CWE-193 · 207 записей
Off-by-one Error
CVE этого класса
207 записей
| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
91Срочно | CVE-2021-3156Готовый эксплойт | Sudo before 1.9.5p2 contains an off-by-one error that can result in a heap-based buffer overflow, which allows privilege escalation to root sudo project · sudo · CWE-193 | Высокая7,8 | KEV | 100,0 % | 26 янв. 2021 г. |
62На этой неделе | CVE-2003-0466Proof of concept | Off-by-one error in the fb_realpath() function, as derived from the realpath function in BSD, may allow attackers to execute arbitrary code,redhat · wu ftpd · CWE-193 | Критическая9,8 | — | 78,1 % | 27 авг. 2003 г. |
48В плане | CVE-2023-44444Эксплойта нет | GIMP PSP File Parsing Off-By-One Remote Code Execution Vulnerabilitygimp · gimp · CWE-193 | Высокая7,8 | — | 56,4 % | 2 мая 2024 г. |
48В плане | CVE-2018-8828Эксплойта нет | A Buffer Overflow issue was discovered in Kamailio before 4.4.7, 5.0.x before 5.0.6, and 5.1.x before 5.1.2.kamailio · kamailio · CWE-193 | Критическая9,8 | — | 30,4 % | 20 мар. 2018 г. |
46В плане | CVE-2021-23017Proof of concept | A security issue in nginx resolver was identified, which might allow an attacker who is able to forge UDP packets from the DNS server to cauf5 · nginx · CWE-193 | Высокая7,7 | — | 53,5 % | 1 июн. 2021 г. |
44В плане | CVE-2023-28709Эксплойта нет | Apache Tomcat: Fix for CVE-2023-24998 is incompleteapache · tomcat · CWE-193 | Высокая7,5 | — | 48,0 % | 22 мая 2023 г. |
44В плане | CVE-2001-0609Proof of concept | Format string vulnerability in Infodrom cfingerd 1.4.3 and earlier allows a remote attacker to gain additional privileges via a malformed idinfodrom · cfingerd · CWE-193 | Критическая9,8 | — | 18,2 % | 2 авг. 2001 г. |
44В плане | CVE-2003-0252Эксплойта нет | Off-by-one error in the xlog function of mountd in the Linux NFS utils package (nfs-utils) before 1.0.4 allows remote attackers to cause a dlinux-nfs · nfs-utils · CWE-193 | Критическая9,8 | — | 15,8 % | 18 авг. 2003 г. |
43В плане | CVE-2002-0083Proof of concept | Off-by-one error in the channel code of OpenSSH 2.0 through 3.0.2 allows local users or remote malicious servers to gain privileges.immunix · immunix · CWE-193 | Критическая9,8 | — | 14,7 % | 15 мар. 2002 г. |
42В плане | CVE-2004-0005Эксплойта нет | Multiple buffer overflows in Gaim 0.75 allow remote attackers to cause a denial of service and possibly execute arbitrary code via (1) octalgaim project · gaim · CWE-193 | Критическая9,8 | — | 11,2 % | 3 мар. 2004 г. |
42В плане | CVE-2003-0356Эксплойта нет | Multiple off-by-one vulnerabilities in Ethereal 0.9.11 and earlier allow remote attackers to cause a denial of service and possibly execute ethereal · ethereal · CWE-193 | Критическая9,8 | — | 9,6 % | 9 июн. 2003 г. |
42В плане | CVE-2002-1816Proof of concept | Off-by-one buffer overflow in the sock_gets function in sockhelp.c for ATPhttpd 0.4b and earlier allows remote attackers to execute arbitrarredshift · atphttpd · CWE-193 | Критическая9,8 | — | 9,0 % | 31 дек. 2002 г. |
41В плане | CVE-2016-10160Эксплойта нет | Off-by-one error in the phar_parse_pharfile function in ext/phar/phar.c in PHP before 5.6.30 and 7.0.x before 7.0.15 allows remote attackersphp · php · CWE-193 | Критическая9,8 | — | 7,4 % | 24 янв. 2017 г. |
