CWE-131 · 176 записей
Incorrect Calculation of Buffer Size
CVE этого класса
176 записей
| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
63На этой неделе | CVE-2020-17087Готовый эксплойт | Windows Kernel Local Elevation of Privilege Vulnerabilitymicrosoft · windows 10 1507 · CWE-131 | Высокая7,8 | KEV | 5,4 % | 11 нояб. 2020 г. |
51В плане | CVE-2020-8450Эксплойта нет | An issue was discovered in Squid before 4.10.squid-cache · squid · CWE-131 | Высокая7,3 | — | 71,8 % | 4 февр. 2020 г. |
46В плане | CVE-2005-3120Proof of concept | Stack-based buffer overflow in the HTrjis function in Lynx 2.8.6 and earlier allows remote NNTP servers to execute arbitrary code via certaiinvisible-island · lynx · CWE-131 | Критическая9,8 | — | 23,3 % | 17 окт. 2005 г. |
46В плане | CVE-2003-0899Proof of concept | Buffer overflow in defang in libhttpd.c for thttpd 2.21 to 2.23b1 allows remote attackers to execute arbitrary code via requests that contaiacme · thttpd · CWE-131 | Критическая9,8 | — | 22,2 % | 3 нояб. 2003 г. |
45В плане | CVE-2001-0249Эксплойта нет | Heap overflow in FTP daemon in Solaris 8 allows remote attackers to execute arbitrary commands by creating a long pathname and calling the Lhp · hp-ux · CWE-131 | Критическая9,8 | — | 19,7 % | 18 июн. 2001 г. |
44В плане | CVE-2005-2103Proof of concept | Buffer overflow in the AIM and ICQ module in Gaim before 1.5.0 allows remote attackers to cause a denial of service (application crash) and gaim project · gaim · CWE-131 | Критическая9,8 | — | 16,1 % | 16 авг. 2005 г. |
42В плане | CVE-2001-0248Эксплойта нет | Buffer overflow in FTP server in HPUX 11 allows remote attackers to execute arbitrary commands by creating a long pathname and calling the Shp · hp-ux · CWE-131 | Критическая9,8 | — | 11,2 % | 18 июн. 2001 г. |
42В плане | CVE-2008-0599Эксплойта нет | The init_request_info function in sapi/cgi/cgi_main.c in PHP before 5.2.6 does not properly consider operator precedence when calculating thphp · php · CWE-131 | Критическая9,8 | — | 10,9 % | 5 мая 2008 г. |
42В плане | CVE-2004-1363Эксплойта нет | Buffer overflow in extproc in Oracle 10g allows remote attackers to execute arbitrary code via environment variables in the library name, whoracle · application server · CWE-131 | Критическая9,8 | — | 9,1 % | 4 авг. 2004 г. |
41В плане | CVE-2004-0434Эксплойта нет | k5admind (kadmind) for Heimdal allows remote attackers to execute arbitrary code via a Kerberos 4 compatibility administration request whoseheimdal project · heimdal · CWE-131 | Критическая9,8 | — | 7,2 % | 7 июл. 2004 г. |
41В плане | CVE-2002-1347Эксплойта нет | Multiple buffer overflows in Cyrus SASL library 2.1.9 and earlier allow remote attackers to cause a denial of service and possibly execute acyrusimap · cyrus sasl · CWE-131 | Критическая9,8 | — | 7,1 % | 18 дек. 2002 г. |
40В плане | CVE-2021-0254Эксплойта нет | Junos OS: Remote code execution vulnerability in overlayd servicejuniper · junos · CWE-131 | Критическая9,8 | — | 2,6 % | 22 апр. 2021 г. |
40В плане | CVE-2024-23621Эксплойта нет | IBM Merge Healthcare eFilm Workstation License Server Buffer Overflowibm · merge efilm workstation · CWE-131 | Критическая9,8 | — | 1,9 % | 25 янв. 2024 г. |
40В плане | CVE-2024-23622Эксплойта нет | IBM Merge Healthcare eFilm Workstation License Server CopySLS_Request3 Buffer Overflowibm · merge efilm workstation · CWE-131 | Критическая9,8 | — | 1,9 % | 25 янв. 2024 г. |
40В плане | CVE-2024-23606Эксплойта нет | An out-of-bounds write vulnerability exists in the sopen_FAMOS_read functionality of The Biosig Project libbiosig 2.5.0 and Master Branch (alibbiosig project · libbiosig · CWE-131 | Критическая9,8 | — | 1,7 % | 20 февр. 2024 г. |
