VYPR

CWE-120

Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')

BaseIncompleteLikelihood: High

Description

The product copies an input buffer to an output buffer without verifying that the size of the input buffer is less than the size of the output buffer.

Hierarchy (View 1000)

Parents

Children

Related attack patterns (CAPEC)

CAPEC-10 · CAPEC-100 · CAPEC-14 · CAPEC-24 · CAPEC-42 · CAPEC-44 · CAPEC-45 · CAPEC-46 · CAPEC-47 · CAPEC-67 · CAPEC-8 · CAPEC-9 · CAPEC-92

CVEs mapped to this weakness (4,364)

page 200 of 219
  • CVE-2024-37816MedNov 27, 2024
    risk 0.27cvss 4.2epss 0.00

    Quectel EC25-EUX EC25EUXGAR08A05M1G was discovered to contain a stack overflow.

  • CVE-2022-4969MedMay 27, 2024
    risk 0.27cvss 5.3epss 0.00

    A vulnerability, which was classified as critical, has been found in bwoodsend rockhopper up to 0.1.2. Affected by this issue is the function count_rows of the file rockhopper/src/ragged_array.c of the component Binary Parser. The manipulation of the argument raw leads to buffer…

  • CVE-2023-42757MedMay 7, 2024
    risk 0.27cvss 4.2epss 0.00

    Process Explorer before 17.04 allows attackers to make it functionally unavailable (a denial of service for analysis) by renaming an executable file to a new extensionless 255-character name and launching it with NtCreateUserProcess. This can occur through an issue in wcscat_s…

  • CVE-2022-32491MedOct 12, 2022
    risk 0.27cvss 4.1epss 0.00

    Dell Client BIOS contains a Buffer Overflow vulnerability. A local authenticated malicious user may potentially exploit this vulnerability by manipulating an SMI to cause an arbitrary write during SMM.

  • CVE-2020-8896MedMay 4, 2020
    risk 0.27cvss 4.2epss 0.00

    A Buffer Overflow vulnerability in the khcrypt implementation in Google Earth Pro versions up to and including 7.3.2 allows an attacker to perform a Man-in-the-Middle attack using a specially crafted key to read data past the end of the buffer used to hold it. Mitigation: Update…

  • CVE-2026-10275MedJun 1, 2026
    risk 0.26cvss 5.0epss 0.00

    A flaw has been found in OpenSC up to 0.26.1. This affects the function test_kpgen_certwrite of the file src/tools/pkcs11-tool.c of the component pkcs11-tool Key Generation Module. This manipulation causes buffer overflow. The attack is possible to be carried out remotely. The…

  • CVE-2025-43370MedSep 15, 2025
    risk 0.26cvss 4.0epss 0.00

    A path handling issue was addressed with improved validation. This issue is fixed in Xcode 26. Processing an overly large path value may crash a process.

  • CVE-2023-47217MedNov 20, 2023
    risk 0.26cvss 4.0epss 0.00

    in OpenHarmony v3.2.2 and prior versions allow a local attacker cause DOS through buffer overflow.

  • CVE-2022-45126MedJan 9, 2023
    risk 0.26cvss 4.0epss 0.00

    Kernel subsystem within OpenHarmony-v3.1.4 and prior versions in kernel_liteos_a has a kernel stack overflow vulnerability when call SysClockGettime. 4 bytes padding data from kernel stack are copied to user space incorrectly and leaked.

  • CVE-2022-43662MedJan 9, 2023
    risk 0.26cvss 4.0epss 0.00

    Kernel subsystem within OpenHarmony-v3.1.4 and prior versions in kernel_liteos_a has a kernel stack overflow vulnerability when call SysTimerGettime. 4 bytes padding data from kernel stack are copied to user space incorrectly and leaked.

  • CVE-2022-41802MedDec 8, 2022
    risk 0.26cvss 4.0epss 0.00

    Kernel subsystem within OpenHarmony-v3.1.4 and prior versions in kernel_liteos_a has a kernel stack overflow vulnerability when call SysClockGetres. 4 bytes padding data from kernel stack are copied to user space incorrectly and leaked.

  • CVE-2021-25494MedOct 6, 2021
    risk 0.26cvss 4.0epss 0.00

    A possible buffer overflow vulnerability in libSPenBase library of Samsung Notes prior to Samsung Note version 4.3.02.61 allows arbitrary code execution.

  • CVE-2021-25461MedSep 9, 2021
    risk 0.26cvss 4.0epss 0.00

    An improper length check in APAService prior to SMR Sep-2021 Release 1 results in stack based Buffer Overflow.

  • CVE-2020-5211MedJan 28, 2020
    risk 0.26cvss 5.0epss 0.01

    In NetHack before 3.6.5, an invalid extended command in value for the AUTOCOMPLETE configuration file option can cause a buffer overflow resulting in a crash or remote code execution/privilege escalation. This vulnerability affects systems that have NetHack installed suid/sgid…

  • CVE-2020-5214MedJan 28, 2020
    risk 0.26cvss 5.0epss 0.01

    In NetHack before 3.6.5, detecting an unknown configuration file option can cause a buffer overflow resulting in a crash or remote code execution/privilege escalation. This vulnerability affects systems that have NetHack installed suid/sgid and shared systems that allow users to…

  • CVE-2020-5213MedJan 28, 2020
    risk 0.26cvss 5.0epss 0.01

    In NetHack before 3.6.5, too long of a value for the SYMBOL configuration file option can cause a buffer overflow resulting in a crash or remote code execution/privilege escalation. This vulnerability affects systems that have NetHack installed suid/sgid and shared systems that…

  • CVE-2020-5212MedJan 28, 2020
    risk 0.26cvss 5.0epss 0.01

    In NetHack before 3.6.5, an extremely long value for the MENUCOLOR configuration file option can cause a buffer overflow resulting in a crash or remote code execution/privilege escalation. This vulnerability affects systems that have NetHack installed suid/sgid and shared…

  • CVE-2020-5210MedJan 28, 2020
    risk 0.26cvss 5.0epss 0.01

    In NetHack before 3.6.5, an invalid argument to the -w command line option can cause a buffer overflow resulting in a crash or remote code execution/privilege escalation. This vulnerability affects systems that have NetHack installed suid/sgid and shared systems that allow users…

  • CVE-2020-5209MedJan 28, 2020
    risk 0.26cvss 5.0epss 0.01

    In NetHack before 3.6.5, unknown options starting with -de and -i can cause a buffer overflow resulting in a crash or remote code execution/privilege escalation. This vulnerability affects systems that have NetHack installed suid/sgid and shared systems that allow users to…

  • CVE-2024-45620LowSep 3, 2024
    risk 0.25cvss 3.9epss 0.00

    A vulnerability was found in the pkcs15-init tool in OpenSC. An attacker could use a crafted USB Device or Smart Card, which would present the system with a specially crafted response to APDUs. When buffers are partially filled with data, initialized parts of the buffer can be…