An out-of-bounds write vulnerability has been reported to affect several QNAP operating system versions. If a remote att
In Modem, there is a possible out of bounds write due to a heap buffer overflow. This could lead to remote escalation of
Heap buffer overflow in Sync in Google Chrome prior to 141.0.7390.65 allowed a remote attacker to perform an out of boun
Memory safety bugs present in Firefox ESR 140.5, Thunderbird ESR 140.5, Firefox 145 and Thunderbird 145. Some of these b
Heap-based buffer overflow in Remote Desktop Client allows an authorized attacker to execute code over a network.
In Modem, there is a possible out of bounds write due to a missing bounds check. This could lead to remote escalation of
Out-of-bounds Write vulnerability in libaudiosaplus_sec.so library prior to SMR Apr-2023 Release 1 allows local attacker
Out-of-bounds Write vulnerability in libaudiosaplus_sec.so library prior to SMR Apr-2023 Release 1 allows local attacker
In wlan AP driver, there is a possible out of bounds write due to an incorrect bounds check. This could lead to remote (
In ss_DecodeLcsAssistDataReqMsg(void) of ss_LcsManagement.c, there is a possible out of bounds write due to an incorrect
Insufficient bounds checking in AMD TEE (Trusted Execution Environment) could allow an attacker with a compromised users
OpenWrt Project is a Linux operating system targeting embedded devices. Prior to version 24.10.4, local users could read
In DevmemValidateFlags of devicemem_server.c , there is a possible out of bounds write due to memory corruption. This co
In resizeToAtLeast of SkRegion.cpp, there is a possible out of bounds write due to an integer overflow. This could lead
In skia_alloc_func of SkDeflate.cpp, there is a possible out of bounds write due to an integer overflow. This could lead
In prepare_response_locked of lwis_transaction.c, there is a possible out of bounds write due to improper input validat
In prepare_response of lwis_periodic_io.c, there is a possible out of bounds write due to an integer overflow. This coul
In Exynos_parsing_user_data_registered_itu_t_t35 of VendorVideoAPI.cpp, there is a possible out of bounds write due to a
Memory corruption when IOCTL call is invoked from user-space to write board data to WLAN driver.
A vulnerability exits in driver snxpsamd.sys in SUNIX Serial Driver x64 - 10.1.0.0, which allows low-privileged users to
A vulnerability exits in driver snxppamd.sys in SUNIX Parallel Driver x64 - 10.1.0.0, which allows low-privileged users
In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Adding array index check to preven
In the Linux kernel, the following vulnerability has been resolved: mm: use aligned address in copy_user_gigantic_page(
In the Linux kernel, the following vulnerability has been resolved: mm: use aligned address in clear_gigantic_page() I
In the Linux kernel, the following vulnerability has been resolved: jffs2: Prevent rtime decompress memory corruption
Substance3D - Stager versions 3.0.4 and earlier are affected by a Stack-based Buffer Overflow vulnerability that could r
Substance3D - Stager versions 3.0.4 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could re
Substance3D - Stager versions 3.0.4 and earlier are affected by an out-of-bounds write vulnerability that could result i
Substance3D - Stager versions 3.0.4 and earlier are affected by an out-of-bounds write vulnerability that could result i
Substance3D - Stager versions 3.0.4 and earlier are affected by an out-of-bounds write vulnerability that could result i
Substance3D - Designer versions 14.0 and earlier are affected by an out-of-bounds write vulnerability that could result
Substance3D - Designer versions 14.0 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could r
Substance3D - Designer versions 14.0 and earlier are affected by an out-of-bounds write vulnerability that could result
Substance3D - Designer versions 14.0 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could r
In ip6_append_data of ip6_output.c, there is a possible way to achieve code execution due to a heap buffer overflow. Thi
In writeInplace of Parcel.cpp, there is a possible out of bounds write. This could lead to local escalation of privilege
In growData of Parcel.cpp, there is a possible out of bounds write due to an incorrect bounds check. This could lead to
gpac 2.4 contains a heap-buffer-overflow at isomedia/sample_descs.c:1799 in gf_isom_new_mpha_description in gpac/MP4Box.
An out-of-bounds write issue was addressed with improved input validation. This issue is fixed in macOS Sequoia 15.2, ma
The issue was addressed with improved bounds checks. This issue is fixed in iOS 18.2 and iPadOS 18.2, macOS Sequoia 15.2
The issue was addressed with improved bounds checks. This issue is fixed in iOS 18.2 and iPadOS 18.2, macOS Sequoia 15.2
In wlan AP driver, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local es
In wlan AP driver, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local es
In Ashlar-Vellum Cobalt versions prior to v12 SP2 Build (1204.200), the affected application lacks proper validation of
In the Linux kernel, the following vulnerability has been resolved: vfio/platform: check the bounds of read/write sysca
InDesign Desktop versions ID20.0, ID19.5.1 and earlier are affected by an out-of-bounds write vulnerability that could r
InDesign Desktop versions ID20.0, ID19.5.1 and earlier are affected by a Heap-based Buffer Overflow vulnerability that c
InDesign Desktop versions ID20.0, ID19.5.1 and earlier are affected by an out-of-bounds write vulnerability that could r
Substance3D - Designer versions 14.0.2 and earlier are affected by an out-of-bounds write vulnerability that could resul
Illustrator versions 29.1, 28.7.3 and earlier are affected by a Stack-based Buffer Overflow vulnerability that could res
Frequently Asked Questions
What is CWE-787?
CWE-787 (Out-of-bounds Write) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.
How many CVEs are classified as CWE-787?
There are 17,111 CVE records associated with CWE-787 in our database. Of these, 2513 are critical severity, 8761 are high severity, and 2814 are medium severity.
How can I protect against CWE-787 vulnerabilities?
Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-787 using AI-powered security agents.
Detect CWE-787 Vulnerabilities
CyberStrike's AI agents automatically detect out-of-bounds write vulnerabilities across your infrastructure.
Get Started