CWE-120
4,201 CVEs • Abstraction: Base • Likelihood of Exploit: High
Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')
The product copies an input buffer to an output buffer without verifying that the size of the input buffer is less than the size of the output buffer, leading to a buffer overflow.
CVEs (4,201)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
HrAddFBBlock in libfreebusy/freebusyutil.cpp in Kopano Groupware Core before 8.7.7 allows out-of-bounds access, as demonstrated by mishandling of an array copy during parsing of ICal data. |
NetHack 3.6.x before 3.6.4 is prone to a buffer overflow vulnerability when reading very long lines from configuration files. This affects systems that have NetHack installed suid/sgid, and shared systems that allow user...Show more |
Buffer overflow in SonicWall SMA100 allows an authenticated user to execute arbitrary code in DEARegister CGI script. This vulnerability impacted SMA100 version 9.0.0.3 and earlier. |
1Apple 6Icloud Iphone OsItunes+3 moreJun 17, 2026 Dec 18, 2019 N/A· v4 7.8 HIGH· v3 6.8 MEDIUM· v2 A buffer overflow was addressed with improved bounds checking. This issue is fixed in iOS 12.2, macOS Mojave 10.14.4, tvOS 12.2, watchOS 5.2, iTunes 12.9.4 for Windows, iCloud for Windows 7.11. A malicious application ma...Show more |
1Apple 4Iphone Os Mac Os XTvos+1 moreJun 17, 2026 Dec 18, 2019 N/A· v4 9.1 CRITICAL· v3 9.4 HIGH· v2 A buffer overflow was addressed with improved size validation. This issue is fixed in iOS 12.2, macOS Mojave 10.14.4, tvOS 12.2, watchOS 5.2. A remote attacker may be able to cause unexpected system termination or corrup...Show more |
1Apple 3Iphone Os Mac Os XWatchosJun 17, 2026 Dec 18, 2019 N/A· v4 7.8 HIGH· v3 6.8 MEDIUM· v2 A buffer overflow issue was addressed with improved memory handling. This issue is fixed in iOS 12.2, macOS Mojave 10.14.4, watchOS 5.2. A malicious application may be able to elevate privileges. |
A buffer overflow was addressed with improved bounds checking. This issue is fixed in macOS Mojave 10.14.4. Mounting a maliciously crafted NFS network share may lead to arbitrary code execution with system privileges. |
1Qualcomm 39Apq8009 Firmware Apq8017 FirmwareApq8053 Firmware+36 moreJun 17, 2026 Dec 18, 2019 N/A· v4 7.8 HIGH· v3 7.2 HIGH· v2 Out of bounds memcpy can occur by providing the embedded NULL character string and length greater than the actual string length in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electro...Show more |
1Qualcomm 14Apq8009 Firmware Apq8053 FirmwareIpq8074 Firmware+11 moreJun 17, 2026 Dec 18, 2019 N/A· v4 7.8 HIGH· v3 7.2 HIGH· v2 Buffer overwrite can occur in IEEE80211 header filling function due to lack of range check of array index received from firmware in Snapdragon Auto, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT,...Show more |
1Qualcomm 20Apq8053 Firmware Apq8096au FirmwareMdm9607 Firmware+17 moreJun 17, 2026 Dec 18, 2019 N/A· v4 7.8 HIGH· v3 7.2 HIGH· v2 Out of bound access can occur while processing peer info in IBSS connection mode due to lack of upper bounds check to ensure that for loop further will not cause an overflow in Snapdragon Auto, Snapdragon Consumer Electr...Show more |
1Qualcomm 29Apq8009 Firmware Apq8017 FirmwareApq8053 Firmware+26 moreNov 21, 2024 Dec 18, 2019 N/A· v4 7.8 HIGH· v3 7.2 HIGH· v2 When a fake broadcast/multicast 11w rmf without mmie received, since no proper length check in wma_process_bip, buffer overflow will happen in both cds_is_mmie_valid and qdf_nbuf_trim_tail in Snapdragon Auto, Snapdragon...Show more |
1Huawei 17Ap2000 Firmware Espace U1981 FirmwareIps Firmware+14 moreJun 17, 2026 Dec 13, 2019 N/A· v4 5.5 MEDIUM· v3 2.1 LOW· v2 Certain Huawei products (AP2000;IPS Module;NGFW Module;NIP6300;NIP6600;NIP6800;S5700;SVN5600;SVN5800;SVN5800-C;SeMG9811;Secospace AntiDDoS8000;Secospace USG6300;Secospace USG6500;Secospace USG6600;USG6000V;eSpace U1981)...Show more |
1Huawei 17Ap2000 Firmware Espace U1981 FirmwareIps Firmware+14 moreJun 17, 2026 Dec 13, 2019 N/A· v4 5.5 MEDIUM· v3 2.1 LOW· v2 Certain Huawei products (AP2000;IPS Module;NGFW Module;NIP6300;NIP6600;NIP6800;S5700;SVN5600;SVN5800;SVN5800-C;SeMG9811;Secospace) have a resource management vulnerability. An attacker who logs in to the board may send c...Show more |
The FTP client in AceaXe Plus 1.0 allows a buffer overflow via a long EHLO response from an FTP server. |
1Qualcomm 50Apq8009 Firmware Apq8017 FirmwareApq8053 Firmware+47 moreJun 17, 2026 Dec 12, 2019 N/A· v4 7.8 HIGH· v3 7.2 HIGH· v2 Incorrect length used while validating the qsee log buffer sent from HLOS which could then lead to remap conflict in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectiv...Show more |
1Qualcomm 40Apq8009 Firmware Apq8017 FirmwareApq8053 Firmware+37 moreJun 17, 2026 Dec 12, 2019 N/A· v4 7.8 HIGH· v3 7.2 HIGH· v2 Out of bound write in TZ while copying the secure dump structure on HLOS provided buffer as a part of memory dump in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Indus...Show more |
1Qualcomm 41Apq8017 Firmware Apq8053 FirmwareApq8096au Firmware+38 moreJun 17, 2026 Dec 12, 2019 N/A· v4 7.8 HIGH· v3 4.6 MEDIUM· v2 Snapshot of IB can lead to invalid address access due to missing check for size in the related function in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapd...Show more |
1Qualcomm 40Apq8017 Firmware Apq8053 FirmwareApq8096au Firmware+37 moreJun 17, 2026 Dec 12, 2019 N/A· v4 7.8 HIGH· v3 4.6 MEDIUM· v2 Buffer overflow can occur due to usage of wrong datatype and missing length check before copying into buffer in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT,...Show more |
1Qualcomm 48Apq8053 Firmware Mdm9206 FirmwareMdm9207c Firmware+45 moreJun 17, 2026 Dec 12, 2019 N/A· v4 9.8 CRITICAL· v3 10.0 HIGH· v2 Position determination accuracy may be degraded due to wrongly decoded information in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables in AP...Show more |
Firecracker vsock implementation buffer overflow in versions 0.18.0 and 0.19.0. This can result in potentially exploitable crashes. |