← Back
CWE-120

4,225 CVEs • Abstraction: Base • Likelihood of Exploit: High

Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')

The product copies an input buffer to an output buffer without verifying that the size of the input buffer is less than the size of the output buffer, leading to a buffer overflow.

JSON object

Loading...

CVEs (4,225)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
2Debian
Neutrinolabs
2Debian Linux
Xrdp
Jun 17, 2026
Dec 9, 2022
N/A· v4
9.8 CRITICAL· v3
N/A· v2
xrdp is an open source project which provides a graphical login to remote machines using Microsoft Remote Desktop Protocol (RDP). xrdp < v0.9.21 contain a buffer over flow in xrdp_mm_chan_data_in() function. There are no...Show more
xrdp is an open source project which provides a graphical login to remote machines using Microsoft Remote Desktop Protocol (RDP). xrdp < v0.9.21 contain a buffer over flow in xrdp_mm_chan_data_in() function. There are no known workarounds for this issue. Users are advised to upgrade.Show less
2Debian
Neutrinolabs
2Debian Linux
Xrdp
Jun 17, 2026
Dec 9, 2022
N/A· v4
9.8 CRITICAL· v3
N/A· v2
xrdp is an open source project which provides a graphical login to remote machines using Microsoft Remote Desktop Protocol (RDP). xrdp < v0.9.21 contain a buffer over flow in audin_send_open() function. There are no know...Show more
xrdp is an open source project which provides a graphical login to remote machines using Microsoft Remote Desktop Protocol (RDP). xrdp < v0.9.21 contain a buffer over flow in audin_send_open() function. There are no known workarounds for this issue. Users are advised to upgrade.Show less
2Debian
Neutrinolabs
2Debian Linux
Xrdp
Jun 17, 2026
Dec 9, 2022
N/A· v4
9.8 CRITICAL· v3
N/A· v2
xrdp is an open source project which provides a graphical login to remote machines using Microsoft Remote Desktop Protocol (RDP). xrdp < v0.9.21 contain a buffer over flow in xrdp_login_wnd_create() function. There are n...Show more
xrdp is an open source project which provides a graphical login to remote machines using Microsoft Remote Desktop Protocol (RDP). xrdp < v0.9.21 contain a buffer over flow in xrdp_login_wnd_create() function. There are no known workarounds for this issue. Users are advised to upgrade.Show less
1Jetbrains
1Intellij Idea
Jun 17, 2026
Dec 8, 2022
N/A· v4
7.8 HIGH· v3
N/A· v2
In JetBrains IntelliJ IDEA before 2022.2.4 a buffer overflow in the fsnotifier daemon on macOS was possible.
2Openatom
Openharmony
2Openharmony
Openharmony
Jun 17, 2026
Dec 8, 2022
N/A· v4
7.8 HIGH· v3
N/A· v2
The appspawn and nwebspawn services within OpenHarmony-v3.1.2 and prior versions were found to be vulnerable to buffer overflow vulnerability due to insufficient input validation. An unprivileged malicious application wo...Show more
The appspawn and nwebspawn services within OpenHarmony-v3.1.2 and prior versions were found to be vulnerable to buffer overflow vulnerability due to insufficient input validation. An unprivileged malicious application would be able to gain code execution within any application installed on the device or cause application crash.Show less
2Openatom
Openharmony
2Openharmony
Openharmony
Jun 17, 2026
Dec 8, 2022
N/A· v4
3.3 LOW· v3
N/A· v2
