CWE-805 · 47 записей
Buffer Access with Incorrect Length Value
CVE этого класса
47 записей
| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
40В плане | CVE-2020-14509Эксплойта нет | Multiple memory corruption vulnerabilities exist in CodeMeter (All versions prior to 7.10) where the packet parser mechanism does not verifywibu · codemeter · CWE-805 | Критическая9,8 | — | 2,1 % | 16 сент. 2020 г. |
39Наблюдать | CVE-2025-23319Эксплойта нет | NVIDIA Triton Inference Server for Windows and Linux contains a vulnerability in the Python backend, where an attacker could cause an out-ofnvidia · triton inference server · CWE-805 | Критическая9,8 | — | 1,6 % | 6 авг. 2025 г. |
39Наблюдать | CVE-2025-23318Эксплойта нет | NVIDIA Triton Inference Server for Windows and Linux contains a vulnerability in the Python backend, where an attacker could cause an out-ofnvidia · triton inference server · CWE-805 | Критическая9,8 | — | 0,7 % | 6 авг. 2025 г. |
36Наблюдать | CVE-2026-34002Эксплойта нет | Xorg: xwayland: x.org x server: information disclosure or denial of service via out-of-bounds read in xkb modifier map handlingx.org · x server · CWE-805 | Критическая9,1 | — | 0,5 % | 5 мая 2026 г. |
35Наблюдать | CVE-2021-3581Эксплойта нет | Buffer Access with Incorrect Length Value in zephyrzephyrproject · zephyr · CWE-805 | Высокая8,8 | — | 0,3 % | 5 окт. 2021 г. |
34Наблюдать | CVE-2025-20315Эксплойта нет | A vulnerability in the Network-Based Application Recognition (NBAR) feature of Cisco IOS XE Software could allow an unauthenticated, remote cisco · ios xe · CWE-805 | Высокая8,6 | — | 0,4 % | 24 сент. 2025 г. |
34Наблюдать | CVE-2025-30651Эксплойта нет | Junos OS and Junos OS Evolved: Receipt of a specific ICMPv6 packet causes a memory overrun leading to an rpd crashjuniper · junos · CWE-805 | Высокая8,7 | — | 0,4 % | 9 апр. 2025 г. |
34Наблюдать | CVE-2026-1837Эксплойта нет | libjxl: Out-of-bounds write in grayscale color transformation when using LCMS2libjxl project · libjxl · CWE-805 | Высокая8,7 | — | 0,3 % | 11 февр. 2026 г. |
32Наблюдать | CVE-2026-1767Эксплойта нет | Localsearch: tracker-miners: gnome localsearch mp3 extractor: heap buffer overflow leading to denial of service or information disclosure via malformed mp3 id3 gnome · localsearch · CWE-805 | Высокая8,1 | — | 0,2 % | 15 июн. 2026 г. |
31Наблюдать | CVE-2025-38743Эксплойта нет | Dell iDRAC Service Module (iSM), versions prior to 6.0.3.0, contains a Buffer Access with Incorrect Length Value vulnerability.dell · emc idrac service module · CWE-805 | Высокая7,8 | — | 0,1 % | 21 авг. 2025 г. |
30Наблюдать | CVE-2024-24851Эксплойта нет | A heap-based buffer overflow vulnerability exists in the Programming Software Connection FiBurn functionality of AutomationDirect P3-550E 1.automationdirect · p3-550e firmware · CWE-805 | Высокая7,5 | — | 1,4 % | 28 мая 2024 г. |
30Наблюдать | CVE-2021-31885Эксплойта нет | A vulnerability has been identified in APOGEE MBC (PPC) (BACnet) (All versions), APOGEE MBC (PPC) (P2 Ethernet) (All versions), APOGEE MEC (siemens · capital vstar · CWE-805 | Высокая7,5 | — | 1,2 % | 9 нояб. 2021 г. |
30Наблюдать | CVE-2023-20049Эксплойта нет | Cisco IOS XR Software for ASR 9000 Series Routers Bidirectional Forwarding Detection Denial of Service Vulnerabilitycisco · ios xr · CWE-805 | Высокая7,5 | — | 1,0 % | 9 мар. 2023 г. |
30Наблюдать | CVE-2020-16101Эксплойта нет | It is possible for an unauthenticated remote DCOM websocket connection to crash the Command Centre service due to an out-of-bounds buffer acgallagher · command centre · CWE-805 | Высокая7,5 | — | 1,0 % | 15 сент. 2020 г. |
30Наблюдать | CVE-2025-20170Эксплойта нет | A vulnerability in the SNMP subsystem of Cisco IOS Software and Cisco IOS XE Software could allow an authenticated, remote attacker to causecisco · ios · CWE-805 | Высокая7,7 | — | 0,8 % | 5 февр. 2025 г. |
