Vulnerabilities > Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')

DATE CVE VULNERABILITY TITLE RISK
2023-11-08 CVE-2023-43576 Classic Buffer Overflow vulnerability in Lenovo products
A buffer overflow was reported in the WMISwSmi module in some Lenovo Desktop products that may allow a local attacker with elevated privileges to execute arbitrary code.
local
low complexity
lenovo CWE-120
6.7
2023-11-08 CVE-2023-43577 Classic Buffer Overflow vulnerability in Lenovo products
A buffer overflow was reported in the ReFlash module in some Lenovo Desktop products that may allow a local attacker with elevated privileges to execute arbitrary code.
local
low complexity
lenovo CWE-120
6.7
2023-11-08 CVE-2023-43578 Classic Buffer Overflow vulnerability in Lenovo products
A buffer overflow was reported in the SmiFlash module in some Lenovo Desktop products that may allow a local attacker with elevated privileges to execute arbitrary code.
local
low complexity
lenovo CWE-120
6.7
2023-11-08 CVE-2023-43579 Classic Buffer Overflow vulnerability in Lenovo products
A buffer overflow was reported in the SmuV11Dxe driver in some Lenovo Desktop products that may allow a local attacker with elevated privileges to execute arbitrary code.
local
low complexity
lenovo CWE-120
6.7
2023-11-08 CVE-2023-43580 Classic Buffer Overflow vulnerability in Lenovo products
A buffer overflow was reported in the SmuV11DxeVMR module in some Lenovo Desktop products that may allow a local attacker with elevated privileges to execute arbitrary code.
local
low complexity
lenovo CWE-120
6.7
2023-11-08 CVE-2023-43581 Classic Buffer Overflow vulnerability in Lenovo products
A buffer overflow was reported in the Update_WMI module in some Lenovo Desktop products that may allow a local attacker with elevated privileges to execute arbitrary code.
local
low complexity
lenovo CWE-120
6.7
2023-11-08 CVE-2023-43567 Classic Buffer Overflow vulnerability in Lenovo products
A buffer overflow was reported in the LemSecureBootForceKey module in some Lenovo Desktop products that may allow a local attacker with elevated privileges to execute arbitrary code.
local
low complexity
lenovo CWE-120
6.7
2023-11-08 CVE-2023-43569 Classic Buffer Overflow vulnerability in Lenovo products
A buffer overflow was reported in the OemSmi module in some Lenovo Desktop products that may allow a local attacker with elevated privileges to execute arbitrary code. 
local
low complexity
lenovo CWE-120
6.7
2023-11-08 CVE-2023-5075 Classic Buffer Overflow vulnerability in Lenovo Ideapad Duet 3 10Igl5 Firmware Eqcn37Ww
A buffer overflow was reported in the FmpSipoCapsuleDriver driver in the IdeaPad Duet 3-10IGL5 that may allow a local attacker with elevated privileges to execute arbitrary code.
local
low complexity
lenovo CWE-120
6.7
2023-11-08 CVE-2023-41112 Classic Buffer Overflow vulnerability in Samsung products
An issue was discovered in Samsung Mobile Processor, Wearable Processor, Automotive Processor, and Modem (Exynos 9810, 9610, 9820, 980, 850, 1080, 2100, 2200, 1280, 1380, 1330, 9110, W920, Modem 5123, Modem 5300, and Auto T5123).
network
low complexity
samsung CWE-120
7.5