VYPR

CWE-120

Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')

BaseIncompleteLikelihood: High

Description

The product copies an input buffer to an output buffer without verifying that the size of the input buffer is less than the size of the output buffer.

Hierarchy (View 1000)

Parents

Children

Related attack patterns (CAPEC)

CAPEC-10 · CAPEC-100 · CAPEC-14 · CAPEC-24 · CAPEC-42 · CAPEC-44 · CAPEC-45 · CAPEC-46 · CAPEC-47 · CAPEC-67 · CAPEC-8 · CAPEC-9 · CAPEC-92

CVEs mapped to this weakness (4,372)

page 137 of 219
  • CVE-2020-18077HigDec 17, 2021
    risk 0.49cvss 7.5epss 0.01

    A buffer overflow vulnerability in the Virtual Path Mapping component of FTPShell v6.83 allows attackers to cause a denial of service (DoS).

  • CVE-2021-44429HigNov 29, 2021
    risk 0.49cvss 7.5epss 0.02

    Serva 4.4.0 allows remote attackers to cause a denial of service (daemon crash) via a TFTP read (RRQ) request, aka opcode 1, a related issue to CVE-2013-0145.

  • CVE-2021-44428HigNov 29, 2021
    risk 0.49cvss 7.5epss 0.03

    Pinkie 2.15 allows remote attackers to cause a denial of service (daemon crash) via a TFTP read (RRQ) request, aka opcode 1.

  • CVE-2021-39926HigNov 19, 2021
    risk 0.49cvss 7.5epss 0.08

    Buffer overflow in the Bluetooth HCI_ISO dissector in Wireshark 3.4.0 to 3.4.9 allows denial of service via packet injection or crafted capture file

  • CVE-2021-39925HigNov 19, 2021
    risk 0.49cvss 7.5epss 0.08

    Buffer overflow in the Bluetooth SDP dissector in Wireshark 3.4.0 to 3.4.9 and 3.2.0 to 3.2.17 allows denial of service via packet injection or crafted capture file

  • CVE-2021-39922HigNov 19, 2021
    risk 0.49cvss 7.5epss 0.05

    Buffer overflow in the C12.22 dissector in Wireshark 3.4.0 to 3.4.9 and 3.2.0 to 3.2.17 allows denial of service via packet injection or crafted capture file

  • CVE-2020-21574HigNov 2, 2021
    risk 0.49cvss 7.5epss 0.01

    Buffer overflow vulnerability in YotsuyaNight c-http v0.1.0, allows attackers to cause a denial of service via a long url request which is passed to the delimitedread function.

  • CVE-2020-20658HigNov 2, 2021
    risk 0.49cvss 7.5epss 0.01

    Buffer overflow vulnerability in fcovatti libiec_iccp_mod v1.5, allows attackers to cause a denail of service when trying to calloc an unexpectiedly large space.

  • CVE-2020-20657HigNov 2, 2021
    risk 0.49cvss 7.5epss 0.01

    Buffer overflow vulnerability in fcovatti libiec_iccp_mod v1.5, allows attackers to cause a denial of service via an unexpected packet while trying to connect.

  • CVE-2021-41794HigOct 7, 2021
    risk 0.49cvss 7.5epss 0.01

    ogs_fqdn_parse in Open5GS 1.0.0 through 2.3.3 inappropriately trusts a client-supplied length value, leading to a buffer overflow. The attacker can send a PFCP Session Establishment Request with "internet" as the PDI Network Instance. The first character is interpreted as a…

  • CVE-2021-35945HigSep 29, 2021
    risk 0.49cvss 7.5epss 0.01

    Couchbase Server 6.5.x, 6.6.0 through 6.6.2, and 7.0.0, has a Buffer Overflow. A specially crafted network packet sent from an attacker can crash memcached.

  • CVE-2021-35944HigSep 29, 2021
    risk 0.49cvss 7.5epss 0.01

    Couchbase Server 6.5.x, 6.6.x through 6.6.2, and 7.0.0 has a Buffer Overflow. A specially crafted network packet sent from an attacker can crash memcached.

  • CVE-2021-33720HigSep 14, 2021
    risk 0.49cvss 7.5epss 0.01

    A vulnerability has been identified in SIPROTEC 5 relays with CPU variants CP050 (All versions < V8.80), SIPROTEC 5 relays with CPU variants CP100 (All versions < V8.80), SIPROTEC 5 relays with CPU variants CP300 (All versions < V8.80). Specially crafted packets sent to port…

  • CVE-2021-41054HigSep 13, 2021
    risk 0.49cvss 7.5epss 0.03

    tftpd_file.c in atftp through 0.7.4 has a buffer overflow because buffer-size handling does not properly consider the combination of data, OACK, and other options.

  • CVE-2021-0284HigAug 17, 2021
    risk 0.49cvss 7.5epss 0.01

    A buffer overflow vulnerability in the TCP/IP stack of Juniper Networks Junos OS allows an attacker to send specific sequences of packets to the device thereby causing a Denial of Service (DoS). By repeatedly sending these sequences of packets to the device, an attacker can…

  • CVE-2021-38386HigAug 10, 2021
    risk 0.49cvss 7.5epss 0.01

    In Contiki 3.0, a buffer overflow in the Telnet service allows remote attackers to cause a denial of service because the ls command is mishandled when a directory has many files with long names.

  • CVE-2021-37166HigAug 2, 2021
    risk 0.49cvss 7.5epss 0.02

    A buffer overflow issue leading to denial of service was discovered in HMI3 Control Panel in Swisslog Healthcare Nexus Panel operated by released versions of software before Nexus Software 7.2.5.7. When HMI3 starts up, it binds a local service to a TCP port on all interfaces of…

  • CVE-2020-22284HigJul 22, 2021
    risk 0.49cvss 7.5epss 0.01

    A buffer overflow vulnerability in the zepif_linkoutput() function of Free Software Foundation lwIP git head version and version 2.1.2 allows attackers to access sensitive information via a crafted 6LoWPAN packet.

  • CVE-2020-22283HigJul 22, 2021
    risk 0.49cvss 7.5epss 0.01

    A buffer overflow vulnerability in the icmp6_send_response_with_addrs_and_netif() function of Free Software Foundation lwIP version git head allows attackers to access sensitive information via a crafted ICMPv6 packet.

  • CVE-2021-0283HigJul 15, 2021
    risk 0.49cvss 7.5epss 0.01

    A buffer overflow vulnerability in the TCP/IP stack of Juniper Networks Junos OS allows an attacker to send specific sequences of packets to the device thereby causing a Denial of Service (DoS). By repeatedly sending these sequences of packets to the device, an attacker can…