Vulnerabilities > Improper Restriction of Operations within the Bounds of a Memory Buffer

DATE CVE VULNERABILITY TITLE RISK
2019-01-03 CVE-2018-4012 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Webroot Brightcloud
An exploitable buffer overflow vulnerability exists in the HTTP header-parsing function of the Webroot BrightCloud SDK.
network
high complexity
webroot CWE-119
8.1
2019-01-03 CVE-2018-19862 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Minishare Project Minishare 1.4.1
Buffer overflow in MiniShare 1.4.1 and earlier allows remote attackers to execute arbitrary code via a long HTTP POST request.
network
low complexity
minishare-project CWE-119
critical
9.8
2019-01-03 CVE-2018-19861 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Minishare Project Minishare 1.4.1
Buffer overflow in MiniShare 1.4.1 and earlier allows remote attackers to execute arbitrary code via a long HTTP HEAD request.
network
low complexity
minishare-project CWE-119
critical
9.8
2019-01-03 CVE-2018-19523 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Driveagent 2.2015.7.14
DriverAgent 2.2015.7.14, which includes DrvAgent64.sys 1.0.0.1, allows a user to send an IOCTL (0x80002068) with a user defined buffer size.
local
low complexity
driveagent CWE-119
5.5
2019-01-03 CVE-2018-17161 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Freebsd 11.2/12.0
In FreeBSD before 11.2-STABLE(r348229), 11.2-RELEASE-p7, 12.0-STABLE(r342228), and 12.0-RELEASE-p1, insufficient validation of network-provided data in bootpd may make it possible for a malicious attacker to craft a bootp packet which could cause a stack buffer overflow.
network
low complexity
freebsd CWE-119
critical
9.8
2019-01-03 CVE-2017-18329 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Qualcomm products
Possible Buffer overflow when transmitting an RTP packet in snapdragon automobile and snapdragon wear in versions MDM9615, MDM9625, MDM9635M, MDM9640, MDM9645, MDM9650, MDM9655, MSM8909W, MSM8996AU, SD 210/SD 212/SD 205, SD 425, SD 427, SD 430, SD 435, SD 450, SD 615/16/SD 415, SD 625, SD 636, SD 650/52, SD 712 / SD 710 / SD 670, SD 810, SD 820, SD 835, SD 845 / SD 850, SDA660, SDM630, SDM660, Snapdragon_High_Med_2016, SXR1130
local
low complexity
qualcomm CWE-119
7.8
2018-12-31 CVE-2018-6337 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Facebook Folly and Hhvm
folly::secureRandom will re-use a buffer between parent and child processes when fork() is called.
network
low complexity
facebook CWE-119
7.5
2018-12-31 CVE-2018-18601 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Guardzilla Gz621W Firmware 0.5.1.4
The TK_set_deviceModel_req_handle function in the cloud communication component in Guardzilla GZ621W devices with firmware 0.5.1.4 has a Buffer Overflow.
network
high complexity
guardzilla CWE-119
8.1
2018-12-28 CVE-2018-20574 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Yaml-Cpp Project Yaml-Cpp 0.6.2
The SingleDocParser::HandleFlowMap function in yaml-cpp (aka LibYaml-C++) 0.6.2 allows remote attackers to cause a denial of service (stack consumption and application crash) via a crafted YAML file.
network
low complexity
yaml-cpp-project CWE-119
6.5
2018-12-28 CVE-2018-20573 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Yaml-Cpp Project Yaml-Cpp 0.6.2
The Scanner::EnsureTokensInQueue function in yaml-cpp (aka LibYaml-C++) 0.6.2 allows remote attackers to cause a denial of service (stack consumption and application crash) via a crafted YAML file.
network
low complexity
yaml-cpp-project CWE-119
6.5