Vulnerabilities > Improper Restriction of Operations within the Bounds of a Memory Buffer

DATE CVE VULNERABILITY TITLE RISK
2022-11-23 CVE-2022-44789 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in multiple products
A logical issue in O_getOwnPropertyDescriptor() in Artifex MuJS 1.0.0 through 1.3.x before 1.3.2 allows an attacker to achieve Remote Code Execution through memory corruption, via the loading of a crafted JavaScript file.
network
low complexity
artifex debian CWE-119
8.8
2022-11-15 CVE-2022-29279 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Insyde Kernel
Use of a untrusted pointer allows tampering with SMRAM and OS memory in SdHostDriver and SdMmcDevice Use of a untrusted pointer allows tampering with SMRAM and OS memory in SdHostDriver and SdMmcDevice.
local
low complexity
insyde CWE-119
8.2
2022-11-15 CVE-2022-20927 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Cisco products
A vulnerability in the SSL/TLS client of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an authenticated, remote attacker to cause a denial of service (DoS) condition on an affected device.
network
low complexity
cisco CWE-119
6.5
2022-11-15 CVE-2022-20947 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Cisco Adaptive Security Appliance
A vulnerability in dynamic access policies (DAP) functionality of Cisco Adaptive Security Appliance (ASA) Software and Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause an affected device to reload, resulting in a denial of service (DoS) condition.
network
low complexity
cisco CWE-119
7.5
2022-11-15 CVE-2022-29275 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Insyde Kernel
In UsbCoreDxe, untrusted input may allow SMRAM or OS memory tampering Use of untrusted pointers could allow OS or SMRAM memory tampering leading to escalation of privileges.
local
low complexity
insyde CWE-119
8.2
2022-11-15 CVE-2022-3461 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Phoenixcontact Automationworx Software Suite 1.89
In PHOENIX CONTACT Automationworx Software Suite up to version 1.89 manipulated PC Worx or Config+ files could lead to a heap buffer overflow and a read access violation.
local
low complexity
phoenixcontact CWE-119
7.8
2022-11-14 CVE-2022-24937 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Silabs Emberznet 1.0.0
Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Silicon Labs Ember ZNet allows Overflow Buffers.
network
low complexity
silabs CWE-119
critical
9.8
2022-11-11 CVE-2022-26045 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Intel XMM 7560 Firmware
Improper buffer restrictions in some Intel(R) XMM(TM) 7560 Modem software before version M2_7560_R_01.2146.00 may allow a privileged user to potentially enable escalation of privilege via physical access.
low complexity
intel CWE-119
7.2
2022-11-11 CVE-2022-26124 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Intel products
Improper buffer restrictions in BIOS firmware for some Intel(R) NUC Boards, Intel(R) NUC 8 Boards, Intel(R) NUC 8 Rugged Boards and Intel(R) NUC 8 Rugged Kits before version CHAPLCEL.0059 may allow a privileged user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-119
7.8
2022-11-11 CVE-2022-26367 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Intel XMM 7560 Firmware
Improper buffer restrictions in some Intel(R) XMM(TM) 7560 Modem software before version M2_7560_R_01.2146.00 may allow a privileged user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-119
8.2