Vulnerabilities > Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')

DATE CVE VULNERABILITY TITLE RISK
2020-08-13 CVE-2020-16298 Classic Buffer Overflow vulnerability in multiple products
A buffer overflow vulnerability in mj_color_correct() in contrib/japanese/gdevmjc.c of Artifex Software GhostScript v9.50 allows a remote attacker to cause a denial of service via a crafted PDF file.
local
low complexity
artifex debian canonical CWE-120
5.5
2020-08-13 CVE-2020-16294 Classic Buffer Overflow vulnerability in multiple products
A buffer overflow vulnerability in epsc_print_page() in devices/gdevepsc.c of Artifex Software GhostScript v9.50 allows a remote attacker to cause a denial of service via a crafted PDF file.
local
low complexity
artifex debian canonical CWE-120
5.5
2020-08-13 CVE-2020-16288 Classic Buffer Overflow vulnerability in multiple products
A buffer overflow vulnerability in pj_common_print_page() in devices/gdevpjet.c of Artifex Software GhostScript v9.50 allows a remote attacker to cause a denial of service via a crafted PDF file.
local
low complexity
artifex debian canonical CWE-120
5.5
2020-08-12 CVE-2020-8905 Classic Buffer Overflow vulnerability in Google Asylo
A buffer length validation vulnerability in Asylo versions prior to 0.6.0 allows an attacker to read data they should not have access to.
network
low complexity
google CWE-120
6.5
2020-08-12 CVE-2020-7374 Classic Buffer Overflow vulnerability in Documalis Free PDF Editor and Free PDF Scanner
Documalis Free PDF Editor version 5.7.2.26 and Documalis Free PDF Scanner version 5.7.2.122 do not appropriately validate the contents of JPEG images contained within a PDF.
local
low complexity
documalis CWE-120
7.8
2020-08-10 CVE-2020-9527 Classic Buffer Overflow vulnerability in Hichip Shenzhen Hichip Vision Technology Firmware 11.4.8.1.120170926
Firmware developed by Shenzhen Hichip Vision Technology (V6 through V20, after 2018-08-09 through 2020), as used by many different vendors in millions of Internet of Things devices, suffers from buffer overflow vulnerability that allows unauthenticated remote attackers to execute arbitrary code via the peer-to-peer (P2P) service.
network
low complexity
hichip CWE-120
critical
9.8
2020-08-07 CVE-2020-15479 Classic Buffer Overflow vulnerability in Passmark Burnintest, Osforensics and Performancetest
An issue was discovered in PassMark BurnInTest through 9.1, OSForensics through 7.1, and PerformanceTest through 10.
local
low complexity
passmark CWE-120
8.8
2020-08-07 CVE-2020-11984 Classic Buffer Overflow vulnerability in multiple products
Apache HTTP server 2.4.32 to 2.4.44 mod_proxy_uwsgi info disclosure and possible RCE
network
low complexity
apache netapp canonical debian fedoraproject opensuse oracle CWE-120
critical
9.8
2020-08-04 CVE-2020-15956 Classic Buffer Overflow vulnerability in Acti NVR 2.3.04.07/3.0.12.42
ActiveMediaServer.exe in ACTi NVR3 Standard Server 3.0.12.42 allows remote unauthenticated attackers to trigger a buffer overflow and application termination via a malformed payload.
network
low complexity
acti CWE-120
7.5
2020-07-30 CVE-2020-10713 Classic Buffer Overflow vulnerability in multiple products
A flaw was found in grub2, prior to version 2.06.
local
low complexity
gnu debian opensuse vmware CWE-120
8.2