Vulnerabilities > Improper Restriction of Operations within the Bounds of a Memory Buffer

DATE CVE VULNERABILITY TITLE RISK
2018-11-16 CVE-2018-18759 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Modbustools Modbus Slave 7.0.0
Modbus Slave 7.0.0 in modbus tools has a Buffer Overflow.
network
low complexity
modbustools CWE-119
7.5
2018-11-16 CVE-2018-18756 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Kangujang Local Server 1.0.9
Local Server 1.0.9 has a Buffer Overflow via crafted data on Port 4008.
network
low complexity
kangujang CWE-119
7.5
2018-11-15 CVE-2018-0684 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in NEO Debun Imap and Debun POP
Buffer overflow in Denbun by NEOJAPAN Inc.
network
low complexity
neo CWE-119
critical
9.8
2018-11-15 CVE-2018-0683 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in NEO Debun Imap and Debun POP
Buffer overflow in Denbun by NEOJAPAN Inc.
network
low complexity
neo CWE-119
critical
9.8
2018-11-14 CVE-2018-19278 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Digium Asterisk
Buffer overflow in DNS SRV and NAPTR lookups in Digium Asterisk 15.x before 15.6.2 and 16.x before 16.0.1 allows remote attackers to crash Asterisk via a specially crafted DNS SRV or NAPTR response, because a buffer size is supposed to match an expanded length but actually matches a compressed length.
network
low complexity
digium CWE-119
7.5
2018-11-14 CVE-2018-9533 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Google Android 9.0
In ixheaacd_dec_data_init of ixheaacd_create.c there is a possible out of write read due to a missing bounds check.
network
low complexity
google CWE-119
8.8
2018-11-14 CVE-2018-8552 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Microsoft Internet Explorer 10/11/9
An information disclosure vulnerability exists when VBScript improperly discloses the contents of its memory, which could provide an attacker with information to further compromise the user's computer or data, aka "Windows Scripting Engine Memory Corruption Vulnerability." This affects Internet Explorer 9, Internet Explorer 11, Internet Explorer 10.
network
high complexity
microsoft CWE-119
7.5
2018-11-14 CVE-2018-8476 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Microsoft products
A remote code execution vulnerability exists in the way that Windows Deployment Services TFTP Server handles objects in memory, aka "Windows Deployment Services TFTP Server Remote Code Execution Vulnerability." This affects Windows Server 2012 R2, Windows Server 2008, Windows Server 2012, Windows Server 2019, Windows Server 2016, Windows Server 2008 R2, Windows 10 Servers.
network
low complexity
microsoft CWE-119
critical
9.8
2018-11-13 CVE-2018-17614 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Losant Arduino Mqtt Client
This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Losant Arduino MQTT Client prior to V2.7.
low complexity
losant CWE-119
8.8
2018-11-12 CVE-2018-19219 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Sass-Lang Libsass 3.5.0
In LibSass 3.5-stable, there is an illegal address access at Sass::Eval::operator that will lead to a DoS attack.
network
low complexity
sass-lang CWE-119
6.5