Vulnerabilities > Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')

DATE CVE VULNERABILITY TITLE RISK
2023-06-21 CVE-2023-0970 Classic Buffer Overflow vulnerability in Silabs Z/Ip Gateway SDK 7.18.01
Multiple buffer overflow vulnerabilities in SiLabs Z/IP Gateway SDK version 7.18.01 and earlier allow an attacker with invasive physical access to a Z-Wave controller device to overwrite global memory and potentially execute arbitrary code.
low complexity
silabs CWE-120
6.8
2023-06-21 CVE-2023-25435 Classic Buffer Overflow vulnerability in Libtiff 4.5.0
libtiff 4.5.0 is vulnerable to Buffer Overflow via extractContigSamplesShifted8bits() at /libtiff/tools/tiffcrop.c:3753.
local
low complexity
libtiff CWE-120
5.5
2023-06-20 CVE-2023-34563 Classic Buffer Overflow vulnerability in Netgear R6250 Firmware 1.0.4.48
netgear R6250 Firmware Version 1.0.4.48 is vulnerable to Buffer Overflow after authentication.
network
low complexity
netgear CWE-120
critical
9.8
2023-06-20 CVE-2020-20703 Classic Buffer Overflow vulnerability in VIM 8.1.2135
Buffer Overflow vulnerability in VIM v.8.1.2135 allows a remote attacker to execute arbitrary code via the operand parameter.
network
low complexity
vim CWE-120
critical
9.8
2023-06-19 CVE-2023-35855 Classic Buffer Overflow vulnerability in Valvesoftware Counter-Strike 8684
A buffer overflow in Counter-Strike through 8684 allows a game server to execute arbitrary code on a remote client's machine by modifying the lservercfgfile console variable.
network
low complexity
valvesoftware CWE-120
critical
9.8
2023-06-19 CVE-2023-35856 Classic Buffer Overflow vulnerability in Nintendo Mario Kart WII
A buffer overflow in Nintendo Mario Kart Wii RMCP01, RMCE01, RMCJ01, and RMCK01 can be exploited by a game client to execute arbitrary code on a client's machine via a crafted packet.
network
low complexity
nintendo CWE-120
critical
9.8
2023-06-16 CVE-2023-34832 Classic Buffer Overflow vulnerability in Tp-Link Archer Ax10 Firmware 230220
TP-Link Archer AX10(EU)_V1.2_230220 was discovered to contain a buffer overflow via the function FUN_131e8 - 0x132B4.
network
low complexity
tp-link CWE-120
critical
9.8
2023-06-15 CVE-2023-2686 Classic Buffer Overflow vulnerability in Silabs Gecko Software Development KIT
Buffer overflow in Wi-Fi Commissioning MicriumOS example in Silicon Labs Gecko SDK v4.2.3 or earlier allows connected device to write payload onto the stack.
network
low complexity
silabs CWE-120
critical
9.8
2023-06-14 CVE-2023-25434 Classic Buffer Overflow vulnerability in Libtiff 4.5.0
libtiff 4.5.0 is vulnerable to Buffer Overflow via extractContigSamplesBytes() at /libtiff/tools/tiffcrop.c:3215.
network
low complexity
libtiff CWE-120
8.8
2023-06-13 CVE-2023-34115 Classic Buffer Overflow vulnerability in Zoom Meeting SDK
Buffer copy without checking size of input in Zoom Meeting SDK before 5.13.0 may allow an authenticated user to potentially enable a denial of service via local access.
local
low complexity
zoom CWE-120
3.8