VYPR

CWE-787

Out-of-bounds Write

BaseDraftLikelihood: High

Description

The product writes data past the end, or before the beginning, of the intended buffer.

Hierarchy (View 1000)

CVEs mapped to this weakness (14,531)

page 631 of 727
  • CVE-2023-21385MedOct 30, 2023
    risk 0.36cvss 5.5epss 0.00

    In Whitechapel, there is a possible out of bounds read due to memory corruption. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.

  • CVE-2023-46332MedOct 23, 2023
    risk 0.36cvss 5.5epss 0.00

    WebAssembly wabt 1.0.33 contains an Out-of-Bound Memory Write in DataSegment::Drop(), which lead to segmentation fault.

  • CVE-2023-44178MedOct 13, 2023
    risk 0.36cvss 5.5epss 0.00

    A Stack-based Buffer Overflow vulnerability in the CLI command of Juniper Networks Junos OS allows a low privileged attacker to execute a specific CLI commands leading to Denial of Service. Repeated actions by the attacker will create a sustained Denial of Service (DoS)…

  • CVE-2023-44177MedOct 13, 2023
    risk 0.36cvss 5.5epss 0.00

    A Stack-based Buffer Overflow vulnerability in the CLI command of Juniper Networks Junos and Junos EVO allows a low privileged attacker to execute a specific CLI commands leading to Denial of Service. Repeated actions by the attacker will create a sustained Denial of Service…

  • CVE-2023-44176MedOct 13, 2023
    risk 0.36cvss 5.5epss 0.00

    A Stack-based Buffer Overflow vulnerability in the CLI command of Juniper Networks Junos OS allows a low privileged attacker to execute a specific CLI commands leading to Denial of Service. Repeated actions by the attacker will create a sustained Denial of Service (DoS)…

  • CVE-2023-28393MedSep 25, 2023
    risk 0.36cvss 5.6epss 0.01

    A stack-based buffer overflow vulnerability exists in the tif_processing_dng_channel_count functionality of Accusoft ImageGear 20.1. A specially crafted malformed file can lead to memory corruption. An attacker can provide a malicious file to trigger this vulnerability.

  • CVE-2023-38554MedSep 4, 2023
    risk 0.36cvss 5.5epss 0.00

    In wcn bsp driver, there is a possible out of bounds write due to a missing bounds check.This could lead to local denial of service with no additional execution privileges

  • CVE-2023-4042MedAug 23, 2023
    risk 0.36cvss 5.5epss 0.00

    A flaw was found in ghostscript. The fix for CVE-2020-16305 in ghostscript was not included in RHSA-2021:1852-06 advisory as it was claimed to be. This issue only affects the ghostscript package as shipped with Red Hat Enterprise Linux 8.

  • CVE-2020-21723MedAug 22, 2023
    risk 0.36cvss 5.5epss 0.00

    A Segmentation Fault issue discovered StreamSerializer::extractStreams function in streamSerializer.cpp in oggvideotools 0.9.1 allows remote attackers to cause a denial of service (crash) via opening of crafted ogg file.

  • CVE-2020-21687MedAug 22, 2023
    risk 0.36cvss 5.5epss 0.00

    Buffer Overflow vulnerability in scan function in stdscan.c in nasm 2.15rc0 allows remote attackers to cause a denial of service via crafted asm file.

  • CVE-2020-21685MedAug 22, 2023
    risk 0.36cvss 5.5epss 0.00

    Buffer Overflow vulnerability in hash_findi function in hashtbl.c in nasm 2.15rc0 allows remote attackers to cause a denial of service via crafted asm file.

  • CVE-2020-21679MedAug 22, 2023
    risk 0.36cvss 5.5epss 0.00

    Buffer Overflow vulnerability in WritePCXImage function in pcx.c in GraphicsMagick 1.4 allows remote attackers to cause a denial of service via converting of crafted image file to pcx format.

  • CVE-2020-21047MedAug 22, 2023
    risk 0.36cvss 5.5epss 0.00

    The libcpu component which is used by libasm of elfutils version 0.177 (git 47780c9e), suffers from denial-of-service vulnerability caused by application crashes due to out-of-bounds write (CWE-787), off-by-one error (CWE-193) and reachable assertion (CWE-617); to exploit the…

  • CVE-2020-18781MedAug 22, 2023
    risk 0.36cvss 5.5epss 0.00

    Heap buffer overflow vulnerability in FilePOSIX::read in File.cpp in audiofile 0.3.6 may cause denial-of-service via a crafted wav file, this bug can be triggered by the executable sfconvert.

  • CVE-2020-18768MedAug 22, 2023
    risk 0.36cvss 5.5epss 0.00

    There exists one heap buffer overflow in _TIFFmemcpy in tif_unix.c in libtiff 4.0.10, which allows an attacker to cause a denial-of-service through a crafted tiff file.

  • CVE-2023-39741MedAug 17, 2023
    risk 0.36cvss 5.5epss 0.00

    lrzip v0.651 was discovered to contain a heap overflow via the libzpaq::PostProcessor::write(int) function at /libzpaq/libzpaq.cpp. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted file.

  • CVE-2023-38857MedAug 15, 2023
    risk 0.36cvss 5.5epss 0.01

    Buffer Overflow vulnerability infaad2 v.2.10.1 allows a remote attacker to execute arbitrary code and cause a denial of service via the stcoin function in mp4read.c.

  • CVE-2023-40305MedAug 14, 2023
    risk 0.36cvss 5.5epss 0.00

    GNU indent 2.2.13 has a heap-based buffer overflow in search_brace in indent.c via a crafted file.

  • CVE-2023-39130MedJul 25, 2023
    risk 0.36cvss 5.5epss 0.00

    GNU gdb (GDB) 13.0.50.20220805-git was discovered to contain a heap buffer overflow via the function pe_as16() at /gdb/coff-pe-read.c.

  • CVE-2023-39128MedJul 25, 2023
    risk 0.36cvss 5.5epss 0.00

    GNU gdb (GDB) 13.0.50.20220805-git was discovered to contain a stack overflow via the function ada_decode at /gdb/ada-lang.c.