30Наблюдать | CVE-2025-20169Эксплойта нет | A vulnerability in the SNMP subsystem of Cisco IOS Software and Cisco IOS XE Software could allow an authenticated, remote attacker to causecisco · ios · CWE-805 | Высокая7,7 | — | 0,8 % | 5 февр. 2025 г. |
30Наблюдать | CVE-2025-20175Эксплойта нет | A vulnerability in the SNMP subsystem of Cisco IOS Software and Cisco IOS XE Software could allow an authenticated, remote attacker to causecisco · ios · CWE-805 | Высокая7,7 | — | 0,8 % | 5 февр. 2025 г. |
30Наблюдать | CVE-2025-20174Эксплойта нет | A vulnerability in the SNMP subsystem of Cisco IOS Software and Cisco IOS XE Software could allow an authenticated, remote attacker to causecisco · ios · CWE-805 | Высокая7,7 | — | 0,8 % | 5 февр. 2025 г. |
30Наблюдать | CVE-2022-47375Эксплойта нет | A vulnerability has been identified in SIMATIC PC-Station Plus (All versions), SIMATIC S7-400 CPU 412-2 PN V7 (All versions), SIMATIC S7-400siemens · 6es7412-2ek07-0ab0 firmware · CWE-805 | Высокая7,5 | — | 0,7 % | 12 дек. 2023 г. |
30Наблюдать | CVE-2025-63547Эксплойта нет | An issue in Eprosima Micro-XREC-DDS Agent v.3.0.1 allows a remote attacker to cause a denial of service via a crafted packet to the MTU lengCWE-805 | Высокая7,5 | — | 0,4 % | 1 мая 2026 г. |
29Наблюдать | CVE-2023-5396Эксплойта нет | Server receiving a malformed message creates connection for a hostname that may cause a stack overflow resulting in possible remote code exehoneywell · experion server · CWE-805 | Высокая7,4 | — | 0,7 % | 17 апр. 2024 г. |
29Наблюдать | CVE-2025-20191Эксплойта нет | Multiple Cisco Products Denial of Service Vulnerabilitycisco · cisco nx-os software · CWE-805 | Высокая7,4 | — | 0,2 % | 7 мая 2025 г. |
29Наблюдать | CVE-2025-20202Эксплойта нет | A vulnerability in Cisco IOS XE Wireless Controller Software could allow an unauthenticated, adjacent attacker to cause a denial of service cisco · ios xe · CWE-805 | Высокая7,4 | — | 0,2 % | 7 мая 2025 г. |
29Наблюдать | CVE-2026-20010Эксплойта нет | Cisco Nexus 3000 and 9000 Series Switches Link Layer Discovery Protocol Denial of Service Vulnerabilitycisco · cisco nx-os software · CWE-805 | Высокая7,4 | — | 0,2 % | 25 февр. 2026 г. |
29Наблюдать | CVE-2026-20033Эксплойта нет | Cisco NX-OS Software Denial of Service Vulnerabilitycisco · cisco nx-os system software in aci mode · CWE-805 | Высокая7,4 | — | 0,2 % | 25 февр. 2026 г. |
- CVE-2020-1450940В плане
Multiple memory corruption vulnerabilities exist in CodeMeter (All versions prior to 7.10) where the packet parser mechanism does not verify
КритическаяCVSS 9,8Эксплойта нетEPSS 2 %wibu · codemeter16 сент. 2020 г.
- CVE-2025-2331939Наблюдать
NVIDIA Triton Inference Server for Windows and Linux contains a vulnerability in the Python backend, where an attacker could cause an out-of
КритическаяCVSS 9,8Эксплойта нетEPSS 2 %nvidia · triton inference server6 авг. 2025 г.
- CVE-2025-2331839Наблюдать
NVIDIA Triton Inference Server for Windows and Linux contains a vulnerability in the Python backend, where an attacker could cause an out-of
КритическаяCVSS 9,8Эксплойта нетEPSS 1 %nvidia · triton inference server6 авг. 2025 г.
- CVE-2026-3400236Наблюдать
Xorg: xwayland: x.org x server: information disclosure or denial of service via out-of-bounds read in xkb modifier map handling
КритическаяCVSS 9,1Эксплойта нетEPSS 1 %x.org · x server5 мая 2026 г.
- CVE-2021-358135Наблюдать
Buffer Access with Incorrect Length Value in zephyr
ВысокаяCVSS 8,8Эксплойта нетEPSS 0 %zephyrproject · zephyr5 окт. 2021 г.
- CVE-2025-2031534Наблюдать
A vulnerability in the Network-Based Application Recognition (NBAR) feature of Cisco IOS XE Software could allow an unauthenticated, remote
ВысокаяCVSS 8,6Эксплойта нетEPSS 0 %cisco · ios xe24 сент. 2025 г.
- CVE-2025-3065134Наблюдать
Junos OS and Junos OS Evolved: Receipt of a specific ICMPv6 packet causes a memory overrun leading to an rpd crash
ВысокаяCVSS 8,7Эксплойта нетEPSS 0 %juniper · junos9 апр. 2025 г.
