VYPR

CWE-120

Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')

BaseIncompleteLikelihood: High

Description

The product copies an input buffer to an output buffer without verifying that the size of the input buffer is less than the size of the output buffer.

Hierarchy (View 1000)

Parents

Children

Related attack patterns (CAPEC)

CAPEC-10 · CAPEC-100 · CAPEC-14 · CAPEC-24 · CAPEC-42 · CAPEC-44 · CAPEC-45 · CAPEC-46 · CAPEC-47 · CAPEC-67 · CAPEC-8 · CAPEC-9 · CAPEC-92

CVEs mapped to this weakness (4,384)

page 157 of 220
  • CVE-2023-28579MedDec 5, 2023
    risk 0.44cvss 6.7epss 0.00

    Memory Corruption in WLAN Host while deserializing the input PMK bytes without checking the input PMK length.

  • CVE-2023-32860MedDec 4, 2023
    risk 0.44cvss 6.7epss 0.00

    In display, there is a possible classic buffer overflow due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07929788; Issue ID: ALPS07929788.

  • CVE-2023-32859MedDec 4, 2023
    risk 0.44cvss 6.7epss 0.00

    In meta, there is a possible classic buffer overflow due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08000473; Issue ID: ALPS08000473.

  • CVE-2023-49700MedNov 30, 2023
    risk 0.44cvss 6.7epss 0.00

    Security best practices violations, a string operation in Streamingmedia will write past the end of fixed-size destination buffer if the source buffer is too large.

  • CVE-2023-6238MedNov 21, 2023
    risk 0.44cvss 6.7epss 0.00

    A buffer overflow vulnerability was found in the NVM Express (NVMe) driver in the Linux kernel. Only privileged user could specify a small meta buffer and let the device perform larger Direct Memory Access (DMA) into the same buffer, overwriting unrelated kernel memory, causing…

  • CVE-2023-29177MedNov 14, 2023
    risk 0.44cvss 6.7epss 0.00

    Multiple buffer copy without checking size of input ('classic buffer overflow') vulnerabilities [CWE-120] in FortiADC version 7.2.0 and before 7.1.2 & FortiDDoS-F version 6.5.0 and before 6.4.1 allows a privileged attacker to execute arbitrary code or commands via specifically…

  • CVE-2023-43581MedNov 8, 2023
    risk 0.44cvss 6.7epss 0.00

    A buffer overflow was reported in the Update_WMI module in some Lenovo Desktop products that may allow a local attacker with elevated privileges to execute arbitrary code.

  • CVE-2023-43580MedNov 8, 2023
    risk 0.44cvss 6.7epss 0.00

    A buffer overflow was reported in the SmuV11DxeVMR module in some Lenovo Desktop products that may allow a local attacker with elevated privileges to execute arbitrary code.

  • CVE-2023-43579MedNov 8, 2023
    risk 0.44cvss 6.7epss 0.00

    A buffer overflow was reported in the SmuV11Dxe driver in some Lenovo Desktop products that may allow a local attacker with elevated privileges to execute arbitrary code.

  • CVE-2023-43578MedNov 8, 2023
    risk 0.44cvss 6.7epss 0.00

    A buffer overflow was reported in the SmiFlash module in some Lenovo Desktop products that may allow a local attacker with elevated privileges to execute arbitrary code.

  • CVE-2023-43577MedNov 8, 2023
    risk 0.44cvss 6.7epss 0.00

    A buffer overflow was reported in the ReFlash module in some Lenovo Desktop products that may allow a local attacker with elevated privileges to execute arbitrary code.

  • CVE-2023-43576MedNov 8, 2023
    risk 0.44cvss 6.7epss 0.00

    A buffer overflow was reported in the WMISwSmi module in some Lenovo Desktop products that may allow a local attacker with elevated privileges to execute arbitrary code.

  • CVE-2023-43575MedNov 8, 2023
    risk 0.44cvss 6.7epss 0.00

    A buffer overflow was reported in the UltraFunctionTable module in some Lenovo Desktop products that may allow a local attacker with elevated privileges to execute arbitrary code.

  • CVE-2023-43573MedNov 8, 2023
    risk 0.44cvss 6.7epss 0.00

    A buffer overflow was reported in the LEMALLDriversConnectedEventHook module in some Lenovo Desktop products that may allow a local attacker with elevated privileges to execute arbitrary code.

  • CVE-2023-43571MedNov 8, 2023
    risk 0.44cvss 6.7epss 0.00

    A buffer overflow was reported in the BiosExtensionLoader module in some Lenovo Desktop products that may allow a local attacker with elevated privileges to execute arbitrary code.

  • CVE-2023-5075MedNov 8, 2023
    risk 0.44cvss 6.7epss 0.00

    A buffer overflow was reported in the FmpSipoCapsuleDriver driver in the IdeaPad Duet 3-10IGL5 that may allow a local attacker with elevated privileges to execute arbitrary code.

  • CVE-2023-43569MedNov 8, 2023
    risk 0.44cvss 6.7epss 0.00

    A buffer overflow was reported in the OemSmi module in some Lenovo Desktop products that may allow a local attacker with elevated privileges to execute arbitrary code. 

  • CVE-2023-43567MedNov 8, 2023
    risk 0.44cvss 6.7epss 0.00

    A buffer overflow was reported in the LemSecureBootForceKey module in some Lenovo Desktop products that may allow a local attacker with elevated privileges to execute arbitrary code.

  • CVE-2023-28570MedNov 7, 2023
    risk 0.44cvss 6.7epss 0.00

    Memory corruption while processing audio effects.

  • CVE-2023-26319MedOct 11, 2023
    risk 0.44cvss 6.7epss 0.01

    Improper Neutralization of Special Elements used in a Command ('Command Injection') vulnerability in Xiaomi Xiaomi Router allows Command Injection.