CWE-120
4,226 CVEs • Abstraction: Base • Likelihood of Exploit: High
Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')
The product copies an input buffer to an output buffer without verifying that the size of the input buffer is less than the size of the output buffer, leading to a buffer overflow.
CVEs (4,226)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Netgear 2R6700 Firmware R6900 FirmwareJun 17, 2026 Apr 26, 2023 N/A· v4 9.8 CRITICAL· v3 N/A· v2 Buffer Overflow vulnerability found in Netgear R6900 v.1.0.2.26, R6700v3 v.1.0.4.128, R6700 v.1.0.0.26 allows a remote attacker to execute arbitrary code and cause a denial ofservice via the getInputData parameter of the...Show more |
Buffer Overflow vulnerability found in ByronKnoll Cmix v.19 allows an attacker to execute arbitrary code and cause a denial of service via the paq8 function. |
Buffer Overflow vulnerability found in XPDF v.4.04 allows an attacker to cause a Denial of Service via the PDFDoc malloc in the pdftotext.cc function. NOTE: Vendor states “it's an expected abort on out-of-memory error.” |
libming 0.4.8 0.4.8 is vulnerable to Buffer Overflow. In getInt() in decompile.c unknown type may lead to denial of service. This is a different vulnerability than CVE-2018-9132 and CVE-2018-20427. |
1Zyxel 18Atp100 Firmware Atp100w FirmwareAtp200 Firmware+15 moreJun 17, 2026 Apr 24, 2023 N/A· v4 7.5 HIGH· v3 N/A· v2 A buffer overflow vulnerability in the “sdwan_iface_ipc” binary of Zyxel ATP series firmware versions 5.10 through 5.32, USG FLEX series firmware versions 5.00 through 5.32, USG FLEX 50(W) firmware versions 5.10 through...Show more |
1Zyxel 12Usg 20w Vpn Firmware Usg Flex 100 FirmwareUsg Flex 100w Firmware+9 moreJun 17, 2026 Apr 24, 2023 N/A· v4 7.5 HIGH· v3 N/A· v2 A buffer overflow vulnerability in the “fbwifi_forward.cgi” CGI program of Zyxel USG FLEX series firmware versions 4.50 through 5.35, USG FLEX 50(W) firmware versions 4.30 through 5.35, USG20(W)-VPN firmware versions 4.3...Show more |
A vulnerability, which was classified as critical, was found in PoDoFo 0.10.0. Affected is the function readXRefStreamEntry of the file PdfXRefStreamParserObject.cpp. The manipulation leads to heap-based buffer overflow....Show more |
NVIDIA DGX-1 BMC contains a vulnerability in the IPMI handler of the AMI MegaRAC BMC , where an attacker with the appropriate level of authorization can cause a buffer overflow, which may lead to denial of service, infor...Show more |
Qihoo 360 (https://www.360.cn/) Qihoo 360 Safeguard (https://www.360.cn/) Qihoo 360 Total Security (http://www.360totalsecurity.com/) is affected by: Buffer Overflow. The impact is: execute arbitrary code (local). The co...Show more |
Buffer Overflow vulnerability in Qihoo 360 Total Security v10.8.0.1060 and v10.8.0.1213 allows attacker to escalate privileges. |
Qihoo 360 (https://www.360.cn/) Qihoo 360 Safeguard (https://www.360.cn/) Qihoo 360 Chrome (https://browser.360.cn/ee/) is affected by: Buffer Overflow. The impact is: execute arbitrary code (remote). The component is: T...Show more |
1360totalsecurity 1360 Total Security Jun 17, 2026 Apr 19, 2023 N/A· v4 7.8 HIGH· v3 N/A· v2 Buffer Overflow vulnerability in Qihoo 360 Safe guard v12.1.0.1004, v12.1.0.1005, v13.1.0.1001 allows attacker to escalate priveleges. |
Buffer Overflow vulnerability in Qihoo 360 Safe Browser v13.0.2170.0 allows attacker to escalate priveleges. |
1Apng Optimizer Project 1Apng Optimizer Jun 17, 2026 Apr 17, 2023 N/A· v4 7.5 HIGH· v3 N/A· v2 APNG_Optimizer v1.4 was discovered to contain a buffer overflow via the component /apngopt/ubuntu.png. |
1Qualcomm 128315 5g Iot Modem Firmware Aqt1000 FirmwareAr8035 Firmware+125 moreJun 17, 2026 Apr 13, 2023 N/A· v4 8.8 HIGH· v3 N/A· v2 Memory corruption due to buffer copy without checking the size of input in Core while sending SCM command to get write protection information. |
1Qualcomm 12Mdm8207 Firmware Mdm9205 FirmwareMdm9206 Firmware+9 moreJun 17, 2026 Apr 13, 2023 N/A· v4 9.8 CRITICAL· v3 N/A· v2 Memory corruption due to buffer copy without checking the size of input in modem while decoding raw SMS received. |
1Qualcomm 12Mdm8207 Firmware Mdm9205 FirmwareMdm9206 Firmware+9 moreJun 17, 2026 Apr 13, 2023 N/A· v4 9.8 CRITICAL· v3 N/A· v2 Memory corruption in modem due to buffer overwrite while building an IPv6 multicast address based on the MAC address of the iface |
1Qualcomm 12Mdm8207 Firmware Mdm9205 FirmwareMdm9206 Firmware+9 moreJun 17, 2026 Apr 13, 2023 N/A· v4 9.8 CRITICAL· v3 N/A· v2 Memory correction in modem due to buffer overwrite during coap connection |
An issue was discovered in IhisiSmm in Insyde InsydeH2O with kernel 5.0 through 5.5. IHISI function 0x17 verifies that the output buffer lies within the command buffer but does not verify that output data does not go bey...Show more |
Buffer Overflow vulnerability found in SQLite3 v.3.27.1 and before allows a local attacker to cause a denial of service via a crafted script. |