Vulnerabilities > Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')

DATE CVE VULNERABILITY TITLE RISK
2024-03-08 CVE-2024-23286 Classic Buffer Overflow vulnerability in Apple products
A buffer overflow issue was addressed with improved memory handling.
local
low complexity
apple CWE-120
7.8
2024-03-06 CVE-2024-25817 Classic Buffer Overflow vulnerability in Eza.Rock EZA
Buffer Overflow vulnerability in eza before version 0.18.2, allows local attackers to execute arbitrary code via the .git/HEAD, .git/refs, and .git/objects components.
local
low complexity
eza-rock CWE-120
7.8
2024-03-04 CVE-2021-47107 Classic Buffer Overflow vulnerability in Linux Kernel
In the Linux kernel, the following vulnerability has been resolved: NFSD: Fix READDIR buffer overflow If a client sends a READDIR count argument that is too small (say, zero), then the buffer size calculation in the new init_dirlist helper functions results in an underflow, allowing the XDR stream functions to write beyond the actual buffer. This calculation has always been suspect.
local
low complexity
linux CWE-120
7.8
2024-03-04 CVE-2023-32331 Classic Buffer Overflow vulnerability in IBM Sterling Connect:Express for Unix 1.5.0
IBM Connect:Express for UNIX 1.5.0 is vulnerable to a buffer overflow that could allow a remote attacker to cause a denial of service through its browser UI.
network
low complexity
ibm CWE-120
7.5
2024-03-04 CVE-2024-0156 Classic Buffer Overflow vulnerability in Dell Digital Delivery
Dell Digital Delivery, versions prior to 5.2.0.0, contain a Buffer Overflow Vulnerability.
local
low complexity
dell CWE-120
7.8
2024-02-29 CVE-2024-20267 Classic Buffer Overflow vulnerability in Cisco Nx-Os
A vulnerability with the handling of MPLS traffic for Cisco NX-OS Software could allow an unauthenticated, remote attacker to cause the netstack process to unexpectedly restart, which could cause the device to stop processing network traffic or to reload.
network
low complexity
cisco CWE-120
8.6
2024-02-29 CVE-2023-6881 Classic Buffer Overflow vulnerability in Zephyrproject Zephyr
Possible buffer overflow in is_mount_point
network
low complexity
zephyrproject CWE-120
critical
9.8
2024-02-28 CVE-2021-47040 Classic Buffer Overflow vulnerability in Linux Kernel
In the Linux kernel, the following vulnerability has been resolved: io_uring: fix overflows checks in provide buffers Colin reported before possible overflow and sign extension problems in io_provide_buffers_prep().
local
low complexity
linux CWE-120
7.8
2024-02-19 CVE-2024-26134 Classic Buffer Overflow vulnerability in multiple products
cbor2 provides encoding and decoding for the Concise Binary Object Representation (CBOR) (RFC 8949) serialization format.
network
low complexity
agronholm fedoraproject CWE-120
7.5
2024-02-06 CVE-2023-33068 Classic Buffer Overflow vulnerability in Qualcomm products
Memory corruption in Audio while processing IIR config data from AFE calibration block.
local
low complexity
qualcomm CWE-120
7.8