VYPR

CWE-787

Out-of-bounds Write

BaseDraftLikelihood: High

Description

The product writes data past the end, or before the beginning, of the intended buffer.

Hierarchy (View 1000)

CVEs mapped to this weakness (14,531)

page 669 of 727
  • CVE-2023-30696MedAug 10, 2023
    risk 0.29cvss 4.4epss 0.00

    An improper input validation in IpcTxGetVerifyAkey in libsec-ril prior to SMR Aug-2023 Release 1 allows attacker to cause out-of-bounds write.

  • CVE-2023-30681MedAug 10, 2023
    risk 0.29cvss 4.4epss 0.00

    An improper input validation vulnerability within initialize function in HAL VaultKeeper prior to SMR Aug-2023 Release 1 allows attacker to cause out-of-bounds write.

  • CVE-2023-20812MedAug 7, 2023
    risk 0.29cvss 4.4epss 0.00

    In wlan driver, there is a possible out of bounds write due to improper input validation. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07944987; Issue ID: ALPS07944987.

  • CVE-2023-20796MedAug 7, 2023
    risk 0.29cvss 4.4epss 0.00

    In power, there is a possible memory corruption due to an incorrect bounds check. This could lead to local denial of service with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07929790; Issue ID: ALPS07929790.

  • CVE-2023-20793MedAug 7, 2023
    risk 0.29cvss 4.4epss 0.00

    In apu, there is a possible memory corruption due to a missing bounds check. This could lead to local denial of service with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07767818; Issue ID: ALPS07767818.

  • CVE-2023-20790MedAug 7, 2023
    risk 0.29cvss 4.4epss 0.00

    In nvram, there is a possible out of bounds write due to a missing bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07740194; Issue ID: ALPS07740194.

  • CVE-2023-20781MedAug 7, 2023
    risk 0.29cvss 4.4epss 0.00

    In keyinstall, there is a possible memory corruption due to a missing bounds check. This could lead to local denial of service with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08017756; Issue ID: ALPS07905323.

  • CVE-2023-33905MedJul 12, 2023
    risk 0.29cvss 4.4epss 0.00

    In iwnpi server, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service with System execution privileges needed.

  • CVE-2023-33897MedJul 12, 2023
    risk 0.29cvss 4.4epss 0.00

    In libimpl-ril, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service with System execution privileges needed.

  • CVE-2023-33896MedJul 12, 2023
    risk 0.29cvss 4.4epss 0.00

    In libimpl-ril, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service with System execution privileges needed.

  • CVE-2023-20759MedJul 4, 2023
    risk 0.29cvss 4.4epss 0.00

    In cmdq, there is a possible memory corruption due to a missing bounds check. This could lead to local denial of service with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07636133; Issue ID: ALPS07634601.

  • CVE-2023-20758MedJul 4, 2023
    risk 0.29cvss 4.4epss 0.00

    In cmdq, there is a possible memory corruption due to a missing bounds check. This could lead to local denial of service with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07636133; Issue ID: ALPS07636130.

  • CVE-2022-48439MedJun 6, 2023
    risk 0.29cvss 4.4epss 0.00

    In cp_dump driver, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service with System execution privileges needed.

  • CVE-2022-48438MedJun 6, 2023
    risk 0.29cvss 4.4epss 0.00

    In cp_dump driver, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service with System execution privileges needed.

  • CVE-2022-48389MedMay 9, 2023
    risk 0.29cvss 4.4epss 0.00

    In modem control device, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service with System execution privileges needed.

  • CVE-2022-48387MedMay 9, 2023
    risk 0.29cvss 4.4epss 0.00

    the apipe driver, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service with System execution privileges needed.

  • CVE-2022-48385MedMay 9, 2023
    risk 0.29cvss 4.4epss 0.00

    In cp_dump driver, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service with System execution privileges needed.

  • CVE-2022-48382MedMay 9, 2023
    risk 0.29cvss 4.4epss 0.00

    In log service, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service with System execution privileges needed.

  • CVE-2022-48381MedMay 9, 2023
    risk 0.29cvss 4.4epss 0.00

    In modem control device, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service with System execution privileges needed.

  • CVE-2022-48380MedMay 9, 2023
    risk 0.29cvss 4.4epss 0.00

    In modem control device, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service with System execution privileges needed.