Rosetta Intel
Datasets/KEV CatalogThreat Actors
Rosetta Lab ↗Blur Horizon LLC
Datasets

KEV Catalog

CISA, queryable

Known exploited vulnerabilities as a queryable table — by CVE, vendor or product.

1676 entries·352 Ransomware·Updated 2026-08-25

CWE-119 · Memory buffer boundsDefinition on MITRE ↗Clear

84 results·Page 1 / 2

CVE-2009-3459
2026-05-20
Adobe Acrobat and Reader Heap-Based Buffer Overflow Vulnerability
Adobe

Adobe Acrobat and Reader contain a heap-based buffer overflow vulnerability which could allow remote attackers to execute arbitrary code via a crafted PDF file that triggers memory corruption.

CWE-119 · Memory buffer bounds
Refscisa.govweb.archive.orgnvd.nist.gov
Federal remediation due 2026-06-03
CVE-2025-31277
2026-03-20
Apple Multiple Products Buffer Overflow Vulnerability
Apple

Apple Safari, iOS, watchOS, visionOS, iPadOS, macOS, and tvOS contain a buffer overflow vulnerability that could allow the processing of maliciously crafted web content which may lead to memory corruption.

CWE-119 · Memory buffer bounds
Refssupport.apple.comsupport.apple.comsupport.apple.comsupport.apple.comsupport.apple.comnvd.nist.gov
Federal remediation due 2026-04-03
CVE-2026-3910
2026-03-13
Google Chromium V8 Improper Restriction of Operations Within the Bounds of a Memory Buffer Vulnerability
Google

Google Chromium V8 contains an improper restriction of operations within the bounds of a memory buffer vulnerability that could allow a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. This vulnerability could affect multiple web browsers that utilize Chromium, including, but not limited to, Google Chrome, Microsoft Edge, and Opera.

CWE-119 · Memory buffer bounds
Refschromereleases.googleblog.comnvd.nist.gov
Federal remediation due 2026-03-27
CVE-2026-20700
2026-02-12
Apple Multiple Buffer Overflow Vulnerability
Apple / Multiple Products

Apple iOS, macOS, tvOS, watchOS, and visionOS contain an improper restriction of operations within the bounds of a memory buffer vulnerability that could allow an attacker with memory write the capability to execute arbitrary code.

CWE-119 · Memory buffer bounds
Refssupport.apple.comsupport.apple.comsupport.apple.comsupport.apple.comsupport.apple.comnvd.nist.gov
Federal remediation due 2026-03-05
CVE-2025-7775
2025-08-26
Citrix NetScaler Memory Overflow Vulnerability
Citrix

Citrix NetScaler ADC and NetScaler Gateway contain a memory overflow vulnerability that could allow for remote code execution and/or denial of service.

CWE-119 · Memory buffer bounds
Refssupport.citrix.comnvd.nist.gov
Federal remediation due 2025-08-28
CVE-2014-3931
2025-07-07
Multi-Router Looking Glass (MRLG) Buffer Overflow Vulnerability
Looking Glass

Multi-Router Looking Glass (MRLG) contains a buffer overflow vulnerability that could allow remote attackers to cause an arbitrary memory write and memory corruption.

CWE-119 · Memory buffer bounds
Refsmrlg.op-sec.usnvd.nist.gov
Federal remediation due 2025-07-28
CVE-2025-6543
2025-06-30
Citrix NetScaler ADC and Gateway Buffer Overflow Vulnerability
Citrix

Citrix NetScaler ADC and Gateway contain a buffer overflow vulnerability leading to unintended control flow and Denial of Service. NetScaler must be configured as Gateway (VPN virtual server, ICA Proxy, CVPN, RDP Proxy) OR AAA virtual server.

CWE-119 · Memory buffer bounds
Refssupport.citrix.comnetscaler.comnvd.nist.gov
Federal remediation due 2025-07-21
CVE-2017-1000253
2024-09-09
Linux Kernel PIE Stack Buffer Corruption Vulnerability Ransomware
Linux

Linux kernel contains a position-independent executable (PIE) stack buffer corruption vulnerability in load_elf_ binary() that allows a local attacker to escalate privileges.

