Vulnerabilities > Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')

DATE CVE VULNERABILITY TITLE RISK
2023-01-13 CVE-2022-42274 Classic Buffer Overflow vulnerability in Nvidia BMC
NVIDIA BMC contains a vulnerability in IPMI handler, where an authorized attacker can cause a buffer overflow and cause a denial of service or gain code execution.
local
low complexity
nvidia CWE-120
7.8
2023-01-12 CVE-2022-42272 Classic Buffer Overflow vulnerability in Nvidia DGX A100 Firmware
NVIDIA BMC contains a vulnerability in IPMI handler, where an authorized attacker can cause a buffer overflow, which may lead to code execution, denial of service or escalation of privileges.
network
low complexity
nvidia CWE-120
8.8
2023-01-12 CVE-2022-42273 Classic Buffer Overflow vulnerability in Nvidia DGX A100 Firmware
NVIDIA BMC contains a vulnerability in libwebsocket, where an authorized attacker can cause a buffer overflow and cause a denial of service or gain code execution.
network
low complexity
nvidia CWE-120
8.8
2023-01-12 CVE-2022-3628 Classic Buffer Overflow vulnerability in Linux Kernel 6.1
A buffer overflow flaw was found in the Linux kernel Broadcom Full MAC Wi-Fi driver.
low complexity
linux CWE-120
6.6
2023-01-12 CVE-2017-14454 Classic Buffer Overflow vulnerability in Insteon HUB Firmware 1012
Multiple exploitable buffer overflow vulnerabilities exists in the PubNub message handler for the "control" channel of Insteon Hub running firmware version 1012.
network
high complexity
insteon CWE-120
8.5
2023-01-11 CVE-2021-26409 Classic Buffer Overflow vulnerability in AMD Milanpi Firmware
Insufficient bounds checking in SEV-ES may allow an attacker to corrupt Reverse Map table (RMP) memory, potentially resulting in a loss of SNP (Secure Nested Paging) memory integrity.
local
low complexity
amd CWE-120
7.8
2023-01-11 CVE-2022-42271 Classic Buffer Overflow vulnerability in Nvidia DGX A100 Firmware
NVIDIA BMC contains a vulnerability in IPMI handler, where an authorized attacker can cause a buffer overflow and cause a denial of service or gain code execution
local
low complexity
nvidia CWE-120
7.8
2023-01-11 CVE-2021-3966 Classic Buffer Overflow vulnerability in Zephyrproject Zephyr
usb device bluetooth class includes a buffer overflow related to implementation of net_buf_add_mem.
low complexity
zephyrproject CWE-120
8.8
2023-01-11 CVE-2022-43389 Classic Buffer Overflow vulnerability in Zyxel products
A buffer overflow vulnerability in the library of the web server in Zyxel NR7101 firmware prior to V1.15(ACCC.3)C0, which could allow an unauthenticated attacker to execute some OS commands or to cause denial-of-service (DoS) conditions on a vulnerable device.
network
low complexity
zyxel CWE-120
critical
9.8
2023-01-09 CVE-2022-25746 Classic Buffer Overflow vulnerability in Qualcomm products
Memory corruption in kernel due to missing checks when updating the access rights of a memextent mapping.
local
low complexity
qualcomm CWE-120
7.8