CWE-787
Out-of-bounds Write
Description
The product writes data past the end, or before the beginning, of the intended buffer.
Hierarchy (View 1000)
CVEs mapped to this weakness (14,670)
page 438 of 734| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2019-0053 | Hig | 0.51 | 7.8 | 0.01 | Jul 11, 2019 | Insufficient validation of environment variables in the telnet client supplied in Junos OS can lead to stack-based buffer overflows, which can be exploited to bypass veriexec restrictions on Junos OS. A stack-based overflow is present in the handling of environment variables… | ||
| CVE-2019-2112 | Hig | 0.51 | 7.8 | 0.00 | Jul 8, 2019 | In several functions of alarm.cc, there is possible memory corruption due to a use after free. This could lead to local code execution with no additional execution privileges needed. User interaction is not needed for exploitation. Product: Android. Versions: Android-8.0… | ||
| CVE-2019-13362 | Hig | 0.51 | 7.8 | 0.01 | Jul 6, 2019 | Codedoc v3.2 has a stack-based buffer overflow in add_variable in codedoc.c, related to codedoc_strlcpy. | ||
| CVE-2019-13290 | Hig | 0.51 | 7.8 | 0.05 | Jul 4, 2019 | Artifex MuPDF 1.15.0 has a heap-based buffer overflow in fz_append_display_node located at fitz/list-device.c, allowing remote attackers to execute arbitrary code via a crafted PDF file. This occurs with a large BDC property name that overflows the allocated size of a display… | ||
| CVE-2019-13281 | Hig | 0.51 | 7.8 | 0.01 | Jul 4, 2019 | In Xpdf 4.01.01, a heap-based buffer overflow could be triggered in DCTStream::decodeImage() in Stream.cc when writing to frameBuf memory. It can, for example, be triggered by sending a crafted PDF document to the pdftotext tool. It allows an attacker to use a crafted pdf file… | ||
| CVE-2019-13255 | Hig | 0.51 | 7.8 | 0.02 | Jul 4, 2019 | XnView Classic 2.48 has a User Mode Write AV starting at xnview+0x0000000000327464. | ||
| CVE-2019-13254 | Hig | 0.51 | 7.8 | 0.02 | Jul 4, 2019 | XnView Classic 2.48 has a User Mode Write AV starting at xnview+0x000000000032e808. | ||
| CVE-2019-13253 | Hig | 0.51 | 7.8 | 0.02 | Jul 4, 2019 | XnView Classic 2.48 has a User Mode Write AV starting at xnview+0x0000000000385474. | ||
| CVE-2019-13252 | Hig | 0.51 | 7.8 | 0.02 | Jul 4, 2019 | ACDSee Free 1.1.21 has a User Mode Write AV starting at IDE_ACDStd!IEP_SetColorProfile+0x00000000001172b0. | ||
| CVE-2019-13251 | Hig | 0.51 | 7.8 | 0.02 | Jul 4, 2019 | ACDSee Free 1.1.21 has a User Mode Write AV starting at IDE_ACDStd!IEP_SetColorProfile+0x00000000000c47ff. | ||
| CVE-2019-13250 | Hig | 0.51 | 7.8 | 0.02 | Jul 4, 2019 | ACDSee Free 1.1.21 has a User Mode Write AV starting at IDE_ACDStd!IEP_SetColorProfile+0x00000000000b9c2f. | ||
| CVE-2019-13249 | Hig | 0.51 | 7.8 | 0.02 | Jul 4, 2019 | ACDSee Free 1.1.21 has a User Mode Write AV starting at IDE_ACDStd!IEP_SetColorProfile+0x00000000000b9e7a. | ||
| CVE-2019-13248 | Hig | 0.51 | 7.8 | 0.02 | Jul 4, 2019 | ACDSee Free 1.1.21 has a User Mode Write AV starting at IDE_ACDStd!JPEGTransW+0x0000000000002450. | ||
| CVE-2019-13247 | Hig | 0.51 | 7.8 | 0.02 | Jul 4, 2019 | ACDSee Free 1.1.21 has a User Mode Write AV starting at IDE_ACDStd!JPEGTransW+0x00000000000024ed. | ||
| CVE-2019-13246 | Hig | 0.51 | 7.8 | 0.02 | Jul 4, 2019 | FastStone Image Viewer 7.0 has a User Mode Write AV starting at image00400000+0x00000000001a9601. | ||
| CVE-2019-13245 | Hig | 0.51 | 7.8 | 0.02 | Jul 4, 2019 | FastStone Image Viewer 7.0 has a User Mode Write AV starting at image00400000+0x00000000001a95b1. | ||
| CVE-2019-13244 | Hig | 0.51 | 7.8 | 0.02 | Jul 4, 2019 | FastStone Image Viewer 7.0 has a User Mode Write AV starting at image00400000+0x0000000000002d7d. | ||
