VYPR

CWE-787

Out-of-bounds Write

BaseDraftLikelihood: High

Description

The product writes data past the end, or before the beginning, of the intended buffer.

Hierarchy (View 1000)

CVEs mapped to this weakness (14,531)

page 668 of 727
  • CVE-2023-48355MedJan 18, 2024
    risk 0.29cvss 4.4epss 0.00

    In jpg driver, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service with System execution privileges needed

  • CVE-2023-48342MedJan 18, 2024
    risk 0.29cvss 4.4epss 0.00

    In media service, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service with System execution privileges needed

  • CVE-2023-50572MedDec 29, 2023
    risk 0.29cvss 5.5epss 0.00

    An issue in the component GroovyEngine.execute of jline-groovy v3.24.1 allows attackers to cause an OOM (OutofMemory) error.

  • CVE-2023-42751MedDec 4, 2023
    risk 0.29cvss 4.4epss 0.00

    In gnss service, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service with System execution privileges needed

  • CVE-2023-42729MedDec 4, 2023
    risk 0.29cvss 4.4epss 0.00

    In ril service, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service with System execution privileges needed

  • CVE-2023-42727MedDec 4, 2023
    risk 0.29cvss 4.4epss 0.00

    In gpu driver, there is a possible out of bounds write due to a incorrect bounds check. This could lead to local denial of service with System execution privileges needed

  • CVE-2023-42682MedDec 4, 2023
    risk 0.29cvss 4.4epss 0.00

    In gsp driver, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service with System execution privileges needed

  • CVE-2023-42679MedDec 4, 2023
    risk 0.29cvss 4.4epss 0.00

    In gpu driver, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service with System execution privileges needed

  • CVE-2023-42750MedNov 1, 2023
    risk 0.29cvss 4.4epss 0.00

    In gnss service, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service with System execution privileges needed

  • CVE-2022-48461MedNov 1, 2023
    risk 0.29cvss 4.4epss 0.00

    In sensor driver, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service with System execution privileges needed

  • CVE-2022-48456MedNov 1, 2023
    risk 0.29cvss 4.4epss 0.00

    In camera driver, there is a possible out of bounds write due to a incorrect bounds check. This could lead to local denial of service with System execution privileges needed

  • CVE-2023-46256MedOct 31, 2023
    risk 0.29cvss 4.4epss 0.01

    PX4-Autopilot provides PX4 flight control solution for drones. In versions 1.14.0-rc1 and prior, PX4-Autopilot has a heap buffer overflow vulnerability in the parser function due to the absence of `parserbuf_index` value checking. A malfunction of the sensor device can cause a…

  • CVE-2023-40652MedOct 8, 2023
    risk 0.29cvss 4.4epss 0.00

    In jpg driver, there is a possible out of bounds write due to improper input validation. This could lead to local denial of service with System execution privileges needed

  • CVE-2023-40651MedOct 8, 2023
    risk 0.29cvss 4.4epss 0.00

    In urild service, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service with System execution privileges needed

  • CVE-2023-32813MedSep 4, 2023
    risk 0.29cvss 4.4epss 0.00

    In gnss service, there is a possible out of bounds write due to improper input validation. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08017370; Issue ID: ALPS08017370.

  • CVE-2023-38468MedSep 4, 2023
    risk 0.29cvss 4.4epss 0.00

    In urild service, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service with System execution privileges needed

  • CVE-2023-38467MedSep 4, 2023
    risk 0.29cvss 4.4epss 0.00

    In urild service, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service with System execution privileges needed

  • CVE-2022-48453MedSep 4, 2023
    risk 0.29cvss 4.4epss 0.00

    In camera driver, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service with System execution privileges needed

  • CVE-2023-39268MedAug 29, 2023
    risk 0.29cvss 4.5epss 0.01

    A memory corruption vulnerability in ArubaOS-Switch could lead to unauthenticated remote code execution by receiving specially crafted packets. Successful exploitation of this vulnerability results in the ability to execute arbitrary code as a privileged user on the underlying…

  • CVE-2023-30697MedAug 10, 2023
    risk 0.29cvss 4.4epss 0.00

    An improper input validation in IpcTxCfgSetSimlockPayload in libsec-ril prior to SMR Aug-2023 Release 1 allows attacker to cause out-of-bounds write.