CWE-119 · Memory buffer bounds
RefsThis vulnerability affects a common open-source component, third-party library, or a protocol used by different products. For more information, please seenvd.nist.gov
Federal remediation due 2024-09-30
CVE-2023-6549
2024-01-17
Citrix NetScaler ADC and NetScaler Gateway Buffer Overflow Vulnerability
Citrix

Citrix NetScaler ADC and NetScaler Gateway contain a buffer overflow vulnerability that allows for a denial-of-service when configured as a Gateway (VPN virtual server, ICA Proxy, CVPN, RDP Proxy) or AAA virtual server.

CWE-119 · Memory buffer bounds
Refssupport.citrix.comnvd.nist.gov
Federal remediation due 2024-02-07
CVE-2023-4966
2023-10-18
Citrix NetScaler ADC and NetScaler Gateway Buffer Overflow VulnerabilityRansomware
Citrix

Citrix NetScaler ADC and NetScaler Gateway contain a buffer overflow vulnerability that allows for sensitive information disclosure when configured as a Gateway (VPN virtual server, ICA Proxy, CVPN, RDP Proxy) or AAA virtual server.

CWE-119 · Memory buffer bounds
Refsnetscaler.comnvd.nist.gov
Federal remediation due 2023-11-08
CVE-2017-6742
2023-04-19
Cisco IOS and IOS XE Software SNMP Remote Code Execution Vulnerability
Cisco

The Simple Network Management Protocol (SNMP) subsystem of Cisco IOS and IOS XE contains a vulnerability that could allow an authenticated, remote attacker to remotely execute code on an affected system or cause an affected system to reload.

CWE-119 · Memory buffer bounds
Refssec.cloudapps.cisco.comnvd.nist.gov
Federal remediation due 2023-05-10
CVE-2022-22706
2023-03-30
Arm Mali GPU Kernel Driver Unspecified Vulnerability
Arm / Mali Graphics Processing Unit (GPU)

Arm Mali GPU Kernel Driver contains an unspecified vulnerability that allows a non-privileged user to achieve write access to read-only memory pages.

CWE-119 · Memory buffer bounds
Refsdeveloper.arm.comnvd.nist.gov
Federal remediation due 2023-04-20
CVE-2013-2597
2022-09-15
Code Aurora ACDB Audio Driver Stack-based Buffer Overflow Vulnerability
Code Aurora

The Code Aurora audio calibration database (acdb) audio driver contains a stack-based buffer overflow vulnerability that allows for privilege escalation. Code Aurora is used in third-party products such as Qualcomm and Android.

CWE-119 · Memory buffer bounds
Refsweb.archive.orgnvd.nist.gov
Federal remediation due 2022-10-06
CVE-2018-7445
2022-09-08
MikroTik RouterOS Stack-Based Buffer Overflow Vulnerability
MikroTik

In MikroTik RouterOS, a stack-based buffer overflow occurs when processing NetBIOS session request messages. Remote attackers with access to the service can exploit this vulnerability and gain code execution on the system.

CWE-119 · Memory buffer bounds
Refscoresecurity.comnvd.nist.gov
Federal remediation due 2022-09-29
CVE-2021-30983
2022-06-27
Apple iOS and iPadOS Buffer Overflow Vulnerability
Apple

Apple iOS and iPadOS contain a buffer overflow vulnerability that could allow an application to execute code with kernel privileges.

CWE-119 · Memory buffer bounds
Refsnvd.nist.gov
Federal remediation due 2022-07-18
CVE-2018-4344
2022-06-27
Apple Multiple Products Memory Corruption Vulnerability
Apple

Apple iOS, macOS, tvOS, and watchOS contain a memory corruption vulnerability which can allow for code execution.

CWE-119 · Memory buffer bounds
Refsnvd.nist.gov
Federal remediation due 2022-07-18
CVE-2017-6862
2022-06-08
NETGEAR Multiple Devices Buffer Overflow Vulnerability
NETGEAR

Multiple NETGEAR devices contain a buffer overflow vulnerability that allows for authentication bypass and remote code execution.

