CWE-466: Return of Pointer Value Outside of Expected Range
A function can return a pointer to memory that is outside of the buffer that the pointer is expected to reference.
8 tracked CVEs are classified under this weakness.
Highest-risk vulnerabilities
- CVE-2019-25599 — Backup Key Recovery 2.2.4 Denial of Service via Name Field
- CVE-2019-25586 — Deluge 1.3.15 Denial of Service via URL Field
- CVE-2019-25548 — BlueStacks 4.80.0.1060 Denial of Service via Search Field
- CVE-2018-25234 — SmartFTP Client 9.0.2615.0 Denial of Service via Host Field
- CVE-2018-25227 — Valentina Studio 9.0.4 Denial of Service via Host Parameter
- CVE-2024-33602 — nscd: netgroup cache assumes NSS callback uses in-buffer strings
- CVE-2026-57025 — Junos OS and Junos OS Evolved: EX Series, QFX Series, MX Series: A specific 'show l2-learning/ethernet-switching' command causes l2ald crash
Recently published
- CVE-2026-57025 — Junos OS and Junos OS Evolved: EX Series, QFX Series, MX Series: A specific 'show l2-learning/ethernet-switching' command causes l2ald crash
- CVE-2018-25234 — SmartFTP Client 9.0.2615.0 Denial of Service via Host Field
- CVE-2018-25227 — Valentina Studio 9.0.4 Denial of Service via Host Parameter
- CVE-2019-25599 — Backup Key Recovery 2.2.4 Denial of Service via Name Field
- CVE-2019-25586 — Deluge 1.3.15 Denial of Service via URL Field
- CVE-2019-25548 — BlueStacks 4.80.0.1060 Denial of Service via Search Field
- CVE-2024-33602 — nscd: netgroup cache assumes NSS callback uses in-buffer strings