A vulnerability has been identified in Solid Edge SE2023 (All versions < V223.0 Update 10). The affected application is
A vulnerability has been identified in Solid Edge SE2023 (All versions < V223.0 Update 10). The affected application is
A vulnerability has been identified in Solid Edge SE2023 (All versions < V223.0 Update 10). The affected application con
A vulnerability has been identified in Solid Edge SE2023 (All versions < V223.0 Update 10). The affected applications co
The issue was addressed with improved memory handling. This issue is fixed in macOS Ventura 13. An app may be able to ex
An out-of-bounds write issue was addressed with improved input validation. This issue is fixed in macOS Big Sur 11.7.5,
The issue was addressed with improved memory handling. This issue is fixed in macOS Sonoma 14, iOS 17 and iPadOS 17. An
In exiftags 1.01, nikon_prop1 in nikon.c has a heap-based buffer overflow (write of size 28) because snprintf can write
In Horner Automation Cscape versions 9.90 SP10 and prior, local attackers are able to exploit this vulnerability if a u
A flaw was found in the X.Org server. The cursor code in both Xephyr and Xwayland uses the wrong type of private at crea
swftools 0.9.2 was discovered to contain a Stack Buffer Underflow via the function dict_foreach_keyvalue at swftools/lib
A stack-buffer-underflow vulnerability was found in SWFTools v0.9.2, in the function parseExpression at src/swfc.c:2602.
A heap-buffer-overflow was found in SWFTools v0.9.2, in the function swf5lex at lex.swf5.c:1321. It allows an attacker t
swftools 0.9.2 was discovered to contain a stack-buffer-underflow vulnerability via the function parseExpression at swft
In GNOME GdkPixbuf (aka gdk-pixbuf) through 2.42.10, the ANI (Windows animated cursor) decoder encounters heap memory co
Vim before 9.0.2142 has a stack-based buffer overflow because did_set_langmap in map.c calls sprintf to write to the err
Out-of-bounds Write vulnerability in Arm Ltd Bifrost GPU Kernel Driver, Arm Ltd Valhall GPU Kernel Driver, Arm Ltd Arm 5
Memory corruption in Trusted Execution Environment while deinitializing an object used for license validation.
Memory corruption while processing the event ring, the context read pointer is untrusted to HLOS and when it is passed w
Memory corruption when malformed message payload is received from firmware.
there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege
An out-of-bounds memory access flaw was found in the X.Org server. This issue can be triggered when a device frozen by a
KiTTY versions 0.76.1.13 and before is vulnerable to a stack-based buffer overflow via the hostname, occurs due to insuf
KiTTY versions 0.76.1.13 and before is vulnerable to a stack-based buffer overflow via the username, occurs due to insuf
An issue in the HuginBase::PanoramaMemento::loadPTScript function of Hugin v2022.0.0 allows attackers to cause a heap bu
An issue in the HuginBase::PTools::setDestImage function of Hugin v2022.0.0 allows attackers to cause a heap buffer over
A vulnerability has been identified in Tecnomatix Plant Simulation V2201 (All versions < V2201.0012), Tecnomatix Plant S
A vulnerability has been identified in Tecnomatix Plant Simulation V2201 (All versions < V2201.0012), Tecnomatix Plant S
A vulnerability has been identified in Tecnomatix Plant Simulation V2201 (All versions < V2201.0012), Tecnomatix Plant S
A vulnerability has been identified in Tecnomatix Plant Simulation V2201 (All versions < V2201.0012), Tecnomatix Plant S
A vulnerability has been identified in Tecnomatix Plant Simulation V2201 (All versions), Tecnomatix Plant Simulation V23
A vulnerability has been identified in Tecnomatix Plant Simulation V2201 (All versions < V2201.0012), Tecnomatix Plant S
A vulnerability has been identified in Simcenter Femap (All versions < V2401.0000). The affected application contains an
A vulnerability has been identified in Simcenter Femap (All versions < V2401.0000). The affected application is vulnerab
A vulnerability has been identified in Simcenter Femap (All versions < V2401.0000). The affected application contains an
A vulnerability has been identified in Simcenter Femap (All versions < V2306.0000). The affected application contains an
Handlers for *_CFG_PAGE read / write ioctls in the mpr, mps, and mpt drivers allocated a buffer of a caller-specified si
Substance3D - Painter versions 9.1.1 and earlier are affected by an out-of-bounds write vulnerability that could result
Substance3D - Painter versions 9.1.1 and earlier are affected by a Write-what-where Condition vulnerability that could r
Substance3D - Painter versions 9.1.1 and earlier are affected by an out-of-bounds write vulnerability that could result
Substance3D - Painter versions 9.1.1 and earlier are affected by an out-of-bounds write vulnerability that could result
Acrobat Reader versions 20.005.30539, 23.008.20470 and earlier are affected by an out-of-bounds write vulnerability that
Acrobat Reader versions 20.005.30539, 23.008.20470 and earlier are affected by an out-of-bounds write vulnerability that
Acrobat Reader versions 20.005.30539, 23.008.20470 and earlier are affected by an out-of-bounds write vulnerability that
Audition versions 24.0.3, 23.6.2 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could resul
In multiple functions of MtpPacket.cpp, there is a possible out of bounds write due to a heap buffer overflow. This coul
In multiple functions of ashmem-dev.cpp, there is a possible missing seal due to a heap buffer overflow. This could lead
In convertYUV420Planar16ToY410 of ColorConverter.cpp, there is a possible out of bounds write due to a heap buffer overf
In ConvertRGBToPlanarYUV of Codec2BufferUtils.cpp, there is a possible out of bounds write due to an incorrect bounds ch
The issue was addressed with improved bounds checks. This issue is fixed in watchOS 10.1, macOS Sonoma 14.1, tvOS 17.1,
Frequently Asked Questions
What is CWE-787?
CWE-787 (Out-of-bounds Write) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.
How many CVEs are classified as CWE-787?
There are 17,111 CVE records associated with CWE-787 in our database. Of these, 2513 are critical severity, 8761 are high severity, and 2814 are medium severity.
How can I protect against CWE-787 vulnerabilities?
Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-787 using AI-powered security agents.
Detect CWE-787 Vulnerabilities
CyberStrike's AI agents automatically detect out-of-bounds write vulnerabilities across your infrastructure.
Get Started