Vulnerabilities > Out-of-bounds Write

DATE CVE VULNERABILITY TITLE RISK
2018-03-14 CVE-2018-8100 Out-of-bounds Write vulnerability in Xpdfreader Xpdf 4.00
The JPXStream::readTilePart function in JPXStream.cc in xpdf 4.00 allows attackers to launch denial of service (heap-based buffer overflow and application crash) or possibly have unspecified other impact via a specific pdf file, as demonstrated by pdftohtml.
local
low complexity
xpdfreader CWE-787
7.8
2018-03-13 CVE-2018-6304 Out-of-bounds Write vulnerability in Gemalto Sentinel LDK RTE
Stack overflow in custom XML-parser in Gemalto's Sentinel LDK RTE version before 7.65 leads to remote denial of service
network
low complexity
gemalto CWE-787
7.5
2018-03-12 CVE-2017-6286 Out-of-bounds Write vulnerability in Google Android
NVIDIA libnvomx contains a possible out of bounds write due to a missing bounds check which could lead to local escalation of privilege.
local
low complexity
google CWE-787
7.8
2018-03-12 CVE-2017-6281 Out-of-bounds Write vulnerability in Google Android
NVIDIA libnvomx contains a possible out of bounds write due to a improper input validation which could lead to local escalation of privilege.
local
low complexity
google CWE-787
7.8
2018-03-12 CVE-2016-5314 Out-of-bounds Write vulnerability in multiple products
Buffer overflow in the PixarLogDecode function in tif_pixarlog.c in LibTIFF 4.0.6 and earlier allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a crafted TIFF image, as demonstrated by overwriting the vgetparent function pointer with rgb2ycbcr.
network
low complexity
libtiff opensuse redhat debian CWE-787
8.8
2018-03-12 CVE-2014-8129 Out-of-bounds Write vulnerability in multiple products
LibTIFF 4.0.3 allows remote attackers to cause a denial of service (out-of-bounds write) or possibly have unspecified other impact via a crafted TIFF image, as demonstrated by failure of tif_next.c to verify that the BitsPerSample value is 2, and the t2p_sample_lab_signed_to_unsigned function in tiff2pdf.c.
network
low complexity
libtiff debian redhat apple CWE-787
8.8
2018-03-09 CVE-2018-8000 Out-of-bounds Write vulnerability in Podofo Project Podofo 0.9.5
In PoDoFo 0.9.5, there exists a heap-based buffer overflow vulnerability in PoDoFo::PdfTokenizer::GetNextToken() in PdfTokenizer.cpp, a related issue to CVE-2017-5886.
network
low complexity
podofo-project CWE-787
8.8
2018-03-09 CVE-2017-17250 Out-of-bounds Write vulnerability in Huawei products
Huawei AR120-S V200R005C32; AR1200 V200R005C32; AR1200-S V200R005C32; AR150 V200R005C32; AR150-S V200R005C32; AR160 V200R005C32; AR200 V200R005C32; AR200-S V200R005C32; AR2200-S V200R005C32; AR3200 V200R005C32; V200R007C00; AR510 V200R005C32; NetEngine16EX V200R005C32; SRG1300 V200R005C32; SRG2300 V200R005C32; SRG3300 V200R005C32 have an out-of-bounds write vulnerability.
network
low complexity
huawei CWE-787
6.5
2018-03-09 CVE-2017-17227 Out-of-bounds Write vulnerability in Huawei Mate 10 Firmware
GPU driver in Huawei Mate 10 smart phones with the versions before ALP-L09 8.0.0.120(C212); The versions before ALP-L09 8.0.0.127(C900); The versions before ALP-L09 8.0.0.128(402/C02/C109/C346/C432/C652) has a out-of-bounds memory access vulnerability due to the input parameters validation.
local
low complexity
huawei CWE-787
7.8
2018-03-09 CVE-2017-17217 Out-of-bounds Write vulnerability in Huawei products
Media Gateway Control Protocol (MGCP) in Huawei DP300 V500R002C00; RP200 V500R002C00SPC200; V600R006C00; TE30 V100R001C10; V500R002C00; V600R006C00; TE40 V500R002C00; V600R006C00; TE50 V500R002C00; V600R006C00; TE60 V100R001C10; V500R002C00; V600R006C00 has an out-of-bounds write vulnerability.
network
high complexity
huawei CWE-787
5.9