← Back
CWE-120

4,417 CVEs • Abstraction: Base • Likelihood of Exploit: High

Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')

The product copies an input buffer to an output buffer without verifying that the size of the input buffer is less than the size of the output buffer, leading to a buffer overflow.

JSON object

Loading...

CVEs (4,417)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Rizin
1Rizin
Jun 17, 2026
Mar 1, 2025
4.8 MEDIUM· v4
7.8 HIGH· v3
4.3 MEDIUM· v2
A vulnerability was found in rizinorg rizin up to 0.7.4. It has been rated as critical. This issue affects the function msf_stream_directory_free in the library /librz/bin/pdb/pdb.c. The manipulation of the argument -P l...Show more
A vulnerability was found in rizinorg rizin up to 0.7.4. It has been rated as critical. This issue affects the function msf_stream_directory_free in the library /librz/bin/pdb/pdb.c. The manipulation of the argument -P leads to buffer overflow. Local access is required to approach this attack. The exploit has been disclosed to the public and may be used. Upgrading to version 0.8.0 is able to address this issue. It is recommended to upgrade the affected component.Show less
1Gpac
1Gpac
Jun 17, 2026
Feb 28, 2025
N/A· v4
8.4 HIGH· v3
N/A· v2
Buffer Overflow vulnerability in GPAC version 2.5 allows a local attacker to execute arbitrary code.
1Totolink
1A3002r Firmware
Jun 17, 2026
Feb 28, 2025
N/A· v4
8.0 HIGH· v3
N/A· v2
TOTOlink A3002R V1.1.1-B20200824.0128 contains a buffer overflow vulnerability. The vulnerability arises from the improper input validation of the pppoe_dns1 parameter in the formIpv6Setup interface of /bin/boa.
1Totolink
1A3002r Firmware
Jun 17, 2026
Feb 28, 2025
N/A· v4
8.0 HIGH· v3
N/A· v2
TOTOlink A3002R V1.1.1-B20200824.0128 contains a buffer overflow vulnerability. The vulnerability arises from the improper input validation of the static_gw parameter in the formIpv6Setup interface of /bin/boa.
1Totolink
1A3002r Firmware
Jun 17, 2026
Feb 28, 2025
N/A· v4
8.0 HIGH· v3
N/A· v2
TOTOlink A3002R V1.1.1-B20200824.0128 contains a buffer overflow vulnerability. The vulnerability arises from the improper input validation of the static_ipv6 parameter in the formIpv6Setup interface of /bin/boa
1Draytek
23Vigor1000b Firmware
Vigor2133 FirmwareVigor2135 Firmware+20 more
Jul 5, 2026
Feb 27, 2025
N/A· v4
9.8 CRITICAL· v3
N/A· v2
Buffer Overflow vulnerability in Vigor2620/LTE200 3.9.8.9 and earlier and Vigor2860/2925 3.9.8 and earlier and Vigor2862/2926 3.9.9.5 and earlier and Vigor2133/2762/2832 3.9.9 and earlier and Vigor165/166 4.2.7 and earli...Show more
Buffer Overflow vulnerability in Vigor2620/LTE200 3.9.8.9 and earlier and Vigor2860/2925 3.9.8 and earlier and Vigor2862/2926 3.9.9.5 and earlier and Vigor2133/2762/2832 3.9.9 and earlier and Vigor165/166 4.2.7 and earlier and Vigor2135/2765/2766 4.4.5.1 and earlier and Vigor2865/2866/2927 4.4.5.3 and earlier and Vigor2962/3910 4.3.2.8/4.4.3.1 and earlier and Vigor3912 4.3.6.1 and earlier allows a remote attacker to execute arbitrary code via the CGI parser's handling of the "Content-Length" header of HTTP POST requests.Show less
1Linux
1Linux Kernel
Jul 14, 2026
Feb 27, 2025
N/A· v4
7.8 HIGH· v3
N/A· v2
In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: avoid buffer overflow attach in smu_sys_set_pp_table() It malicious user provides a small pptable through sysfs and then a bigger pptable,...Show more
In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: avoid buffer overflow attach in smu_sys_set_pp_table() It malicious user provides a small pptable through sysfs and then a bigger pptable, it may cause buffer overflow attack in function smu_sys_set_pp_table().Show less
1Linux
1Linux Kernel
Mar 24, 2026
Feb 26, 2025
