Vulnerabilities > Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')

DATE CVE VULNERABILITY TITLE RISK
2022-09-16 CVE-2022-25688 Classic Buffer Overflow vulnerability in Qualcomm products
Memory corruption in video due to buffer overflow while parsing ps video clips in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables
network
low complexity
qualcomm CWE-120
critical
9.8
2022-09-16 CVE-2022-25708 Classic Buffer Overflow vulnerability in Qualcomm products
Memory corruption in WLAN due to buffer copy without checking size of input while parsing keys in Snapdragon Connectivity, Snapdragon Mobile
network
low complexity
qualcomm CWE-120
critical
9.8
2022-09-15 CVE-2022-38325 Classic Buffer Overflow vulnerability in Tendacn Ac15 Firmware and Ac18 Firmware
Tenda AC15 WiFi Router V15.03.05.19_multi and AC18 WiFi Router V15.03.05.19_multi were discovered to contain a buffer overflow via the filePath parameter at /goform/expandDlnaFile.
network
low complexity
tendacn CWE-120
critical
9.8
2022-09-15 CVE-2022-38326 Classic Buffer Overflow vulnerability in Tendacn Ac15 Firmware and Ac18 Firmware
Tenda AC15 WiFi Router V15.03.05.19_multi and AC18 WiFi Router V15.03.05.19_multi were discovered to contain a buffer overflow via the page parameter at /goform/NatStaticSetting.
network
low complexity
tendacn CWE-120
critical
9.8
2022-09-14 CVE-2022-40438 Classic Buffer Overflow vulnerability in Axiosys Bento4 1.6.0639
Buffer overflow vulnerability in function AP4_MemoryByteStream::WritePartial in mp42aac in Bento4 v1.6.0-639, allows attackers to cause a denial of service via a crafted file.
network
low complexity
axiosys CWE-120
6.5
2022-09-09 CVE-2022-3077 Classic Buffer Overflow vulnerability in Linux Kernel
A buffer overflow vulnerability was found in the Linux kernel Intel’s iSMT SMBus host controller driver in the way it handled the I2C_SMBUS_BLOCK_PROC_CALL case (via the ioctl I2C_SMBUS) with malicious input data.
local
low complexity
linux CWE-120
5.5
2022-09-08 CVE-2021-34236 Classic Buffer Overflow vulnerability in Netgear R8000 Firmware 1.0.4.56
Buffer Overflow in Netgear R8000 Router with firmware v1.0.4.56 allows remote attackers to execute arbitrary code or cause a denial-of-service by sending a crafted POST to '/bd_genie_create_account.cgi' with a sufficiently long parameter 'register_country'.
network
low complexity
netgear CWE-120
critical
9.8
2022-09-08 CVE-2022-36586 Classic Buffer Overflow vulnerability in Tenda G3 Firmware 15.11.0.6(7663)
In Tenda G3 US_G3V3.0br_V15.11.0.6(7663)_EN_TDE, there is a buffer overflow vulnerability caused by strcpy in function 0x869f4 in the httpd binary.
network
low complexity
tenda CWE-120
critical
9.8
2022-09-08 CVE-2022-36588 Classic Buffer Overflow vulnerability in Dlink Dap-1650 Firmware 1.04B02J65H
In D-Link DAP1650 v1.04 firmware, the fileaccess.cgi program in the firmware has a buffer overflow vulnerability caused by strncpy.
network
low complexity
dlink CWE-120
critical
9.8
2022-09-07 CVE-2022-36585 Classic Buffer Overflow vulnerability in Tenda G3 Firmware 15.11.0.6(7663)
In Tenda G3 US_G3V3.0br_V15.11.0.6(7663)_EN_TDE, in httpd binary, the addDhcpRule function has a buffer overflow caused by sscanf.
network
low complexity
tenda CWE-120
critical
9.8