Vulnerabilities > Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')

DATE CVE VULNERABILITY TITLE RISK
2019-03-11 CVE-2019-4016 Classic Buffer Overflow vulnerability in IBM DB2
IBM DB2 for Linux, UNIX and Windows (includes DB2 Connect Server) 9.7, 10.1, 10.5, and 11.1 is vulnerable to a buffer overflow, which could allow an authenticated local attacker to execute arbitrary code on the system as root.
local
low complexity
ibm CWE-120
7.8
2019-03-11 CVE-2019-4015 Classic Buffer Overflow vulnerability in IBM DB2
IBM DB2 for Linux, UNIX and Windows (includes DB2 Connect Server) 9.7, 10.1, 10.5, and 11.1 is vulnerable to a buffer overflow, which could allow an authenticated local attacker to execute arbitrary code on the system as root.
local
low complexity
ibm CWE-120
7.8
2019-03-05 CVE-2019-6557 Classic Buffer Overflow vulnerability in Moxa products
Several buffer overflow vulnerabilities have been identified in Moxa IKS and EDS, which may allow remote code execution.
network
low complexity
moxa CWE-120
critical
9.8
2018-11-02 CVE-2018-3899 Classic Buffer Overflow vulnerability in Yitechnology YI Home Camera Firmware 1.8.7.0D
An exploitable code execution vulnerability exists in the QR code scanning functionality of Yi Home Camera 27US 1.8.7.0D.
network
high complexity
yitechnology CWE-120
7.5
2018-11-02 CVE-2018-3898 Classic Buffer Overflow vulnerability in Yitechnology YI Home Camera Firmware 1.8.7.0D
An exploitable code execution vulnerability exists in the QR code scanning functionality of Yi Home Camera 27US 1.8.7.0D.
network
high complexity
yitechnology CWE-120
7.5
2018-11-02 CVE-2018-3892 Classic Buffer Overflow vulnerability in Yitechnology YI Home Camera Firmware 1.8.7.0D
An exploitable firmware downgrade vulnerability exists in the time syncing functionality of Yi Home Camera 27US 1.8.7.0D.
network
high complexity
yitechnology CWE-120
8.1
2018-10-31 CVE-2018-14652 Classic Buffer Overflow vulnerability in multiple products
The Gluster file system through versions 3.12 and 4.1.4 is vulnerable to a buffer overflow in the 'features/index' translator via the code handling the 'GF_XATTR_CLRLK_CMD' xattr in the 'pl_getxattr' function.
network
low complexity
redhat debian CWE-120
6.5
2018-10-26 CVE-2018-15688 Classic Buffer Overflow vulnerability in multiple products
A buffer overflow vulnerability in the dhcp6 client of systemd allows a malicious dhcp6 server to overwrite heap memory in systemd-networkd.
5.8
2018-10-01 CVE-2018-14788 Classic Buffer Overflow vulnerability in Fujielectric Alpha5 Smart Loader Firmware
Fuji Electric Alpha5 Smart Loader Versions 3.7 and prior.
network
low complexity
fujielectric CWE-120
5.0
2018-09-21 CVE-2018-3894 Classic Buffer Overflow vulnerability in Samsung Sth-Eth-250 Firmware 0.20.17
An exploitable buffer overflow vulnerability exists in the /cameras/XXXX/clips handler of video-core's HTTP server of Samsung SmartThings Hub STH-ETH-250-Firmware version 0.20.17.
network
low complexity
samsung CWE-120
8.8