VYPR

CWE-120

Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')

BaseIncompleteLikelihood: High

Description

The product copies an input buffer to an output buffer without verifying that the size of the input buffer is less than the size of the output buffer.

Hierarchy (View 1000)

Parents

Children

Related attack patterns (CAPEC)

CAPEC-10 · CAPEC-100 · CAPEC-14 · CAPEC-24 · CAPEC-42 · CAPEC-44 · CAPEC-45 · CAPEC-46 · CAPEC-47 · CAPEC-67 · CAPEC-8 · CAPEC-9 · CAPEC-92

CVEs mapped to this weakness (4,384)

page 171 of 220
  • CVE-2019-17060MedFeb 10, 2020
    risk 0.42cvss 6.5epss 0.01

    The Bluetooth Low Energy (BLE) stack implementation on the NXP KW41Z (based on the MCUXpresso SDK with Bluetooth Low Energy Driver 2.2.1 and earlier) does not properly restrict the BLE Link Layer header and executes certain memory contents upon receiving a packet with a Link…

  • CVE-2019-17402MedOct 9, 2019
    risk 0.42cvss 6.5epss 0.02

    Exiv2 0.27.2 allows attackers to trigger a crash in Exiv2::getULong in types.cpp when called from Exiv2::Internal::CiffDirectory::readDirectory in crwimage_int.cpp, because there is no validation of the relationship of the total size to the offset and size.

  • CVE-2018-14652MedOct 31, 2018
    risk 0.42cvss 6.5epss 0.03

    The Gluster file system through versions 3.12 and 4.1.4 is vulnerable to a buffer overflow in the 'features/index' translator via the code handling the 'GF_XATTR_CLRLK_CMD' xattr in the 'pl_getxattr' function. A remote authenticated attacker could exploit this on a mounted…

  • CVE-2025-0725HigFeb 5, 2025
    risk 0.41cvss 7.3epss 0.01

    When libcurl is asked to perform automatic gzip decompression of content-encoded HTTP responses with the `CURLOPT_ACCEPT_ENCODING` option, **using zlib 1.2.0.3 or older**, an attacker-controlled integer overflow would make libcurl perform a buffer overflow.

  • CVE-2024-57537MedJan 21, 2025
    risk 0.41cvss 6.3epss 0.00

    Linksys E8450 v1.2.00.360516 was discovered to contain a buffer overflow vulnerability. The parsed field (page) is copied to the stack without length verification.

  • CVE-2024-56450MedJan 8, 2025
    risk 0.41cvss 6.3epss 0.00

    Buffer overflow vulnerability in the component driver module Impact: Successful exploitation of this vulnerability may affect availability.

  • CVE-2024-10371MedOct 25, 2024
    risk 0.41cvss 6.3epss 0.01

    A vulnerability classified as critical has been found in SourceCodester Payroll Management System 1.0. This affects the function login of the file main. The manipulation leads to buffer overflow. The exploit has been disclosed to the public and may be used.

  • CVE-2024-9088MedSep 22, 2024
    risk 0.41cvss 6.3epss 0.01

    A vulnerability has been found in SourceCodester Telecom Billing Management System 1.0 and classified as critical. This vulnerability affects the function login. The manipulation of the argument uname leads to buffer overflow. The exploit has been disclosed to the public and may…

  • CVE-2024-7217MedJul 30, 2024
    risk 0.41cvss 6.3epss 0.07

    A vulnerability was found in TOTOLINK CA300-PoE 6.2c.884. It has been declared as critical. This vulnerability affects the function loginauth of the file /cgi-bin/cstecgi.cgi. The manipulation of the argument password leads to buffer overflow. The attack can be initiated…

  • CVE-2024-4511MedMay 6, 2024
    risk 0.41cvss 6.3epss 0.01

    A vulnerability classified as critical has been found in Shanghai Sunfull Automation BACnet Server HMI1002-ARM 2.0.4. This affects an unknown part of the component Message Handler. The manipulation leads to buffer overflow. The exploit has been disclosed to the public and may be…

  • CVE-2023-52364MedApr 8, 2024
    risk 0.41cvss 6.3epss 0.00

    Vulnerability of input parameters being not strictly verified in the RSMC module. Impact: Successful exploitation of this vulnerability may cause out-of-bounds write.

  • CVE-2024-2331MedMar 9, 2024
    risk 0.41cvss 6.3epss 0.01

    A vulnerability was found in SourceCodester Tourist Reservation System 1.0. It has been declared as critical. This vulnerability affects the function ad_writedata of the file System.cpp. The manipulation of the argument ad_code leads to buffer overflow. The attack can be…

  • CVE-2023-43816MedJan 18, 2024
    risk 0.41cvss 6.3epss 0.00

    A buffer overflow vulnerability exists in Delta Electronics Delta Industrial Automation DOPSoft version 2 when parsing the wKPFStringLen field of a DPS file. An anonymous attacker can exploit this vulnerability by enticing a user to open a specially crafted DPS file to achieve…

  • CVE-2024-22419HigJan 18, 2024
    risk 0.41cvss 7.3epss 0.01

    Vyper is a Pythonic Smart Contract Language for the Ethereum Virtual Machine. The `concat` built-in can write over the bounds of the memory buffer that was allocated for it and thus overwrite existing valid data. The root cause is that the `build_IR` for `concat` doesn't…

  • CVE-2023-5753MedOct 25, 2023
    risk 0.41cvss 6.3epss 0.01

    Potential buffer overflows in the Bluetooth subsystem due to asserts being disabled in /subsys/bluetooth/host/hci_core.c

  • CVE-2023-4260MedSep 27, 2023
    risk 0.41cvss 6.3epss 0.01

    Potential off-by-one buffer overflow vulnerability in the Zephyr fuse file system.

  • CVE-2023-1161MedMar 6, 2023
    risk 0.41cvss 6.3epss 0.01

    ISO 15765 and ISO 10681 dissector crash in Wireshark 4.0.0 to 4.0.3 and 3.6.0 to 3.6.11 allows denial of service via packet injection or crafted capture file

  • CVE-2022-4857MedDec 30, 2022
    risk 0.41cvss 6.3epss 0.01

    A vulnerability was found in Modbus Tools Modbus Poll up to 9.10.0 and classified as critical. Affected by this issue is some unknown functionality of the file mbpoll.exe of the component mbp File Handler. The manipulation leads to buffer overflow. The attack may be launched…

  • CVE-2022-4856MedDec 30, 2022
    risk 0.41cvss 6.3epss 0.01

    A vulnerability has been found in Modbus Tools Modbus Slave up to 7.5.1 and classified as critical. Affected by this vulnerability is an unknown functionality of the file mbslave.exe of the component mbs File Handler. The manipulation leads to buffer overflow. The attack can be…

  • CVE-2022-36280MedSep 9, 2022
    risk 0.41cvss 6.3epss 0.01

    An out-of-bounds(OOB) memory access vulnerability was found in vmwgfx driver in drivers/gpu/vmxgfx/vmxgfx_kms.c in GPU component in the Linux kernel with device file '/dev/dri/renderD128 (or Dxxx)'. This flaw allows a local attacker with a user account on the system to gain…