Vulnerabilities > Out-of-bounds Write

DATE CVE VULNERABILITY TITLE RISK
2021-10-25 CVE-2021-0663 Out-of-bounds Write vulnerability in Google Android 10.0/11.0/9.0
In audio DSP, there is a possible out of bounds write due to an incorrect bounds check.
local
low complexity
google CWE-787
7.2
2021-10-25 CVE-2021-0940 Out-of-bounds Write vulnerability in Google Android
In TBD of TBD, there is a possible out of bounds write due to improper locking.
local
low complexity
google CWE-787
7.2
2021-10-25 CVE-2021-21703 Out-of-bounds Write vulnerability in multiple products
In PHP versions 7.3.x up to and including 7.3.31, 7.4.x below 7.4.25 and 8.0.x below 8.0.12, when running PHP FPM SAPI with main FPM daemon process running as root and child worker processes running as lower-privileged users, it is possible for the child processes to access memory shared with the main process and write to it, modifying it in a way that would cause the root process to conduct invalid memory reads and writes, which can be used to escalate privileges from local unprivileged user to the root user.
local
high complexity
php debian fedoraproject netapp oracle CWE-787
7.0
2021-10-22 CVE-2020-23060 Out-of-bounds Write vulnerability in Tonec Internet Download Manager 6.37.11.1
Internet Download Manager 6.37.11.1 was discovered to contain a stack buffer overflow in the Export/Import function.
local
low complexity
tonec CWE-787
7.1
2021-10-22 CVE-2020-28964 Out-of-bounds Write vulnerability in Tonec Internet Download Manager 6.37.11.1
Internet Download Manager 6.37.11.1 was discovered to contain a stack buffer overflow in the Search function.
local
low complexity
tonec CWE-787
7.2
2021-10-22 CVE-2021-38473 Out-of-bounds Write vulnerability in Auvesy Versiondog
The affected product’s code base doesn’t properly control arguments for specific functions, which could lead to a stack overflow.
network
low complexity
auvesy CWE-787
6.5
2021-10-22 CVE-2021-38479 Out-of-bounds Write vulnerability in Auvesy Versiondog
Many API function codes receive raw pointers remotely from the user and trust these pointers as valid in-bound memory regions.
network
low complexity
auvesy CWE-787
5.0
2021-10-21 CVE-2021-41159 Out-of-bounds Write vulnerability in multiple products
FreeRDP is a free implementation of the Remote Desktop Protocol (RDP), released under the Apache license.
network
low complexity
freerdp fedoraproject CWE-787
8.8
2021-10-21 CVE-2021-41160 Out-of-bounds Write vulnerability in multiple products
FreeRDP is a free implementation of the Remote Desktop Protocol (RDP), released under the Apache license.
network
low complexity
freerdp fedoraproject CWE-787
8.8
2021-10-21 CVE-2021-42327 Out-of-bounds Write vulnerability in multiple products
dp_link_settings_write in drivers/gpu/drm/amd/display/amdgpu_dm/amdgpu_dm_debugfs.c in the Linux kernel through 5.14.14 allows a heap-based buffer overflow by an attacker who can write a string to the AMD GPU display drivers debug filesystem.
local
low complexity
linux fedoraproject netapp CWE-787
6.7