Vulnerabilities > Out-of-bounds Write

DATE CVE VULNERABILITY TITLE RISK
2024-02-09 CVE-2024-25448 Out-of-bounds Write vulnerability in Enlightenment Imlib2 1.9.1
An issue in the imlib_free_image_and_decache function of imlib2 v1.9.1 allows attackers to cause a heap buffer overflow via parsing a crafted image.
network
low complexity
enlightenment CWE-787
8.8
2024-02-09 CVE-2024-25003 Out-of-bounds Write vulnerability in 9Bis Kitty
KiTTY versions 0.76.1.13 and before is vulnerable to a stack-based buffer overflow via the hostname, occurs due to insufficient bounds checking and input sanitization.
local
low complexity
9bis CWE-787
7.8
2024-02-09 CVE-2024-25004 Out-of-bounds Write vulnerability in 9Bis Kitty
KiTTY versions 0.76.1.13 and before is vulnerable to a stack-based buffer overflow via the username, occurs due to insufficient bounds checking and input sanitization (at line 2600).
local
low complexity
9bis CWE-787
7.8
2024-02-07 CVE-2024-22012 Out-of-bounds Write vulnerability in Google Android
there is a possible out of bounds write due to a missing bounds check.
local
low complexity
google CWE-787
7.8
2024-02-07 CVE-2024-24186 Out-of-bounds Write vulnerability in Jsish 3.5.0
Jsish v3.5.0 (commit 42c694c) was discovered to contain a stack-overflow via the component IterGetKeysCallback at /jsish/src/jsiValue.c.
network
low complexity
jsish CWE-787
critical
9.8
2024-02-07 CVE-2024-24188 Out-of-bounds Write vulnerability in Jsish 3.5.0
Jsish v3.5.0 was discovered to contain a heap-buffer-overflow in ./src/jsiUtils.c.
network
low complexity
jsish CWE-787
critical
9.8
2024-02-07 CVE-2024-25200 Out-of-bounds Write vulnerability in Espruino 2.20
Espruino 2v20 (commit fcc9ba4) was discovered to contain a Stack Overflow via the jspeFactorFunctionCall at src/jsparse.c.
network
low complexity
espruino CWE-787
7.5
2024-02-07 CVE-2024-1283 Out-of-bounds Write vulnerability in multiple products
Heap buffer overflow in Skia in Google Chrome prior to 121.0.6167.160 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
network
low complexity
google fedoraproject CWE-787
critical
9.8
2024-02-06 CVE-2024-0911 Out-of-bounds Write vulnerability in GNU Indent 2.2.13
A flaw was found in indent, a program for formatting C code.
local
low complexity
gnu CWE-787
5.5
2024-02-06 CVE-2024-0684 Out-of-bounds Write vulnerability in GNU Coreutils 9.2/9.3/9.4
A flaw was found in the GNU coreutils "split" program.
local
low complexity
gnu CWE-787
5.5