Vulnerabilities > Improper Restriction of Operations within the Bounds of a Memory Buffer

DATE CVE VULNERABILITY TITLE RISK
2019-04-25 CVE-2018-14557 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Tenda Ac10 Firmware, AC7 Firmware and AC9 Firmware
An issue was discovered on Tenda AC7 devices with firmware through V15.03.06.44_CN(AC7), AC9 devices with firmware through V15.03.05.19(6318)_CN(AC9), and AC10 devices with firmware through V15.03.06.23_CN(AC10).
network
low complexity
tenda CWE-119
7.5
2019-04-25 CVE-2018-19442 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Neatorobotics Botvac Connected Firmware 2.2.0
A Buffer Overflow in Network::AuthenticationClient::VerifySignature in /bin/astro in Neato Botvac Connected 2.2.0 allows a remote attacker to execute arbitrary code with root privileges via a crafted POST request to a vendors/neato/robots/[robot_serial]/messages Neato cloud URI on the nucleo.neatocloud.com web site (port 4443).
network
low complexity
neatorobotics CWE-119
critical
9.8
2019-04-24 CVE-2018-10055 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Google Tensorflow
Invalid memory access and/or a heap buffer overflow in the TensorFlow XLA compiler in Google TensorFlow before 1.7.1 could cause a crash or read from other parts of process memory via a crafted configuration file.
network
low complexity
google CWE-119
8.1
2019-04-23 CVE-2018-8825 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Google Tensorflow
Google TensorFlow 1.7 and below is affected by: Buffer Overflow.
network
low complexity
google CWE-119
8.8
2019-04-22 CVE-2019-11418 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Trendnet Tew-632Brp Firmware 1.010B32
apply.cgi on the TRENDnet TEW-632BRP 1.010B32 router has a buffer overflow via long strings to the SOAPACTION:HNAP1 interface.
network
low complexity
trendnet CWE-119
critical
9.8
2019-04-22 CVE-2018-20818 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Openplcproject Openplc V2 Firmware and Openplc V3 Firmware
A buffer overflow vulnerability was discovered in the OpenPLC controller, in the OpenPLC_v2 and OpenPLC_v3 versions.
network
low complexity
openplcproject CWE-119
critical
9.8
2019-04-19 CVE-2018-20817 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Activision Call of Duty: Modern Warfare 2
SV_SteamAuthClient in various Activision Infinity Ward Call of Duty games before 2015-08-11 is missing a size check when reading authBlob data into a buffer, which allows one to execute code on the remote target machine when sending a steam authentication request.
network
low complexity
activision CWE-119
critical
9.8
2019-04-19 CVE-2019-10245 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in multiple products
In Eclipse OpenJ9 prior to the 0.14.0 release, the Java bytecode verifier incorrectly allows a method to execute past the end of bytecode array causing crashes.
network
low complexity
eclipse redhat CWE-119
7.5
2019-04-15 CVE-2017-7777 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in multiple products
Use of uninitialized memory in Graphite2 library in Firefox before 54 in graphite2::GlyphCache::Loader::read_glyph function.
network
low complexity
mozilla sil CWE-119
8.8
2019-04-15 CVE-2017-7773 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in multiple products
Heap-based Buffer Overflow write in Graphite2 library in Firefox before 54 in lz4::decompress src/Decompressor.
network
low complexity
mozilla sil CWE-119
8.8