Vulnerabilities > Improper Restriction of Operations within the Bounds of a Memory Buffer

DATE CVE VULNERABILITY TITLE RISK
2017-07-08 CVE-2017-11111 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in multiple products
In Netwide Assembler (NASM) 2.14rc0, preproc.c allows remote attackers to cause a denial of service (heap-based buffer overflow and application crash) or possibly have unspecified other impact via a crafted file.
local
low complexity
nasm canonical CWE-119
7.8
2017-07-07 CVE-2017-9629 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Schneider-Electric Wonderware Archestra Logger 2017.426.2307.1
A Stack-Based Buffer Overflow issue was discovered in Schneider Electric Wonderware ArchestrA Logger, versions 2017.426.2307.1 and prior.
network
low complexity
schneider-electric CWE-119
critical
9.8
2017-07-07 CVE-2017-0340 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Google Android 7.1.2
An elevation of privilege vulnerability in the NVIDIA Libnvparser component due to a memcpy into a fixed sized buffer with a user-controlled size could lead to a memory corruption and possible remote code execution.
local
low complexity
google CWE-119
7.8
2017-07-07 CVE-2017-2184 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Kddi Home Spot Cube 2 Firmware V100/V101
Buffer overflow in HOME SPOT CUBE2 firmware V101 and earlier allows an attacker to execute arbitrary code via WebUI.
low complexity
kddi CWE-119
8.8
2017-07-06 CVE-2017-0706 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Google Android 7.1.2
A elevation of privilege vulnerability in the Broadcom wi-fi driver.
low complexity
google CWE-119
6.8
2017-07-06 CVE-2017-8290 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Teamspeak Client and Teamspeak Server
A potential Buffer Overflow Vulnerability (from a BB Code handling issue) has been identified in TeamSpeak Server version 3.0.13.6 (08/11/2016 09:48:33), it enables the users to Crash any WINDOWS Client that clicked into a Vulnerable Channel of a TeamSpeak Server.
network
low complexity
teamspeak CWE-119
7.5
2017-07-06 CVE-2017-10971 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in X.Org Xorg-Server
In the X.Org X server before 2017-06-19, a user authenticated to an X Session could crash or execute code in the context of the X Server by exploiting a stack overflow in the endianness conversion of X Events.
network
low complexity
x-org CWE-119
8.8
2017-07-05 CVE-2017-9927 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Swftools 201304091007
In SWFTools 2013-04-09-1007 on Windows, png2swf allows remote attackers to cause a denial of service or possibly have unspecified other impact via a crafted file, related to a "Read Access Violation starting at image00000000_00400000+0x000000000001b5fe."
network
low complexity
swftools CWE-119
8.8
2017-07-05 CVE-2017-9926 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Swftools 201304091007
In SWFTools 2013-04-09-1007 on Windows, png2swf allows remote attackers to cause a denial of service or possibly have unspecified other impact via a crafted file, related to a "Read Access Violation starting at image00000000_00400000+0x000000000001b596."
network
low complexity
swftools CWE-119
8.8
2017-07-05 CVE-2017-9925 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Swftools 201304091007
In SWFTools 2013-04-09-1007 on Windows, png2swf allows remote attackers to execute arbitrary code or cause a denial of service via a crafted file, related to a "User Mode Write AV near NULL starting at wow64!Wow64NotifyDebugger+0x000000000000001d."
network
low complexity
swftools CWE-119
8.8