic. Affected by this issue is the function qf_update_buffer
A vulnerability was found in Exim and classified as problematic. This issue affects some unknown processing of the compo
A vulnerability, which was classified as critical, has been found in Linux Kernel. Affected by this issue is the functio
A vulnerability was found in Linux Kernel. It has been classified as critical. This affects the function devlink_param_s
FreeRDP is a free remote desktop protocol library and clients. Affected versions of FreeRDP are missing input length val
A vulnerability classified as problematic was found in GhostPCL 9.55.0. This vulnerability affects the function chunk_fr
A vulnerability classified as problematic has been found in Linux Kernel. This affects the function fib_nh_match of the
Improper buffer restrictions in the Hyperscan library maintained by Intel(R) all versions downloaded before 04/29/2022 m
A vulnerability classified as problematic has been found in ffmpeg. This affects an unknown part of the file libavcodec/
A vulnerability classified as problematic was found in ffmpeg. This vulnerability affects the function smc_encode_stream
A vulnerability classified as problematic has been found in ppp. Affected is the function dumpppp of the file pppdump/pp
Dell Client BIOS contains a Buffer Overflow vulnerability. A local authenticated malicious user may potentially exploit
In versions prior to 0.8.1, the linux-loader crate uses the offsets and sizes provided in the ELF headers to determine t
A vulnerability was found in Linux Kernel. It has been rated as problematic. Affected by this issue is the function sess
Improper buffer restrictions in some Intel(R) XMM(TM) 7560 Modem software before version M2_7560_R_01.2146.00 may allow
A vulnerability was found in Linux Kernel. It has been classified as problematic. Affected is the function nilfs_new_ino
An out-of-bounds write vulnerability exists in the CMD_DEVICE_GET_SERVER_LIST_REQUEST functionality of the home_security
An out-of-bounds write vulnerability exists in the CMD_DEVICE_GET_SERVER_LIST_REQUEST functionality of the home_security
There is a vulnerability with buffer access with incorrect length value in some Huawei Smartphone.Unauthorized users may
Multiple vulnerabilities in Cisco SD-WAN products could allow an unauthenticated, remote attacker to execute attacks aga
Multiple vulnerabilities in Cisco SD-WAN products could allow an unauthenticated, remote attacker to execute attacks aga
An issue was discovered on D-Link DIR-825 R1 devices through 3.0.1 before 2020-11-20. A buffer overflow in the web inter
Certain Moxa Inc products are affected by an improper restriction of operations in EDR-G903 Series Firmware Version 5.5
An issue was discovered in the nb-connect crate before 1.0.3 for Rust. It may have invalid memory access for certain ver
A CWE-119:Improper restriction of operations within the bounds of a memory buffer vulnerability exists in PowerLogic ION
On BIG-IP versions 16.0.x before 16.0.1.1, 15.1.x before 15.1.2.1, 14.1.x before 14.1.4, 13.1.x before 13.1.3.6, and 12.
An issue was discovered in the outer_cgi crate before 0.2.1 for Rust. A user-provided Read instance receives an uninitia
A vulnerability in the web-based management interface of Cisco Small Business RV110W, RV130, RV130W, and RV215W Routers
Command Injection in Tenda G0 routers with firmware versions v15.11.0.6(9039)_CN and v15.11.0.5(5876)_CN , and Tenda G1
Command Injection in Tenda G1 and G3 routers with firmware versions v15.11.0.17(9502)_CN or v15.11.0.16(9024)_CN allows
The kernel in Amazon Web Services FreeRTOS before 10.4.3 has insufficient bounds checking during management of heap memo
A heap memory corruption problem (use after free) can be triggered in libgetdata v0.10.0 when processing maliciously cra
A vulnerability has been identified in SIMATIC Drive Controller family (All versions < V2.9.2), SIMATIC ET 200SP Open Co
An improper array index validation vulnerability exists in the TIF IP_planar_raster_unpack functionality of Accusoft Ima
FATEK Automation WinProladder Versions 3.30 and prior do not properly restrict operations within the bounds of a memory
An issue was discovered in the nalgebra crate before 0.27.1 for Rust. It allows out-of-bounds memory access because it d
A buffer overflow may result in arbitrary code execution. This issue is fixed in macOS Big Sur 11.3, iOS 14.5 and iPadOS
There is a Memory out-of-bounds access vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability
The olm_session_describe function in Matrix libolm before 3.2.7 is vulnerable to a buffer overflow. The Olm session obje
An out-of-bounds write vulnerability exists in the RS-274X aperture macro variables handling functionality of Gerbv 2.7.
Frequently Asked Questions
What is CWE-119?
CWE-119 (Improper Restriction of Operations within the Bounds of a Memory Buffer) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.
How many CVEs are classified as CWE-119?
There are 14,545 CVE records associated with CWE-119 in our database. Of these, 1070 are critical severity, 4554 are high severity, and 1228 are medium severity.
How can I protect against CWE-119 vulnerabilities?
Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-119 using AI-powered security agents.
Detect CWE-119 Vulnerabilities
CyberStrike's AI agents automatically detect improper restriction of operations within the bounds of a memory buffer vulnerabilities across your infrastructure.
Get Started