VYPR

CWE-120

Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')

BaseIncompleteLikelihood: High

Description

The product copies an input buffer to an output buffer without verifying that the size of the input buffer is less than the size of the output buffer.

Hierarchy (View 1000)

Parents

Children

Related attack patterns (CAPEC)

CAPEC-10 · CAPEC-100 · CAPEC-14 · CAPEC-24 · CAPEC-42 · CAPEC-44 · CAPEC-45 · CAPEC-46 · CAPEC-47 · CAPEC-67 · CAPEC-8 · CAPEC-9 · CAPEC-92

CVEs mapped to this weakness (4,384)

page 172 of 220
  • CVE-2026-20302MedAug 19, 2026
    risk 0.40cvss 6.1epss 0.00

    A vulnerability in the USB driver of Cisco RoomOS could allow an unauthenticated, local attacker with physical access to the USB port on an affected device to execute arbitrary code with root privileges. This vulnerability is due to insufficient boundary checks for…

  • CVE-2018-25423MedMay 30, 2026
    risk 0.40cvss 6.2epss 0.00

    Arm Whois 3.11 contains a buffer overflow vulnerability that allows local attackers to crash the application by supplying an oversized input string. Attackers can paste a malicious buffer of 700 bytes into the IP address or domain input field to trigger a denial of service…

  • CVE-2026-48696MedMay 26, 2026
    risk 0.40cvss 6.2epss 0.00

    FastNetMon Community Edition through 1.2.9 has a buffer overflow, a different vulnerability than CVE-2026-48686 and CVE-2026-48689.

  • CVE-2018-25369MedMay 25, 2026
    risk 0.40cvss 6.2epss 0.00

    Visual Ping 0.8.0.0 contains a buffer overflow vulnerability in input field handling that allows local attackers to crash the application by supplying oversized data. Attackers can inject malicious payloads exceeding 4108 bytes into the Host, Time Out, Packet Size, Pause, or…

  • CVE-2018-25367MedMay 25, 2026
    risk 0.40cvss 6.2epss 0.00

    NASA openVSP 3.16.1 contains a buffer overflow vulnerability that allows local attackers to crash the application by supplying an excessively long string in the geometry name field. Attackers can trigger a denial of service by pasting a 5000-byte payload into the name input…

  • CVE-2020-37234MedMay 16, 2026
    risk 0.40cvss 6.2epss 0.00

    Internet Download Manager 6.38.12 contains a buffer overflow vulnerability in the Scheduler component that allows local attackers to crash the application by supplying oversized input. Attackers can paste malicious data exceeding 5000 bytes into the 'Open the following file when…

  • CVE-2024-48519MedMay 13, 2026
    risk 0.40cvss 6.2epss 0.00

    Buffer Overflow vulnerability in Ardupilot rover commit v.c56439b045162058df0ff136afea3081fcd06d38 allows a local attacker to cause a denial of service via the AP_InertialSensor_ADIS1647x.cpp, ArduRover, ADIS1647x Sensor component.

  • CVE-2026-7735HigMay 4, 2026
    risk 0.40cvss 7.3epss 0.00

    A vulnerability was found in osrg GoBGP up to 4.3.0. Affected is the function PathAttributeAigp.DecodeFromBytes of the file pkg/packet/bgp/bgp.go of the component AIGP Attribute Parser. Performing a manipulation results in buffer overflow. It is possible to initiate the attack…

  • CVE-2018-25313MedApr 29, 2026
    risk 0.40cvss 6.2epss 0.00

    SysGauge 4.5.18 contains a buffer overflow vulnerability in the proxy configuration handler that allows local attackers to cause a denial of service by supplying an oversized string. Attackers can inject a large payload through the Proxy Server Host Name field in the Options…

  • CVE-2018-25306MedApr 29, 2026
    risk 0.40cvss 6.2epss 0.00

    PDFunite 0.41.0 contains a buffer overflow vulnerability that allows local attackers to crash the application by processing malformed PDF files during merge operations. Attackers can trigger a segmentation fault in the XRef::getEntry function within libpoppler by providing a…

  • CVE-2018-25305MedApr 29, 2026
    risk 0.40cvss 6.2epss 0.00

    librsvg2-bin 2.40.13 contains a buffer overflow vulnerability that allows local attackers to cause a denial of service by processing malformed SVG files. Attackers can supply crafted SVG input to the rsvg conversion tool to trigger a segmentation fault in the cairo image…

  • CVE-2018-25297MedApr 26, 2026
    risk 0.40cvss 6.2epss 0.00

    Wansview 1.0.2 contains a buffer overflow vulnerability that allows local attackers to crash the application by supplying oversized input strings. Attackers can inject 2000-byte payloads into the Camera name and DID number fields during camera addition to trigger application…

  • CVE-2018-25293MedApr 26, 2026
    risk 0.40cvss 6.2epss 0.00

    Prime95 29.4b7 contains a buffer overflow vulnerability in the PrimeNet connection dialog that allows local attackers to crash the application by supplying an excessively long string in the optional proxy password field. Attackers can trigger a denial of service by entering a…

  • CVE-2018-25292MedApr 26, 2026
    risk 0.40cvss 6.2epss 0.00

    Bome Restorator 1793 contains a buffer overflow vulnerability that allows local attackers to crash the application by supplying an excessively long string in the Name field. Attackers can create a malicious payload exceeding 4000 bytes and paste it into the Name input field to…

  • CVE-2018-25291MedApr 26, 2026
    risk 0.40cvss 6.2epss 0.00

    Project64 2.3.2 contains a buffer overflow vulnerability in the Plugin Directory settings field that allows local attackers to crash the application by supplying an excessively long string. Attackers can input a 6000-byte payload into the Plugin Directory field through the…

  • CVE-2018-25290MedApr 26, 2026
    risk 0.40cvss 6.2epss 0.00

    Easyboot 6.6.0 contains a buffer overflow vulnerability in the Replace Text function that allows local attackers to crash the application by supplying an oversized string. Attackers can trigger the vulnerability by accessing File > Tools > Replace Text and pasting a 7000-byte…

  • CVE-2018-25289MedApr 26, 2026
    risk 0.40cvss 6.2epss 0.00

    Softdisk 3.0.3 contains a buffer overflow vulnerability in the registration code dialog that allows local attackers to crash the application by supplying an oversized string. Attackers can trigger the vulnerability by entering a 6000-byte payload in the Registration Name field…

  • CVE-2018-25288MedApr 26, 2026
    risk 0.40cvss 6.2epss 0.00

    StyleWriter 1.0 contains a buffer overflow vulnerability that allows local attackers to crash the application by supplying an excessively long string. Attackers can paste a 6000-byte payload into the Pattern to Find or Advice Message fields in the Add Pattern dialog to trigger a…

  • CVE-2018-25286MedApr 26, 2026
    risk 0.40cvss 6.2epss 0.00

    Easy PhotoResQ 1.0 contains a buffer overflow vulnerability that allows local attackers to crash the application by supplying an excessively long string in the Folder/filename field. Attackers can input a 6000-byte payload through the File Options dialog to trigger a denial of…

  • CVE-2018-25284MedApr 26, 2026
    risk 0.40cvss 6.2epss 0.00

    HD Tune Pro 5.70 contains a buffer overflow vulnerability that allows local attackers to crash the application by supplying an excessively long string in the folder/file name field. Attackers can trigger a denial of service by entering a 6000-byte payload through the File >…