VYPR

CWE-120

Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')

BaseIncompleteLikelihood: High

Description

The product copies an input buffer to an output buffer without verifying that the size of the input buffer is less than the size of the output buffer.

Hierarchy (View 1000)

Parents

Children

Related attack patterns (CAPEC)

CAPEC-10 · CAPEC-100 · CAPEC-14 · CAPEC-24 · CAPEC-42 · CAPEC-44 · CAPEC-45 · CAPEC-46 · CAPEC-47 · CAPEC-67 · CAPEC-8 · CAPEC-9 · CAPEC-92

CVEs mapped to this weakness (4,372)

page 86 of 219
  • CVE-2023-43540HigMar 4, 2024
    risk 0.55cvss 8.4epss 0.00

    Memory corruption while processing the IOCTL FM HCI WRITE request.

  • CVE-2023-33113HigJan 2, 2024
    risk 0.55cvss 8.4epss 0.00

    Memory corruption when resource manager sends the host kernel a reply message with multiple fragments.

  • CVE-2023-33092HigDec 5, 2023
    risk 0.55cvss 8.4epss 0.00

    Memory corruption while processing pin reply in Bluetooth, when pin code received from APP layer is greater than expected size.

  • CVE-2022-40540HigMar 10, 2023
    risk 0.55cvss 8.4epss 0.00

    Memory corruption due to buffer copy without checking the size of input while loading firmware in Linux Kernel.

  • CVE-2022-25655HigMar 10, 2023
    risk 0.55cvss 8.4epss 0.00

    Memory corruption in WLAN HAL while arbitrary value is passed in WMI UTF command payload.

  • CVE-2022-33277HigFeb 12, 2023
    risk 0.55cvss 8.4epss 0.00

    Memory corruption in modem due to buffer copy without checking size of input while receiving WMI command.

  • CVE-2017-14454HigJan 12, 2023
    risk 0.55cvss 8.5epss 0.01

    Multiple exploitable buffer overflow vulnerabilities exists in the PubNub message handler for the "control" channel of Insteon Hub running firmware version 1012. Specially crafted replies received from the PubNub service can cause buffer overflows on a global section overwriting…

  • CVE-2022-42271HigJan 11, 2023
    risk 0.55cvss 8.4epss 0.00

    NVIDIA BMC contains a vulnerability in IPMI handler, where an authorized attacker can cause a buffer overflow and cause a denial of service or gain code execution

  • CVE-2022-33276HigJan 9, 2023
    risk 0.55cvss 8.4epss 0.00

    Memory corruption due to buffer copy without checking size of input in modem while receiving WMI_REQUEST_STATS_CMDID command.

  • CVE-2022-25724HigNov 15, 2022
    risk 0.55cvss 8.4epss 0.00

    Memory corruption in graphics due to buffer overflow while validating the user address in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables

  • CVE-2022-25680HigSep 2, 2022
    risk 0.55cvss 8.4epss 0.00

    Memory corruption in multimedia due to buffer overflow while processing count variable from client in Snapdragon Auto

  • CVE-2022-35928HigAug 3, 2022
    risk 0.55cvss 8.4epss 0.00

    AES Crypt is a file encryption software for multiple platforms. AES Crypt for Linux built using the source on GitHub and having the version number 3.11 has a vulnerability with respect to reading user-provided passwords and confirmations via command-line prompts. Passwords…

  • CVE-2022-22082HigJun 14, 2022
    risk 0.55cvss 8.4epss 0.00

    Memory corruption due to possible buffer overflow while parsing DSF header with corrupted channel count in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon…

  • CVE-2021-35114HigJun 14, 2022
    risk 0.55cvss 8.4epss 0.00

    Improper buffer initialization on the backend driver can lead to buffer overflow in Snapdragon Auto

  • CVE-2021-35089HigApr 1, 2022
    risk 0.55cvss 8.4epss 0.00

    Possible buffer overflow due to lack of input IB amount validation while processing the user command in Snapdragon Auto

  • CVE-2022-23428HigFeb 11, 2022
    risk 0.55cvss 8.4epss 0.00

    An improper boundary check in eden_runtime hal service prior to SMR Feb-2022 Release 1 allows arbitrary memory write and code execution.

  • CVE-2021-30318HigFeb 11, 2022
    risk 0.55cvss 8.4epss 0.00

    Improper validation of input when provisioning the HDCP key can lead to memory corruption in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Voice & Music, Snapdragon Wearables

  • CVE-2021-30297HigOct 20, 2021
    risk 0.55cvss 8.4epss 0.00

    Possible out of bound read due to improper validation of packet length while handling data transfer in VR service in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Wearables

  • CVE-2021-1984HigOct 20, 2021
    risk 0.55cvss 8.4epss 0.00

    Possible buffer overflow due to improper validation of index value while processing the plugin block in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Wearables

  • CVE-2021-1983HigOct 20, 2021
    risk 0.55cvss 8.4epss 0.00

    Possible buffer overflow due to improper handling of negative data length while processing write request in VR service in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Wearables