VYPR

CWE-787

Out-of-bounds Write

BaseDraftLikelihood: High

Description

The product writes data past the end, or before the beginning, of the intended buffer.

Hierarchy (View 1000)

CVEs mapped to this weakness (14,531)

page 643 of 727
  • CVE-2020-22675MedOct 12, 2021
    risk 0.36cvss 5.5epss 0.01

    An issue was discovered in gpac 0.8.0. The GetGhostNum function in stbl_read.c has a heap-based buffer overflow which can lead to a denial of service (DOS) via a crafted input.

  • CVE-2020-23273MedSep 22, 2021
    risk 0.36cvss 5.5epss 0.01

    Heap-buffer overflow in the randomize_iparp function in edit_packet.c. of Tcpreplay v4.3.2 allows attackers to cause a denial of service (DOS) via a crafted pcap.

  • CVE-2020-23269MedSep 22, 2021
    risk 0.36cvss 5.5epss 0.01

    An issue was discovered in gpac 0.8.0. The stbl_GetSampleSize function in isomedia/stbl_read.c has a heap-based buffer overflow which can lead to a denial of service (DOS) via a crafted media file.

  • CVE-2020-23266MedSep 22, 2021
    risk 0.36cvss 5.5epss 0.01

    An issue was discovered in gpac 0.8.0. The OD_ReadUTF8String function in odf_code.c has a heap-based buffer overflow which can lead to a denial of service (DOS) via a crafted media file.

  • CVE-2020-21533MedSep 16, 2021
    risk 0.36cvss 5.5epss 0.01

    fig2dev 3.2.7b contains a stack buffer overflow in the read_textobject function in read.c.

  • CVE-2020-21529MedSep 16, 2021
    risk 0.36cvss 5.5epss 0.01

    fig2dev 3.2.7b contains a stack buffer overflow in the bezier_spline function in genepic.c.

  • CVE-2021-1883MedSep 8, 2021
    risk 0.36cvss 5.5epss 0.02

    This issue was addressed with improved checks. This issue is fixed in Security Update 2021-004 Mojave, iOS 14.5 and iPadOS 14.5, watchOS 7.4, Security Update 2021-003 Catalina, tvOS 14.5, macOS Big Sur 11.3. Processing maliciously crafted server messages may lead to heap…

  • CVE-2020-18971MedAug 25, 2021
    risk 0.36cvss 5.5epss 0.01

    Stack-based Buffer Overflow in PoDoFo v0.9.6 allows attackers to cause a denial of service via the component 'src/base/PdfDictionary.cpp:65'.

  • CVE-2021-30929MedAug 24, 2021
    risk 0.36cvss 5.5epss 0.00

    An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in macOS Monterey 12.1, iOS 15.2 and iPadOS 15.2, macOS Big Sur 11.6.2, Security Update 2021-008 Catalina. Processing a maliciously crafted USD file may disclose memory contents.

  • CVE-2021-30853MedAug 24, 2021
    risk 0.36cvss 5.5epss 0.07

    This issue was addressed with improved checks. This issue is fixed in macOS Big Sur 11.6. A malicious application may bypass Gatekeeper checks.

  • CVE-2020-21680MedAug 10, 2021
    risk 0.36cvss 5.5epss 0.01

    A stack-based buffer overflow in the put_arrow() component in genpict2e.c of fig2dev 3.2.7b allows attackers to cause a denial of service (DOS) via converting a xfig file into pict2e format.

  • CVE-2020-21676MedAug 10, 2021
    risk 0.36cvss 5.5epss 0.01

    A stack-based buffer overflow in the genpstrx_text() component in genpstricks.c of fig2dev 3.2.7b allows attackers to cause a denial of service (DOS) via converting a xfig file into pstricks format.

  • CVE-2020-21675MedAug 10, 2021
    risk 0.36cvss 5.5epss 0.01

    A stack-based buffer overflow in the genptk_text component in genptk.c of fig2dev 3.2.7b allows attackers to cause a denial of service (DOS) via converting a xfig file into ptk format.

  • CVE-2021-36584MedAug 5, 2021
    risk 0.36cvss 5.5epss 0.01

    An issue was discovered in GPAC 1.0.1. There is a heap-based buffer overflow in the function gp_rtp_builder_do_tx3g function in ietf/rtp_pck_3gpp.c, as demonstrated by MP4Box. This can cause a denial of service (DOS).

  • CVE-2021-37220MedJul 21, 2021
    risk 0.36cvss 5.5epss 0.01

    MuPDF through 1.18.1 has an out-of-bounds write because the cached color converter does not properly consider the maximum key size of a hash table. This can, for example, be seen with crafted "mutool draw" input.

  • CVE-2020-19475MedJul 21, 2021
    risk 0.36cvss 5.5epss 0.01

    An issue has been found in function CCITTFaxStream::lookChar in PDF2JSON 0.70 that allows attackers to cause a Denial of Service due to an invalid write of size 2 .

  • CVE-2020-19469MedJul 21, 2021
    risk 0.36cvss 5.5epss 0.01

    An issue has been found in function DCTStream::reset in PDF2JSON 0.70 that allows attackers to cause a Denial of Service due to an invalid write of size 8 .

  • CVE-2020-19609MedJul 21, 2021
    risk 0.36cvss 5.5epss 0.01

    Artifex MuPDF before 1.18.0 has a heap based buffer over-write in tiff_expand_colormap() function when parsing TIFF files allowing attackers to cause a denial of service.

  • CVE-2020-36431MedJul 20, 2021
    risk 0.36cvss 5.5epss 0.00

    Unicorn Engine 1.0.2 has an out-of-bounds write in helper_wfe_arm.

  • CVE-2021-0601MedJul 14, 2021
    risk 0.36cvss 5.5epss 0.00

    In encodeFrames of avc_enc_fuzzer.cpp, there is a possible out of bounds write due to a double free. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions:…