Vulnerabilities > Improper Restriction of Operations within the Bounds of a Memory Buffer

DATE CVE VULNERABILITY TITLE RISK
2018-01-03 CVE-2017-1000494 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Miniupnp Project Miniupnpd
Uninitialized stack variable vulnerability in NameValueParserEndElt (upnpreplyparse.c) in miniupnpd < 2.0 allows an attacker to cause Denial of Service (Segmentation fault and Memory Corruption) or possibly have unspecified other impact
local
low complexity
miniupnp-project CWE-119
7.8
2018-01-02 CVE-2017-1000437 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Creolabs Gravity 1.0
Creolabs Gravity 1.0 contains a stack based buffer overflow in the operator_string_add function, resulting in remote code execution.
network
low complexity
creolabs CWE-119
critical
9.8
2018-01-02 CVE-2017-1000430 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Rust-Base64 Project Rust-Base64
rust-base64 version <= 0.5.1 is vulnerable to a buffer overflow when calculating the size of a buffer to use when encoding base64 using the 'encode_config_buf' and 'encode_config' functions
network
low complexity
rust-base64-project CWE-119
critical
9.8
2018-01-02 CVE-2017-1000456 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in multiple products
freedesktop.org libpoppler 0.60.1 fails to validate boundaries in TextPool::addWord, leading to overflow in subsequent calculations.
network
low complexity
freedesktop debian CWE-119
8.8
2018-01-02 CVE-2017-1000418 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Mindwerks Wildmidi
The WildMidi_Open function in WildMIDI since commit d8a466829c67cacbb1700beded25c448d99514e5 allows remote attackers to cause a denial of service (heap-based buffer overflow and application crash) or possibly have unspecified other impact via a crafted file.
local
low complexity
mindwerks CWE-119
7.8
2017-12-29 CVE-2017-17760 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in multiple products
OpenCV 3.3.1 has a Buffer Overflow in the cv::PxMDecoder::readData function in grfmt_pxm.cpp, because an incorrect size value is used.
network
low complexity
opencv debian CWE-119
6.5
2017-12-29 CVE-2017-17968 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Xi-Soft Nettransport Download Manager 2.96L
A buffer overflow vulnerability in NetTransport.exe in NetTransport Download Manager 2.96L and earlier could allow remote HTTP servers to execute arbitrary code on NAS devices via a long HTTP response.
network
low complexity
xi-soft CWE-119
critical
9.8
2017-12-28 CVE-2017-17932 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Allmediaserver
A buffer overflow vulnerability exists in MediaServer.exe in ALLPlayer ALLMediaServer 0.95 and earlier that could allow remote attackers to execute arbitrary code and/or cause denial of service on the victim machine/computer via a long string to TCP port 888.
network
low complexity
allmediaserver CWE-119
critical
9.8
2017-12-27 CVE-2017-11698 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Mozilla Network Security Services
Heap-based buffer overflow in the __get_page function in lib/dbm/src/h_page.c in Mozilla Network Security Services (NSS) allows context-dependent attackers to have unspecified impact using a crafted cert8.db file.
local
low complexity
mozilla CWE-119
7.8
2017-12-27 CVE-2017-11697 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Mozilla Network Security Services
The __hash_open function in hash.c:229 in Mozilla Network Security Services (NSS) allows context-dependent attackers to cause a denial of service (floating point exception and crash) via a crafted cert8.db file.
local
low complexity
mozilla CWE-119
7.8