CWE-119 · Memory buffer bounds
Refsnvd.nist.gov
Federal remediation due 2022-06-22
CVE-2016-1646
2022-06-08
Google Chromium V8 Out-of-Bounds Read Vulnerability
Google

Google Chromium V8 Engine contains an out-of-bounds read vulnerability that allows a remote attacker to cause a denial of service or possibly have another unspecified impact via crafted JavaScript code. This vulnerability could affect multiple web browsers that utilize Chromium, including, but not limited to, Google Chrome, Microsoft Edge, and Opera.

CWE-119 · Memory buffer bounds
Refsnvd.nist.gov
Federal remediation due 2022-06-22
CVE-2013-1331
2022-06-08
Microsoft Office Buffer Overflow Vulnerability
Microsoft

Microsoft Office contains a buffer overflow vulnerability that allows remote attackers to execute code via crafted PNG data in an Office document.

CWE-119 · Memory buffer bounds
Refsnvd.nist.gov
Federal remediation due 2022-06-22
CVE-2012-1889
2022-06-08
Microsoft XML Core Services Memory Corruption Vulnerability
Microsoft

Microsoft XML Core Services contains a memory corruption vulnerability which could allow for remote code execution.

CWE-119 · Memory buffer bounds
Refsnvd.nist.gov
Federal remediation due 2022-06-22
CVE-2010-2883
2022-06-08
Adobe Acrobat and Reader Stack-Based Buffer Overflow Vulnerability
Adobe

Adobe Acrobat and Reader contain a stack-based buffer overflow vulnerability that allows remote attackers to execute code or cause denial-of-service (DoS).

CWE-119 · Memory buffer bounds
Refsnvd.nist.gov
Federal remediation due 2022-06-22
CVE-2010-2572
2022-06-08
Microsoft PowerPoint Buffer Overflow Vulnerability
Microsoft

Microsoft PowerPoint contains a buffer overflow vulnerability that alllows for remote code execution.

CWE-119 · Memory buffer bounds
Refsnvd.nist.gov
Federal remediation due 2022-06-22
CVE-2009-3953
2022-06-08
Adobe Acrobat and Reader Universal 3D Remote Code Execution Vulnerability
Adobe

Adobe Acrobat and Reader contains an array boundary issue in Universal 3D (U3D) support that could lead to remote code execution.

CWE-119 · Memory buffer bounds
Refsnvd.nist.gov
Federal remediation due 2022-06-22
CVE-2009-0563
2022-06-08
Microsoft Office Buffer Overflow Vulnerability
Microsoft

Microsoft Office contains a buffer overflow vulnerability that allows remote attackers to execute code via a Word document with a crafted tag containing an invalid length field.

CWE-119 · Memory buffer bounds
Refsnvd.nist.gov
Federal remediation due 2022-06-22
CVE-2007-5659
2022-06-08
Adobe Acrobat and Reader Buffer Overflow Vulnerability
Adobe

Adobe Acrobat and Reader contain a buffer overflow vulnerability that allows remote attackers to execute code via a PDF file with long arguments to unspecified JavaScript methods.

CWE-119 · Memory buffer bounds
Refsnvd.nist.gov
Federal remediation due 2022-06-22
CVE-2015-2425
2022-05-25
Microsoft Internet Explorer Memory Corruption Vulnerability
Microsoft

Microsoft Internet Explorer contains a memory corruption vulnerability that allows remote attackers to execute code or cause denial-of-service (DoS).

CWE-119 · Memory buffer bounds
Refsnvd.nist.gov
Federal remediation due 2022-06-15
CVE-2015-2360
2022-05-25
Microsoft Win32k Privilege Escalation Vulnerability
Microsoft

Win32k.sys in the kernel-mode drivers in Microsoft Windows allows local users to gain privileges or cause denial-of-service (DoS).

CWE-119 · Memory buffer bounds
Refsnvd.nist.gov
Federal remediation due 2022-06-15
CVE-2014-8439
2022-05-25
Adobe Flash Player Dereferenced Pointer Vulnerability
Adobe

Adobe Flash Player has a vulnerability in the way it handles a dereferenced memory pointer which could lead to code execution.

CWE-119 · Memory buffer bounds
Refsnvd.nist.gov
Federal remediation due 2022-06-15
CVE-2017-0149
2022-05-24
Microsoft Internet Explorer Memory Corruption Vulnerability
Microsoft

Microsoft Internet Explorer contains a memory corruption vulnerability that allows remote attackers to execute code or cause a denial-of-service (DoS) via a crafted website.

