Vulnerabilities > Improper Restriction of Operations within the Bounds of a Memory Buffer

DATE CVE VULNERABILITY TITLE RISK
2018-04-03 CVE-2017-13884 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in multiple products
An issue was discovered in certain Apple products.
network
low complexity
apple canonical CWE-119
8.8
2018-04-03 CVE-2017-13854 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Apple products
An issue was discovered in certain Apple products.
local
low complexity
apple CWE-119
7.8
2018-04-03 CVE-2017-13853 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Apple mac OS X
An issue was discovered in certain Apple products.
local
low complexity
apple CWE-119
7.8
2018-04-03 CVE-2017-13850 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Apple mac OS X
An issue was discovered in certain Apple products.
local
low complexity
apple CWE-119
7.1
2018-04-02 CVE-2018-6251 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Nvidia GPU Driver
NVIDIA Windows GPU Display Driver contains a vulnerability in the DirectX 10 Usermode driver, where a specially crafted pixel shader can cause writing to unallocated memory, leading to denial of service or potential code execution.
local
low complexity
nvidia CWE-119
7.8
2018-04-01 CVE-2018-9128 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Dvd-X-Player DVD X Player 5.5.3.9
DVD X Player Standard 5.5.3.9 has a Buffer Overflow via a crafted .plf file, a related issue to CVE-2007-3068.
local
low complexity
dvd-x-player CWE-119
7.8
2018-03-30 CVE-2017-9723 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Google Android
The touchscreen driver synaptics_dsx in Android for MSM, Firefox OS for MSM, and QRD Android before 2017-06-05, the size of a stack-allocated buffer can be set to a value which exceeds the size of the stack.
local
low complexity
google CWE-119
7.8
2018-03-30 CVE-2017-9694 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Qcacld 2.0 Project Qcacld 2.0
While parsing Netlink attributes in QCA_WLAN_VENDOR_ATTR_EXTSCAN_BSSID_HOTLIST_PARAMS_LOST_AP_SAMPLE_SIZE in qcacld 2.0 before 2017-05-16, a buffer overread could occur.
local
low complexity
qcacld-2-0-project CWE-119
7.8
2018-03-30 CVE-2017-9693 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Google Android
The length of attribute value for STA_EXT_CAPABILITY in __wlan_hdd_change_station in Android for MSM, Firefox OS for MSM, and QRD Android before 2017-06-06 being less than the actual lenth of StaParams.extn_capability results in a read for extra bytes when a memcpy is done from params->ext_capab to StaParams.extn_capability using the sizeof(StaParams.extn_capability).
local
low complexity
google CWE-119
5.5
2018-03-30 CVE-2017-15823 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Google Android
In spectral_create_samp_msg() in Android for MSM, Firefox OS for MSM, and QRD Android before 2017-10-11, some values from firmware are not properly validated potentially leading to a buffer overflow.
local
low complexity
google CWE-119
7.8