Vulnerabilities > Out-of-bounds Write

DATE CVE VULNERABILITY TITLE RISK
2024-06-24 CVE-2024-38667 Out-of-bounds Write vulnerability in Linux Kernel
In the Linux kernel, the following vulnerability has been resolved: riscv: prevent pt_regs corruption for secondary idle threads Top of the kernel thread stack should be reserved for pt_regs.
local
low complexity
linux CWE-787
7.8
2024-06-20 CVE-2024-6154 Out-of-bounds Write vulnerability in Parallels Desktop
Parallels Desktop Toolgate Heap-based Buffer Overflow Local Privilege Escalation Vulnerability.
local
low complexity
parallels CWE-787
6.7
2024-06-20 CVE-2024-6189 Out-of-bounds Write vulnerability in Tendacn A301 Firmware 15.13.08.12
A vulnerability was found in Tenda A301 15.13.08.12.
network
low complexity
tendacn CWE-787
8.8
2024-06-20 CVE-2022-48743 Out-of-bounds Write vulnerability in Linux Kernel
In the Linux kernel, the following vulnerability has been resolved: net: amd-xgbe: Fix skb data length underflow There will be BUG_ON() triggered in include/linux/skbuff.h leading to intermittent kernel panic, when the skb length underflow is detected. Fix this by dropping the packet if such length underflows are seen because of inconsistencies in the hardware descriptors.
local
low complexity
linux CWE-787
5.5
2024-06-20 CVE-2024-29012 Out-of-bounds Write vulnerability in Sonicwall Sonicos
Stack-based buffer overflow vulnerability in the SonicOS HTTP server allows an authenticated remote attacker to cause Denial of Service (DoS) via sscanf function.
network
low complexity
sonicwall CWE-787
7.5
2024-06-20 CVE-2024-29013 Out-of-bounds Write vulnerability in Sonicwall Sonicos
Heap-based buffer overflow vulnerability in the SonicOS SSL-VPN allows an authenticated remote attacker to cause Denial of Service (DoS) via memcpy function.
network
low complexity
sonicwall CWE-787
6.5
2024-06-20 CVE-2024-6102 Out-of-bounds Write vulnerability in Google Chrome
Out of bounds memory access in Dawn in Google Chrome prior to 126.0.6478.114 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
network
low complexity
google CWE-787
8.8
2024-06-19 CVE-2021-47605 Out-of-bounds Write vulnerability in Linux Kernel
In the Linux kernel, the following vulnerability has been resolved: vduse: fix memory corruption in vduse_dev_ioctl() The "config.offset" comes from the user.
local
low complexity
linux CWE-787
7.8
2024-06-19 CVE-2024-36978 Out-of-bounds Write vulnerability in Linux Kernel
In the Linux kernel, the following vulnerability has been resolved: net: sched: sch_multiq: fix possible OOB write in multiq_tune() q->bands will be assigned to qopt->bands to execute subsequent code logic after kmalloc.
local
low complexity
linux CWE-787
7.8
2024-06-19 CVE-2024-6144 Out-of-bounds Write vulnerability in Actiontec Wcb6200Q Firmware 1.2L.03.5
Actiontec WCB6200Q Multipart Boundary Stack-based Buffer Overflow Remote Code Execution Vulnerability.
low complexity
actiontec CWE-787
8.8