Vulnerabilities > Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')

DATE CVE VULNERABILITY TITLE RISK
2024-04-01 CVE-2024-21463 Classic Buffer Overflow vulnerability in Qualcomm products
Memory corruption while processing Codec2 during v13k decoder pitch synthesis.
network
low complexity
qualcomm CWE-120
critical
9.8
2024-03-18 CVE-2023-52614 Classic Buffer Overflow vulnerability in Linux Kernel
In the Linux kernel, the following vulnerability has been resolved: PM / devfreq: Fix buffer overflow in trans_stat_show Fix buffer overflow in trans_stat_show(). Convert simple snprintf to the more secure scnprintf with size of PAGE_SIZE. Add condition checking if we are exceeding PAGE_SIZE and exit early from loop.
local
low complexity
linux CWE-120
7.8
2024-03-16 CVE-2024-28639 Classic Buffer Overflow vulnerability in Totolink A7000R Firmware and X5000R Firmware
Buffer Overflow vulnerability in TOTOLink X5000R V9.1.0u.6118-B20201102 and A7000R V9.1.0u.6115-B20201022, allow remote attackers to execute arbitrary code and cause a denial of service (DoS) via the IP field.
network
low complexity
totolink CWE-120
critical
9.8
2024-03-08 CVE-2024-23286 Classic Buffer Overflow vulnerability in Apple products
A buffer overflow issue was addressed with improved memory handling.
local
low complexity
apple CWE-120
7.8
2024-03-06 CVE-2024-25817 Classic Buffer Overflow vulnerability in Eza.Rock EZA
Buffer Overflow vulnerability in eza before version 0.18.2, allows local attackers to execute arbitrary code via the .git/HEAD, .git/refs, and .git/objects components.
local
low complexity
eza-rock CWE-120
7.8
2024-03-04 CVE-2024-0156 Classic Buffer Overflow vulnerability in Dell Digital Delivery
Dell Digital Delivery, versions prior to 5.2.0.0, contain a Buffer Overflow Vulnerability.
local
low complexity
dell CWE-120
7.8
2024-02-29 CVE-2024-20267 Classic Buffer Overflow vulnerability in Cisco Nx-Os
A vulnerability with the handling of MPLS traffic for Cisco NX-OS Software could allow an unauthenticated, remote attacker to cause the netstack process to unexpectedly restart, which could cause the device to stop processing network traffic or to reload.
network
low complexity
cisco CWE-120
8.6
2024-02-28 CVE-2021-47040 Classic Buffer Overflow vulnerability in Linux Kernel
In the Linux kernel, the following vulnerability has been resolved: io_uring: fix overflows checks in provide buffers Colin reported before possible overflow and sign extension problems in io_provide_buffers_prep().
local
low complexity
linux CWE-120
7.8
2024-02-19 CVE-2024-26134 Classic Buffer Overflow vulnerability in multiple products
cbor2 provides encoding and decoding for the Concise Binary Object Representation (CBOR) (RFC 8949) serialization format.
network
low complexity
agronholm fedoraproject CWE-120
7.5
2024-02-06 CVE-2023-33068 Classic Buffer Overflow vulnerability in Qualcomm products
Memory corruption in Audio while processing IIR config data from AFE calibration block.
local
low complexity
qualcomm CWE-120
7.8