Vulnerabilities > Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')

DATE CVE VULNERABILITY TITLE RISK
2023-08-17 CVE-2023-34419 Classic Buffer Overflow vulnerability in Lenovo products
A buffer overflow has been identified in the SetupUtility driver in some Lenovo Notebook products which may allow an attacker with local access and elevated privileges to execute arbitrary code.
local
low complexity
lenovo CWE-120
6.7
2023-08-17 CVE-2023-4028 Classic Buffer Overflow vulnerability in Lenovo products
A buffer overflow has been identified in the SystemUserMasterHddPwdDxe driver in some Lenovo Notebook products which may allow an attacker with local access and elevated privileges to execute arbitrary code.
local
low complexity
lenovo CWE-120
6.7
2023-08-17 CVE-2023-4029 Classic Buffer Overflow vulnerability in Lenovo products
A buffer overflow has been identified in the BoardUpdateAcpiDxe driver in some Lenovo ThinkPad products which may allow an attacker with local access and elevated privileges to execute arbitrary code.
local
low complexity
lenovo CWE-120
6.7
2023-08-15 CVE-2023-38850 Classic Buffer Overflow vulnerability in Msweet Codedoc 3.7
Buffer Overflow vulnerability in Michaelrsweet codedoc v.3.7 allows an attacker to cause a denial of service via the codedoc.c:1742 comppnent.
local
low complexity
msweet CWE-120
5.5
2023-08-14 CVE-2023-29468 Classic Buffer Overflow vulnerability in TI Wilink8-Wifi-Mcp8 8.5
The Texas Instruments (TI) WiLink WL18xx MCP driver does not limit the number of information elements (IEs) of type XCC_EXT_1_IE_ID or XCC_EXT_2_IE_ID that can be parsed in a management frame.
network
low complexity
ti CWE-120
critical
9.8
2023-08-12 CVE-2023-4265 Classic Buffer Overflow vulnerability in Zephyrproject Zephyr
Potential buffer overflow vulnerabilities in the following locations: https://github.com/zephyrproject-rtos/zephyr/blob/main/drivers/usb/device/usb_dc_native_posix.c#L359 https://github.com/zephyrproject-rtos/zephyr/blob/main/drivers/usb/device/usb_dc_native_posix.c#L359 https://github.com/zephyrproject-rtos/zephyr/blob/main/subsys/usb/device/class/netusb/function_rndis...
low complexity
zephyrproject CWE-120
6.8
2023-08-11 CVE-2020-24222 Classic Buffer Overflow vulnerability in Rockcarry Ffjpeg
Buffer Overflow vulnerability in jfif_decode() function in rockcarry ffjpeg through version 1.0.0, allows local attackers to execute arbitrary code due to an issue with ALIGN.
local
low complexity
rockcarry CWE-120
7.8
2023-08-11 CVE-2020-28840 Classic Buffer Overflow vulnerability in Matthiaswandel Jhead
Buffer Overflow vulnerability in jpgfile.c in Matthias-Wandel jhead version 3.04, allows local attackers to execute arbitrary code and cause a denial of service (DoS).
local
low complexity
matthiaswandel CWE-120
7.8
2023-08-11 CVE-2020-35990 Classic Buffer Overflow vulnerability in Foxit PDF Reader 8.3.2.25013/9.0.1.1049
Buffer Overflow vulnerability in cFilenameInit parameter in browseForDoc function in Foxit Software Foxit PDF Reader version 10.1.0.37527, allows local attackers to cause a denial of service (DoS) via crafted .pdf file.
local
low complexity
foxit CWE-120
5.5
2023-08-11 CVE-2021-28427 Classic Buffer Overflow vulnerability in Xnview 2.49.3
Buffer Overflow vulnerability in XNView version 2.49.3, allows local attackers to execute arbitrary code via crafted TIFF file.
local
low complexity
xnview CWE-120
7.8