Vulnerabilities > Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')

DATE CVE VULNERABILITY TITLE RISK
2021-04-14 CVE-2021-27705 Classic Buffer Overflow vulnerability in Tenda G1 Firmware and G3 Firmware
Buffer Overflow in Tenda G1 and G3 routers with firmware v15.11.0.17(9502)_CN allows remote attackers to execute arbitrary code via a crafted action/"qosIndex "request.
network
low complexity
tenda CWE-120
critical
9.8
2021-04-14 CVE-2021-26827 Classic Buffer Overflow vulnerability in Tp-Link Tl-Wr2041+ Firmware
Buffer Overflow in TP-Link WR2041 v1 firmware for the TL-WR2041+ router allows remote attackers to cause a Denial-of-Service (DoS) by sending an HTTP request with a very long "ssid" parameter to the "/userRpm/popupSiteSurveyRpm.html" webpage, which crashes the router.
network
low complexity
tp-link CWE-120
7.5
2021-04-14 CVE-2021-26805 Classic Buffer Overflow vulnerability in Tsmuxer Project Tsmuxer 2.6.16
Buffer Overflow in tsMuxer 2.6.16 allows attackers to cause a Denial of Service (DoS) by running the application with a malicious WAV file.
local
low complexity
tsmuxer-project CWE-120
5.5
2021-04-14 CVE-2020-36120 Classic Buffer Overflow vulnerability in Libsixel Project Libsixel 1.8.6
Buffer Overflow in the "sixel_encoder_encode_bytes" function of Libsixel v1.8.6 allows attackers to cause a Denial of Service (DoS).
network
low complexity
libsixel-project CWE-120
7.5
2021-04-12 CVE-2021-29302 Classic Buffer Overflow vulnerability in Tp-Link Tl-Wr802N Firmware
TP-Link TL-WR802N(US), Archer_C50v5_US v4_200 <= 2020.06 contains a buffer overflow vulnerability in the httpd process in the body message.
network
high complexity
tp-link CWE-120
8.1
2021-04-10 CVE-2021-30481 Classic Buffer Overflow vulnerability in Valvesoftware Steam Client
Valve Steam through 2021-04-10, when a Source engine game is installed, allows remote authenticated users to execute arbitrary code because of a buffer overflow that occurs for a Steam invite after one click.
network
low complexity
valvesoftware CWE-120
critical
9.0
2021-04-09 CVE-2021-25328 Classic Buffer Overflow vulnerability in Skyworthdigital Rn510 Firmware 3.1.0.4
Skyworth Digital Technology RN510 V.3.1.0.4 RN510 V.3.1.0.4 contains a buffer overflow vulnerability in /cgi-bin/app-staticIP.asp.
network
low complexity
skyworthdigital CWE-120
8.8
2021-04-07 CVE-2020-36316 Classic Buffer Overflow vulnerability in Relic Project Relic
In RELIC before 2021-04-03, there is a buffer overflow in PKCS#1 v1.5 signature verification because garbage bytes can be present.
local
low complexity
relic-project CWE-120
5.5
2021-04-07 CVE-2021-30123 Classic Buffer Overflow vulnerability in Ffmpeg 4.4
FFmpeg <=4.3 contains a buffer overflow vulnerability in libavcodec through a crafted file that may lead to remote code execution.
network
low complexity
ffmpeg CWE-120
8.8
2021-04-07 CVE-2021-30184 Classic Buffer Overflow vulnerability in multiple products
GNU Chess 6.2.7 allows attackers to execute arbitrary code via crafted PGN (Portable Game Notation) data.
local
low complexity
gnu fedoraproject CWE-120
7.8