VYPR

CWE-120

Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')

BaseIncompleteLikelihood: High

Description

The product copies an input buffer to an output buffer without verifying that the size of the input buffer is less than the size of the output buffer.

Hierarchy (View 1000)

Parents

Children

Related attack patterns (CAPEC)

CAPEC-10 · CAPEC-100 · CAPEC-14 · CAPEC-24 · CAPEC-42 · CAPEC-44 · CAPEC-45 · CAPEC-46 · CAPEC-47 · CAPEC-67 · CAPEC-8 · CAPEC-9 · CAPEC-92

CVEs mapped to this weakness (4,372)

page 138 of 219
  • CVE-2020-22886HigJul 13, 2021
    risk 0.49cvss 7.5epss 0.02

    Buffer overflow vulnerability in function jsG_markobject in jsgc.c in mujs before 1.0.8, allows remote attackers to cause a denial of service.

  • CVE-2020-22885HigJul 13, 2021
    risk 0.49cvss 7.5epss 0.02

    Buffer overflow vulnerability in mujs before 1.0.8 due to recursion in the GC scanning phase, allows remote attackers to cause a denial of service.

  • CVE-2020-22876HigJul 13, 2021
    risk 0.49cvss 7.5epss 0.02

    Buffer Overflow vulnerability in quickjs.c in QuickJS, allows remote attackers to cause denial of service. This issue is resolved in the 2020-07-05 release.

  • CVE-2021-1907HigJul 13, 2021
    risk 0.49cvss 7.5epss 0.01

    Possible buffer overflow due to lack of length check in BA request in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile

  • CVE-2021-36155HigJul 9, 2021
    risk 0.49cvss 7.5epss 0.02

    LengthPrefixedMessageReader in gRPC Swift 1.1.0 and earlier allocates buffers of arbitrary length, which allows remote attackers to cause uncontrolled resource consumption and deny service.

  • CVE-2021-33185HigJun 18, 2021
    risk 0.49cvss 7.5epss 0.01

    SerenityOS contains a buffer overflow in the set_range test in TestBitmap which could allow attackers to obtain sensitive information.

  • CVE-2021-20027HigJun 14, 2021
    risk 0.49cvss 7.5epss 0.01

    A buffer overflow vulnerability in SonicOS allows a remote attacker to cause a Denial of Service (DoS) by sending a specially crafted request. This vulnerability affects SonicOS Gen5, Gen6, Gen7 platforms, and SonicOSv virtual firewalls.

  • CVE-2021-30191HigMay 25, 2021
    risk 0.49cvss 7.5epss 0.01

    CODESYS V2 Web-Server before 1.1.9.20 has a a Buffer Copy without Checking the Size of the Input.

  • CVE-2020-21041HigMay 24, 2021
    risk 0.49cvss 7.5epss 0.02

    Buffer Overflow vulnerability exists in FFmpeg 4.1 via apng_do_inverse_blend in libavcodec/pngenc.c, which could let a remote malicious user cause a Denial of Service

  • CVE-2021-26827HigApr 14, 2021
    risk 0.49cvss 7.5epss 0.02

    Buffer Overflow in TP-Link WR2041 v1 firmware for the TL-WR2041+ router allows remote attackers to cause a Denial-of-Service (DoS) by sending an HTTP request with a very long "ssid" parameter to the "/userRpm/popupSiteSurveyRpm.html" webpage, which crashes the router.

  • CVE-2020-36120HigApr 14, 2021
    risk 0.49cvss 7.5epss 0.01

    Buffer Overflow in the "sixel_encoder_encode_bytes" function of Libsixel v1.8.6 allows attackers to cause a Denial of Service (DoS).

  • CVE-2021-1405HigApr 8, 2021
    risk 0.49cvss 7.5epss 0.03

    A vulnerability in the email parsing module in Clam AntiVirus (ClamAV) Software version 0.103.1 and all prior versions could allow an unauthenticated, remote attacker to cause a denial of service condition on an affected device. The vulnerability is due to improper variable…

  • CVE-2020-19595HigApr 5, 2021
    risk 0.49cvss 7.5epss 0.01

    Buffer overflow vulnerability in Core FTP Server v2 Build 697, via a crafted username.

  • CVE-2021-20235HigApr 1, 2021
    risk 0.49cvss 8.1epss 0.44

    There's a flaw in the zeromq server in versions before 4.3.3 in src/decoder_allocators.hpp. The decoder static allocator could have its sized changed, but the buffer would remain the same as it is a static buffer. A remote, unauthenticated attacker who sends a crafted request to…

  • CVE-2021-25306HigMar 2, 2021
    risk 0.49cvss 7.5epss 0.01

    A buffer overflow vulnerability in the AT command interface of Gigaset DX600A v41.00-175 devices allows remote attackers to force a device reboot by sending relatively long AT commands.

  • CVE-2020-6088HigFeb 4, 2021
    risk 0.49cvss 7.5epss 0.03

    An exploitable denial of service vulnerability exists in the ENIP Request Path Network Segment functionality of Allen-Bradley Flex IO 1794-AENT/B 4.003. A specially crafted network request can cause a loss of communications with the device resulting in denial-of-service. An…

  • CVE-2020-16146HigJan 12, 2021
    risk 0.49cvss 7.5epss 0.01

    Espressif ESP-IDF 2.x, 3.0.x through 3.0.9, 3.1.x through 3.1.7, 3.2.x through 3.2.3, 3.3.x through 3.3.2, and 4.0.x through 4.0.1 has a Buffer Overflow in BluFi provisioning in btc_blufi_recv_handler function in blufi_prf.c. An attacker can send a crafted BluFi protocol Write…

  • CVE-2020-35788HigDec 30, 2020
    risk 0.49cvss 7.6epss 0.00

    NETGEAR WAC104 devices before 1.0.4.13 are affected by a buffer overflow by an authenticated user.

  • CVE-2020-29596HigDec 21, 2020
    risk 0.49cvss 7.5epss 0.03

    MiniWeb HTTP server 0.8.19 allows remote attackers to cause a denial of service (daemon crash) via a long name for the first parameter in a POST request.

  • CVE-2020-7559HigNov 19, 2020
    risk 0.49cvss 7.5epss 0.02

    A CWE-120: Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') vulnerability exists in PLC Simulator on EcoStruxureª Control Expert (now Unity Pro) (all versions) that could cause a crash of the PLC simulator present in EcoStruxureª Control Expert software…