N/A· v4
N/A· v3
N/A· v2
Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
1Linux
1Linux Kernel
Aug 4, 2026
Feb 26, 2025
N/A· v4
7.8 HIGH· v3
N/A· v2
In the Linux kernel, the following vulnerability has been resolved: cifs: potential buffer overflow in handling symlinks Smatch printed a warning: arch/x86/crypto/poly1305_glue.c:198 poly1305_update_arch() error: __m...Show more
In the Linux kernel, the following vulnerability has been resolved: cifs: potential buffer overflow in handling symlinks Smatch printed a warning: arch/x86/crypto/poly1305_glue.c:198 poly1305_update_arch() error: __memcpy() 'dctx->buf' too small (16 vs u32max) It's caused because Smatch marks 'link_len' as untrusted since it comes from sscanf(). Add a check to ensure that 'link_len' is not larger than the size of the 'link_str' buffer.Show less
1Razormist
1Telecom Billing Management System
Jun 17, 2026
Feb 23, 2025
4.8 MEDIUM· v4
7.8 HIGH· v3
4.3 MEDIUM· v2
A vulnerability was found in SourceCodester Telecom Billing Management System 1.0. It has been rated as critical. This issue affects the function addrecords of the file main.cpp of the component Add New Record. The manip...Show more
A vulnerability was found in SourceCodester Telecom Billing Management System 1.0. It has been rated as critical. This issue affects the function addrecords of the file main.cpp of the component Add New Record. The manipulation of the argument name/phonenumber leads to buffer overflow. Local access is required to approach this attack. The exploit has been disclosed to the public and may be used. Other parameters might be affected as well.Show less
1Tenda
1Ac8 Firmware
Jun 17, 2026
Feb 21, 2025
N/A· v4
6.5 MEDIUM· v3
N/A· v2
Tenda AC8 V16.03.34.06 is vulnerable to Buffer Overflow in the get_parentControl_list_Info function.
1Tenda
1Ac6 Firmware
Jun 17, 2026
Feb 21, 2025
N/A· v4
6.5 MEDIUM· v3
N/A· v2
Tenda AC6 15.03.05.16_multi is vulnerable to Buffer Overflow in the sub_452A4 function.
1Tenda
1I12 Firmware
Jun 17, 2026
Feb 20, 2025
N/A· v4
9.8 CRITICAL· v3
N/A· v2
Tenda i12 V1.0.0.10(3805) was discovered to contain a buffer overflow via the funcpara1 parameter in the formSetCfm function.
1Tenda
1I12 Firmware
Jun 17, 2026
Feb 20, 2025
N/A· v4
9.8 CRITICAL· v3
N/A· v2
Tenda i12 V1.0.0.10(3805) was discovered to contain a buffer overflow via the list parameter in the formwrlSSIDset function.
1Tenda
1Ac10 Firmware
Jun 17, 2026
Feb 20, 2025
N/A· v4
9.8 CRITICAL· v3
N/A· v2
Tenda AC10 V1.0 V15.03.06.23 is vulnerable to Buffer Overflow in form_fast_setting_wifi_set via the parameter ssid.
1Tenda
1Ac8 Firmware
Jun 17, 2026
Feb 20, 2025
N/A· v4
9.8 CRITICAL· v3
N/A· v2
Tenda AC8V4 V16.03.34.06 was discovered to contain a stack overflow via the shareSpeed parameter in the sub_47D878 function.
1Tenda
1Ac8 Firmware
Jun 17, 2026
Feb 20, 2025
N/A· v4
9.8 CRITICAL· v3
N/A· v2
Tenda AC8V4 V16.03.34.06 was discovered to contain a stack overflow via the urls parameter in the function get_parentControl_list_Info.
1Tenda
1Ac8 Firmware
Jun 17, 2026
Feb 20, 2025
N/A· v4
9.8 CRITICAL· v3
N/A· v2
Tenda AC8V4 V16.03.34.06 was discovered to contain a stack overflow via the shareSpeed parameter in the sub_49E098 function.
1Tenda
1Ac8 Firmware
Jun 17, 2026
Feb 20, 2025
N/A· v4
9.8 CRITICAL· v3
N/A· v2
A vulnerability was found in Tenda AC8V4 V16.03.34.06. Affected is the function SUB_0046AC38 of the file /goform/WifiExtraSet. The manipulation of the argument wpapsk_crypto leads to stack-based buffer overflow.
1Tenda
1O4 Firmware
Jun 17, 2026
Feb 20, 2025
N/A· v4
9.8 CRITICAL· v3
N/A· v2
Tenda O4 V3.0 V1.0.0.10(2936) is vulnerable to Buffer Overflow in the function SafeSetMacFilter of the file /goform/setMacFilterList via the argument remark/type/time.