| CVE-2019-13243 | Hig | 0.51 | 7.8 | 0.03 | Jul 4, 2019 | IrfanView 4.52 has a User Mode Write AV starting at image00400000+0x00000000000249c6. | ||
| CVE-2019-13242 | Hig | 0.51 | 7.8 | 0.03 | Jul 4, 2019 | IrfanView 4.52 has a User Mode Write AV starting at image00400000+0x0000000000013a98. | ||
| CVE-2019-13085 | Hig | 0.51 | 7.8 | 0.02 | Jun 30, 2019 | XnView Classic 2.48 has a User Mode Write AV starting at xnview+0x000000000030ecfa. |
- risk 0.51cvss 7.8epss 0.01
Insufficient validation of environment variables in the telnet client supplied in Junos OS can lead to stack-based buffer overflows, which can be exploited to bypass veriexec restrictions on Junos OS. A stack-based overflow is present in the handling of environment variables…
- risk 0.51cvss 7.8epss 0.00
In several functions of alarm.cc, there is possible memory corruption due to a use after free. This could lead to local code execution with no additional execution privileges needed. User interaction is not needed for exploitation. Product: Android. Versions: Android-8.0…
- risk 0.51cvss 7.8epss 0.01
Codedoc v3.2 has a stack-based buffer overflow in add_variable in codedoc.c, related to codedoc_strlcpy.
- risk 0.51cvss 7.8epss 0.05
Artifex MuPDF 1.15.0 has a heap-based buffer overflow in fz_append_display_node located at fitz/list-device.c, allowing remote attackers to execute arbitrary code via a crafted PDF file. This occurs with a large BDC property name that overflows the allocated size of a display…
- risk 0.51cvss 7.8epss 0.01
In Xpdf 4.01.01, a heap-based buffer overflow could be triggered in DCTStream::decodeImage() in Stream.cc when writing to frameBuf memory. It can, for example, be triggered by sending a crafted PDF document to the pdftotext tool. It allows an attacker to use a crafted pdf file…
- risk 0.51cvss 7.8epss 0.02
XnView Classic 2.48 has a User Mode Write AV starting at xnview+0x0000000000327464.
- risk 0.51cvss 7.8epss 0.02
XnView Classic 2.48 has a User Mode Write AV starting at xnview+0x000000000032e808.
- risk 0.51cvss 7.8epss 0.02
XnView Classic 2.48 has a User Mode Write AV starting at xnview+0x0000000000385474.
- risk 0.51cvss 7.8epss 0.02
ACDSee Free 1.1.21 has a User Mode Write AV starting at IDE_ACDStd!IEP_SetColorProfile+0x00000000001172b0.
- risk 0.51cvss 7.8epss 0.02
ACDSee Free 1.1.21 has a User Mode Write AV starting at IDE_ACDStd!IEP_SetColorProfile+0x00000000000c47ff.
- risk 0.51cvss 7.8epss 0.02
ACDSee Free 1.1.21 has a User Mode Write AV starting at IDE_ACDStd!IEP_SetColorProfile+0x00000000000b9c2f.
- risk 0.51cvss 7.8epss 0.02
ACDSee Free 1.1.21 has a User Mode Write AV starting at IDE_ACDStd!IEP_SetColorProfile+0x00000000000b9e7a.
- risk 0.51cvss 7.8epss 0.02
ACDSee Free 1.1.21 has a User Mode Write AV starting at IDE_ACDStd!JPEGTransW+0x0000000000002450.
- risk 0.51cvss 7.8epss 0.02
ACDSee Free 1.1.21 has a User Mode Write AV starting at IDE_ACDStd!JPEGTransW+0x00000000000024ed.
- risk 0.51cvss 7.8epss 0.02
FastStone Image Viewer 7.0 has a User Mode Write AV starting at image00400000+0x00000000001a9601.
- risk 0.51cvss 7.8epss 0.02
FastStone Image Viewer 7.0 has a User Mode Write AV starting at image00400000+0x00000000001a95b1.
- risk 0.51cvss 7.8epss 0.02
FastStone Image Viewer 7.0 has a User Mode Write AV starting at image00400000+0x0000000000002d7d.
- risk 0.51cvss 7.8epss 0.03
IrfanView 4.52 has a User Mode Write AV starting at image00400000+0x00000000000249c6.
- risk 0.51cvss 7.8epss 0.03
IrfanView 4.52 has a User Mode Write AV starting at image00400000+0x0000000000013a98.
- risk 0.51cvss 7.8epss 0.02
XnView Classic 2.48 has a User Mode Write AV starting at xnview+0x000000000030ecfa.