Vulnerabilities > Out-of-bounds Write

DATE CVE VULNERABILITY TITLE RISK
2017-04-03 CVE-2017-5949 Out-of-bounds Write vulnerability in Apple Safari 22
JavaScriptCore in WebKit, as distributed in Safari Technology Preview Release 22, allows remote attackers to cause a denial of service (heap-based out-of-bounds write and application crash) or possibly have unspecified other impact via crafted JavaScript code that triggers access to red-zone memory locations, related to jit/ThunkGenerators.cpp, llint/LowLevelInterpreter32_64.asm, and llint/LowLevelInterpreter64.asm.
network
low complexity
apple CWE-787
critical
9.8
2017-03-27 CVE-2017-6451 Out-of-bounds Write vulnerability in NTP
The mx4200_send function in the legacy MX4200 refclock in NTP before 4.2.8p10 and 4.3.x before 4.3.94 does not properly handle the return value of the snprintf function, which allows local users to execute arbitrary code via unspecified vectors, which trigger an out-of-bounds memory write.
local
low complexity
ntp CWE-787
7.8
2017-03-26 CVE-2016-10273 Out-of-bounds Write vulnerability in Jensenofscandinavia products
Multiple stack buffer overflow vulnerabilities in Jensen of Scandinavia AS Air:Link 3G (AL3G) version 2.23m (Rev.
network
low complexity
jensenofscandinavia CWE-787
8.8
2017-03-24 CVE-2017-5510 Out-of-bounds Write vulnerability in multiple products
coders/psd.c in ImageMagick allows remote attackers to have unspecified impact via a crafted PSD file, which triggers an out-of-bounds write.
local
low complexity
imagemagick debian CWE-787
7.8
2017-03-24 CVE-2017-5509 Out-of-bounds Write vulnerability in Imagemagick
coders/psd.c in ImageMagick allows remote attackers to have unspecified impact via a crafted PSD file, which triggers an out-of-bounds write.
local
low complexity
imagemagick CWE-787
7.8
2017-03-23 CVE-2016-9275 Out-of-bounds Write vulnerability in Libdwarf Project Libdwarf
Heap-based buffer overflow in the _dwarf_skim_forms function in libdwarf/dwarf_macro5.c in Libdwarf before 20161124 allows remote attackers to cause a denial of service (out-of-bounds read).
network
low complexity
libdwarf-project CWE-787
7.5
2017-03-22 CVE-2017-7224 Out-of-bounds Write vulnerability in GNU Binutils 2.28
The find_nearest_line function in objdump in GNU Binutils 2.28 is vulnerable to an invalid write (of size 1) while disassembling a corrupt binary that contains an empty function name, leading to a program crash.
local
low complexity
gnu CWE-787
5.5
2017-03-17 CVE-2017-0149 Out-of-bounds Write vulnerability in Microsoft Internet Explorer 10/11/9
Microsoft Internet Explorer 9 through 11 allow remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability." This vulnerability is different from those described in CVE-2017-0018 and CVE-2017-0037.
network
low complexity
microsoft CWE-787
8.8
2017-03-16 CVE-2016-10247 Out-of-bounds Write vulnerability in multiple products
Buffer overflow in the my_getline function in jstest_main.c in Mujstest in Artifex Software, Inc.
local
low complexity
artifex debian CWE-787
5.5
2017-03-16 CVE-2016-10246 Out-of-bounds Write vulnerability in multiple products
Buffer overflow in the main function in jstest_main.c in Mujstest in Artifex Software, Inc.
local
low complexity
artifex debian CWE-787
5.5