CWE-787
Out-of-bounds Write
Description
The product writes data past the end, or before the beginning, of the intended buffer.
Hierarchy (View 1000)
CVEs mapped to this weakness (14,531)
page 643 of 727| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2020-22675 | Med | 0.36 | 5.5 | 0.01 | Oct 12, 2021 | An issue was discovered in gpac 0.8.0. The GetGhostNum function in stbl_read.c has a heap-based buffer overflow which can lead to a denial of service (DOS) via a crafted input. | ||
| CVE-2020-23273 | Med | 0.36 | 5.5 | 0.01 | Sep 22, 2021 | Heap-buffer overflow in the randomize_iparp function in edit_packet.c. of Tcpreplay v4.3.2 allows attackers to cause a denial of service (DOS) via a crafted pcap. | ||
| CVE-2020-23269 | Med | 0.36 | 5.5 | 0.01 | Sep 22, 2021 | An issue was discovered in gpac 0.8.0. The stbl_GetSampleSize function in isomedia/stbl_read.c has a heap-based buffer overflow which can lead to a denial of service (DOS) via a crafted media file. | ||
| CVE-2020-23266 | Med | 0.36 | 5.5 | 0.01 | Sep 22, 2021 | An issue was discovered in gpac 0.8.0. The OD_ReadUTF8String function in odf_code.c has a heap-based buffer overflow which can lead to a denial of service (DOS) via a crafted media file. | ||
| CVE-2020-21533 | Med | 0.36 | 5.5 | 0.01 | Sep 16, 2021 | fig2dev 3.2.7b contains a stack buffer overflow in the read_textobject function in read.c. | ||
| CVE-2020-21529 | Med | 0.36 | 5.5 | 0.01 | Sep 16, 2021 | fig2dev 3.2.7b contains a stack buffer overflow in the bezier_spline function in genepic.c. | ||
| CVE-2021-1883 | Med | 0.36 | 5.5 | 0.02 | Sep 8, 2021 | This issue was addressed with improved checks. This issue is fixed in Security Update 2021-004 Mojave, iOS 14.5 and iPadOS 14.5, watchOS 7.4, Security Update 2021-003 Catalina, tvOS 14.5, macOS Big Sur 11.3. Processing maliciously crafted server messages may lead to heap… | ||
| CVE-2020-18971 | Med | 0.36 | 5.5 | 0.01 | Aug 25, 2021 | Stack-based Buffer Overflow in PoDoFo v0.9.6 allows attackers to cause a denial of service via the component 'src/base/PdfDictionary.cpp:65'. | ||
| CVE-2021-30929 | Med | 0.36 | 5.5 | 0.00 | Aug 24, 2021 | An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in macOS Monterey 12.1, iOS 15.2 and iPadOS 15.2, macOS Big Sur 11.6.2, Security Update 2021-008 Catalina. Processing a maliciously crafted USD file may disclose memory contents. | ||
| CVE-2021-30853 | Med | 0.36 | 5.5 | 0.07 | Aug 24, 2021 | This issue was addressed with improved checks. This issue is fixed in macOS Big Sur 11.6. A malicious application may bypass Gatekeeper checks. | ||
| CVE-2020-21680 | Med | 0.36 | 5.5 | 0.01 | Aug 10, 2021 | A stack-based buffer overflow in the put_arrow() component in genpict2e.c of fig2dev 3.2.7b allows attackers to cause a denial of service (DOS) via converting a xfig file into pict2e format. | ||
| CVE-2020-21676 | Med | 0.36 | 5.5 | 0.01 | Aug 10, 2021 | A stack-based buffer overflow in the genpstrx_text() component in genpstricks.c of fig2dev 3.2.7b allows attackers to cause a denial of service (DOS) via converting a xfig file into pstricks format. | ||
| CVE-2020-21675 | Med | 0.36 | 5.5 | 0.01 | Aug 10, 2021 | A stack-based buffer overflow in the genptk_text component in genptk.c of fig2dev 3.2.7b allows attackers to cause a denial of service (DOS) via converting a xfig file into ptk format. | ||
| CVE-2021-36584 | Med | 0.36 | 5.5 | 0.01 | Aug 5, 2021 | An issue was discovered in GPAC 1.0.1. There is a heap-based buffer overflow in the function gp_rtp_builder_do_tx3g function in ietf/rtp_pck_3gpp.c, as demonstrated by MP4Box. This can cause a denial of service (DOS). | ||
| CVE-2021-37220 | Med | 0.36 | 5.5 | 0.01 | Jul 21, 2021 | MuPDF through 1.18.1 has an out-of-bounds write because the cached color converter does not properly consider the maximum key size of a hash table. This can, for example, be seen with crafted "mutool draw" input. | ||
| CVE-2020-19475 | Med | 0.36 | 5.5 | 0.01 | Jul 21, 2021 | An issue has been found in function CCITTFaxStream::lookChar in PDF2JSON 0.70 that allows attackers to cause a Denial of Service due to an invalid write of size 2 . | ||
| CVE-2020-19469 | Med | 0.36 | 5.5 | 0.01 | Jul 21, 2021 | An issue has been found in function DCTStream::reset in PDF2JSON 0.70 that allows attackers to cause a Denial of Service due to an invalid write of size 8 . | ||
| CVE-2020-19609 | Med | 0.36 | 5.5 | 0.01 | Jul 21, 2021 | Artifex MuPDF before 1.18.0 has a heap based buffer over-write in tiff_expand_colormap() function when parsing TIFF files allowing attackers to cause a denial of service. | ||
| CVE-2020-36431 | Med | 0.36 | 5.5 | 0.00 | Jul 20, 2021 | Unicorn Engine 1.0.2 has an out-of-bounds write in helper_wfe_arm. | ||
| CVE-2021-0601 | Med | 0.36 | 5.5 | 0.00 | Jul 14, 2021 | In encodeFrames of avc_enc_fuzzer.cpp, there is a possible out of bounds write due to a double free. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions:… |
- risk 0.36cvss 5.5epss 0.01
An issue was discovered in gpac 0.8.0. The GetGhostNum function in stbl_read.c has a heap-based buffer overflow which can lead to a denial of service (DOS) via a crafted input.