39Наблюдать | CVE-2021-38435Эксплойта нет | RTI Connext DDS Professional and Connext DDS Secure Incorrect Calculation of Buffer Sizerti · connext professional · CWE-131 | Критическая9,8 | — | 1,4 % | 5 мая 2022 г. |
39Наблюдать | CVE-2021-38423Эксплойта нет | GurumDDS Heap-based Incorrect Calculation of Buffer Sizegurum · gurumdds · CWE-131 | Критическая9,8 | — | 1,3 % | 5 мая 2022 г. |
39Наблюдать | CVE-2021-27378Эксплойта нет | An issue was discovered in the rand_core crate before 0.6.2 for Rust.rand core project · rand core · CWE-131 | Критическая9,8 | — | 1,2 % | 18 февр. 2021 г. |
39Наблюдать | CVE-2021-21824Эксплойта нет | An out-of-bounds write vulnerability exists in the JPG Handle_JPEG420 functionality of Accusoft ImageGear 19.9.accusoft · imagegear · CWE-131 | Критическая9,8 | — | 1,2 % | 11 июн. 2021 г. |
39Наблюдать | CVE-2023-5941Эксплойта нет | libc stdio buffer overflowfreebsd · freebsd · CWE-131 | Критическая9,8 | — | 1,1 % | 8 нояб. 2023 г. |
39Наблюдать | CVE-2023-24819Эксплойта нет | RIOT-OS vulnerable to Buffer Overflow during IPHC receiveriot-os · riot · CWE-131 | Критическая9,8 | — | 1,0 % | 24 апр. 2023 г. |
39Наблюдать | CVE-2019-10500Эксплойта нет | While processing MT Secondary PDP request, Buffer overflow will happen due to incorrect calculation of buffer size in Snapdragon Auto, Snapdqualcomm · apq8009 firmware · CWE-131 | Критическая9,8 | — | 0,9 % | 18 дек. 2019 г. |
39Наблюдать | CVE-2026-20911Эксплойта нет | A heap-based buffer overflow vulnerability exists in the HuffTable::initval functionality of LibRaw Commit 0b56545 and Commit d20315b.libraw · libraw · CWE-131 | Критическая9,8 | — | 0,6 % | 7 апр. 2026 г. |
39Наблюдать | CVE-2026-1949Эксплойта нет | Incorrect calculation of buffer size on the stack in AS320Tdeltaww · as320t firmware · CWE-131 | Критическая9,8 | — | 0,6 % | 24 апр. 2026 г. |
37Наблюдать | CVE-2022-43945Эксплойта нет | The Linux kernel NFSD implementation prior to versions 5.19.17 and 6.0.2 are vulnerable to buffer overflow.linux · linux kernel · CWE-131 | Высокая7,5 | — | 22,3 % | 4 нояб. 2022 г. |
- CVE-2020-1708763На этой неделе
Windows Kernel Local Elevation of Privilege Vulnerability
ВысокаяCVSS 7,8KEVГотовый эксплойтEPSS 5 %microsoft · windows 10 150711 нояб. 2020 г.
- CVE-2020-845051В плане
An issue was discovered in Squid before 4.10.
ВысокаяCVSS 7,3Эксплойта нетEPSS 72 %squid-cache · squid4 февр. 2020 г.
- CVE-2005-312046В плане
Stack-based buffer overflow in the HTrjis function in Lynx 2.8.6 and earlier allows remote NNTP servers to execute arbitrary code via certai
КритическаяCVSS 9,8Proof of conceptEPSS 23 %invisible-island · lynx17 окт. 2005 г.
- CVE-2003-089946В плане
Buffer overflow in defang in libhttpd.c for thttpd 2.21 to 2.23b1 allows remote attackers to execute arbitrary code via requests that contai
КритическаяCVSS 9,8Proof of conceptEPSS 22 %acme · thttpd3 нояб. 2003 г.
- CVE-2001-024945В плане
Heap overflow in FTP daemon in Solaris 8 allows remote attackers to execute arbitrary commands by creating a long pathname and calling the L
КритическаяCVSS 9,8Эксплойта нетEPSS 20 %hp · hp-ux18 июн. 2001 г.
- CVE-2005-210344В плане
Buffer overflow in the AIM and ICQ module in Gaim before 1.5.0 allows remote attackers to cause a denial of service (application crash) and
КритическаяCVSS 9,8Proof of conceptEPSS 16 %gaim project · gaim16 авг. 2005 г.
- CVE-2001-024842В плане
Buffer overflow in FTP server in HPUX 11 allows remote attackers to execute arbitrary commands by creating a long pathname and calling the S
КритическаяCVSS 9,8Эксплойта нетEPSS 11 %hp · hp-ux18 июн. 2001 г.
- CVE-2008-059942В плане
The init_request_info function in sapi/cgi/cgi_main.c in PHP before 5.2.6 does not properly consider operator precedence when calculating th
КритическаяCVSS 9,8Эксплойта нетEPSS 11 %php · php5 мая 2008 г.
