CWE-121
3,519 CVEs • Abstraction: Variant • Likelihood of Exploit: High
Stack-based Buffer Overflow
A stack-based buffer overflow condition is a condition where the buffer being overwritten is allocated on the stack (i.e., is a local variable or, rarely, a parameter to a function).
CVEs (3,519)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
2Redhat X.org3Enterprise Linux X ServerXwaylandJul 15, 2026 Jun 5, 2026 N/A· v4 7.8 HIGH· v3 N/A· v2 A stack-based buffer overflow flaw was found in the X.Org X server and Xwayland. _XkbSetMapChecks() declares a fixed-size stack buffer mapWidths[256] indexed by key type index. The helper function CheckKeyTypes() writes...Show more |
2Redhat X.org3Enterprise Linux X ServerXwaylandJul 15, 2026 Jun 5, 2026 N/A· v4 7.8 HIGH· v3 N/A· v2 A stack-based buffer overflow flaw was found in the X.Org X server and Xwayland. The X server has multiple stack buffers sized XkbMaxShiftLevel * XkbNumKbdGroups but CheckKeyTypes() does not verify or clamp non-canonical...Show more |
2Redhat X.org3Enterprise Linux X ServerXwaylandJul 15, 2026 Jun 5, 2026 N/A· v4 7.8 HIGH· v3 N/A· v2 A stack-based buffer overflow flaw was found in the X.Org X server and Xwayland. A mismatch between the X server and the libXfont2 library's maximum font name length can cause a stack buffer overflow during font alias re...Show more |
Stack buffer overflow in Skia in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to potentially exploit stack corruption via a crafted HTML page. (Chromium security severity: Medium) |
Stack buffer overflow in GPU in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security...Show more |
Stack-based buffer overflow vulnerability in Samsung Open Source rlottie allows Overflow Buffers.
This issue affects rlottie: before ce72b35a7ad0dded03051d3aa0ef75321c3bd035. |
1Mbs Solutions 1Universal Gateway Firmware Jul 22, 2026 Jun 3, 2026 8.7 HIGH· v4 8.8 HIGH· v3 N/A· v2 A remote attacker with user privileges can exploit a stack buffer overflow in gdv-serverconfig to gain full system access as root. |
1Mbs Solutions 1Universal Gateway Firmware Jul 22, 2026 Jun 3, 2026 8.7 HIGH· v4 8.8 HIGH· v3 N/A· v2 A remote attacker with user privileges can exploit a stack buffer overflow in dali-devconfig to gain full system access as root. |
1Mbs Solutions 1Universal Gateway Firmware Jul 22, 2026 Jun 3, 2026 8.7 HIGH· v4 8.8 HIGH· v3 N/A· v2 A remote attacker with user privileges can exploit a stack buffer overflow to gain full system access as root. |
ipmi-oem in FreeIPMI before 1.6.18 has exploitable buffer overflows on response messages. The Intelligent Platform Management Interface (IPMI) specification defines a set of interfaces for platform management. It is impl...Show more |
CZ.NIC BIRD Internet Routing Daemon through 2.19.0 contains a stack-based buffer overflow in the BGP AS_PATH mask matching implementation in nest/a-path.c. The as_path_match() function uses a fixed-size stack array of 20...Show more |
TP-Link Tapo C200 v5 contains a stack-based buffer overflow flaw in RTSP authentication handling due to improper validation of Authorization header field lengths, which can be triggered by a crafted authentication reques...Show more |
A stack-based buffer overflow in the motion_privacy.cgi binary in VIVOTEK FD8136 firmware FD8136-VVTK-0300a allows authenticated remote attackers to execute arbitrary code as root via an oversized n1 parameter in a POST...Show more |
Buffer Overflow vulnerability in VIVOTEK INC FD8136-VVTK-0300a allows a remote attacker to execute arbitrary code via the set_getparam.cgi component |
A stack-based buffer overflow in the export_language.cgi binary in VIVOTEK FD8136 firmware FD8136-VVTK-0300a allows authenticated remote attackers to execute arbitrary code as root via a crafted POST request to the /cgi-...Show more |
A security flaw has been discovered in Orthanc DICOM Server up to 1.12.11. This issue affects the function DcmItem::read of the file OrthancFramework/Sources/DicomParsing/FromDcmtkBridge.cpp of the component DCMTK Parser...Show more |
1Qualcomm 2665g Fixed Wireless Access Platform Firmware Apq8098 FirmwareAr8031 Firmware+263 moreJul 22, 2026 Jun 1, 2026 N/A· v4 7.2 HIGH· v3 N/A· v2 Memory Corruption when processing display command line information due to improper initialization of a variable. |
1Qualcomm 44Cologne Firmware Fastconnect 6700 FirmwareFastconnect 6900 Firmware+41 moreJul 22, 2026 Jun 1, 2026 N/A· v4 6.7 MEDIUM· v3 N/A· v2 Memory Corruption when output buffer size is smaller than input buffer size during data copying operation. |
1Qualcomm 31Cologne Firmware Fastconnect 6700 FirmwareFastconnect 6900 Firmware+28 moreJul 22, 2026 Jun 1, 2026 N/A· v4 6.7 MEDIUM· v3 N/A· v2 Memory corruption in windows drivers while sending incorrect trusted application request |
A flaw has been found in UTT HiPER 1200GW up to 2.5.3-170306. This impacts the function strcpy of the file /goform/formFireWall. This manipulation of the argument Profile causes stack-based buffer overflow. Remote exploi...Show more |