CWE-195

CWE-195 · 4 records · 4 with a public proof-of-concept

Records the NVD classes under CWE-195, highest CVSS first.

  1. HIGH 8.2CVE-2026-74221public PoC

    U-Boot before 2026.10-rc5 contains a buffer overflow in nfs_readlink_reply() function in net/nfs-common.c when processing NFS server responses. A malicious NFS server can send crafted READLINK replies with negative or oversized symlink length values to corrupt…

    AI risk analysis on Exploit-DB.ai →

  2. HIGH 8.2CVE-2026-74220public PoC

    U-Boot before 2026.10-rc5 contains a buffer overflow in nfs_read_reply() function in net/nfs-common.c that allows attackers to corrupt memory by supplying crafted NFS READ reply lengths. A malicious NFS server can exploit signed integer handling to bypass leng…

    AI risk analysis on Exploit-DB.ai →

  3. MEDIUM 6.5CVE-2026-102639public PoC

    MobilityDB version 1.3.0 and earlier contains an out-of-bounds read vulnerability in the MEOS binary and library WKB deserialization logic that allows unprivileged database users to crash the PostgreSQL backend process by supplying a crafted WKB payload with a…

    AI risk analysis on Exploit-DB.ai →

  4. UNSCOREDCVE-2026-77406public PoC

    RabbitMQ amqp091-go is a Go AMQP 0.9.1 client. Prior to 1.13.0, Channel.Qos in channel.go accepts negative prefetchCount and prefetchSize integers and casts them directly to uint16 and uint32 fields in the basic.qos method because validateQos is absent. Values…

    AI risk analysis on Exploit-DB.ai →