Vulnerabilities > Out-of-bounds Write

DATE CVE VULNERABILITY TITLE RISK
2019-02-06 CVE-2018-20763 Out-of-bounds Write vulnerability in multiple products
In GPAC 0.7.1 and earlier, gf_text_get_utf8_line in media_tools/text_import.c in libgpac_static.a allows an out-of-bounds write because of missing szLineConv bounds checking.
local
low complexity
gpac-project debian canonical CWE-787
7.8
2019-02-06 CVE-2018-20760 Out-of-bounds Write vulnerability in multiple products
In GPAC 0.7.1 and earlier, gf_text_get_utf8_line in media_tools/text_import.c in libgpac_static.a allows an out-of-bounds write because a certain -1 return value is mishandled.
local
low complexity
gpac debian canonical CWE-787
7.8
2019-02-06 CVE-2018-3980 Out-of-bounds Write vulnerability in Canvasgfx Canvas Draw 5.0.0
An exploitable out-of-bounds write exists in the TIFF-parsing functionality of Canvas Draw version 5.0.0.
local
low complexity
canvasgfx CWE-787
7.8
2019-02-06 CVE-2018-3976 Out-of-bounds Write vulnerability in Canvasgfx Canvas Draw 5.0.0.28
An exploitable out-of-bounds write exists in the CALS Raster file format-parsing functionality of Canvas Draw version 5.0.0.28.
local
low complexity
canvasgfx CWE-787
7.8
2019-02-06 CVE-2018-3973 Out-of-bounds Write vulnerability in Canvasgfx Canvas Draw 5.0.0
An exploitable out of bounds write exists in the CAL parsing functionality of Canvas Draw version 5.0.0.
local
low complexity
canvasgfx CWE-787
7.8
2019-02-06 CVE-2019-3822 Out-of-bounds Write vulnerability in multiple products
libcurl versions from 7.36.0 to before 7.64.0 are vulnerable to a stack-based buffer overflow.
network
low complexity
haxx canonical debian netapp siemens oracle redhat CWE-787
critical
9.8
2019-02-05 CVE-2018-3991 Out-of-bounds Write vulnerability in multiple products
An exploitable heap overflow vulnerability exists in the WkbProgramLow function of WibuKey Network server management, version 6.40.2402.500.
network
low complexity
wibu siemens CWE-787
critical
9.8
2019-02-05 CVE-2018-8800 Out-of-bounds Write vulnerability in multiple products
rdesktop versions up to and including v1.8.3 contain a Heap-Based Buffer Overflow in function ui_clip_handle_data() that results in a memory corruption and probably even a remote code execution.
network
low complexity
rdesktop debian opensuse CWE-787
critical
9.8
2019-02-05 CVE-2018-8797 Out-of-bounds Write vulnerability in multiple products
rdesktop versions up to and including v1.8.3 contain a Heap-Based Buffer Overflow in function process_plane() that results in a memory corruption and probably even a remote code execution.
network
low complexity
rdesktop debian opensuse CWE-787
critical
9.8
2019-02-05 CVE-2018-8793 Out-of-bounds Write vulnerability in multiple products
rdesktop versions up to and including v1.8.3 contain a Heap-Based Buffer Overflow in function cssp_read_tsrequest() that results in a memory corruption and probably even a remote code execution.
network
low complexity
rdesktop debian opensuse CWE-787
critical
9.8