VYPR

CWE-120

Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')

BaseIncompleteLikelihood: High

Description

The product copies an input buffer to an output buffer without verifying that the size of the input buffer is less than the size of the output buffer.

Hierarchy (View 1000)

Parents

Children

Related attack patterns (CAPEC)

CAPEC-10 · CAPEC-100 · CAPEC-14 · CAPEC-24 · CAPEC-42 · CAPEC-44 · CAPEC-45 · CAPEC-46 · CAPEC-47 · CAPEC-67 · CAPEC-8 · CAPEC-9 · CAPEC-92

CVEs mapped to this weakness (4,384)

page 174 of 220
  • CVE-2025-29481MedApr 7, 2025
    risk 0.40cvss 6.2epss 0.00

    Buffer Overflow vulnerability in libbpf 1.5.0 allows a local attacker to execute arbitrary code via the bpf_object__init_prog` function of libbpf. This has been disputed by third parties who assert that "no one in their sane mind should be passing untrusted ELF files into libbpf…

  • CVE-2025-24956MedFeb 11, 2025
    risk 0.40cvss 6.2epss 0.00

    A vulnerability has been identified in OpenV2G (All versions < V0.9.6). The OpenV2G EXI parsing feature is missing a length check when parsing X509 serial numbers. Thus, an attacker could introduce a buffer overflow that leads to memory corruption.

  • CVE-2024-53426MedNov 21, 2024
    risk 0.40cvss 6.2epss 0.00

    A heap-buffer-overflow vulnerability has been identified in ntopng 6.2 in the Flow::dissectMDNS function.

  • CVE-2024-53425MedNov 21, 2024
    risk 0.40cvss 6.2epss 0.00

    A heap-buffer-overflow vulnerability was discovered in the SkipSpacesAndLineEnd function in Assimp v5.4.3. This issue occurs when processing certain malformed MD5 model files, leading to an out-of-bounds read and potential application crash.

  • CVE-2024-35420MedNov 8, 2024
    risk 0.40cvss 6.2epss 0.00

    wac commit 385e1 was discovered to contain a heap overflow.

  • CVE-2024-35418MedNov 8, 2024
    risk 0.40cvss 6.2epss 0.00

    wac commit 385e1 was discovered to contain a heap overflow via the setup_call function at /wac-asan/wa.c. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted wasm file.

  • CVE-2024-35410MedNov 8, 2024
    risk 0.40cvss 6.2epss 0.00

    wac commit 385e1 was discovered to contain a heap overflow via the interpret function at /wac-asan/wa.c. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted wasm file.

  • CVE-2024-48426MedOct 24, 2024
    risk 0.40cvss 6.2epss 0.00

    A segmentation fault (SEGV) was detected in the SortByPTypeProcess::Execute function in the Assimp library during fuzz testing with AddressSanitizer. The crash occurred due to a read access to an invalid memory address (0x1000c9714971).

  • CVE-2024-45184MedOct 11, 2024
    risk 0.40cvss 6.2epss 0.00

    An issue was discovered in Samsung Mobile Processor, Wearable Processor, and Modems with chipset Exynos 9820, 9825, 980, 990, 850, 1080, 2100, 1280, 2200, 1330, 1380, 1480, 2400, 9110, W920, W930, Modem 5123, and Modem 5300. A USAT out-of-bounds write due to a heap buffer…

  • CVE-2023-50821MedApr 9, 2024
    risk 0.40cvss 6.2epss 0.00

    A vulnerability has been identified in SIMATIC PCS 7 V9.1 (All versions < V9.1 SP2 UC04), SIMATIC WinCC Runtime Professional V17 (All versions < V17 Update 8), SIMATIC WinCC Runtime Professional V18 (All versions < V18 Update 4), SIMATIC WinCC Runtime Professional V19 (All…

  • CVE-2024-23079MedApr 8, 2024
    risk 0.40cvss 6.2epss 0.00

    JGraphT Core v1.5.2 was discovered to contain a NullPointerException via the component org.jgrapht.alg.util.ToleranceDoubleComparator::compare(Double, Double). NOTE: this is disputed by multiple third parties who believe there was not reasonable evidence to determine the…

  • CVE-2024-28564MedMar 20, 2024
    risk 0.40cvss 6.2epss 0.00

    Buffer Overflow vulnerability in open source FreeImage v.3.19.0 [r1909] allows a local attacker to cause a denial of service (DoS) via the Imf_2_2::CharPtrIO::readChars() function when reading images in EXR format.

  • CVE-2024-25984MedMar 11, 2024
    risk 0.40cvss 6.2epss 0.00

    In dumpBatteryDefend of dump_power.cpp, there is a possible out of bounds read due to a heap buffer overflow. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.

  • CVE-2022-47990MedJan 18, 2023
    risk 0.40cvss 6.2epss 0.00

    IBM AIX 7.1, 7.2, 7.3 and VIOS , 3.1 could allow a non-privileged local user to exploit a vulnerability in X11 to cause a buffer overflow that could result in a denial of service or arbitrary code execution. IBM X-Force ID: 243556.  

  • CVE-2022-46456MedJan 4, 2023
    risk 0.40cvss 6.1epss 0.00

    NASM v2.16 was discovered to contain a global buffer overflow in the component dbgdbg_typevalue at /output/outdbg.c.

  • CVE-2022-21742MedJun 20, 2022
    risk 0.40cvss 6.2epss 0.00

    Realtek USB driver has a buffer overflow vulnerability due to insufficient parameter length verification in the API function. An unauthenticated LAN attacker can exploit this vulnerability to disrupt services.

  • CVE-2021-36724MedDec 29, 2021
    risk 0.40cvss 6.1epss 0.00

    ForeScout - SecureConnector Local Service DoS - A low privilaged user which doesn't have permissions to shutdown the secure connector service writes a large amount of characters in the installationPath. This will cause the buffer to overflow and override the stack cookie causing…

  • CVE-2021-45525MedDec 26, 2021
    risk 0.40cvss 6.1epss 0.01

    Certain NETGEAR devices are affected by a buffer overflow by an authenticated user. This affects EX7000 before 1.0.1.80, R6400 before 1.0.1.50, R6400v2 before 1.0.4.118, R6700 before 1.0.2.8, R6700v3 before 1.0.4.118, R6900 before 1.0.2.8, R6900P before 1.3.2.124, R7000 before…

  • CVE-2020-0584MedNov 12, 2020
    risk 0.40cvss 6.2epss 0.00

    Buffer overflow in firmware for Intel(R) SSD DC P4800X and P4801X Series, Intel(R) Optane(TM) SSD 900P and 905P Series may allow an unauthenticated user to potentially enable a denial of service via local access.

  • CVE-2020-7261MedApr 15, 2020
    risk 0.40cvss 6.1epss 0.00

    Buffer Overflow via Environment Variables vulnerability in AMSI component in McAfee Endpoint Security (ENS) Prior to 10.7.0 February 2020 Update allows local users to disable Endpoint Security via a carefully crafted user input.