CWE-120
4,442 CVEs • Abstraction: Base • Likelihood of Exploit: High
Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')
The product copies an input buffer to an output buffer without verifying that the size of the input buffer is less than the size of the output buffer, leading to a buffer overflow.
CVEs (4,442)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
WAYOS FBM-291W 19.09.11V was discovered to contain a buffer overflow via the component /upgrade_filter.asp. |
In validateForCommonR1andR2 of PasspointConfiguration.java, there is a possible way to inflate the size of a config file with no limits due to a buffer overflow. This could lead to local denial of service with no additio...Show more |
3Debian LibtiffRedhat3Debian Linux Enterprise LinuxLibtiffJun 17, 2026 Jul 12, 2023 N/A· v4 6.5 MEDIUM· v3 N/A· v2 A flaw was found in libtiff. A specially crafted tiff file can lead to a segmentation fault due to a buffer overflow in the Fax3Encode function in libtiff/tif_fax3.c, resulting in a denial of service. |
1Schneider Electric 1Accutech Manager Jun 17, 2026 Jul 12, 2023 N/A· v4 7.8 HIGH· v3 N/A· v2
A CWE-120: Buffer Copy without Checking Size of Input (Classic Buffer Overflow) vulnerability
exists that could cause user privilege escalation if a local user sends specific string input to a
local function call.
|
Buffer Overflow vulnerability in Avast AntiVirus before v.19.7 allows a local attacker to cause a denial of service via a crafted request to the aswSnx.sys driver. |
A buffer overflow in the level parsing code of RobTop Games AB Geometry Dash v2.113 allows attackers to execute arbitrary code via entering a Geometry Dash level. |
A stack-based buffer overflow vulnerability exists in the urvpn_client http_connection_readcb functionality of Milesight UR32L v32.3.0.5. A specially crafted network packet can lead to a buffer overflow. An attacker can...Show more |
Buffer Overflow vulnerability in PX4-Autopilot allows attackers to cause a denial of service via handler function handling msgid 332. |
Buffer overflow vulnerability in the modem pinctrl module. Successful exploitation of this vulnerability may affect the integrity and availability of the modem. |
gnuplot v5.5 was discovered to contain a buffer overflow via the function plotrequest(). |
There is an unauthenticated buffer overflow vulnerability in the process controlling the ArubaOS web-based management interface. Successful exploitation of this vulnerability results in a Denial-of-Service (DoS) conditio...Show more |
1Qualcomm 186Ar8035 Firmware Csr8811 FirmwareCsra6620 Firmware+183 moreJun 17, 2026 Jul 4, 2023 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory Corruption in WLAN HOST while parsing QMI response message from firmware. |
1Qualcomm 196215 Firmware Ar8035 FirmwareCsr8811 Firmware+193 moreJun 17, 2026 Jul 4, 2023 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory Corruption in WLAN HOST while processing WLAN FW request to allocate memory. |
1Qualcomm 6Fastconnect 6900 Firmware Fastconnect 7800 FirmwareSnapdragon 8 Gen 1 Firmware+3 moreJun 17, 2026 Jul 4, 2023 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption in Linux when the file upload API is called with parameters having large buffer. |
1Qualcomm 22Aqt1000 Firmware Fastconnect 6200 FirmwareQca6420 Firmware+19 moreJun 17, 2026 Jul 4, 2023 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption in Audio while processing sva_model_serializer using memory size passed by HIDL client. |
1Qualcomm 48Aqt1000 Firmware Csrb31024 FirmwareFastconnect 6200 Firmware+45 moreJun 17, 2026 Jul 4, 2023 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory Corruption in Data Network Stack & Connectivity when sim gets detected on telephony. |
Buffer Overflow vulnerability in mtrojnar osslsigncode v.2.3 and before allows a local attacker to execute arbitrary code via a crafted .exe, .sys, and .dll files. |
Buffer Overflow vulnerability in OpenImageIO v.2.4.12.0 and before allows a remote to execute arbitrary code and obtain sensitive information via a crafted file to the readimg function. |
1Hp 46Laserjet Pro M304 M305 W1a46a Firmware Laserjet Pro M304 M305 W1a47a FirmwareLaserjet Pro M304 M305 W1a48a Firmware+43 moreJun 25, 2026 Jun 30, 2023 N/A· v4 8.8 HIGH· v3 N/A· v2 Certain HP LaserJet Pro print products are potentially vulnerable to Buffer Overflow when performing a GET request to scan jobs. |
1Hp 46Laserjet Pro M304 M305 W1a46a Firmware Laserjet Pro M304 M305 W1a47a FirmwareLaserjet Pro M304 M305 W1a48a Firmware+43 moreJun 25, 2026 Jun 30, 2023 N/A· v4 8.8 HIGH· v3 N/A· v2 Certain HP LaserJet Pro print products are potentially vulnerable to Buffer Overflow and/or Denial of Service when using the backup & restore feature through the embedded web service on the device. |