Vulnerabilities > Improper Restriction of Operations within the Bounds of a Memory Buffer

DATE CVE VULNERABILITY TITLE RISK
2017-10-06 CVE-2017-14088 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Trendmicro Officescan and Officescan XG
Memory Corruption Privilege Escalation vulnerabilities in Trend Micro OfficeScan 11.0 and XG allows local attackers to execute arbitrary code and escalate privileges to resources normally reserved for the kernel on vulnerable installations by exploiting tmwfp.sys.
local
high complexity
trendmicro CWE-119
7.0
2017-10-05 CVE-2017-12732 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in GE Intelligent Platforms Proficy Hmi/Scada Cimplicity
A Stack-based Buffer Overflow issue was discovered in GE CIMPLICITY Versions 9.0 and prior.
high complexity
ge CWE-119
6.8
2017-10-05 CVE-2017-2920 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Pl32 Photoline 20.02
An memory corruption vulnerability exists in the .SVG parsing functionality of Computerinsel Photoline 20.02.
local
low complexity
pl32 CWE-119
7.8
2017-10-05 CVE-2017-2880 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Pl32 Photoline 20.02
An memory corruption vulnerability exists in the .GIF parsing functionality of Computerinsel Photoline 20.02.
local
low complexity
pl32 CWE-119
7.8
2017-10-05 CVE-2017-12106 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Pl32 Photoline 20.02
A memory corruption vulnerability exists in the .TGA parsing functionality of Computerinsel Photoline 20.02.
local
low complexity
pl32 CWE-119
7.8
2017-10-05 CVE-2017-15035 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Emtec Pyrobatchftp
EmTec PyroBatchFTP before 3.18 allows remote servers to cause a denial of service (application crash).
network
low complexity
emtec CWE-119
7.5
2017-10-05 CVE-2017-12270 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Cisco IOS XR
A vulnerability in the gRPC code of Cisco IOS XR Software for Cisco Network Convergence System (NCS) 5500 Series Routers could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition when the emsd service stops.
network
low complexity
cisco CWE-119
7.5
2017-10-05 CVE-2017-12267 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Cisco products
A vulnerability in the Independent Computing Architecture (ICA) accelerator feature for the Cisco Wide Area Application Services (WAAS) could allow an unauthenticated, remote attacker to cause an ICA application optimization-related process to restart, resulting in a partial denial of service (DoS) condition.
network
low complexity
cisco CWE-119
5.3
2017-10-05 CVE-2017-1000253 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in multiple products
Linux distributions that have not patched their long-term kernels with https://git.kernel.org/linus/a87938b2e246b81b4fb713edb371a9fa3c5c3c86 (committed on April 14, 2015).
local
low complexity
redhat centos linux CWE-119
7.8
2017-10-05 CVE-2017-1000118 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Akka Http Server
Akka HTTP versions <= 10.0.5 Illegal Media Range in Accept Header Causes StackOverflowError Leading to Denial of Service
network
low complexity
akka CWE-119
7.5