Vulnerabilities > Out-of-bounds Write

DATE CVE VULNERABILITY TITLE RISK
2019-09-05 CVE-2019-2176 Out-of-bounds Write vulnerability in Google Android 8.0/8.1/9.0
In ihevcd_parse_buffering_period_sei of ihevcd_parse_headers.c in Android 8.0, 8.1 and 9, there is a possible out of bounds write due to a missing bounds check.
local
low complexity
google CWE-787
7.8
2019-09-05 CVE-2019-2123 Out-of-bounds Write vulnerability in Google Android
In execTransact of Binder.java in Android 7.1.1, 7.1.2, 8.0, 8.1, and 9, there is a possible local execution of arbitrary code in a privileged process due to a memory overwrite.
local
low complexity
google CWE-787
7.8
2019-09-05 CVE-2019-2108 Out-of-bounds Write vulnerability in Google Android 10.0
In ihevcd_ref_list of ihevcd_ref_list.c in Android 10, there is a possible out of bounds write due to a missing bounds check.
local
low complexity
google CWE-787
7.8
2019-09-05 CVE-2019-15938 Out-of-bounds Write vulnerability in Pengutronix Barebox
Pengutronix barebox through 2019.08.1 has a remote buffer overflow in nfs_readlink_req in fs/nfs.c because a length field is directly used for a memcpy.
network
low complexity
pengutronix CWE-787
critical
9.8
2019-09-05 CVE-2019-15937 Out-of-bounds Write vulnerability in Pengutronix Barebox
Pengutronix barebox through 2019.08.1 has a remote buffer overflow in nfs_readlink_reply in net/nfs.c because a length field is directly used for a memcpy.
network
low complexity
pengutronix CWE-787
critical
9.8
2019-09-05 CVE-2018-21010 Out-of-bounds Write vulnerability in multiple products
OpenJPEG before 2.3.1 has a heap buffer overflow in color_apply_icc_profile in bin/common/color.c.
network
low complexity
uclouvain debian CWE-787
8.8
2019-09-04 CVE-2019-13522 Out-of-bounds Write vulnerability in Ezautomation EZ PLC Editor 1.8.41
An attacker could use a specially crafted project file to corrupt the memory and execute code under the privileges of the EZ PLC Editor Versions 1.8.41 and prior.
local
low complexity
ezautomation CWE-787
7.8
2019-09-03 CVE-2019-13156 Out-of-bounds Write vulnerability in Naver Cloud Explorer
NDrive(1.2.2).sys in Naver Cloud Explorer has a stack-based buffer overflow, which allows attackers to cause a denial of service when reading data from IOCTL handle.
network
low complexity
naver CWE-787
7.5
2019-08-30 CVE-2019-12810 Out-of-bounds Write vulnerability in Estsoft Alsee
A memory corruption vulnerability exists in the .PSD parsing functionality of ALSee v5.3 ~ v8.39.
local
low complexity
estsoft CWE-787
7.8
2019-08-30 CVE-2019-5609 Out-of-bounds Write vulnerability in Freebsd 11.2/11.3/12.0
In FreeBSD 12.0-STABLE before r350619, 12.0-RELEASE before 12.0-RELEASE-p9, 11.3-STABLE before r350619, 11.3-RELEASE before 11.3-RELEASE-p2, and 11.2-RELEASE before 11.2-RELEASE-p13, the bhyve e1000 device emulation used a guest-provided value to determine the size of the on-stack buffer without validation when TCP segmentation offload is requested for a transmitted packet.
network
low complexity
freebsd CWE-787
7.5