Vulnerabilities > Out-of-bounds Write

DATE CVE VULNERABILITY TITLE RISK
2019-07-26 CVE-2019-14275 Out-of-bounds Write vulnerability in multiple products
Xfig fig2dev 3.2.7a has a stack-based buffer overflow in the calc_arrow function in bound.c.
local
low complexity
xfig-project debian opensuse CWE-787
5.5
2019-07-26 CVE-2019-14274 Out-of-bounds Write vulnerability in multiple products
MCPP 2.7.2 has a heap-based buffer overflow in the do_msg() function in support.c.
local
low complexity
mcpp-project opensuse CWE-787
5.5
2019-07-26 CVE-2019-10974 Out-of-bounds Write vulnerability in Nrel Energyplus
NREL EnergyPlus, Versions 8.6.0 and possibly prior versions, The application fails to prevent an exception handler from being overwritten with arbitrary code.
local
low complexity
nrel CWE-787
3.6
2019-07-25 CVE-2019-11921 Out-of-bounds Write vulnerability in Facebook Proxygen
An out of bounds write is possible via a specially crafted packet in certain configurations of Proxygen due to improper handling of Base64 when parsing malformed binary content in Structured HTTP Headers.
network
low complexity
facebook CWE-787
7.5
2019-07-25 CVE-2019-2299 Out-of-bounds Write vulnerability in Qualcomm products
An out-of-bound write can be triggered by a specially-crafted command supplied by a userspace application.
local
low complexity
qualcomm CWE-787
4.6
2019-07-25 CVE-2019-2238 Out-of-bounds Write vulnerability in Qualcomm products
Lack of check of data type can lead to subsequent loop-expression potentially go negative and the condition will still evaluate to true leading to buffer underflow.
local
low complexity
qualcomm CWE-787
4.6
2019-07-24 CVE-2019-14247 Out-of-bounds Write vulnerability in Mpg321 Project Mpg321 0.3.2
The scan() function in mad.c in mpg321 0.3.2 allows remote attackers to trigger an out-of-bounds write via a zero bitrate in an MP3 file.
4.3
2019-07-23 CVE-2019-2867 Out-of-bounds Write vulnerability in multiple products
Vulnerability in the Oracle VM VirtualBox component of Oracle Virtualization (subcomponent: Core).
local
low complexity
oracle opensuse CWE-787
4.6
2019-07-23 CVE-2019-11710 Out-of-bounds Write vulnerability in multiple products
Mozilla developers and community members reported memory safety bugs present in Firefox 67.
network
low complexity
mozilla opensuse CWE-787
7.5
2019-07-23 CVE-2019-11709 Out-of-bounds Write vulnerability in multiple products
Mozilla developers and community members reported memory safety bugs present in Firefox 67 and Firefox ESR 60.7.
network
low complexity
mozilla opensuse suse debian CWE-787
7.5