The product performs pointer arithmetic on a valid pointer, but it uses an offset that can point outside of the intended range of valid memory locations for the resulting pointer.
Volume of CVEs assigned to CWE-823 and their average CVSS base score over time.
Top CVEs that have been assigned this CWE. A single CVE can have multiple CWE assignments, though many have just one.
100 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2023-33106HIGH Memory corruption while submitting a large list of sync points in an AUX command to the IOCTL_KGSL_GPU_AUX_COMMAND. | Dec 5, 2023 | 7.8 | 55 | YES | NO |
CVE-2026-46244CRITICAL In the Linux kernel, the following vulnerability has been resolved:
netfilter: nft_inner: Fix IPv6 inner_thoff desync
In nft_inner_parse_l2l3(), when processing inner IPv6 packet | Jun 3, 2026 | 9.1 | 35 | NO | NO |
CVE-2016-2161HIGH In Apache HTTP Server versions 2.4.0 to 2.4.23, malicious input to mod_auth_digest can cause the server to crash, and each instance continues to crash even for subsequently valid r | Jul 27, 2017 | 7.5 | 35 | NO | NO |
CVE-2026-12290HIGH Memory safety bug fixed in Firefox 152. This vulnerability was fixed in Firefox 152, Firefox ESR 140.12, Firefox ESR 115.37, Thunderbird 152, and Thunderbird 140.12. | Jun 16, 2026 | 8.1 | 34 | NO | NO |
CVE-2026-41907HIGH uuid is for the creation of RFC9562 (formerly RFC4122) UUIDs. Prior to 14.0.0, v3, v5, and v6 accept external output buffers but do not reject out-of-range writes (small buf or lar | Apr 24, 2026 | 7.5 | 34 | NO | NO |
CVE-2026-28764HIGH MediaArea MediaInfoLib LXF element parsing heap-based buffer overflow vulnerability | May 21, 2026 | 7.8 | 33 | NO | NO |
CVE-2026-21734HIGH A web page that contains unusual GPU shader code is loaded into the GPU compiler process and can trigger a write out-of-bounds write crash in the GPU shader compiler library. On ce | Jun 26, 2026 | 7.7 | 32 | NO | NO |
CVE-2026-42946HIGH A vulnerability exists in the ngx_http_scgi_module and ngx_http_uwsgi_module modules that may result in excessive memory allocation or an over-read of data. When scgi_pass or uwsgi | May 13, 2026 | 7.4 | 31 | NO | NO |
CVE-2026-21732CRITICAL A web page that contains unusual GPU shader code is loaded into the GPU compiler process and can trigger a write out-of-bounds write crash in the GPU shader compiler library. On ce | Mar 20, 2026 | 9.6 | 30 | NO | NO |
CVE-2023-24855CRITICAL Memory corruption in Modem while processing security related configuration before AS Security Exchange. | Oct 3, 2023 | 9.8 | 30 | NO | NO |
Exploit activity across CVEs assigned to this CWE, including CVEs that carry other CWE assignments.
Social posts that mention CVE IDs assigned to this CWE. This is assigned-CVE activity, not mentions of the CWE label itself.
Media articles that mention CVE IDs assigned to this CWE. This is assigned-CVE coverage, not mentions of the CWE label itself.