Vulnerabilities > Improper Restriction of Operations within the Bounds of a Memory Buffer

DATE CVE VULNERABILITY TITLE RISK
2016-12-20 CVE-2016-7263 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Microsoft Excel for mac 2011/2016
Microsoft Excel for Mac 2011 and Excel 2016 for Mac allow remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted document, aka "Microsoft Office Memory Corruption Vulnerability."
local
low complexity
microsoft CWE-119
7.8
2016-12-20 CVE-2016-7181 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Microsoft Edge
Microsoft Edge allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Microsoft Edge Memory Corruption Vulnerability."
network
high complexity
microsoft CWE-119
7.5
2016-12-18 CVE-2016-5182 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Google Chrome
Blink in Google Chrome prior to 54.0.2840.59 for Windows, Mac, and Linux; 54.0.2840.85 for Android had insufficient validation in bitmap handling, which allowed a remote attacker to potentially exploit heap corruption via crafted HTML pages.
network
low complexity
google CWE-119
8.8
2016-12-16 CVE-2016-8825 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Nvidia GPU Driver
All versions of NVIDIA Windows GPU Display Driver contain a vulnerability in the kernel mode layer (nvlddmkm.sys) handler for DxgDdiEscape where the size of an input buffer is not validated, leading to denial of service or potential escalation of privileges.
local
low complexity
nvidia CWE-119
7.8
2016-12-16 CVE-2016-8823 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Nvidia GPU Driver
All versions of NVIDIA Windows GPU Display Driver contain a vulnerability in the kernel mode layer handler for DxgDdiEscape where the size of an input buffer is not validated leading to a denial of service or possible escalation of privileges
local
low complexity
nvidia CWE-119
7.8
2016-12-16 CVE-2016-8817 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Nvidia GPU Driver
All versions of NVIDIA Windows GPU Display Driver contain a vulnerability in the kernel mode layer (nvlddmkm.sys) handler for DxgDdiEscape where a value passed from a user to the driver is used without validation as the size input to memcpy(), causing a buffer overflow, leading to denial of service or potential escalation of privileges.
local
low complexity
nvidia CWE-119
7.8
2016-12-15 CVE-2016-7886 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Adobe Indesign and Indesign Server
Adobe InDesign version 11.4.1 and earlier, Adobe InDesign Server 11.0.0 and earlier have an exploitable memory corruption vulnerability.
network
low complexity
adobe CWE-119
critical
9.8
2016-12-15 CVE-2016-7866 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Adobe Animate 15.2.1.95
Adobe Animate versions 15.2.1.95 and earlier have an exploitable memory corruption vulnerability.
network
low complexity
adobe CWE-119
critical
9.8
2016-12-15 CVE-2016-7856 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Adobe DNG Converter 9.7
Adobe DNG Converter versions 9.7 and earlier have an exploitable memory corruption vulnerability.
network
low complexity
adobe CWE-119
critical
9.8
2016-12-14 CVE-2016-9203 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Cisco ASR 5000 Series Software 20.0.2.3.65026
A vulnerability in the Internet Key Exchange Version 2 (IKEv2) feature of Cisco ASR 5000 Series Software could allow an unauthenticated, remote attacker to cause a reload of the ipsecmgr process.
network
low complexity
cisco CWE-119
7.5