CWE-131

CWE-131 · 4 records · 1 with a public proof-of-concept

Records the NVD classes under CWE-131, highest CVSS first.

  1. HIGH 8.1CVE-2026-13466

    Incorrect calculation of buffer size vulnerability in Altera Trusted Firmware on HPS allows Overflow Buffers. This issue affects Trusted Firmware: through socfpga_v2.14.0.

    AI risk analysis on Exploit-DB.ai →

  2. HIGH 7.5CVE-2026-88830

    A unit confusion in BusyBox TLS Montgomery reduction buffer allocation causes a pre-authentication heap buffer overflow when processing a crafted ClientKeyExchange message.

    AI risk analysis on Exploit-DB.ai →

  3. UNSCOREDCVE-2026-102729public PoC

    `gx_binres_theme_load()` sizes its theme buffer for the theme it was asked for, and allocates it even when the resource holds no theme with that id. A theme id at or past the theme count declared by the resource gets a buffer of zero bytes. The load pass then …

    AI risk analysis on Exploit-DB.ai →

  4. UNSCOREDCVE-2026-95509

    Strings optimized for Latin-1 displaying Latin-1 characters cause incorrect String.arg() formatting by an incorrect buffer size calculation, causing out-of-bounds reading.

    AI risk analysis on Exploit-DB.ai →