Vulnerabilities > Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')

DATE CVE VULNERABILITY TITLE RISK
2022-11-15 CVE-2022-25724 Classic Buffer Overflow vulnerability in Qualcomm products
Memory corruption in graphics due to buffer overflow while validating the user address in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables
local
low complexity
qualcomm CWE-120
7.8
2022-11-14 CVE-2022-0324 Classic Buffer Overflow vulnerability in Linuxfoundation Software for Open Networking in the Cloud 202111
There is a vulnerability in DHCPv6 packet parsing code that could be explored by remote attacker to craft a packet that could cause buffer overflow in a memcpy call, leading to out-of-bounds memory write that would cause dhcp6relay to crash.
network
low complexity
linuxfoundation CWE-120
7.5
2022-11-08 CVE-2022-34823 Classic Buffer Overflow vulnerability in NEC products
Buffer overflow vulnerability in CLUSTERPRO X 5.0 for Windows and earlier, EXPRESSCLUSTER X 5.0 for Windows and earlier, CLUSTERPRO X 5.0 SingleServerSafe for Windows and earlier, EXPRESSCLUSTER X 5.0 SingleServerSafe for Windows and earlier allows a remote unauthenticated attacker to overwrite existing files on the file system and to potentially execute arbitrary code.
network
low complexity
nec CWE-120
critical
9.8
2022-11-08 CVE-2022-43343 Classic Buffer Overflow vulnerability in N-Prolog Project N-Prolog 1.91
N-Prolog v1.91 was discovered to contain a global buffer overflow vulnerability in the function gettoken() at Main.c.
network
low complexity
n-prolog-project CWE-120
7.5
2022-11-06 CVE-2022-40284 Classic Buffer Overflow vulnerability in multiple products
A buffer overflow was discovered in NTFS-3G before 2022.10.3.
local
low complexity
tuxera debian fedoraproject CWE-120
7.8
2022-11-04 CVE-2022-39344 Classic Buffer Overflow vulnerability in Microsoft Azure Rtos Usbx
Azure RTOS USBX is a USB host, device, and on-the-go (OTG) embedded stack, that is fully integrated with Azure RTOS ThreadX.
network
low complexity
microsoft CWE-120
critical
9.8
2022-11-04 CVE-2021-34055 Classic Buffer Overflow vulnerability in multiple products
jhead 3.06 is vulnerable to Buffer Overflow via exif.c in function Put16u.
local
low complexity
jhead-project debian CWE-120
7.8
2022-11-01 CVE-2022-32941 Classic Buffer Overflow vulnerability in Apple Iphone OS and Macos
The issue was addressed with improved bounds checks.
network
low complexity
apple CWE-120
critical
9.8
2022-11-01 CVE-2022-3786 Classic Buffer Overflow vulnerability in multiple products
A buffer overrun can be triggered in X.509 certificate verification, specifically in name constraint checking.
network
low complexity
openssl fedoraproject nodejs CWE-120
7.5
2022-10-31 CVE-2022-43752 Classic Buffer Overflow vulnerability in Common Desktop Environment Project Common Desktop Environment
Oracle Solaris version 10 1/13, when using the Common Desktop Environment (CDE), is vulnerable to a privilege escalation vulnerability.
7.8