Vulnerabilities > Improper Restriction of Operations within the Bounds of a Memory Buffer

DATE CVE VULNERABILITY TITLE RISK
2017-08-28 CVE-2017-3735 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in multiple products
While parsing an IPAddressFamily extension in an X.509 certificate, it is possible to do a one-byte overread.
network
low complexity
openssl debian CWE-119
5.3
2017-08-28 CVE-2017-12919 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Libfpx Project Libfpx 1.3.1
Heap-based buffer overflow in OLEStream::WriteVT_LPSTR in olestrm.cpp in libfpx 1.3.1_p6 allows remote attackers to cause a denial of service via a crafted fpx image.
network
low complexity
libfpx-project CWE-119
6.5
2017-08-28 CVE-2017-12840 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Deslock Deslock+ 4.8.16
A kernel driver, namely DLMFENC.sys, bundled with the DESLock+ client application 4.8.16 and earlier contains a locally exploitable heap based buffer overflow in the handling of an IOCTL message of type 0x0FA4204.
local
low complexity
deslock CWE-119
7.8
2017-08-28 CVE-2017-8380 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Qemu 2.9.0
Buffer overflow in the "megasas_mmio_write" function in Qemu 2.9.0 allows remote attackers to have unspecified impact via unknown vectors.
network
low complexity
qemu CWE-119
critical
9.8
2017-08-28 CVE-2015-1430 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Xymon 4.3.171
Buffer overflow in xymon 4.3.17-1.
network
low complexity
xymon CWE-119
critical
9.8
2017-08-28 CVE-2015-0114 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in IBM I Access for Windows 5.4/6.1/7.1
Stack-based buffer overflow in IBM V5R4, and IBM i Access for Windows 6.1 and 7.1.
local
low complexity
ibm CWE-119
7.8
2017-08-25 CVE-2017-12707 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Spidercontrol Scada Microbrowser 1.6.30.144
A Stack-based Buffer Overflow issue was discovered in SpiderControl SCADA MicroBrowser Versions 1.6.30.144 and prior.
network
low complexity
spidercontrol CWE-119
critical
9.8
2017-08-25 CVE-2014-7859 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in D-Link products
Stack-based buffer overflow in login_mgr.cgi in D-Link firmware DNR-320L and DNS-320LW before 1.04b08, DNR-322L before 2.10 build 03, DNR-326 before 2.10 build 03, and DNS-327L before 1.04b01 allows remote attackers to execute arbitrary code by crafting malformed "Host" and "Referer" header values.
network
low complexity
d-link CWE-119
critical
9.8
2017-08-24 CVE-2015-7896 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Samsung Mobile
LibQJpeg in the Samsung Galaxy S6 before the October 2015 MR allows remote attackers to cause a denial of service (memory corruption and SIGSEGV) via a crafted image file.
network
low complexity
samsung CWE-119
6.5
2017-08-24 CVE-2015-1801 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Samsung Galaxy S4 Firmware I9500Xxuemk8
The samsung_extdisp driver in the Samsung S4 (GT-I9500) I9500XXUEMK8 kernel 3.4 and earlier allows attackers to cause a denial of service (memory corruption) or gain privileges.
network
low complexity
samsung CWE-119
critical
9.8