VYPR

CWE-120

Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')

BaseIncompleteLikelihood: High

Description

The product copies an input buffer to an output buffer without verifying that the size of the input buffer is less than the size of the output buffer.

Hierarchy (View 1000)

Parents

Children

Related attack patterns (CAPEC)

CAPEC-10 · CAPEC-100 · CAPEC-14 · CAPEC-24 · CAPEC-42 · CAPEC-44 · CAPEC-45 · CAPEC-46 · CAPEC-47 · CAPEC-67 · CAPEC-8 · CAPEC-9 · CAPEC-92

CVEs mapped to this weakness (4,364)

page 202 of 219
  • CVE-2020-18974LowAug 25, 2021
    risk 0.22cvss 3.3epss 0.01

    Buffer Overflow in Netwide Assembler (NASM) v2.15.xx allows attackers to cause a denial of service via 'crc64i' in the component 'nasmlib/crc64'. This issue is different than CVE-2019-7147.

  • CVE-2021-3200LowMay 18, 2021
    risk 0.22cvss 3.3epss 0.01

    Buffer overflow vulnerability in libsolv 2020-12-13 via the Solver * testcase_read(Pool *pool, FILE *fp, const char *testcase, Queue *job, char **resultp, int *resultflagsp function at src/testcase.c: line 2334, which could cause a denial of service

  • CVE-2020-27818LowDec 8, 2020
    risk 0.22cvss 3.3epss 0.01

    A flaw was found in the check_chunk_name() function of pngcheck-2.4.0. An attacker able to pass a malicious file to be processed by pngcheck could cause a temporary denial of service, posing a low risk to application availability.

  • CVE-2019-8842LowOct 27, 2020
    risk 0.22cvss 3.3epss 0.02

    A buffer overflow was addressed with improved bounds checking. This issue is fixed in macOS Catalina 10.15.2, Security Update 2019-002 Mojave, and Security Update 2019-007 High Sierra. In certain configurations, a remote attacker may be able to submit arbitrary print jobs.

  • CVE-2026-0056LowJun 1, 2026
    risk 0.21cvss 3.3epss 0.00

    In setTo of ResourceTypes.cpp, there is a possible read out of bounds due to an incorrect bounds check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.

  • CVE-2025-25052LowMay 6, 2025
    risk 0.21cvss 3.3epss 0.00

    in OpenHarmony v5.0.3 and prior versions allow a local attacker cause DOS through buffer overflow.

  • CVE-2025-3148LowApr 3, 2025
    risk 0.21cvss 3.3epss 0.00

    A vulnerability was found in codeprojects Product Management System 1.0 and classified as problematic. This issue affects some unknown processing of the component Login. The manipulation of the argument Str1 leads to buffer overflow. Attacking locally is a requirement. The…

  • CVE-2025-23234LowMar 4, 2025
    risk 0.21cvss 3.3epss 0.00

    in OpenHarmony v5.0.2 and prior versions allow a local attacker cause DOS through buffer overflow.

  • CVE-2025-22897LowMar 4, 2025
    risk 0.21cvss 3.3epss 0.00

    in OpenHarmony v5.0.2 and prior versions allow a local attacker cause DOS through buffer overflow.

  • CVE-2023-5748LowNov 7, 2023
    risk 0.21cvss 3.3epss 0.00

    Buffer copy without checking size of input ('Classic Buffer Overflow') vulnerability in cgi component in Synology SSL VPN Client before 1.4.7-0687 allows local users to conduct denial-of-service attacks via unspecified vectors.

  • CVE-2023-32181LowJun 1, 2023
    risk 0.21cvss 3.3epss 0.01

    A Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') vulnerability in openSUSE libeconf allows for DoS via malformed configuration files This issue affects libeconf: before 0.5.2.

  • CVE-2021-22305LowFeb 6, 2021
    risk 0.21cvss 3.3epss 0.00

    There is a buffer overflow vulnerability in Mate 30 10.1.0.126(C00E125R5P3). A module does not verify the some input when dealing with messages. Attackers can exploit this vulnerability by sending malicious input through specific module. This could cause buffer overflow,…

  • CVE-2025-1147LowFeb 10, 2025
    risk 0.20cvss 3.1epss 0.01

    A vulnerability has been found in GNU Binutils 2.43 and classified as problematic. Affected by this vulnerability is the function __sanitizer::internal_strlen of the file binutils/nm.c of the component nm. The manipulation of the argument const leads to buffer overflow. The…

  • CVE-2023-6948LowApr 2, 2024
    risk 0.20cvss 3.0epss 0.00

    A Buffer Copy without Checking Size of Input issue affecting the v2_sdk_service running on a set of DJI drone devices on the port 10000 could allow an attacker to cause a crash of the service through a crafted payload triggering a missing input size check in the sdk_printf…

  • CVE-2026-0849LowMar 16, 2026
    risk 0.18cvss 3.8epss 0.00

    Malformed ATAES132A responses with an oversized length field overflow a 52-byte stack buffer in the Zephyr crypto driver, allowing a compromised device or bus attacker to corrupt kernel memory and potentially hijack execution.

  • CVE-2025-43532LowDec 12, 2025
    risk 0.18cvss 2.8epss 0.00

    A memory corruption issue was addressed with improved bounds checking. This issue is fixed in iOS 18.7.3 and iPadOS 18.7.3, iOS 26.2 and iPadOS 26.2, macOS Sequoia 15.7.3, macOS Sonoma 14.8.3, macOS Tahoe 26.2, tvOS 26.2, visionOS 26.2, watchOS 26.2. Processing malicious data…

  • CVE-2024-31040LowApr 17, 2024
    risk 0.18cvss 2.7epss 0.01

    Buffer Overflow vulnerability in the get_var_integer function in mqtt_parser.c in NanoMQ 0.21.7 allows remote attackers to cause a denial of service via a series of specially crafted hexstreams.

  • CVE-2023-1560LowMar 22, 2023
    risk 0.18cvss 2.8epss 0.00

    A vulnerability, which was classified as problematic, has been found in TinyTIFF 3.0.0.0. This issue affects some unknown processing of the file tinytiffreader.c of the component File Handler. The manipulation leads to buffer overflow. Attacking locally is a requirement. The…

  • CVE-2020-16232LowMar 18, 2022
    risk 0.18cvss 2.8epss 0.01

    In Yokogawa WideField3 R1.01 - R4.03, a buffer overflow could be caused when a user loads a maliciously crafted project file.

  • CVE-2024-26149LowFeb 26, 2024
    risk 0.17cvss 3.7epss 0.01

    Vyper is a pythonic Smart Contract Language for the ethereum virtual machine. If an excessively large value is specified as the starting index for an array in `_abi_decode`, it can cause the read position to overflow. This results in the decoding of values outside the intended…