Vulnerabilities > Out-of-bounds Write

DATE CVE VULNERABILITY TITLE RISK
2024-03-13 CVE-2024-0162 Out-of-bounds Write vulnerability in Dell products
Dell PowerEdge Server BIOS and Dell Precision Rack BIOS contain an Improper SMM communication buffer verification vulnerability.
local
low complexity
dell CWE-787
8.8
2024-03-12 CVE-2024-28535 Out-of-bounds Write vulnerability in Tenda Ac18 Firmware 15.03.05.05
Tenda AC18 V15.03.05.05 has a stack overflow vulnerability in the mitInterface parameter of fromAddressNat function.
network
low complexity
tenda CWE-787
critical
9.8
2024-03-12 CVE-2024-28553 Out-of-bounds Write vulnerability in Tenda Ac18 Firmware 15.03.05.05
Tenda AC18 V15.03.05.05 has a stack overflow vulnerability in the entrys parameter fromAddressNat function.
network
low complexity
tenda CWE-787
critical
9.8
2024-03-12 CVE-2024-26001 Out-of-bounds Write vulnerability in Phoenixcontact products
An unauthenticated remote attacker can write memory out of bounds due to improper input validation in the MQTT stack.
network
low complexity
phoenixcontact CWE-787
critical
9.8
2024-03-11 CVE-2024-27227 Out-of-bounds Write vulnerability in Google Android
A malicious DNS response can trigger a number of OOB reads, writes, and other memory issues
network
low complexity
google CWE-787
critical
9.8
2024-03-11 CVE-2023-52494 Out-of-bounds Write vulnerability in Linux Kernel
In the Linux kernel, the following vulnerability has been resolved: bus: mhi: host: Add alignment check for event ring read pointer Though we do check the event ring read pointer by "is_valid_ring_ptr" to make sure it is in the buffer range, but there is another risk the pointer may be not aligned.
local
low complexity
linux CWE-787
7.8
2024-03-11 CVE-2023-52495 Out-of-bounds Write vulnerability in Linux Kernel
In the Linux kernel, the following vulnerability has been resolved: soc: qcom: pmic_glink_altmode: fix port sanity check The PMIC GLINK altmode driver currently supports at most two ports. Fix the incomplete port sanity check on notifications to avoid accessing and corrupting memory beyond the port array if we ever get a notification for an unsupported port.
local
low complexity
linux CWE-787
7.8
2024-03-11 CVE-2024-26610 Out-of-bounds Write vulnerability in Linux Kernel
In the Linux kernel, the following vulnerability has been resolved: wifi: iwlwifi: fix a memory corruption iwl_fw_ini_trigger_tlv::data is a pointer to a __le32, which means that if we copy to iwl_fw_ini_trigger_tlv::data + offset while offset is in bytes, we'll write past the buffer.
local
low complexity
linux CWE-787
7.8
2024-03-11 CVE-2024-26620 Out-of-bounds Write vulnerability in Linux Kernel
In the Linux kernel, the following vulnerability has been resolved: s390/vfio-ap: always filter entire AP matrix The vfio_ap_mdev_filter_matrix function is called whenever a new adapter or domain is assigned to the mdev.
network
low complexity
linux CWE-787
7.5
2024-03-11 CVE-2024-0039 Out-of-bounds Write vulnerability in Google Android
In attp_build_value_cmd of att_protocol.cc, there is a possible out of bounds write due to a missing bounds check.
network
low complexity
google CWE-787
critical
9.8