- risk 0.36cvss 5.5epss 0.01
Heap-buffer overflow in the randomize_iparp function in edit_packet.c. of Tcpreplay v4.3.2 allows attackers to cause a denial of service (DOS) via a crafted pcap.
- risk 0.36cvss 5.5epss 0.01
An issue was discovered in gpac 0.8.0. The stbl_GetSampleSize function in isomedia/stbl_read.c has a heap-based buffer overflow which can lead to a denial of service (DOS) via a crafted media file.
- risk 0.36cvss 5.5epss 0.01
An issue was discovered in gpac 0.8.0. The OD_ReadUTF8String function in odf_code.c has a heap-based buffer overflow which can lead to a denial of service (DOS) via a crafted media file.
- risk 0.36cvss 5.5epss 0.01
fig2dev 3.2.7b contains a stack buffer overflow in the read_textobject function in read.c.
- risk 0.36cvss 5.5epss 0.01
fig2dev 3.2.7b contains a stack buffer overflow in the bezier_spline function in genepic.c.
- risk 0.36cvss 5.5epss 0.02
This issue was addressed with improved checks. This issue is fixed in Security Update 2021-004 Mojave, iOS 14.5 and iPadOS 14.5, watchOS 7.4, Security Update 2021-003 Catalina, tvOS 14.5, macOS Big Sur 11.3. Processing maliciously crafted server messages may lead to heap…
- risk 0.36cvss 5.5epss 0.01
Stack-based Buffer Overflow in PoDoFo v0.9.6 allows attackers to cause a denial of service via the component 'src/base/PdfDictionary.cpp:65'.
- risk 0.36cvss 5.5epss 0.00
An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in macOS Monterey 12.1, iOS 15.2 and iPadOS 15.2, macOS Big Sur 11.6.2, Security Update 2021-008 Catalina. Processing a maliciously crafted USD file may disclose memory contents.
- risk 0.36cvss 5.5epss 0.07
This issue was addressed with improved checks. This issue is fixed in macOS Big Sur 11.6. A malicious application may bypass Gatekeeper checks.
- risk 0.36cvss 5.5epss 0.01
A stack-based buffer overflow in the put_arrow() component in genpict2e.c of fig2dev 3.2.7b allows attackers to cause a denial of service (DOS) via converting a xfig file into pict2e format.
- risk 0.36cvss 5.5epss 0.01
A stack-based buffer overflow in the genpstrx_text() component in genpstricks.c of fig2dev 3.2.7b allows attackers to cause a denial of service (DOS) via converting a xfig file into pstricks format.
- risk 0.36cvss 5.5epss 0.01
A stack-based buffer overflow in the genptk_text component in genptk.c of fig2dev 3.2.7b allows attackers to cause a denial of service (DOS) via converting a xfig file into ptk format.
- risk 0.36cvss 5.5epss 0.01
An issue was discovered in GPAC 1.0.1. There is a heap-based buffer overflow in the function gp_rtp_builder_do_tx3g function in ietf/rtp_pck_3gpp.c, as demonstrated by MP4Box. This can cause a denial of service (DOS).
- risk 0.36cvss 5.5epss 0.01
MuPDF through 1.18.1 has an out-of-bounds write because the cached color converter does not properly consider the maximum key size of a hash table. This can, for example, be seen with crafted "mutool draw" input.
- risk 0.36cvss 5.5epss 0.01
An issue has been found in function CCITTFaxStream::lookChar in PDF2JSON 0.70 that allows attackers to cause a Denial of Service due to an invalid write of size 2 .
- risk 0.36cvss 5.5epss 0.01
An issue has been found in function DCTStream::reset in PDF2JSON 0.70 that allows attackers to cause a Denial of Service due to an invalid write of size 8 .
- risk 0.36cvss 5.5epss 0.01
Artifex MuPDF before 1.18.0 has a heap based buffer over-write in tiff_expand_colormap() function when parsing TIFF files allowing attackers to cause a denial of service.
- risk 0.36cvss 5.5epss 0.00
Unicorn Engine 1.0.2 has an out-of-bounds write in helper_wfe_arm.
- risk 0.36cvss 5.5epss 0.00
In encodeFrames of avc_enc_fuzzer.cpp, there is a possible out of bounds write due to a double free. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions:…