Kernel subsystem within OpenHarmony-v3.1.4 and prior versions in kernel_liteos_a has a kernel stack overflow vulnerability when call SysClockGetres. 4 bytes padding data from kernel stack are copied to user space incorre...Show more
Kernel subsystem within OpenHarmony-v3.1.4 and prior versions in kernel_liteos_a has a kernel stack overflow vulnerability when call SysClockGetres. 4 bytes padding data from kernel stack are copied to user space incorrectly and leaked.Show less
1Google
1Android
Jun 17, 2026
Dec 6, 2022
N/A· v4
5.5 MEDIUM· v3
N/A· v2
In wlan driver, there is a possible missing bounds check, This could lead to local denial of service in wlan services.
1Google
1Android
Jun 17, 2026
Dec 6, 2022
N/A· v4
5.5 MEDIUM· v3
N/A· v2
In sensor driver, there is a possible buffer overflow due to a missing bounds check. This could lead to local denial of service in kernel.
1Tenda
1I22 Firmware
Jun 17, 2026
Dec 2, 2022
N/A· v4
7.5 HIGH· v3
N/A· v2
Tenda i22 V1.0.0.3(4687) was discovered to contain a buffer overflow via the formWx3AuthorizeSet function.
1Tenda
1I22 Firmware
Jun 17, 2026
Dec 2, 2022
N/A· v4
7.5 HIGH· v3
N/A· v2
Tenda i22 V1.0.0.3(4687) was discovered to contain a buffer overflow via the appData parameter in the formSetAppFilterRule function.
1Tenda
1I22 Firmware
Jun 17, 2026
Dec 2, 2022
N/A· v4
7.5 HIGH· v3
N/A· v2
Tenda i22 V1.0.0.3(4687) was discovered to contain a buffer overflow via the ping1 parameter in the formSetAutoPing function.
1Tenda
1I22 Firmware
Jun 17, 2026
Dec 2, 2022
N/A· v4
7.5 HIGH· v3
N/A· v2
Tenda i22 V1.0.0.3(4687) was discovered to contain a buffer overflow via the index parameter in the formWifiMacFilterGet function.
1Tenda
1I22 Firmware
Jun 17, 2026
Dec 2, 2022
N/A· v4
7.5 HIGH· v3
N/A· v2
Tenda i22 V1.0.0.3(4687) was discovered to contain a buffer overflow via the list parameter in the formwrlSSIDget function.
1Tenda
1I22 Firmware
Jun 17, 2026
Dec 2, 2022
N/A· v4
7.5 HIGH· v3
N/A· v2
Tenda i22 V1.0.0.3(4687) was discovered to contain a buffer overflow via the index parameter in the formWifiMacFilterSet function.
1Tendacn
1Ac6 Firmware
Jun 17, 2026
Dec 2, 2022
N/A· v4
7.5 HIGH· v3
N/A· v2
Tenda AC6V1.0 V15.03.05.19 was discovered to contain a buffer overflow via the time parameter in the setSmartPowerManagement function.
1Tendacn
1Ac6 Firmware
Jun 17, 2026
Dec 2, 2022
N/A· v4
7.5 HIGH· v3
N/A· v2
Tenda AC6V1.0 V15.03.05.19 was discovered to contain a buffer overflow via the schedStartTime parameter in the setSchedWifi function.
1Tendacn
1Ac6 Firmware
Jun 17, 2026
Dec 2, 2022
N/A· v4
7.5 HIGH· v3
N/A· v2
Tenda AC6V1.0 V15.03.05.19 was discovered to contain a buffer overflow via the wpapsk_crypto parameter in the fromSetWirelessRepeat function.
1Tendacn
1Ac6 Firmware
Jun 17, 2026
Dec 2, 2022
N/A· v4
7.5 HIGH· v3
N/A· v2
Tenda AC6V1.0 V15.03.05.19 was discovered to contain a buffer overflow via the schedEndTime parameter in the setSchedWifi function.
1Tendacn
1Ac6 Firmware
Jun 17, 2026
Dec 2, 2022
N/A· v4
7.5 HIGH· v3
N/A· v2
Tenda AC6V1.0 V15.03.05.19 was discovered to contain a buffer overflow via the list parameter in the fromSetIpMacBind function.
1Tendacn
1Ac6 Firmware
Jun 17, 2026
Dec 2, 2022
N/A· v4
7.5 HIGH· v3
N/A· v2
Tenda AC6V1.0 V15.03.05.19 was discovered to contain a buffer overflow via the time parameter in the fromSetSysTime function.