A vulnerability, which was classified as problematic, was found in HDF5 up to 1.14.6. This affects the function H5HL__fl
A vulnerability, which was classified as problematic, has been found in PyTorch 2.6.0. This issue affects the function t
in OpenHarmony v5.0.2 and prior versions allow a local attacker cause DOS through out-of-bounds write.
A vulnerability has been found in wasm3 0.5.0 and classified as problematic. This vulnerability affects the function Mar
A vulnerability classified as problematic was found in vstakhov libucl up to 0.9.2. Affected by this vulnerability is th
A vulnerability, which was classified as problematic, was found in mruby up to 3.4.0-rc2. Affected is the function scope
A vulnerability, which was classified as problematic, was found in GNU libopts up to 27.6. Affected is the function __st
A vulnerability was identified in vim 9.1.0000. Affected is the function __memmove_avx_unaligned_erms of the file memmov
cups-filters contains backends, filters, and other software required to get the cups printing service working on operati
The serde-json-wasm crate before 1.0.1 for Rust allows stack consumption via deeply nested JSON data.
Out-of-bounds write in some Zoom Workplace Apps may allow an authorized user to conduct a loss of integrity via network
Dell PowerScale OneFS, versions 9.4.0.0 through 9.10.0.0, contains an out-of-bounds write vulnerability. An attacker cou
A vulnerability has been found in tcpreplay 4.5.1. This vulnerability affects the function mask_cidr6 of the file cidr.c
A vulnerability has been identified in the libarchive library. This flaw involves an 'off-by-one' miscalculation when ha
An out-of-bounds write issue was addressed with improved input validation. This issue is fixed in iOS 18.7 and iPadOS 18
Dell PowerProtect DD versions prior to 7.10.1.50 and 7.13.1.20 contain a Stack-based Buffer Overflow vulnerability in th
On Windows only, if libpcap needs to convert a Windows error message to UTF-8 and the message includes characters that U
Out-of-bounds array write in Xpdf 4.05 and earlier, triggered by an invalid VerticesPerRow value in a PDF shading dictio
Out-of-bounds Write vulnerability in PointCloudLibrary pcl allows Overflow Buffers. Since version 1.14.0, PCL by default
We have identified a buffer overflow issue allowing out-of-bounds write when processing LLMNR or mDNS queries with very
Out-of-bounds Write vulnerability in dail8859 NotepadNext (src/lua/src modules). This vulnerability is associated with p
DjVuLibre is a GPL implementation of DjVu, a web-centric format for distributing documents and images. Prior to version
A stack-based buffer overflow vulnerability exists in the built-in web interface of DiskBoss Enterprise versions 7.4.28,
The following APIs for the Silcon Labs SiWx91x prior to vesion 3.4.0 failed to check the size of the output buffer of th
Arcane Software’s Vermillion FTP Daemon (vftpd) versions up to and including 1.31 contains a memory corruption vulnerabi
Out-of-bounds Write vulnerability in Legion of the Bouncy Castle Inc. Bouncy Castle for Java bc-fips on All (API modules
When calculating the content path in handling of MPEG-DASH manifests, there's an out-of-bounds NUL-byte write one byte p
When parsing the header for a DHAV file, there's an integer underflow in offset calculation that leads to reading the du
When decoding a frame for a SANM file (ANIM v0 variant), the decoded data can be larger than the buffer allocated for it
When decoding an OpenEXR file that uses DWAA or DWAB compression, the specified raw length of run-length-encoded data is
When decoding an OpenEXR file that uses DWAA or DWAB compression, there's an implicit assumption that the height and wid
When decoding an OpenEXR file that uses DWAA or DWAB compression, there's an implicit assumption that all image channels
A denial-of-service security issue exists in the affected product and version. The security issue is caused through CIP
Out-of-bounds Write in unfilter_scanline in warmcat libwebsockets allows, when the LWS_WITH_UPNG flag is enabled during
COMMAX UMS Client ActiveX Control 1.7.0.2 contains a heap-based buffer overflow vulnerability that allows attackers to e
COMMAX WebViewer ActiveX Control 2.1.4.5 contains a buffer overflow vulnerability that allows attackers to execute arbit
A stack-based buffer overflow exists in IBM Merge Healthcare eFilm Workstation license server. A remote, unauthenticated
A heap-based buffer overflow vulnerability exists in the HTTP Server functionality of Weston Embedded uC-HTTP git commit
Stack-based buffer overflow vulnerabilities affecting Vonets industrial wifi bridge relays and wifi bridge repeat
llama.cpp provides LLM inference in C/C++. The unsafe `data` pointer member in the `rpc_tensor` structure can cause arbi
In Modem IMS Stack, there is a possible out of bounds write due to a missing bounds check. This could lead to remote cod
handle_request in http.c in cherry through 4b877df has an sscanf stack-based buffer overflow via a long URI, leading to
route in main.c in Pico HTTP Server in C through f3b69a6 has an sprintf stack-based buffer overflow via a long URI, lead
IrfanView B3D PlugIns before version 4.56 has a B3d.dll!+27ef heap-based out-of-bounds write.
IrfanView B3D PlugIns before version 4.56 has a B3d.dll!+214f heap-based out-of-bounds write.
IrfanView B3D PlugIns before version 4.56 has a B3d.dll!+1cbf heap-based out-of-bounds write.
Stack-based Buffer Overflow in GitHub repository gpac/gpac prior to 2.3-DEV.
A stack-based buffer overflow was discovered on TRENDnet TV-IP1314PI 5.5.3 200714 devices, leading to arbitrary command
Tenda A18 v15.13.07.09 was discovered to contain a stack overflow via the devName parameter in the formSetDeviceName fun
Tenda AX1803 v1.0.0.1 contains a stack overflow via the adv.iptv.stbpvid parameter in the function getIptvInfo.
Frequently Asked Questions
What is CWE-787?
CWE-787 (Out-of-bounds Write) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.
How many CVEs are classified as CWE-787?
There are 17,111 CVE records associated with CWE-787 in our database. Of these, 2513 are critical severity, 8761 are high severity, and 2814 are medium severity.
How can I protect against CWE-787 vulnerabilities?
Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-787 using AI-powered security agents.
Detect CWE-787 Vulnerabilities
CyberStrike's AI agents automatically detect out-of-bounds write vulnerabilities across your infrastructure.
Get Started