Vulnerabilities > Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')

DATE CVE VULNERABILITY TITLE RISK
2020-09-03 CVE-2020-25125 Classic Buffer Overflow vulnerability in multiple products
GnuPG 2.2.21 and 2.2.22 (and Gpg4win 3.1.12) has an array overflow, leading to a crash or possibly unspecified other impact, when a victim imports an attacker's OpenPGP key, and this key has AEAD preferences.
6.8
2020-08-24 CVE-2018-1985 Classic Buffer Overflow vulnerability in IBM Security Rapport 3.6.1908.22/3.6.1908.26
IBM Trusteer Rapport/Apex 3.6.1908.22 contains an unused legacy driver which could allow a user with administrator privileges to cause a buffer overflow that would result in a kernel panic.
local
low complexity
ibm CWE-120
4.9
2020-08-21 CVE-2020-9063 Classic Buffer Overflow vulnerability in NCR Aptra XFS
NCR SelfServ ATMs running APTRA XFS 05.01.00 or earlier do not authenticate or protect the integrity of USB HID communications between the currency dispenser and the host computer, permitting an attacker with physical access to internal ATM components the ability to inject a malicious payload and execute arbitrary code with SYSTEM privileges on the host computer by causing a buffer overflow on the host.
local
low complexity
ncr CWE-120
7.2
2020-08-21 CVE-2019-11859 Classic Buffer Overflow vulnerability in Sierrawireless Aleos
A buffer overflow exists in the SMS handler API of ALEOS before 4.13.0, 4.9.5, 4.9.4 that may allow code execution as root.
network
low complexity
sierrawireless CWE-120
critical
9.0
2020-08-21 CVE-2019-11858 Classic Buffer Overflow vulnerability in Sierrawireless Aleos
Multiple buffer overflow vulnerabilities exist in the AceManager Web API of ALEOS before 4.13.0, 4.9.5, and 4.4.9.
network
low complexity
sierrawireless CWE-120
6.5
2020-08-20 CVE-2020-15532 Classic Buffer Overflow vulnerability in Silabs Bluetooth LOW Energy Software Development KIT 2.13.0.0/2.13.1.0/2.13.2.0
Silicon Labs Bluetooth Low Energy SDK before 2.13.3 has a buffer overflow via packet data.
low complexity
silabs CWE-120
3.3
2020-08-20 CVE-2020-15531 Classic Buffer Overflow vulnerability in Silabs Bluetooth LOW Energy Software Development KIT 2.13.0.0/2.13.1.0/2.13.2.0
Silicon Labs Bluetooth Low Energy SDK before 2.13.3 has a buffer overflow via packet data.
low complexity
silabs CWE-120
5.8
2020-08-19 CVE-2020-9704 Classic Buffer Overflow vulnerability in Adobe Acrobat DC
Adobe Acrobat and Reader versions 2020.009.20074 and earlier, 2020.001.30002, 2017.011.30171 and earlier, and 2015.006.30523 and earlier have a buffer error vulnerability.
network
adobe CWE-120
critical
9.3
2020-08-19 CVE-2020-9701 Classic Buffer Overflow vulnerability in Adobe Acrobat DC
Adobe Acrobat and Reader versions 2020.009.20074 and earlier, 2020.001.30002, 2017.011.30171 and earlier, and 2015.006.30523 and earlier have a buffer error vulnerability.
network
adobe CWE-120
critical
9.3
2020-08-19 CVE-2020-9700 Classic Buffer Overflow vulnerability in Adobe Acrobat DC
Adobe Acrobat and Reader versions 2020.009.20074 and earlier, 2020.001.30002, 2017.011.30171 and earlier, and 2015.006.30523 and earlier have a buffer error vulnerability.
network
adobe CWE-120
critical
9.3