← Back
CWE-121

3,751 CVEs • Abstraction: Variant • Likelihood of Exploit: High

Stack-based Buffer Overflow

A stack-based buffer overflow condition is a condition where the buffer being overwritten is allocated on the stack (i.e., is a local variable or, rarely, a parameter to a function).

JSON object

Loading...

CVEs (3,751)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Microsoft
6365 Apps
ExcelMicrosoft 365+3 more
Aug 13, 2026
Aug 11, 2026
N/A· v4
7.8 HIGH· v3
N/A· v2
Stack-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
1Microsoft
6365 Apps
ExcelMicrosoft 365+3 more
Aug 13, 2026
Aug 11, 2026
N/A· v4
7.8 HIGH· v3
N/A· v2
Stack-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
1Microsoft
5365 Apps
Microsoft 365Office 2019+2 more
Aug 14, 2026
Aug 11, 2026
N/A· v4
7.8 HIGH· v3
N/A· v2
Stack-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally.
1Microsoft
5365 Apps
AccessOffice 2019+2 more
Aug 14, 2026
Aug 11, 2026
N/A· v4
7.8 HIGH· v3
N/A· v2
Stack-based buffer overflow in Microsoft Office Access allows an unauthorized attacker to execute code locally.
1Microsoft
5365 Apps
AccessOffice 2019+2 more
Aug 14, 2026
Aug 11, 2026
N/A· v4
7.8 HIGH· v3
N/A· v2
Stack-based buffer overflow in Microsoft Office Access allows an unauthorized attacker to execute code locally.
1Microsoft
6365 Apps
Microsoft 365Office 2019+3 more
Aug 14, 2026
Aug 11, 2026
N/A· v4
7.8 HIGH· v3
N/A· v2
Stack-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code locally.
1Microsoft
6365 Apps
Microsoft 365Office 2019+3 more
Aug 13, 2026
Aug 11, 2026
N/A· v4
7.8 HIGH· v3
N/A· v2
Stack-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code locally.
1Microsoft
6365 Apps
Microsoft 365Office 2016+3 more
Aug 14, 2026
Aug 11, 2026
N/A· v4
7.8 HIGH· v3
N/A· v2
Stack-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally.
1Microsoft
7Windows 10 1607
Windows 10 1809Windows Server 2012+4 more
Sep 2, 2026
Aug 11, 2026
N/A· v4
9.8 CRITICAL· v3
N/A· v2
Stack-based buffer overflow in Windows DNS allows an unauthorized attacker to execute code over a network.
1Microsoft
13Windows 10 1607
Windows 10 1809Windows 10 21h2+10 more
Aug 16, 2026
Aug 11, 2026
N/A· v4
7.8 HIGH· v3
N/A· v2
Stack-based buffer overflow in Windows Win32K allows an authorized attacker to elevate privileges locally.
1Microsoft
3Windows 10 1607
Windows Server 2012Windows Server 2016
Aug 13, 2026
Aug 11, 2026
N/A· v4
8.8 HIGH· v3
N/A· v2
Stack-based buffer overflow in Remote Desktop Client allows an unauthorized attacker to execute code over a network.
1Microsoft
13Windows 10 1607
Windows 10 1809Windows 10 21h2+10 more
Aug 16, 2026
Aug 11, 2026
N/A· v4
8.1 HIGH· v3
N/A· v2
Stack-based buffer overflow in Windows TCP/IP allows an unauthorized attacker to execute code over a network.
1Microsoft
13Windows 10 1607
Windows 10 1809Windows 10 21h2+10 more
Aug 17, 2026
Aug 11, 2026
N/A· v4
7.8 HIGH· v3
N/A· v2
Stack-based buffer overflow in Windows Installer allows an authorized attacker to elevate privileges locally.
1Microsoft
13Windows 10 1607
Windows 10 1809Windows 10 21h2+10 more
Aug 16, 2026
Aug 11, 2026
N/A· v4
7.8 HIGH· v3
N/A· v2
Stack-based buffer overflow in Windows DHCP Client allows an authorized attacker to elevate privileges locally.
1Intel
1Proset/wireless Wifi
Sep 1, 2026
Aug 11, 2026
8.3 HIGH· v4
8.6 HIGH· v3
N/A· v2
Stack-based buffer overflow for some Intel(R) PROSet/Wireless WiFi Software for Windows within Ring 0: Kernel may allow a denial of service. Unprivileged software adversary with an unauthenticated user combined with a lo...Show more
Stack-based buffer overflow for some Intel(R) PROSet/Wireless WiFi Software for Windows within Ring 0: Kernel may allow a denial of service. Unprivileged software adversary with an unauthenticated user combined with a low complexity attack may enable denial of service. This result may potentially occur via adjacent access when attack requirements are not present without special internal knowledge and requires no user interaction. The potential vulnerability may impact the confidentiality (none), integrity (none) and availability (high) of the vulnerable system, resulting in subsequent system confidentiality (none), integrity (none) and availability (high) impacts.Show less
-
-
Sep 3, 2026
Aug 11, 2026
6.8 MEDIUM· v4
N/A· v3
N/A· v2
Vim is an open source, command line text editor. Prior to 9.2.0842, the socket server backend in src/socketserver.c accepts unbounded client connections in socketserver_accept(), causing descriptors to overflow fd_set st...Show more
Vim is an open source, command line text editor. Prior to 9.2.0842, the socket server backend in src/socketserver.c accepts unbounded client connections in socketserver_accept(), causing descriptors to overflow fd_set structures in src/channel.c and fixed-size struct pollfd arrays in src/os_unix.c, which allows a local process that can connect to the server socket to corrupt stack memory or terminate the Vim server. This issue is fixed in version 9.2.0842.Show less
1Netgear
20R7000 Firmware
Rax20 FirmwareRax35v2 Firmware+17 more
Sep 9, 2026
Aug 11, 2026
1.9 LOW· v4
4.9 MEDIUM· v3
N/A· v2
A stack-based buffer overflow vulnerability affects the listed NETGEAR models allowing an authenticated admin user to make unauthorized modification to the router's software and functionality.
1Netgear
15Mr70 Firmware
Mr90 FirmwareMs70 Firmware+12 more
Sep 9, 2026
Aug 11, 2026
1.1 LOW· v4
2.7 LOW· v3
N/A· v2
A buffer overflow vulnerability in the listed NETGEAR models allows an authenticated admin user to cause the affected device to become temporarily unavailable.
1Netgear
11Rax41 Firmware
Rax41v2 FirmwareRax42 Firmware+8 more
Sep 9, 2026
Aug 11, 2026
1.1 LOW· v4
4.9 MEDIUM· v3
N/A· v2
A buffer overflow vulnerability in the listed NETGEAR models allows a device administrator to temporarily interrupt the normal operation of the affected device.
-
-
Aug 28, 2026
Aug 11, 2026
7.3 HIGH· v4
7.8 HIGH· v3
N/A· v2
A vulnerability has been identified in Simcenter Femap (All versions < V2606), Simcenter Nastran (All versions < V2606). The affected applications contain a stack overflow vulnerability while parsing specially strings as...Show more
A vulnerability has been identified in Simcenter Femap (All versions < V2606), Simcenter Nastran (All versions < V2606). The affected applications contain a stack overflow vulnerability while parsing specially strings as argument for one of the application binaries. This could allow an attacker to execute code in the context of the current process.Show less