CWE-119 · Memory buffer bounds
Refsnvd.nist.gov
Federal remediation due 2022-06-14
CVE-2017-0005
2022-05-24
Microsoft Windows Graphics Device Interface (GDI) Privilege Escalation Vulnerability
Microsoft

The Graphics Device Interface (GDI) in Microsoft Windows allows local users to gain privileges via a crafted application.

CWE-119 · Memory buffer bounds
Refsnvd.nist.gov
Federal remediation due 2022-06-14
CVE-2016-6366
2022-05-24
Cisco Adaptive Security Appliance (ASA) SNMP Buffer Overflow Vulnerability
Cisco

A buffer overflow vulnerability in the Simple Network Management Protocol (SNMP) code of Cisco ASA software could allow an attacker to cause a reload of the affected system or to remotely execute code.

CWE-119 · Memory buffer bounds
Refsnvd.nist.gov
Federal remediation due 2022-06-14
CVE-2016-4657
2022-05-24
Apple iOS Webkit Memory Corruption Vulnerability
Apple

Apple iOS WebKit contains a memory corruption vulnerability that allows attackers to execute remote code or cause a denial-of-service (DoS) via a crafted web site. This vulnerability could impact HTML parsers that use WebKit, including but not limited to Apple Safari and non-Apple products which rely on WebKit for HTML processing.

CWE-119 · Memory buffer bounds
Refsnvd.nist.gov
Federal remediation due 2022-06-14
CVE-2019-8720
2022-05-23
WebKitGTK Memory Corruption Vulnerability
WebKitGTK

WebKitGTK contains a memory corruption vulnerability which can allow an attacker to perform remote code execution.

CWE-119 · Memory buffer bounds
Refsnvd.nist.gov
Federal remediation due 2022-06-13
CVE-2016-4523
2022-04-15
Trihedral VTScada (formerly VTS) Denial-of-Service Vulnerability
Trihedral

The WAP interface in Trihedral VTScada (formerly VTS) allows remote attackers to cause a denial-of-service (DoS).

CWE-119 · Memory buffer bounds
Refsnvd.nist.gov
Federal remediation due 2022-05-06
CVE-2015-3113
2022-04-13
Adobe Flash Player Heap-Based Buffer Overflow Vulnerability
Adobe

Heap-based buffer overflow vulnerability in Adobe Flash Player allows remote attackers to execute code.

CWE-119 · Memory buffer bounds
Refsnvd.nist.gov
Federal remediation due 2022-05-04
CVE-2015-2502
2022-04-13
Microsoft Internet Explorer Memory Corruption Vulnerability
Microsoft

Microsoft Internet Explorer contains a memory corruption vulnerability that allows an attacker to execute code or cause a denial-of-service (DoS).

CWE-119 · Memory buffer bounds
Refsnvd.nist.gov
Federal remediation due 2022-05-04
CVE-2016-7201
2022-03-28
Microsoft Edge Memory Corruption Vulnerability
Microsoft

The Chakra JavaScript scripting engine in Microsoft Edge allows remote attackers to execute remote code or cause a denial of service (memory corruption) via a crafted web site.

CWE-119 · Memory buffer bounds
Refsnvd.nist.gov
Federal remediation due 2022-04-18
CVE-2016-7200
2022-03-28
Microsoft Edge Memory Corruption Vulnerability
Microsoft

The Chakra JavaScript scripting engine in Microsoft Edge allows remote attackers to execute remote code or cause a denial of service (memory corruption) via a crafted web site.

CWE-119 · Memory buffer bounds
Refsnvd.nist.gov
Federal remediation due 2022-04-18
CVE-2016-0189
2022-03-28
Microsoft Internet Explorer Memory Corruption VulnerabilityRansomware
Microsoft

The Microsoft JScript nd VBScript engines, as used in Internet Explorer and other products, allow attackers to execute remote code or cause a denial of service (memory corruption) via a crafted web site.

