Vulnerabilities > Stack-based Buffer Overflow

DATE CVE VULNERABILITY TITLE RISK
2020-07-28 CVE-2020-15416 Stack-based Buffer Overflow vulnerability in Netgear R6700 Firmware 1.0.4.8410.0.58
This vulnerability allows network-adjacent attackers to bypass authentication on affected installations of NETGEAR R6700 V1.0.4.84_10.0.58 routers.
low complexity
netgear CWE-121
8.3
2020-07-28 CVE-2020-10924 Stack-based Buffer Overflow vulnerability in Netgear R6700 Firmware 1.0.4.8410.0.58
This vulnerability allows network-adjacent attackers to bypass authentication on affected installations of NETGEAR R6700 V1.0.4.84_10.0.58 routers.
low complexity
netgear CWE-121
8.3
2020-06-30 CVE-2020-4044 Stack-based Buffer Overflow vulnerability in Neutrinolabs Xrdp
The xrdp-sesman service before version 0.9.13.1 can be crashed by connecting over port 3350 and supplying a malicious payload.
local
low complexity
neutrinolabs CWE-121
4.6
2019-11-29 CVE-2019-14897 Stack-based Buffer Overflow vulnerability in multiple products
A stack-based buffer overflow was found in the Linux kernel, version kernel-2.6.32, in Marvell WiFi chip driver.
network
low complexity
linux debian canonical CWE-121
critical
9.8
2019-08-02 CVE-2014-8184 Stack-based Buffer Overflow vulnerability in Liblouis
A vulnerability was found in liblouis, versions 2.5.x before 2.5.4.
local
low complexity
liblouis CWE-121
7.8
2019-05-01 CVE-2019-10954 Stack-based Buffer Overflow vulnerability in Rockwellautomation products
An attacker could send crafted SMTP packets to cause a denial-of-service condition where the controller enters a major non-recoverable faulted state (MNRF) in CompactLogix 5370 L1, L2, and L3 Controllers, Compact GuardLogix 5370 controllers, and Armor Compact GuardLogix 5370 Controllers Versions 20 - 30 and earlier.
network
low complexity
rockwellautomation CWE-121
7.5
2019-03-13 CVE-2018-17937 Stack-based Buffer Overflow vulnerability in multiple products
gpsd versions 2.90 to 3.17 and microjson versions 1.0 to 1.3, an open source project, allow a stack-based buffer overflow, which may allow remote attackers to execute arbitrary code on embedded platforms via traffic on Port 2947/TCP or crafted JSON inputs.
5.8
2018-10-16 CVE-2018-10839 Stack-based Buffer Overflow vulnerability in multiple products
Qemu emulator <= 3.0.0 built with the NE2000 NIC emulation support is vulnerable to an integer overflow, which could lead to buffer overflow issue.
network
low complexity
qemu canonical debian CWE-121
6.5
2018-09-25 CVE-2018-14633 Stack-based Buffer Overflow vulnerability in multiple products
A security flaw was found in the chap_server_compute_md5() function in the ISCSI target code in the Linux kernel in a way an authentication request from an ISCSI initiator is processed.
network
high complexity
linux debian canonical redhat CWE-121
7.0
2018-09-04 CVE-2018-10907 Stack-based Buffer Overflow vulnerability in multiple products
It was found that glusterfs server is vulnerable to multiple stack based buffer overflows due to functions in server-rpc-fopc.c allocating fixed size buffers using 'alloca(3)'.
network
low complexity
gluster redhat debian opensuse CWE-121
6.5