- CVE-2004-136342В плане
Buffer overflow in extproc in Oracle 10g allows remote attackers to execute arbitrary code via environment variables in the library name, wh
КритическаяCVSS 9,8Эксплойта нетEPSS 9 %oracle · application server4 авг. 2004 г.
- CVE-2004-043441В плане
k5admind (kadmind) for Heimdal allows remote attackers to execute arbitrary code via a Kerberos 4 compatibility administration request whose
КритическаяCVSS 9,8Эксплойта нетEPSS 7 %heimdal project · heimdal7 июл. 2004 г.
- CVE-2002-134741В плане
Multiple buffer overflows in Cyrus SASL library 2.1.9 and earlier allow remote attackers to cause a denial of service and possibly execute a
КритическаяCVSS 9,8Эксплойта нетEPSS 7 %cyrusimap · cyrus sasl18 дек. 2002 г.
- CVE-2021-025440В плане
Junos OS: Remote code execution vulnerability in overlayd service
КритическаяCVSS 9,8Эксплойта нетEPSS 3 %juniper · junos22 апр. 2021 г.
- CVE-2024-2362140В плане
IBM Merge Healthcare eFilm Workstation License Server Buffer Overflow
КритическаяCVSS 9,8Эксплойта нетEPSS 2 %ibm · merge efilm workstation25 янв. 2024 г.
- CVE-2024-2362240В плане
IBM Merge Healthcare eFilm Workstation License Server CopySLS_Request3 Buffer Overflow
КритическаяCVSS 9,8Эксплойта нетEPSS 2 %ibm · merge efilm workstation25 янв. 2024 г.
- CVE-2024-2360640В плане
An out-of-bounds write vulnerability exists in the sopen_FAMOS_read functionality of The Biosig Project libbiosig 2.5.0 and Master Branch (a
КритическаяCVSS 9,8Эксплойта нетEPSS 2 %libbiosig project · libbiosig20 февр. 2024 г.
- CVE-2021-3843539Наблюдать
RTI Connext DDS Professional and Connext DDS Secure Incorrect Calculation of Buffer Size
КритическаяCVSS 9,8Эксплойта нетEPSS 1 %rti · connext professional5 мая 2022 г.
- CVE-2021-3842339Наблюдать
GurumDDS Heap-based Incorrect Calculation of Buffer Size
КритическаяCVSS 9,8Эксплойта нетEPSS 1 %gurum · gurumdds5 мая 2022 г.
- CVE-2021-2737839Наблюдать
An issue was discovered in the rand_core crate before 0.6.2 for Rust.
КритическаяCVSS 9,8Эксплойта нетEPSS 1 %rand core project · rand core18 февр. 2021 г.
- CVE-2021-2182439Наблюдать
An out-of-bounds write vulnerability exists in the JPG Handle_JPEG420 functionality of Accusoft ImageGear 19.9.
КритическаяCVSS 9,8Эксплойта нетEPSS 1 %accusoft · imagegear11 июн. 2021 г.
- CVE-2023-594139Наблюдать
libc stdio buffer overflow
КритическаяCVSS 9,8Эксплойта нетEPSS 1 %freebsd · freebsd8 нояб. 2023 г.
- CVE-2023-2481939Наблюдать
RIOT-OS vulnerable to Buffer Overflow during IPHC receive
КритическаяCVSS 9,8Эксплойта нетEPSS 1 %riot-os · riot24 апр. 2023 г.
- CVE-2019-1050039Наблюдать
While processing MT Secondary PDP request, Buffer overflow will happen due to incorrect calculation of buffer size in Snapdragon Auto, Snapd
КритическаяCVSS 9,8Эксплойта нетEPSS 1 %qualcomm · apq8009 firmware18 дек. 2019 г.
- CVE-2026-2091139Наблюдать
A heap-based buffer overflow vulnerability exists in the HuffTable::initval functionality of LibRaw Commit 0b56545 and Commit d20315b.
КритическаяCVSS 9,8Эксплойта нетEPSS 1 %libraw · libraw7 апр. 2026 г.
- CVE-2026-194939Наблюдать
Incorrect calculation of buffer size on the stack in AS320T
КритическаяCVSS 9,8Эксплойта нетEPSS 1 %deltaww · as320t firmware24 апр. 2026 г.
- CVE-2022-4394537Наблюдать
The Linux kernel NFSD implementation prior to versions 5.19.17 and 6.0.2 are vulnerable to buffer overflow.
ВысокаяCVSS 7,5Эксплойта нетEPSS 22 %linux · linux kernel4 нояб. 2022 г.