Vulnerabilities > Improper Restriction of Operations within the Bounds of a Memory Buffer

DATE CVE VULNERABILITY TITLE RISK
2002-12-31 CVE-2002-2272 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Apache Http Server and Tomcat
Tomcat 4.0 through 4.1.12, using mod_jk 1.2.1 module on Apache 1.3 through 1.3.27, allows remote attackers to cause a denial of service (desynchronized communications) via an HTTP GET request with a Transfer-Encoding chunked field with invalid values.
network
low complexity
apache CWE-119
7.8
2002-12-31 CVE-2002-2271 Buffer Errors vulnerability in Bigfun 1.5.1
Buffer overflow in BigFun 1.51b IRC client, when the Direct Client Connection (DCC) option is used, allows remote attackers to cause a denial of service (crash) via a long string.
network
low complexity
bigfun CWE-119
5.0
2002-12-31 CVE-2002-2268 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Netdave Webster Http Server
Buffer overflow in Webster HTTP Server allows remote attackers to execute arbitrary code via a long URL.
network
low complexity
netdave CWE-119
critical
9.4
2002-12-31 CVE-2002-2259 Buffer Errors vulnerability in Gnuplot 3.7
Buffer overflow in the French documentation patch for Gnuplot 3.7 in SuSE Linux before 8.0 allows local users to execute arbitrary code as root via unknown attack vectors.
local
low complexity
suse gnuplot CWE-119
7.2
2002-12-31 CVE-2002-2258 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Mobydisk Netsuite
Moby NetSuite allows remote attackers to cause a denial of service (crash) via an HTTP POST request with a (1) large integer or (2) non-numeric value in the Content-Length header, which causes an access violation after a failed atoi function call.
network
low complexity
mobydisk CWE-119
5.0
2002-12-31 CVE-2002-2257 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Tuxbr Libcgi 1.0.2/1.0.3
Stack-based buffer overflow in the parse_field function in cgi_lib.c for LIBCGI 1.0.2 and 1.0.3 allows remote attackers to execute arbitrary code via a long argument.
network
low complexity
tuxbr CWE-119
critical
10.0
2002-12-31 CVE-2002-2253 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Cyrus Libsieve
Multiple buffer overflows in Cyrus Sieve / libSieve 2.1.2 and earlier allow remote attackers to execute arbitrary code via (1) a long header name, (2) a long IMAP flag, or (3) a script that generates a large number of errors that overflow the resulting error string.
network
low complexity
cyrus CWE-119
critical
10.0
2002-12-31 CVE-2002-2251 Buffer Errors vulnerability in Marcos Luiz Onisto LIB CGI 0.1
Buffer overflow in the changevalue function in libcgi.h for Marcos Luiz Onisto Lib CGI 0.1 allows remote attackers to execute arbitrary code via a long argument.
network
low complexity
marcos-luiz-onisto CWE-119
critical
10.0
2002-12-31 CVE-2002-2250 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Sybase Adaptive Server 12.0/12.5
Multiple buffer overflows in Sybase Adaptive Server 12.0 and 12.5 allow remote attackers to execute arbitrary code via (1) a long parameter to the xp_freedll extended stored procedure or (2) a long database name argument to the DBCC CHECKVERIFY function.
network
low complexity
sybase CWE-119
critical
10.0
2002-12-31 CVE-2002-2248 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Netscape Communicator
Buffer overflow in the sun.awt.windows.WDefaultFontCharset Java class implementation in Netscape 4.0 allows remote attackers to execute arbitrary code via an applet that calls the WDefaultFontCharset constructor with a long string and invokes the canConvert method.
network
low complexity
netscape CWE-119
critical
10.0