CWE-119
MITRE ↗Improper Restriction of Operations within the Bounds of a Memory Buffer
A vulnerability in the Cisco Webex Network Recording Player for Microsoft Windows and the Cisco Webex Player for Microso
GPAC version 0.7.1 and earlier has a Buffer Overflow vulnerability in the gf_sm_load_init function in scene_manager.c in
GPAC version 0.7.1 and earlier has a buffer overflow vulnerability in the cat_multiple_files function in applications/mp
There is potential for memory corruption in the RIL daemon due to de reference of memory outside the allocated array len
In all android releases(Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, Out of bound
A memory corruption vulnerability has been identified in WECON LeviStudioU version 1.8.56 and prior, which may allow arb
NVIDIA Tegra OpenMax driver (libnvomx) contains a vulnerability in which the software delivers extra data with the buffe
An issue was discovered in Tcpreplay 4.3.1. An invalid memory access occurs in do_checksum in checksum.c. It can be trig
An issue was discovered in AdvanceCOMP through 2.1. An invalid memory address occurs in the function adv_png_unfilter_8
Data truncation during higher to lower type conversion which causes less memory allocation than desired can lead to a bu
Improper input validation for argument received from HLOS can lead to buffer overflows and unexpected behavior in Snapdr
Lack of input validation for data received from user space can lead to an out of bound array issue in Snapdragon Auto, S
NVIDIA Windows GPU Display Driver contains a vulnerability in the kernel mode layer handler for DxgkDdiEscape in which t
NVIDIA Windows GPU Display Driver contains a vulnerability in the kernel mode layer handler for DxgkDdiEscape in which t
A buffer overflow was addressed with improved bounds checking. This issue is fixed in iOS 12.1.3, macOS Mojave 10.14.3,
There is an Invalid memory access in gAtomicIncrement() located at GMutex.h in Xpdf 4.01. It can be triggered by sending
GdkPixBuf (aka gdk-pixbuf), possibly 2.32.2, as used by GNOME Nautilus 3.14.3 on Ubuntu 16.04, allows attackers to cause
A vulnerability in the NX-API feature of Cisco NX-OS Software could allow an authenticated, local attacker to execute ar
XnView MP 0.93.1 on Windows allows remote attackers to cause a denial of service (application crash) or possibly have un
XnView MP 0.93.1 on Windows allows remote attackers to cause a denial of service (application crash) or possibly have un
XnView MP 0.93.1 on Windows allows remote attackers to cause a denial of service (application crash) or possibly have un
XnView MP 0.93.1 on Windows allows remote attackers to cause a denial of service (application crash) or possibly have un
XnView Classic 2.48 on Windows allows remote attackers to cause a denial of service (application crash) or possibly have
XnView Classic 2.48 on Windows allows remote attackers to cause a denial of service (application crash) or possibly have
XnView Classic 2.48 on Windows allows remote attackers to cause a denial of service (application crash) or possibly have
XnView Classic 2.48 on Windows allows remote attackers to cause a denial of service (application crash) or possibly have
A specially crafted configuration file could be used to cause a stack-based buffer overflow condition in the OPCTest.exe
A memory corruption issue was addressed with improved memory handling. This issue affected versions prior to iOS 12, mac
A memory corruption issue was addressed with improved memory handling. This issue affected versions prior to iOS 11.4.1,
A memory corruption issue was addressed with improved memory handling. This issue affected versions prior to iOS 12, mac
A memory corruption issue was addressed with improved memory handling. This issue affected versions prior to iOS 11.4.1.
A memory corruption issue was addressed with improved memory handling. This issue affected versions prior to macOS Mojav
A memory corruption issue was addressed with improved memory handling. This issue affected versions prior to iOS 12, mac
A memory corruption issue was addressed with improved memory handling. This issue affected versions prior to iOS 12, mac
A memory corruption issue was addressed with improved memory handling. This issue affected versions prior to iOS 12, mac
A memory corruption issue was addressed with improved memory handling. This issue affected versions prior to iOS 12, mac
A memory corruption issue was addressed with improved memory handling. This issue affected versions prior to iOS 12, mac
A memory corruption issue was addressed with improved input validation. This issue affected versions prior to macOS Moja
A memory corruption issue was addressed with improved input validation. This issue affected versions prior to Xcode 10.
A memory corruption issue was addressed with improved state management. This issue affected versions prior to iOS 12, ma
A memory corruption issue was addressed with improved input validation. This issue affected versions prior to iOS 12.1,
A memory corruption issue was addressed with improved memory handling. This issue affected versions prior to macOS Mojav
A memory corruption issue was addressed with improved input validation. This issue affected versions prior to iOS 12.1,
A memory corruption issue was addressed with improved memory handling. This issue affected versions prior to iOS 12, mac
A memory corruption issue was addressed with improved memory handling. This issue affected versions prior to macOS Mojav
A memory corruption issue was addressed with improved input validation This issue affected versions prior to iOS 12, mac
A memory corruption issue was addressed with improved input validation. This issue affected versions prior to macOS Moja
A memory corruption issue was addressed with improved input validation. This issue affected versions prior to macOS Moja
A memory corruption issue was addressed with improved input validation. This issue affected versions prior to iOS 12, ma
A memory corruption issue was addressed with improved input validation. This issue affected versions prior to iOS 12, ma
Frequently Asked Questions
What is CWE-119?
CWE-119 (Improper Restriction of Operations within the Bounds of a Memory Buffer) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.
How many CVEs are classified as CWE-119?
There are 14,545 CVE records associated with CWE-119 in our database. Of these, 1070 are critical severity, 4554 are high severity, and 1228 are medium severity.
How can I protect against CWE-119 vulnerabilities?
Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-119 using AI-powered security agents.
Detect CWE-119 Vulnerabilities
CyberStrike's AI agents automatically detect improper restriction of operations within the bounds of a memory buffer vulnerabilities across your infrastructure.
Get Started