Vulnerabilities > Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')

DATE CVE VULNERABILITY TITLE RISK
2022-05-18 CVE-2022-1110 Classic Buffer Overflow vulnerability in Lenovo Smart Standby Driver
A buffer overflow vulnerability in Lenovo Smart Standby Driver prior to version 4.1.50.0 could allow a local attacker to cause denial of service.
local
low complexity
lenovo CWE-120
5.5
2022-05-17 CVE-2022-30067 Classic Buffer Overflow vulnerability in Gimp 2.10.30/2.99.10
GIMP 2.10.30 and 2.99.10 are vulnerable to Buffer Overflow.
local
low complexity
gimp CWE-120
5.5
2022-05-17 CVE-2022-30950 Classic Buffer Overflow vulnerability in Jenkins WMI Windows Agents
Jenkins WMI Windows Agents Plugin 1.8 and earlier includes the Windows Remote Command library which has a buffer overflow vulnerability that may allow users able to connect to a named pipe to execute commands on the Windows agent machine.
network
low complexity
jenkins CWE-120
8.8
2022-05-16 CVE-2022-30055 Classic Buffer Overflow vulnerability in Mersenne Prime95 30.7
Prime95 30.7 build 9 suffers from a Buffer Overflow vulnerability that could lead to Remote Code Execution.
network
low complexity
mersenne CWE-120
critical
9.8
2022-05-16 CVE-2022-30767 Classic Buffer Overflow vulnerability in multiple products
nfs_lookup_reply in net/nfs.c in Das U-Boot through 2022.04 (and through 2022.07-rc2) has an unbounded memcpy with a failed length check, leading to a buffer overflow.
network
low complexity
denx fedoraproject CWE-120
critical
9.8
2022-05-13 CVE-2022-22281 Classic Buffer Overflow vulnerability in Sonicwall Netextender
A buffer overflow vulnerability in the SonicWall SSL-VPN NetExtender Windows Client (32 and 64 bit) in 10.2.322 and earlier versions, allows an attacker to potentially execute arbitrary code in the host windows operating system.
local
low complexity
sonicwall CWE-120
7.8
2022-05-13 CVE-2021-22275 Classic Buffer Overflow vulnerability in Br-Automation Automation Runtime
Buffer Overflow vulnerability in B&R Automation Runtime webserver allows an unauthenticated network-based attacker to stop the cyclic program on the device and cause a denial of service.
network
low complexity
br-automation CWE-120
8.6
2022-05-12 CVE-2022-24910 Classic Buffer Overflow vulnerability in Inhandnetworks Ir302 Firmware 3.5.37/3.5.4
A buffer overflow vulnerability exists in the httpd parse_ping_result API functionality of InHand Networks InRouter302 V3.5.4.
local
low complexity
inhandnetworks CWE-120
6.7
2022-05-12 CVE-2021-42863 Classic Buffer Overflow vulnerability in Jerryscript
A buffer overflow in ecma_builtin_typedarray_prototype_filter() in JerryScript version fe3a5c0 allows an attacker to construct a fake object or a fake arraybuffer with unlimited size.
network
low complexity
jerryscript CWE-120
critical
9.8
2022-05-10 CVE-2022-29591 Classic Buffer Overflow vulnerability in Tenda TX9 PRO Firmware 22.03.02.10
Tenda TX9 Pro 22.03.02.10 devices have a SetNetControlList buffer overflow.
network
low complexity
tenda CWE-120
critical
9.8