TensorFlow is an end-to-end open source platform for machine learning. The implementation of `tf.raw_ops.MaxPoolGradWith
Certain NETGEAR devices are affected by a stack-based buffer overflow by an authenticated user. This affects MK62 before
For certain valid JPEG XL images with a size slightly larger than an integer number of groups (256x256 pixels) when proc
Certain NETGEAR devices are affected by a stack-based buffer overflow by an authenticated user. This affects CBR750 befo
Certain NETGEAR devices are affected by a stack-based buffer overflow by an authenticated user. This affects R6400 befor
Out-of-bounds write in the Intel(R) XTU before version 6.5.3.25 may allow a privileged user to potentially enable denial
IBM Spectrum Protect Server 7.1 and 8.1 is subject to a stack-based buffer overflow caused by improper bounds checking d
Out of bounds write in the firmware for some Intel(R) Processors may allow a privileged user to potentially enable denia
A buffer underwrite vulnerability in the firmware verification routine of FortiOS before 7.0.1 may allow an attacker loc
Adobe Illustrator version 25.2 (and earlier) is affected by a memory corruption vulnerability when parsing a specially c
Chakra Scripting Engine Memory Corruption Vulnerability
An improper length check in APAService prior to SMR Sep-2021 Release 1 results in stack based Buffer Overflow.
A possible heap-based buffer overflow vulnerability in DSP kernel driver prior to SMR Oct-2021 Release 1 allows arbitrar
Missing Size Checks in Bluetooth HCI over SPI. Zephyr versions >= v1.14.2, >= v2.2.0 contain Improper Handling of Length
TensorFlow is an end-to-end open source platform for machine learning. The validation in `tf.raw_ops.QuantizeAndDequanti
TensorFlow is an end-to-end open source platform for machine learning. An attacker can trigger a heap buffer overflow in
Acrobat Reader DC versions versions 2020.013.20074 (and earlier), 2020.001.30018 (and earlier) and 2017.011.30188 (and e
Exiv2 is a command-line utility and C++ library for reading, writing, deleting, and modifying the metadata of image file
A heap-based buffer overflow in the libexe_io_handle_read_coff_optional_header function of libyal libexe before 20181128
XMP Toolkit SDK version 2020.1 (and earlier) is affected by a buffer overflow vulnerability potentially resulting in loc
When a user opens manipulated Tagged Image File Format (.tif) file received from untrusted sources in SAP 3D Visual Ente
TensorFlow is an end-to-end open source platform for machine learning. If the `splits` argument of `RaggedBincount` does
TensorFlow is an end-to-end open source platform for machine learning. If the `splits` argument of `RaggedBincount` does
TensorFlow is an end-to-end open source platform for machine learning. Missing validation between arguments to `tf.raw_o
TensorFlow is an end-to-end open source platform for machine learning. An attacker can cause a heap buffer overflow in `
TensorFlow is an end-to-end open source platform for machine learning. An attacker can cause a heap buffer overflow in `
TensorFlow is an end-to-end open source platform for machine learning. An attacker can cause a heap buffer overflow in `
TensorFlow is an end-to-end open source platform for machine learning. An attacker can cause a heap buffer overflow to o
TensorFlow is an end-to-end open source platform for machine learning. An attacker can cause a heap buffer overflow by p
TensorFlow is an end-to-end open source platform for machine learning. An attacker can cause a heap buffer overflow in `
TensorFlow is an end-to-end open source platform for machine learning. An attacker can cause a heap buffer overflow in `
TensorFlow is an end-to-end open source platform for machine learning. An attacker can write outside the bounds of heap
TensorFlow is an end-to-end open source platform for machine learning. The implementation of `tf.raw_ops.ReverseSequence
TensorFlow is an end-to-end open source platform for machine learning. The implementation of `tf.raw_ops.MaxPool3DGradGr
TensorFlow is an end-to-end open source platform for machine learning. The implementation of `tf.raw_ops.AvgPool3DGrad`
TensorFlow is an end-to-end open source platform for machine learning. The implementation of `tf.raw_ops.FractionalAvgPo
TensorFlow is an end-to-end open source platform for machine learning. The implementation of `tf.raw_ops.MaxPoolGrad` is
TensorFlow is an end-to-end open source platform for machine learning. A specially crafted TFLite model could trigger an
Bootloader contains a vulnerability in NVIDIA MB2, which may cause free-the-wrong-heap, which may lead to limited denial
The Treck TCP/IP stack before 6.0.1.66 allows Remote Code Execution, related to IPv4 tunneling.
The Treck TCP/IP stack before 5.0.1.35 has an Out-of-Bounds Write via multiple malformed IPv6 packets.
Vulnerability in the Oracle Solaris product of Oracle Systems (component: Pluggable authentication module). Supported ve
A heap-based buffer overflow in the Treck HTTP Server component before 6.0.1.68 allows remote attackers to cause a denia
An exploitable memory corruption vulnerability exists in AMD atidxx64.dll 26.20.15019.19000 graphics driver. A specially
An exploitable code execution vulnerability exists in the Shader functionality of AMD Radeon DirectX 11 Driver atidxx64.
An exploitable code execution vulnerability exists in the Shader functionality of AMD Radeon DirectX 11 Driver atidxx64.
An exploitable code execution vulnerability exists in the Shader functionality of AMD Radeon DirectX 11 Driver atidxx64.
Xjp2.dll in XnView before 2.13 allows remote attackers to execute arbitrary code via (1) the Csiz parameter in a SIZ mar
Multiple heap-based buffer overflows in the ZRLE_DECODE function in common/rfb/zrleDecode.h in TigerVNC before 1.3.1, wh
A flaw was found with the RHSA-2019:3950 erratum, where it did not fix the CVE-2019-13616 SDL vulnerability. This issue
Frequently Asked Questions
What is CWE-787?
CWE-787 (Out-of-bounds Write) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.
How many CVEs are classified as CWE-787?
There are 17,111 CVE records associated with CWE-787 in our database. Of these, 2513 are critical severity, 8761 are high severity, and 2814 are medium severity.
How can I protect against CWE-787 vulnerabilities?
Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-787 using AI-powered security agents.
Detect CWE-787 Vulnerabilities
CyberStrike's AI agents automatically detect out-of-bounds write vulnerabilities across your infrastructure.
Get Started