Vulnerabilities > Improper Restriction of Operations within the Bounds of a Memory Buffer

DATE CVE VULNERABILITY TITLE RISK
2018-08-23 CVE-2018-3905 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Samsung Sth-Eth-250 Firmware 0.20.17
An exploitable buffer overflow vulnerability exists in the camera "create" feature of video-core's HTTP server of Samsung SmartThings Hub STH-ETH-250 devices with firmware version 0.20.17.
network
low complexity
samsung CWE-119
critical
9.9
2018-08-23 CVE-2018-3878 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Samsung Sth-Eth-250 Firmware 0.20.17
Multiple exploitable buffer overflow vulnerabilities exist in the credentials handler of video-core's HTTP server of Samsung SmartThings Hub STH-ETH-250 devices with firmware version 0.20.17.
network
low complexity
samsung CWE-119
critical
9.9
2018-08-23 CVE-2017-14455 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Insteon HUB 2245-222 Firmware 1012
On Insteon Hub 2245-222 devices with firmware version 1012, specially crafted replies received from the PubNub service can cause buffer overflows on a global section overwriting arbitrary data.
network
low complexity
insteon CWE-119
8.8
2018-08-23 CVE-2017-14453 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Insteon HUB 2245-222 Firmware 1012
On Insteon Hub 2245-222 devices with firmware version 1012, specially crafted replies received from the PubNub service can cause buffer overflows on a global section overwriting arbitrary data.
network
low complexity
insteon CWE-119
8.8
2018-08-22 CVE-2018-10858 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in multiple products
A heap-buffer overflow was found in the way samba clients processed extra long filename in a directory listing.
network
low complexity
debian canonical samba redhat CWE-119
8.8
2018-08-21 CVE-2018-14793 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Emerson Deltav
DeltaV Versions 11.3.1, 12.3.1, 13.3.0, 13.3.1, and R5 is vulnerable to a buffer overflow exploit through an open communication port to allow arbitrary code execution.
low complexity
emerson CWE-119
8.8
2018-08-20 CVE-2018-1000223 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Surina Soundtouch
soundtouch version up to and including 2.0.0 contains a Buffer Overflow vulnerability in SoundStretch/WavFile.cpp:WavInFile::readHeaderBlock() that can result in arbitrary code execution.
network
low complexity
surina CWE-119
8.8
2018-08-20 CVE-2018-1000221 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Pkgconf 1.5.0/1.5.1/1.5.2
pkgconf version 1.5.0 to 1.5.2 contains a Buffer Overflow vulnerability in dequote() that can result in dequote() function returns 1-byte allocation if initial length is 0, leading to buffer overflow.
network
low complexity
pkgconf CWE-119
critical
9.8
2018-08-20 CVE-2018-1000657 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Rust-Lang Rust
Rust Programming Language Rust standard library version Commit bfa0e1f58acf1c28d500c34ed258f09ae021893e and later; stable release 1.3.0 and later contains a Buffer Overflow vulnerability in std::collections::vec_deque::VecDeque::reserve() function that can result in Arbitrary code execution, but no proof-of-concept exploit is currently published..
local
low complexity
rust-lang CWE-119
7.8
2018-08-20 CVE-2018-1000637 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in multiple products
zutils version prior to version 1.8-pre2 contains a Buffer Overflow vulnerability in zcat that can result in Potential denial of service or arbitrary code execution.
local
low complexity
nongnu debian CWE-119
7.8