- CVE-2026-183734Наблюдать
libjxl: Out-of-bounds write in grayscale color transformation when using LCMS2
ВысокаяCVSS 8,7Эксплойта нетEPSS 0 %libjxl project · libjxl11 февр. 2026 г.
- CVE-2026-176732Наблюдать
Localsearch: tracker-miners: gnome localsearch mp3 extractor: heap buffer overflow leading to denial of service or information disclosure via malformed mp3 id3
ВысокаяCVSS 8,1Эксплойта нетEPSS 0 %gnome · localsearch15 июн. 2026 г.
- CVE-2025-3874331Наблюдать
Dell iDRAC Service Module (iSM), versions prior to 6.0.3.0, contains a Buffer Access with Incorrect Length Value vulnerability.
ВысокаяCVSS 7,8Эксплойта нетEPSS 0 %dell · emc idrac service module21 авг. 2025 г.
- CVE-2024-2485130Наблюдать
A heap-based buffer overflow vulnerability exists in the Programming Software Connection FiBurn functionality of AutomationDirect P3-550E 1.
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %automationdirect · p3-550e firmware28 мая 2024 г.
- CVE-2021-3188530Наблюдать
A vulnerability has been identified in APOGEE MBC (PPC) (BACnet) (All versions), APOGEE MBC (PPC) (P2 Ethernet) (All versions), APOGEE MEC (
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %siemens · capital vstar9 нояб. 2021 г.
- CVE-2023-2004930Наблюдать
Cisco IOS XR Software for ASR 9000 Series Routers Bidirectional Forwarding Detection Denial of Service Vulnerability
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %cisco · ios xr9 мар. 2023 г.
- CVE-2020-1610130Наблюдать
It is possible for an unauthenticated remote DCOM websocket connection to crash the Command Centre service due to an out-of-bounds buffer ac
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %gallagher · command centre15 сент. 2020 г.
- CVE-2025-2017030Наблюдать
A vulnerability in the SNMP subsystem of Cisco IOS Software and Cisco IOS XE Software could allow an authenticated, remote attacker to cause
ВысокаяCVSS 7,7Эксплойта нетEPSS 1 %cisco · ios5 февр. 2025 г.
- CVE-2025-2016930Наблюдать
A vulnerability in the SNMP subsystem of Cisco IOS Software and Cisco IOS XE Software could allow an authenticated, remote attacker to cause
ВысокаяCVSS 7,7Эксплойта нетEPSS 1 %cisco · ios5 февр. 2025 г.
- CVE-2025-2017530Наблюдать
A vulnerability in the SNMP subsystem of Cisco IOS Software and Cisco IOS XE Software could allow an authenticated, remote attacker to cause
ВысокаяCVSS 7,7Эксплойта нетEPSS 1 %cisco · ios5 февр. 2025 г.
- CVE-2025-2017430Наблюдать
A vulnerability in the SNMP subsystem of Cisco IOS Software and Cisco IOS XE Software could allow an authenticated, remote attacker to cause
ВысокаяCVSS 7,7Эксплойта нетEPSS 1 %cisco · ios5 февр. 2025 г.
- CVE-2022-4737530Наблюдать
A vulnerability has been identified in SIMATIC PC-Station Plus (All versions), SIMATIC S7-400 CPU 412-2 PN V7 (All versions), SIMATIC S7-400
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %siemens · 6es7412-2ek07-0ab0 firmware12 дек. 2023 г.
- CVE-2025-6354730Наблюдать
An issue in Eprosima Micro-XREC-DDS Agent v.3.0.1 allows a remote attacker to cause a denial of service via a crafted packet to the MTU leng
ВысокаяCVSS 7,5Эксплойта нетEPSS 0 %1 мая 2026 г.
- CVE-2023-539629Наблюдать
Server receiving a malformed message creates connection for a hostname that may cause a stack overflow resulting in possible remote code exe
ВысокаяCVSS 7,4Эксплойта нетEPSS 1 %honeywell · experion server17 апр. 2024 г.
- CVE-2025-2019129Наблюдать
Multiple Cisco Products Denial of Service Vulnerability
ВысокаяCVSS 7,4Эксплойта нетEPSS 0 %cisco · cisco nx-os software7 мая 2025 г.
- CVE-2025-2020229Наблюдать
A vulnerability in Cisco IOS XE Wireless Controller Software could allow an unauthenticated, adjacent attacker to cause a denial of service
ВысокаяCVSS 7,4Эксплойта нетEPSS 0 %cisco · ios xe7 мая 2025 г.
- CVE-2026-2001029Наблюдать
Cisco Nexus 3000 and 9000 Series Switches Link Layer Discovery Protocol Denial of Service Vulnerability
ВысокаяCVSS 7,4Эксплойта нетEPSS 0 %cisco · cisco nx-os software25 февр. 2026 г.
- CVE-2026-2003329Наблюдать
Cisco NX-OS Software Denial of Service Vulnerability
ВысокаяCVSS 7,4Эксплойта нетEPSS 0 %cisco · cisco nx-os system software in aci mode25 февр. 2026 г.