In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix Out-of-Bounds Write in ksmbd_vfs_stream_
Memory corruption when AP includes TID to link mapping IE in the beacons and STA is parsing the beacon TID to link mappi
A vulnerability in the DHCP snooping feature of Cisco IOS XE Software could allow an unauthenticated, remote attacker to
A vulnerability in the IKEv1 fragmentation code of Cisco IOS Software and Cisco IOS XE Software could allow an unauthent
TinyWeb 1.94 and below allows unauthenticated remote attackers to cause a denial of service (Buffer Overflow) when sendi
Aircompressor is a library with ports of the Snappy, LZO, LZ4, and Zstandard compression algorithms to Java. All decompr
By manipulating the text in an `<input>` tag, an attacker could have caused corrupt memory leading to a potentiall
A heap-based buffer overflow vulnerability exists in the FOXMAN-UN/UNEM that if exploited will generally lead to a denia
In Eclipse Parsson before 1.0.4 and 1.1.3, a document with a large depth of nested objects can allow an attacker to caus
A vulnerability in the SIP call processing function of Cisco Unified Communications Manager (Unified CM) and Cisco Unifi
Stack-based out-of-bounds write in Samsung Notes prior to version 4.4.21.62 allows remote attackers to execute arbitrary
A vulnerability in the Resource Reservation Protocol (RSVP) feature of Cisco IOS Software and Cisco IOS XE Software coul
Multiple vulnerabilities in the Cisco AnyConnect VPN server of Cisco Meraki MX and Cisco Meraki Z Series Teleworker Gate
Multiple vulnerabilities in the Cisco AnyConnect VPN server of Cisco Meraki MX and Cisco Meraki Z Series Teleworker Gate
Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') vulnerability in RTI Connext Professional (Core L
Buffer overflow in some Zoom Workplace Apps and Rooms Clients may allow an authenticated user to conduct an escalation o
Memory corruption in Audio during playback with speaker protection.
Memory corruption when resource manager sends the host kernel a reply message with multiple fragments.
A heap-based buffer overflow was found in the __vsyslog_internal function of the glibc library. This function is called
Out-of-bounds Write in padmd_vld_htbl of libpadm.so prior to SMR Feb-2024 Release 1 allows local attacker to execute arb
Out-of-bounds Write in padmd_vld_qtbl of libpadm.so prior to SMR Feb-2024 Release 1 allows local attacker to execute arb
Memory corruption in Automotive Multimedia due to improper access control in HAB.
In wlan firmware, there is a possible out of bounds write due to improper input validation. This could lead to local esc
Memory corruption in Audio while processing RT proxy port register driver.
Memory corruption while processing the IOCTL FM HCI WRITE request.
Memory corruption while processing TPC target power table in FTM TPC.
there is a possible Authentication Bypass due to improperly used crypto. This could lead to local escalation of privileg
In tmu_reset_tmu_trip_counter of , there is a possible out of bounds write due to a missing bounds check. This could lea
In tmu_set_gov_active of tmu.c, there is a possible out of bounds write due to a missing bounds check. This could lead t
there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege
In tmu_set_pi of tmu.c, there is a possible out of bounds write due to a missing bounds check. This could lead to local
In tmu_config_gov_params of , there is a possible out of bounds write due to a missing bounds check. This could lead to
In flashc, there is a possible out of bounds write due to an uncaught exception. This could lead to local escalation of
Memory corruption in SPS Application while requesting for public key in sorter TA.
Out-of-bounds write vulnerability while parsing remaining codewords in libsavsac.so prior to SMR Apr-2024 Release 1 allo
Out-of-bounds write vulnerability while releasing memory in libsavsac.so prior to SMR Apr-2024 Release 1 allows local at
In lpm_req_handler of lpm.c, there is a possible out of bounds write due to improper input validation. This could lead t
In tmu_set_tr_thresholds of tmu.c, there is a possible out of bounds write due to a missing bounds check. This could lea
Memory corruption when size of buffer from previous call is used without validation or re-initialization.
In the Linux kernel, the following vulnerability has been resolved: virtio-net: Add validation for used length This ad
In the Linux kernel, the following vulnerability has been resolved: wifi: ath12k: fix possible out-of-bound write in at
An issue was discovered in Samsung Mobile Processor Exynos 2200, Exynos 1480, Exynos 2400. It lacks proper buffer length
An issue was discovered in Samsung Mobile Processor and Wearable Processor Exynos 850, Exynos 1080, Exynos 2100, Exynos
An issue in htop-dev htop v.2.20 allows a local attacker to cause an out-of-bounds access in the Header_populateFromSett
Memory corruption while processing IOCTL handler in FastRPC.
Memory corruption when preparing a shared memory notification for a memparcel in Resource Manager.
Microsoft Edge (HTML-based) Memory Corruption Vulnerability
in OpenHarmony v4.1.0 and prior versions allow a local attacker arbitrary code execution in pre-installed apps through o
in OpenHarmony v4.1.0 and prior versions allow a local attacker arbitrary code execution in pre-installed apps through o
Memory corruption when BTFM client sends new messages over Slimbus to ADSP.
Frequently Asked Questions
What is CWE-787?
CWE-787 (Out-of-bounds Write) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.
How many CVEs are classified as CWE-787?
There are 17,111 CVE records associated with CWE-787 in our database. Of these, 2513 are critical severity, 8761 are high severity, and 2814 are medium severity.
How can I protect against CWE-787 vulnerabilities?
Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-787 using AI-powered security agents.
Detect CWE-787 Vulnerabilities
CyberStrike's AI agents automatically detect out-of-bounds write vulnerabilities across your infrastructure.
Get Started