CWE-119 · Memory buffer bounds
Refsnvd.nist.gov
Federal remediation due 2022-04-18
CVE-2015-2426
2022-03-28
Microsoft Windows Adobe Type Manager Library Remote Code Execution Vulnerability
Microsoft

A remote code execution vulnerability exists in Microsoft Windows when the Windows Adobe Type Manager Library improperly handles specially crafted OpenType fonts.

CWE-119 · Memory buffer bounds
Refsnvd.nist.gov
Federal remediation due 2022-04-18
CVE-2015-2419
2022-03-28
Microsoft Internet Explorer Memory Corruption Vulnerability
Microsoft

JScript in Microsoft Internet Explorer allows remote attackers to execute remote code or cause a denial of service (memory corruption) via a crafted web site.

CWE-119 · Memory buffer bounds
Refsnvd.nist.gov
Federal remediation due 2022-04-18
CVE-2013-3660
2022-03-28
Microsoft Win32k Privilege Escalation Vulnerability
Microsoft

The EPATHOBJ::pprFlattenRec function in win32k.sys in the kernel-mode drivers in Microsoft does not properly initialize a pointer for the next object in a certain list, which allows local users to gain privileges.

CWE-119 · Memory buffer bounds
Refsnvd.nist.gov
Federal remediation due 2022-04-18
CVE-2013-1690
2022-03-28
Mozilla Firefox and Thunderbird Denial-of-Service Vulnerability
Mozilla

Mozilla Firefox and Thunderbird do not properly handle onreadystatechange events in conjunction with page reloading, which allows remote attackers to cause a denial-of-service (DoS) or possibly execute malicious code via a crafted web site.

CWE-119 · Memory buffer bounds
Refsnvd.nist.gov
Federal remediation due 2022-04-18
CVE-2012-2034
2022-03-28
Adobe Flash Player Memory Corruption Vulnerability
Adobe

Adobe Flash Player contains a memory corruption vulnerability that allows for remote code execution or denial-of-service (DoS).

CWE-119 · Memory buffer bounds
Refsnvd.nist.gov
Federal remediation due 2022-04-18
CVE-2010-4398
2022-03-28
Microsoft Windows Kernel Stack-Based Buffer Overflow Vulnerability
Microsoft

Stack-based buffer overflow in the RtlQueryRegistryValues function in win32k.sys in Microsoft Windows allows local users to gain privileges, and bypass the User Account Control (UAC) feature.

CWE-119 · Memory buffer bounds
Refsnvd.nist.gov
Federal remediation due 2022-04-21
CVE-2016-10174
2022-03-25
NETGEAR WNR2000v5 Router Buffer Overflow Vulnerability
NETGEAR

The NETGEAR WNR2000v5 router contains a buffer overflow which can be exploited to achieve remote code execution.

CWE-119 · Memory buffer bounds
Refsnvd.nist.gov
Federal remediation due 2022-04-15
CVE-2014-6332
2022-03-25
Microsoft Windows Object Linking & Embedding (OLE) Automation Array Remote Code Execution Vulnerability
Microsoft

OleAut32.dll in OLE in Microsoft Windows allows remote attackers to remotely execute code via a crafted web site.

CWE-119 · Memory buffer bounds
Refsnvd.nist.gov
Federal remediation due 2022-04-15
CVE-2010-4344
2022-03-25
Exim Heap-Based Buffer Overflow Vulnerability
Exim

Heap-based buffer overflow in the string_vformat function in string.c in Exim before 4.70 allows remote attackers to execute arbitrary code via an SMTP session.

CWE-119 · Memory buffer bounds
Refsnvd.nist.gov
Federal remediation due 2022-04-15
CVE-2017-0101
2022-03-15
Microsoft Windows Transaction Manager Privilege Escalation VulnerabilityRansomware
Microsoft

A privilege escalation vulnerability exists when the Windows Transaction Manager improperly handles objects in memory.

CWE-119 · Memory buffer bounds
Refsnvd.nist.gov
Federal remediation due 2022-04-05
CVE-2015-2546
2022-03-15
Microsoft Win32k Memory Corruption VulnerabilityRansomware
Microsoft

The kernel-mode driver in Microsoft Windows OS and Server allows local users to gain privileges via a crafted application.

CWE-119 · Memory buffer bounds
Refsnvd.nist.gov
Federal remediation due 2022-04-05
Prev1 / 2Next