Vulnerabilities > Improper Restriction of Operations within the Bounds of a Memory Buffer

DATE CVE VULNERABILITY TITLE RISK
2017-11-21 CVE-2017-5707 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Intel Trusted Execution Engine Firmware 3.0
Multiple buffer overflows in kernel in Intel Trusted Execution Engine Firmware 3.0 allow attacker with local access to the system to execute arbitrary code.
local
low complexity
intel CWE-119
7.8
2017-11-21 CVE-2017-5706 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Intel Server Platform Services Firmware 4.0
Multiple buffer overflows in kernel in Intel Server Platform Services Firmware 4.0 allow attacker with local access to the system to execute arbitrary code.
local
low complexity
intel CWE-119
7.8
2017-11-21 CVE-2017-5705 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Intel Manageability Engine Firmware
Multiple buffer overflows in kernel in Intel Manageability Engine Firmware 11.0/11.5/11.6/11.7/11.10/11.20 allow attacker with local access to the system to execute arbitrary code.
local
low complexity
intel CWE-119
7.8
2017-11-20 CVE-2017-16902 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Vonage Vdv-23 Firmware 3.2.110.9.40
On the Vonage VDV-23 115 3.2.11-0.9.40 home router, sending a long string of characters in the loginPassword and/or loginUsername field to goform/login causes the router to reboot.
network
low complexity
vonage CWE-119
7.5
2017-11-20 CVE-2017-16898 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Libming
The printMP3Headers function in util/listmp3.c in libming v0.4.8 or earlier is vulnerable to a global buffer overflow, which may allow attackers to cause a denial of service via a crafted file, a different vulnerability than CVE-2016-9264.
local
low complexity
libming CWE-119
5.5
2017-11-17 CVE-2017-1000127 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Exiv2 0.26
Exiv2 0.26 contains a heap buffer overflow in tiff parser
local
low complexity
exiv2 CWE-119
5.5
2017-11-17 CVE-2017-1000206 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Htslib
samtools htslib library version 1.4.0 and earlier is vulnerable to buffer overflow in the CRAM rANS codec resulting in potential arbitrary code execution
network
low complexity
htslib CWE-119
critical
9.8
2017-11-17 CVE-2017-4934 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in VMWare Fusion and Workstation
VMware Workstation (12.x before 12.5.8) and Fusion (8.x before 8.5.9) contain a heap buffer-overflow vulnerability in VMNAT device.
local
low complexity
vmware CWE-119
8.8
2017-11-17 CVE-2017-16872 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in multiple products
An issue was discovered in Teluu pjproject (pjlib and pjlib-util) in PJSIP before 2.7.1.
network
low complexity
teluu debian CWE-119
critical
9.8
2017-11-17 CVE-2017-16869 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in UPX Project UPX 3.94
p_mach.cpp in UPX 3.94 allows remote attackers to cause a denial of service (invalid memory access and application crash) or possibly have unspecified other impact via a crafted Mach-O file, related to canPack and unpack functions.
local
low complexity
upx-project CWE-119
7.8