CWE-120
4,442 CVEs • Abstraction: Base • Likelihood of Exploit: High
Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')
The product copies an input buffer to an output buffer without verifying that the size of the input buffer is less than the size of the output buffer, leading to a buffer overflow.
CVEs (4,442)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
Configuration defects in the secure OS module.Successful exploitation of this vulnerability will affect availability. |
Configuration defects in the secure OS module.Successful exploitation of this vulnerability will affect availability. |
A buffer overflow in Nintendo Mario Kart Wii RMCP01, RMCE01, RMCJ01, and RMCK01 can be exploited by a game client to execute arbitrary code on a client's machine via a crafted packet. |
A buffer overflow in Counter-Strike through 8684 allows a game server to execute arbitrary code on a remote client's machine by modifying the lservercfgfile console variable. |
TP-Link Archer AX10(EU)_V1.2_230220 was discovered to contain a buffer overflow via the function FUN_131e8 - 0x132B4. |
1Silabs 1Gecko Software Development Kit Jun 17, 2026 Jun 15, 2023 N/A· v4 9.8 CRITICAL· v3 N/A· v2 Buffer overflow in Wi-Fi Commissioning MicriumOS example in Silicon Labs Gecko SDK v4.2.3 or earlier allows connected device to write payload onto the stack.
|
In multiple functions of multiple files, there is a possible way to make the device unusable due to improper input validation. This could lead to local denial of service with no additional execution privileges needed. Us...Show more |
In multiple functions of JobStore.java, there is a possible way to cause a crash on startup due to improper input validation. This could lead to local denial of service with no additional execution privileges needed. Use...Show more |
In onCreate of NotificationAccessSettings.java, there is a possible failure to persist notifications settings due to improper input validation. This could lead to local escalation of privilege with no additional executio...Show more |
1Hp 957 Laserjet Managed Mfp E62665 3gy14a Firmware Laserjet Managed Mfp E62665 3gy15a Firmware Laserjet Managed Mfp E62665 3gy16a Firmware+954 moreJun 17, 2026 Jun 14, 2023 N/A· v4 9.8 CRITICAL· v3 N/A· v2 A potential security vulnerability has been identified for certain HP multifunction printers (MFPs). The vulnerability may lead to Buffer Overflow and/or Remote Code Execution when running HP Workpath solutions on potent...Show more |
libtiff 4.5.0 is vulnerable to Buffer Overflow via extractContigSamplesBytes() at /libtiff/tools/tiffcrop.c:3215. |
Matthias-Wandel/jhead jhead 3.06 is vulnerable to Buffer Overflow via shellescape(), jhead.c, jhead. jhead copies strings to a stack buffer when it detects a &i or &o. However, jhead does not check the boundary of the st...Show more |
Buffer copy without checking size of input in Zoom Meeting SDK before 5.13.0 may allow an authenticated user to potentially enable a denial of service via local access. This issue may result in the Zoom Meeting SDK to...Show more |
Certain versions of HP PC Hardware Diagnostics Windows are potentially vulnerable to buffer overflow. |
AMI BMC contains a vulnerability in the IPMI handler, where an attacker with the required privileges can cause a buffer overflow, which may lead to code execution, denial of service, or escalation of privileges....Show more |
In Sogou Workflow v0.10.6, memcpy a negtive size in URIParser::parse , may cause buffer-overflow and crash. |
1Qualcomm 44Aqt1000 Firmware Qca6420 FirmwareQca6430 Firmware+41 moreJun 17, 2026 Jun 6, 2023 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption in FM Host due to buffer copy without checking the size of input in FM Host |
1Qualcomm 33Aqt1000 Firmware Qam8255p FirmwareQca6420 Firmware+30 moreJun 17, 2026 Jun 6, 2023 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption due to buffer copy without checking the size of input in Core while processing ioctl commands from diag client applications. |
1Qualcomm 46Aqt1000 Firmware Qam8255p FirmwareQca6420 Firmware+43 moreJun 17, 2026 Jun 6, 2023 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption in core due to buffer copy without check9ing the size of input while processing ioctl queries. |
In cp_dump driver, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service with System execution privileges needed. |