Out-of-bounds Write

CWE-787 · 4 records · 4 with a public proof-of-concept

Records the NVD classes as Out-of-bounds Write (CWE-787), highest CVSS first.

  1. CRITICAL 9.8CVE-2026-71254public PoC

    nanoMODBUS through v1.23.0 contains an out-of-bounds write in the Modbus server-side handle_read_file_record function (FC 0x14, Read File Record) in nanomodbus.c. The function validates that the total request size does not exceed 245 bytes and that each sub-re

    AI risk analysis on Exploit-DB.ai →

  2. CRITICAL 9.1CVE-2026-71263public PoC

    The LINUXTCP port of FreeModbus contains an off-by-one bounds check in xMBPortTCPPool (demo/LINUXTCP/port/porttcp.c). The check uses a strict greater-than comparison instead of greater-than-or-equal against the 263-byte MB_TCP_BUF_SIZE limit.

    AI risk analysis on Exploit-DB.ai →

  3. HIGH 8.6CVE-2026-71255public PoC

    nanoMODBUS through v1.23.0 contains an out-of-bounds write in the Modbus client-side recv_read_device_identification_res function (FC 0x2B/MEI 0x0E, Read Device Identification) in nanomodbus.c. The server-supplied object_length field (0-246) is validated only

    AI risk analysis on Exploit-DB.ai →

  4. HIGH 8.2CVE-2026-24253public PoC

    NVIDIA Dynamo for Linux contains a vulnerability where an attacker could cause an out-of-bounds write. A successful exploit of this vulnerability might lead to denial of service and data tampering.

    dynamo · linux kernel

    AI risk analysis on Exploit-DB.ai →