Vulnerabilities > Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')

DATE CVE VULNERABILITY TITLE RISK
2023-11-21 CVE-2023-4424 Classic Buffer Overflow vulnerability in Zephyrproject Zephyr
An malicious BLE device can cause buffer overflow by sending malformed advertising packet BLE device using Zephyr OS, leading to DoS or potential RCE on the victim BLE device.
low complexity
zephyrproject CWE-120
8.8
2023-11-20 CVE-2023-38823 Classic Buffer Overflow vulnerability in Tenda products
Buffer Overflow vulnerability in Tenda Ac19 v.1.0, AC18, AC9 v.1.0, AC6 v.2.0 and v.1.0 allows a remote attacker to execute arbitrary code via the formSetCfm function in bin/httpd.
network
low complexity
tenda CWE-120
critical
9.8
2023-11-20 CVE-2023-47217 Classic Buffer Overflow vulnerability in Openatom Openharmony
in OpenHarmony v3.2.2 and prior versions allow a local attacker cause DOS through buffer overflow.
local
low complexity
openatom CWE-120
5.5
2023-11-16 CVE-2023-47471 Classic Buffer Overflow vulnerability in Struktur Libde265 1.0.12
Buffer Overflow vulnerability in strukturag libde265 v1.10.12 allows a local attacker to cause a denial of service via the slice_segment_header function in the slice.cc component.
network
low complexity
struktur CWE-120
6.5
2023-11-15 CVE-2023-47345 Classic Buffer Overflow vulnerability in Free5Gc 3.3.0
Buffer Overflow vulnerability in free5gc 3.3.0 allows attackers to cause a denial of service via crafted PFCP message with malformed PFCP Heartbeat message whose Recovery Time Stamp IE length is mutated to zero.
network
low complexity
free5gc CWE-120
7.5
2023-11-15 CVE-2023-47347 Classic Buffer Overflow vulnerability in Free5Gc 3.3.0
Buffer Overflow vulnerability in free5gc 3.3.0 allows attackers to cause a denial of service via crafted PFCP messages whose Sequence Number is mutated to overflow bytes.
network
low complexity
free5gc CWE-120
7.5
2023-11-14 CVE-2023-39204 Classic Buffer Overflow vulnerability in Zoom products
Buffer overflow in some Zoom clients may allow an unauthenticated user to conduct a denial of service via network access.
network
low complexity
zoom CWE-120
7.5
2023-11-14 CVE-2023-39206 Classic Buffer Overflow vulnerability in Zoom products
Buffer overflow in some Zoom clients may allow an unauthenticated user to conduct a denial of service via network access.
network
low complexity
zoom CWE-120
7.5
2023-11-14 CVE-2023-45614 Classic Buffer Overflow vulnerability in multiple products
There are buffer overflow vulnerabilities in the underlying CLI service that could lead to unauthenticated remote code execution by sending specially crafted packets destined to the PAPI (Aruba's access point management protocol) UDP port (8211).
network
low complexity
arubanetworks hp CWE-120
critical
9.8
2023-11-14 CVE-2023-45615 Classic Buffer Overflow vulnerability in multiple products
There are buffer overflow vulnerabilities in the underlying CLI service that could lead to unauthenticated remote code execution by sending specially crafted packets destined to the PAPI (Aruba's access point management protocol) UDP port (8211).
network
low complexity
arubanetworks hp CWE-120
critical
9.8