VYPR

CWE-121

Stack-based Buffer Overflow

VariantDraftLikelihood: High

Description

A stack-based buffer overflow condition is a condition where the buffer being overwritten is allocated on the stack (i.e., is a local variable or, rarely, a parameter to a function).

Hierarchy (View 1000)

Children

none

CVEs mapped to this weakness (3,817)

page 185 of 191
  • CVE-2024-51314CriJul 20, 2026
    risk 0.00cvss 9.8epss 0.01

    The Tenda TX9 V22.03.02.20 firmware has a stack overflow vulnerability in the sub_424CE0 function of the file /goform/setMacFilterCfg.

  • CVE-2024-51312CriJul 20, 2026
    risk 0.00cvss 9.8epss 0.01

    The Tenda TX9 V22.03.02.20 firmware has a stack overflow vulnerability in the sub_42EEE0 function of the file /goform/SetStaticRouteCfg.

  • CVE-2024-51313CriJul 20, 2026
    risk 0.00cvss 9.8epss 0.01

    The Tenda TX9 V22.03.02.20 firmware has a stack overflow vulnerability in the sub_42EA38 function of the file /goform/SetVirtualServerCfg.

  • CVE-2024-51311CriJul 20, 2026
    risk 0.00cvss 9.8epss 0.01

    The Tenda TX9 V22.03.02.05 firmware has a stack overflow vulnerability in the sub_4418CC function of the file /goform/SetNetControlList.

  • CVE-2026-16248HigJul 20, 2026
    risk 0.00cvss 8.8epss 0.01

    A vulnerability was found in Tenda AC10 16.03.10.09_multi_TDE01. This issue affects the function fromAdvSetLanip of the file /goform/AdvSetLanip of the component httpd/netctrl. The manipulation of the argument GetValue/SetValue results in stack-based buffer overflow. The attack…

  • CVE-2026-16097HigJul 18, 2026
    risk 0.00cvss 8.8epss 0.01

    A vulnerability was found in Shibby Tomato 1.28. This vulnerability affects the function sub_42537C of the component Scheduler Name Handler. The manipulation of the argument a1 results in stack-based buffer overflow. It is possible to launch the attack remotely. This project is…

  • CVE-2026-16096HigJul 18, 2026
    risk 0.00cvss 8.8epss 0.01

    A vulnerability has been found in Shibby Tomato 1.28 RT-N5x MIPSR2 Build 124. This affects the function sub_40BB50 of the file /proc/webmon_recent_domains. The manipulation leads to stack-based buffer overflow. It is possible to initiate the attack remotely. This project is…

  • CVE-2026-56455MedJul 16, 2026
    risk 0.00cvss 5.3epss 0.00

    HCL DFXAnalytics is affected by a Buffer Overflow vulnerability that can lead to a Denial of Service (DoS). The application fails to properly validate input sizes, allowing an attacker to pass an excessive amount of information into a memory container, which can cause the system…

  • CVE-2026-62349HigJul 15, 2026
    risk 0.00cvss 8.3epss 0.01

    TDengine is an open source, time-series database optimized for Internet of Things devices. In 3.4.1.6 and earlier, source/libs/parser/src/parUtil.c trimString() checks space for only one byte before processing SQL string escape sequences \%, \_, or \x, allowing a one-byte…

  • CVE-2026-51807CriJul 14, 2026
    risk 0.00cvss 9.8epss 0.01

    Heap-based out-of-bounds write in j2k_precinct_subband::parse_packet_header() in OpenHTJ2K versions 0.18.3 and earlier (fixed in v0.18.4) caused by missing bounds validation before coding-pass lengths are written to j2k_codeblock::pass_length[128]. A crafted JPEG 2000 codestream…

  • CVE-2026-47477HigJul 14, 2026
    risk 0.00cvss 7.5epss 0.01

    NVIDIA Triton Inference Server for Linux contains a vulnerability where an attacker can cause a stack-based buffer overflow. A successful exploit of this vulnerability might lead to denial of service.

  • CVE-2026-62655MedJul 14, 2026
    risk 0.00cvss —epss 0.00

    A security flaw was found in certain NETGEAR Orbi models that could allow an unauthorized user to cause the device to stop responding or restart unexpectedly, disrupting network connectivity and making the device temporarily unavailable.

  • CVE-2026-57091HigJul 14, 2026
    risk 0.00cvss 7.8epss 0.00

    Stack-based buffer overflow in Windows File History Service allows an authorized attacker to elevate privileges locally.

  • CVE-2026-55141HigJul 14, 2026
    risk 0.00cvss 7.8epss 0.00

    Stack-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

  • CVE-2026-55134HigJul 14, 2026
    risk 0.00cvss 7.8epss 0.01

    Stack-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code locally.

  • CVE-2026-55055HigJul 14, 2026
    risk 0.00cvss 7.8epss 0.01

    Stack-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code locally.

  • CVE-2026-55038HigJul 14, 2026
    risk 0.00cvss 7.8epss 0.01

    Stack-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code locally.

  • CVE-2026-50501HigJul 14, 2026
    risk 0.00cvss 7.8epss 0.00

    Stack-based buffer overflow in Windows Resilient File System (ReFS) allows an unauthorized attacker to execute code locally.

  • CVE-2026-50412HigJul 14, 2026
    risk 0.00cvss 7.8epss 0.00

    Stack-based buffer overflow in Windows NTFS allows an authorized attacker to elevate privileges locally.

  • CVE-2026-50411HigJul 14, 2026
    risk 0.00cvss 7.5epss 0.01

    Stack-based buffer overflow in Active Directory Federation Services (AD FS) allows an unauthorized attacker to deny service over a network.