Vulnerabilities > Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')

DATE CVE VULNERABILITY TITLE RISK
2023-11-13 CVE-2023-47346 Classic Buffer Overflow vulnerability in Free5Gc Free5Gc, SMF and UPF
Buffer Overflow vulnerability in free5gc 3.3.0, UPF 1.2.0, and SMF 1.2.0 allows attackers to cause a denial of service via crafted PFCP messages.
network
low complexity
free5gc CWE-120
7.5
2023-11-09 CVE-2023-47610 Classic Buffer Overflow vulnerability in Telit products
A CWE-120: Buffer Copy without Checking Size of Input vulnerability exists in Telit Cinterion EHS5/6/8 that could allow a remote unauthenticated attacker to execute arbitrary code on the targeted system by sending a specially crafted SMS message.
network
low complexity
telit CWE-120
critical
9.8
2023-11-08 CVE-2023-41112 Classic Buffer Overflow vulnerability in Samsung products
An issue was discovered in Samsung Mobile Processor, Wearable Processor, Automotive Processor, and Modem (Exynos 9810, 9610, 9820, 980, 850, 1080, 2100, 2200, 1280, 1380, 1330, 9110, W920, Modem 5123, Modem 5300, and Auto T5123).
network
low complexity
samsung CWE-120
7.5
2023-11-07 CVE-2023-46001 Classic Buffer Overflow vulnerability in Gpac 2.3Devrev573G201320819Master
Buffer Overflow vulnerability in gpac MP4Box v.2.3-DEV-rev573-g201320819-master allows a local attacker to cause a denial of service via the gpac/src/isomedia/isom_read.c:2807:51 function in gf_isom_get_user_data.
local
low complexity
gpac CWE-120
5.5
2023-11-07 CVE-2023-5748 Classic Buffer Overflow vulnerability in Synology SSL VPN Client
Buffer copy without checking size of input ('Classic Buffer Overflow') vulnerability in cgi component in Synology SSL VPN Client before 1.4.7-0687 allows local users to conduct denial-of-service attacks via unspecified vectors.
local
low complexity
synology CWE-120
5.5
2023-11-03 CVE-2023-46847 Classic Buffer Overflow vulnerability in multiple products
Squid is vulnerable to a Denial of Service, where a remote attacker can perform buffer overflow attack by writing up to 2 MB of arbitrary data to heap memory when Squid is configured to accept HTTP Digest Authentication.
network
low complexity
squid-cache redhat CWE-120
7.5
2023-11-02 CVE-2023-42299 Classic Buffer Overflow vulnerability in Openimageio 2.4.12.0
Buffer Overflow vulnerability in OpenImageIO oiio v.2.4.12.0 allows a remote attacker to execute arbitrary code and cause a denial of service via the read_subimage_data function.
network
low complexity
openimageio CWE-120
critical
9.8
2023-11-01 CVE-2023-4452 Classic Buffer Overflow vulnerability in Moxa products
A vulnerability has been identified in the EDR-810, EDR-G902, and EDR-G903 Series, making them vulnerable to the denial-of-service vulnerability.
network
low complexity
moxa CWE-120
7.5
2023-10-30 CVE-2023-45797 Classic Buffer Overflow vulnerability in Dreamsecurity Magicline 4.0 1.0.0.1/1.0.0.26
A Buffer overflow vulnerability in DreamSecurity MagicLine4NX versions 1.0.0.1 to 1.0.0.26 allows an attacker to remotely execute code.
network
low complexity
dreamsecurity CWE-120
critical
9.8
2023-10-27 CVE-2023-46587 Classic Buffer Overflow vulnerability in Xnview 2.51.5
Buffer Overflow vulnerability in XnView Classic v.2.51.5 allows a local attacker to execute arbitrary code via a crafted TIF file.
local
low complexity
xnview CWE-120
7.8