Vulnerabilities > Incorrect Calculation of Buffer Size

DATE CVE VULNERABILITY TITLE RISK
2019-11-09 CVE-2019-5696 Incorrect Calculation of Buffer Size vulnerability in Nvidia Virtual GPU Manager
NVIDIA Virtual GPU Manager, all versions, contains a vulnerability in which the provision of an incorrectly sized buffer by a guest VM leads to GPU out-of-bound access, which may lead to a denial of service.
local
low complexity
nvidia CWE-131
5.5
2019-10-03 CVE-2019-15161 Incorrect Calculation of Buffer Size vulnerability in Tcpdump Libpcap
rpcapd/daemon.c in libpcap before 1.9.1 mishandles certain length values because of reuse of a variable.
network
low complexity
tcpdump CWE-131
5.3
2018-12-01 CVE-2018-4038 Incorrect Calculation of Buffer Size vulnerability in Atlantiswordprocessor Atlantis Word Processor 3.2.7.1/3.2.7.2
An exploitable arbitrary write vulnerability exists in the open document format parser of the Atlantis Word Processor, version 3.2.7.2, while trying to null-terminate a string.
local
low complexity
atlantiswordprocessor CWE-131
7.8
2018-04-04 CVE-2017-13289 Incorrect Calculation of Buffer Size vulnerability in Google Android
In writeToParcel and createFromParcel of RttManager.java, there is a permission bypass due to a write size mismatch.
local
low complexity
google CWE-131
7.8
2017-08-09 CVE-2017-0715 Incorrect Calculation of Buffer Size vulnerability in Google Android
A remote code execution vulnerability in the Android media framework (libavc).
local
low complexity
google CWE-131
7.8
2017-05-12 CVE-2017-0620 Incorrect Calculation of Buffer Size vulnerability in multiple products
An elevation of privilege vulnerability in the Qualcomm Secure Channel Manager driver could enable a local malicious application to execute arbitrary code within the context of the kernel.
local
high complexity
linux google CWE-131
7.0
2017-04-12 CVE-2017-0166 Incorrect Calculation of Buffer Size vulnerability in Microsoft products
An elevation of privilege vulnerability exists in Windows when LDAP request buffer lengths are improperly calculated.
network
high complexity
microsoft CWE-131
8.1
2017-04-07 CVE-2017-0569 Incorrect Calculation of Buffer Size vulnerability in Linux Kernel 3.10/3.18
An elevation of privilege vulnerability in the Broadcom Wi-Fi driver could enable a local malicious application to execute arbitrary code within the context of the kernel.
local
high complexity
linux CWE-131
7.0
2008-05-05 CVE-2008-0599 Incorrect Calculation of Buffer Size vulnerability in multiple products
The init_request_info function in sapi/cgi/cgi_main.c in PHP before 5.2.6 does not properly consider operator precedence when calculating the length of PATH_TRANSLATED, which might allow remote attackers to execute arbitrary code via a crafted URI.
network
low complexity
php fedoraproject canonical apple CWE-131
critical
9.8
2005-10-17 CVE-2005-3120 Incorrect Calculation of Buffer Size vulnerability in multiple products
Stack-based buffer overflow in the HTrjis function in Lynx 2.8.6 and earlier allows remote NNTP servers to execute arbitrary code via certain article headers containing Asian characters that cause Lynx to add extra escape (ESC) characters.
network
low complexity
invisible-island debian CWE-131
critical
9.8