CWE-120
4,202 CVEs • Abstraction: Base • Likelihood of Exploit: High
Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')
The product copies an input buffer to an output buffer without verifying that the size of the input buffer is less than the size of the output buffer, leading to a buffer overflow.
CVEs (4,202)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
3Fedoraproject RedhatZeromq4Ceph Storage Enterprise LinuxFedora+1 moreJun 17, 2026 May 28, 2021 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 A flaw was found in the ZeroMQ server in versions before 4.3.3. This flaw allows a malicious client to cause a stack buffer overflow on the server by sending crafted topic subscription requests and then unsubscribing. Th...Show more |
2Fedoraproject X.org3Fedora Libx11X Window SystemJun 17, 2026 May 27, 2021 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 LookupCol.c in X.Org X through X11R7.7 and libX11 before 1.7.1 might allow remote attackers to execute arbitrary code. The libX11 XLookupColor request (intended for server-side color lookup) contains a flaw allowing a cl...Show more |
2Ivanti Pulsesecure2Connect Secure Pulse Connect SecureJun 17, 2026 May 27, 2021 N/A· v4 8.8 HIGH· v3 9.0 HIGH· v2 A buffer overflow vulnerability exists in Windows File Resource Profiles in 9.X allows a remote authenticated user with privileges to browse SMB shares to execute arbitrary code as the root user. As of version 9.1R3, thi...Show more |
2Debian Ffmpeg2Debian Linux FfmpegJun 17, 2026 May 26, 2021 N/A· v4 6.5 MEDIUM· v3 4.3 MEDIUM· v2 Buffer Overflow vulnerability exists in FFmpeg 4.2 in filter_vertically_8 at libavfilter/vf_avgblur.c, which could cause a remote Denial of Service. |
2Debian Ffmpeg2Debian Linux FfmpegJun 17, 2026 May 26, 2021 N/A· v4 6.5 MEDIUM· v3 4.3 MEDIUM· v2 Buffer Overflow vulnerability exists in FFmpeg 4.2 in the config_input function at libavfilter/af_tremolo.c, which could let a remote malicious user cause a Denial of Service. |
Buffer Overflow vulnerability in FFmpeg 4.2 at the lagfun_frame16 function in libavfilter/vf_lagfun.c, which could let a remote malicious user cause Denial of Service. |
2Debian Ffmpeg2Debian Linux FfmpegJun 17, 2026 May 26, 2021 N/A· v4 6.5 MEDIUM· v3 4.3 MEDIUM· v2 Buffer Overflow vulnerability in FFmpeg 4.2 at filter_edges function in libavfilter/vf_yadif.c, which could let a remote malicious user cause a Denial of Service. |
2Debian Ffmpeg2Debian Linux FfmpegJun 17, 2026 May 26, 2021 N/A· v4 6.5 MEDIUM· v3 4.3 MEDIUM· v2 Buffer Overflow vulnerability in FFmpeg 4.2 in the build_diff_map function in libavfilter/vf_fieldmatch.c, which could let a remote malicious user cause a Denial of Service. |
2Debian Ffmpeg2Debian Linux FfmpegJun 17, 2026 May 26, 2021 N/A· v4 6.5 MEDIUM· v3 4.3 MEDIUM· v2 Buffer Overflow vulnerability in FFmpeg 4.2 at convolution_y_10bit in libavfilter/vf_vmafmotion.c, which could let a remote malicious user cause a Denial of Service. |
2Debian Ffmpeg2Debian Linux FfmpegJun 17, 2026 May 26, 2021 N/A· v4 8.8 HIGH· v3 6.8 MEDIUM· v2 Buffer Overflow vulnerability in FFmpeg 4.2 in mov_write_video_tag due to the out of bounds in libavformat/movenc.c, which could let a remote malicious user obtain sensitive information, cause a Denial of Service, or exe...Show more |
Buffer Overflow vulnerability in FFMpeg 4.2.3 in dnn_execute_layer_pad in libavfilter/dnn/dnn_backend_native_layer_pad.c due to a call to memcpy without length checks, which could let a remote malicious user execute arbi...Show more |
1Hp 2Integrated Lights Out 4 Integrated Lights Out 5Jun 17, 2026 May 25, 2021 N/A· v4 6.7 MEDIUM· v3 4.6 MEDIUM· v2 A local buffer overflow vulnerability was discovered in HPE Integrated Lights-Out 4 (iLO 4); HPE SimpliVity 380 Gen9; HPE Integrated Lights-Out 5 (iLO 5) for HPE Gen10 Servers; HPE SimpliVity 380 Gen10; HPE SimpliVity 26...Show more |
2Codesys Wago28750 8202 Firmware 750 8203 Firmware750 8204 Firmware+25 moreJun 17, 2026 May 25, 2021 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 CODESYS V2 Web-Server before 1.1.9.20 has a a Buffer Copy without Checking the Size of the Input. |
2Debian Ffmpeg2Debian Linux FfmpegJun 17, 2026 May 24, 2021 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 Buffer Overflow vulnerability exists in FFmpeg 4.1 via apng_do_inverse_blend in libavcodec/pngenc.c, which could let a remote malicious user cause a Denial of Service |
2Hp Samsung382Clp 360 Ss062a Clp 365 Ss066aClp 365 Ss067a+379 moreJun 17, 2026 May 20, 2021 N/A· v4 7.8 HIGH· v3 4.6 MEDIUM· v2 A potential buffer overflow in the software drivers for certain HP LaserJet products and Samsung product printers could lead to an escalation of privilege. |
2Opensuse Oracle2Communications Cloud Native Core Policy LibsolvJun 17, 2026 May 18, 2021 N/A· v4 3.3 LOW· v3 4.3 MEDIUM· v2 Buffer overflow vulnerability in libsolv 2020-12-13 via the Solver * testcase_read(Pool *pool, FILE *fp, const char *testcase, Queue *job, char **resultp, int *resultflagsp function at src/testcase.c: line 2334, which co...Show more |
TensorFlow is an end-to-end open source platform for machine learning. An attacker can trigger a heap buffer overflow in Eigen implementation of `tf.raw_ops.BandedTriangularSolve`. The implementation(https://github.com/t...Show more |
TensorFlow is an end-to-end open source platform for machine learning. An attacker can cause a heap buffer overflow to occur in `Conv2DBackpropFilter`. This is because the implementation(https://github.com/tensorflow/ten...Show more |
TensorFlow is an end-to-end open source platform for machine learning. Missing validation between arguments to `tf.raw_ops.Conv3DBackprop*` operations can result in heap buffer overflows. This is because the implementati...Show more |
TensorFlow is an end-to-end open source platform for machine learning. If the `splits` argument of `RaggedBincount` does not specify a valid `SparseTensor`(https://www.tensorflow.org/api_docs/python/tf/sparse/SparseTenso...Show more |