Vulnerabilities > Improper Restriction of Operations within the Bounds of a Memory Buffer

DATE CVE VULNERABILITY TITLE RISK
2017-01-28 CVE-2016-7927 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Tcpdump
The IEEE 802.11 parser in tcpdump before 4.9.0 has a buffer overflow in print-802_11.c:ieee802_11_radio_print().
network
low complexity
tcpdump CWE-119
critical
9.8
2017-01-28 CVE-2016-7926 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Tcpdump
The Ethernet parser in tcpdump before 4.9.0 has a buffer overflow in print-ether.c:ethertype_print().
network
low complexity
tcpdump CWE-119
critical
9.8
2017-01-28 CVE-2016-7925 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Tcpdump
The compressed SLIP parser in tcpdump before 4.9.0 has a buffer overflow in print-sl.c:sl_if_print().
network
low complexity
tcpdump CWE-119
critical
9.8
2017-01-28 CVE-2016-7924 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Tcpdump
The ATM parser in tcpdump before 4.9.0 has a buffer overflow in print-atm.c:oam_print().
network
low complexity
tcpdump CWE-119
critical
9.8
2017-01-28 CVE-2016-7923 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Tcpdump
The ARP parser in tcpdump before 4.9.0 has a buffer overflow in print-arp.c:arp_print().
network
low complexity
tcpdump CWE-119
critical
9.8
2017-01-28 CVE-2016-7922 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Tcpdump
The AH parser in tcpdump before 4.9.0 has a buffer overflow in print-ah.c:ah_print().
network
low complexity
tcpdump CWE-119
critical
9.8
2017-01-27 CVE-2016-9636 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in multiple products
Heap-based buffer overflow in the flx_decode_delta_fli function in gst/flx/gstflxdec.c in the FLIC decoder in GStreamer before 1.10.2 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) by providing a 'write count' that goes beyond the initialized buffer.
network
low complexity
gstreamer redhat debian CWE-119
critical
9.8
2017-01-27 CVE-2016-9635 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in multiple products
Heap-based buffer overflow in the flx_decode_delta_fli function in gst/flx/gstflxdec.c in the FLIC decoder in GStreamer before 1.10.2 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) by providing a 'skip count' that goes beyond initialized buffer.
network
low complexity
gstreamer redhat debian CWE-119
critical
9.8
2017-01-27 CVE-2016-9634 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in multiple products
Heap-based buffer overflow in the flx_decode_delta_fli function in gst/flx/gstflxdec.c in the FLIC decoder in GStreamer before 1.10.2 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via the start_line parameter.
network
low complexity
gstreamer redhat debian CWE-119
critical
9.8
2017-01-27 CVE-2016-9298 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Imagemagick
Heap overflow in the WaveletDenoiseImage function in MagickCore/fx.c in ImageMagick before 6.9.6-4 and 7.x before 7.0.3-6 allows remote attackers to cause a denial of service (crash) via a crafted image.
local
low complexity
imagemagick CWE-119
5.5