Vulnerabilities > Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')

DATE CVE VULNERABILITY TITLE RISK
2023-07-13 CVE-2023-21243 Classic Buffer Overflow vulnerability in Google Android
In validateForCommonR1andR2 of PasspointConfiguration.java, there is a possible way to inflate the size of a config file with no limits due to a buffer overflow.
local
low complexity
google CWE-120
5.5
2023-07-12 CVE-2023-3618 Classic Buffer Overflow vulnerability in multiple products
A flaw was found in libtiff.
network
low complexity
libtiff debian redhat CWE-120
6.5
2023-07-12 CVE-2023-29414 Classic Buffer Overflow vulnerability in Schneider-Electric Accutech Manager 2.00.1/2.00.2
A CWE-120: Buffer Copy without Checking Size of Input (Classic Buffer Overflow) vulnerability exists that could cause user privilege escalation if a local user sends specific string input to a local function call.
local
low complexity
schneider-electric CWE-120
7.8
2023-07-11 CVE-2020-20118 Classic Buffer Overflow vulnerability in Avast Antivirus
Buffer Overflow vulnerability in Avast AntiVirus before v.19.7 allows a local attacker to cause a denial of service via a crafted request to the aswSnx.sys driver.
local
low complexity
avast CWE-120
5.5
2023-07-11 CVE-2023-34561 Classic Buffer Overflow vulnerability in Robtopgames Geometry Dash 2.113
A buffer overflow in the level parsing code of RobTop Games AB Geometry Dash v2.113 allows attackers to execute arbitrary code via entering a Geometry Dash level.
network
low complexity
robtopgames CWE-120
critical
9.8
2023-07-06 CVE-2023-24019 Classic Buffer Overflow vulnerability in Milesight Ur32L Firmware 32.3.0.5
A stack-based buffer overflow vulnerability exists in the urvpn_client http_connection_readcb functionality of Milesight UR32L v32.3.0.5.
network
high complexity
milesight CWE-120
8.1
2023-07-06 CVE-2021-46896 Classic Buffer Overflow vulnerability in Dronecode PX4 Drone Autopilot
Buffer Overflow vulnerability in PX4-Autopilot allows attackers to cause a denial of service via handler function handling msgid 332.
network
low complexity
dronecode CWE-120
7.5
2023-07-06 CVE-2023-37245 Classic Buffer Overflow vulnerability in Huawei Emui and Harmonyos
Buffer overflow vulnerability in the modem pinctrl module.
network
low complexity
huawei CWE-120
critical
9.1
2023-07-05 CVE-2020-25969 Classic Buffer Overflow vulnerability in Gnuplot Project Gnuplot 5.5.0
gnuplot v5.5 was discovered to contain a buffer overflow via the function plotrequest().
network
low complexity
gnuplot-project CWE-120
critical
9.8
2023-07-05 CVE-2023-35979 Classic Buffer Overflow vulnerability in Arubanetworks Arubaos
There is an unauthenticated buffer overflow vulnerability in the process controlling the ArubaOS web-based management interface.
network
low complexity
arubanetworks CWE-120
7.5