Vulnerabilities > Out-of-bounds Write

DATE CVE VULNERABILITY TITLE RISK
2018-02-12 CVE-2017-13232 Out-of-bounds Write vulnerability in Google Android
In audioserver, there is an out-of-bounds write due to a log statement using %s with an array that may not be NULL terminated.
network
low complexity
google CWE-787
7.5
2018-02-12 CVE-2017-13231 Out-of-bounds Write vulnerability in Google Android 8.0/8.1
In libmediadrm, there is an out-of-bounds write due to improper input validation.
local
low complexity
google CWE-787
7.8
2018-02-12 CVE-2017-13230 Out-of-bounds Write vulnerability in Google Android
In hevc codec, there is an out-of-bounds write due to an incorrect bounds check with the i2_pic_width_in_luma_samples value.
network
low complexity
google CWE-787
8.8
2018-02-12 CVE-2017-13228 Out-of-bounds Write vulnerability in Google Android
In function ih264d_ref_idx_reordering of libavc, there is an out-of-bounds write due to modCount being defined as an unsigned character.
network
low complexity
google CWE-787
8.8
2018-02-09 CVE-2018-1000035 Out-of-bounds Write vulnerability in Unzip Project Unzip
A heap-based buffer overflow exists in Info-Zip UnZip version <= 6.00 in the processing of password-protected archives that allows an attacker to perform a denial of service or to possibly achieve code execution.
local
low complexity
unzip-project CWE-787
7.8
2018-02-09 CVE-2018-1000032 Out-of-bounds Write vulnerability in Info-Zip Unzip 6.10C22
A heap-based buffer overflow exists in Info-Zip UnZip version 6.10c22 that allows an attacker to perform a denial of service or to possibly achieve code execution.
local
low complexity
info-zip CWE-787
7.8
2018-02-09 CVE-2018-1000031 Out-of-bounds Write vulnerability in Info-Zip Unzip 6.10C22
A heap-based buffer overflow exists in Info-Zip UnZip version 6.10c22 that allows an attacker to perform a denial of service or to possibly achieve code execution.
local
low complexity
info-zip CWE-787
7.8
2018-02-07 CVE-2017-5133 Out-of-bounds Write vulnerability in multiple products
Off-by-one read/write on the heap in Blink in Google Chrome prior to 62.0.3202.62 allowed a remote attacker to corrupt memory and possibly leak information and potentially execute code via a crafted PDF file.
network
low complexity
google debian CWE-787
8.8
2018-02-07 CVE-2017-5130 Out-of-bounds Write vulnerability in multiple products
An integer overflow in xmlmemory.c in libxml2 before 2.9.5, as used in Google Chrome prior to 62.0.3202.62 and other products, allowed a remote attacker to potentially exploit heap corruption via a crafted XML file.
network
low complexity
google debian xmlsoft CWE-787
8.8
2018-02-06 CVE-2018-6758 Out-of-bounds Write vulnerability in Unbit Uwsgi
The uwsgi_expand_path function in core/utils.c in Unbit uWSGI through 2.0.15 has a stack-based buffer overflow via a large directory length.
network
low complexity
unbit CWE-787
critical
9.8