40В плане | CVE-2010-3454Эксплойта нет | Multiple off-by-one errors in the WW8DopTypography::ReadFromMem function in oowriter in OpenOffice.org (OOo) 2.x and 3.x before 3.3 allow reapache · openoffice · CWE-193 | Критическая9,3 | — | 10,3 % | 28 янв. 2011 г. |
40В плане | CVE-2001-1496Эксплойта нет | Off-by-one buffer overflow in Basic Authentication in Acme Labs thttpd 1.95 through 2.20 allows remote attackers to cause a denial of servicacme · thttpd · CWE-193 | Критическая9,8 | — | 4,8 % | 31 дек. 2001 г. |
40В плане | CVE-2018-14599Эксплойта нет | An issue was discovered in libX11 through 1.6.5.x.org · libx11 · CWE-193 | Критическая9,8 | — | 4,8 % | 24 авг. 2018 г. |
40В плане | CVE-2022-34970Proof of concept | Crow before 1.0+4 has a heap-based buffer overflow via the function qs_parse in query_string.h.crowcpp · crow · CWE-193 | Критическая9,8 | — | 4,0 % | 4 авг. 2022 г. |
40В плане | CVE-2019-8268Эксплойта нет | UltraVNC revision 1206 has multiple off-by-one vulnerabilities in VNC client code connected with improper usage of ClientConnection::ReadStruvnc · ultravnc · CWE-193 | Критическая9,8 | — | 3,9 % | 8 мар. 2019 г. |
40В плане | CVE-2019-8272Эксплойта нет | UltraVNC revision 1211 has multiple off-by-one vulnerabilities in VNC server code, which can potentially result in code execution.uvnc · ultravnc · CWE-193 | Критическая9,8 | — | 3,9 % | 8 мар. 2019 г. |
40В плане | CVE-2020-10062Эксплойта нет | Packet length decoding error in MQTTzephyrproject · zephyr · CWE-193 | Критическая9,8 | — | 2,9 % | 5 июн. 2020 г. |
40В плане | CVE-2020-8443Эксплойта нет | In OSSEC-HIDS 2.7 through 3.5.0, the server component responsible for log analysis (ossec-analysisd) is vulnerable to an off-by-one heap-basossec · ossec · CWE-193 | Критическая9,8 | — | 2,7 % | 29 янв. 2020 г. |
40В плане | CVE-2020-14510Эксплойта нет | OFF-BY-ONE ERROR CWE-193secomea · gatemanager 8250 firmware · CWE-193 | Критическая9,8 | — | 2,5 % | 25 авг. 2020 г. |
40В плане | CVE-2021-31875Эксплойта нет | In mjs_json.c in Cesanta MongooseOS mJS 1.26, a maliciously formed JSON string can trigger an off-by-one heap-based buffer overflow in mjs_jcesanta · mongooseos mjs · CWE-193 | Критическая9,8 | — | 2,2 % | 28 апр. 2021 г. |
40В плане | CVE-2019-14532Эксплойта нет | An issue was discovered in The Sleuth Kit (TSK) 4.6.6.sleuthkit · the sleuth kit · CWE-193 | Критическая9,8 | — | 2,1 % | 2 авг. 2019 г. |
40В плане | CVE-2020-14508Эксплойта нет | OFF-BY-ONE ERROR CWE-193secomea · gatemanager 8250 firmware · CWE-193 | Критическая9,8 | — | 2,0 % | 25 авг. 2020 г. |
- CVE-2021-315691Срочно
Sudo before 1.9.5p2 contains an off-by-one error that can result in a heap-based buffer overflow, which allows privilege escalation to root
ВысокаяCVSS 7,8KEVГотовый эксплойтEPSS 100 %sudo project · sudo26 янв. 2021 г.
- CVE-2003-046662На этой неделе
Off-by-one error in the fb_realpath() function, as derived from the realpath function in BSD, may allow attackers to execute arbitrary code,
КритическаяCVSS 9,8Proof of conceptEPSS 78 %redhat · wu ftpd27 авг. 2003 г.
- CVE-2023-4444448В плане
GIMP PSP File Parsing Off-By-One Remote Code Execution Vulnerability
ВысокаяCVSS 7,8Эксплойта нетEPSS 56 %gimp · gimp2 мая 2024 г.
- CVE-2018-882848В плане
A Buffer Overflow issue was discovered in Kamailio before 4.4.7, 5.0.x before 5.0.6, and 5.1.x before 5.1.2.
КритическаяCVSS 9,8Эксплойта нетEPSS 30 %kamailio · kamailio20 мар. 2018 г.
- CVE-2021-2301746В плане
A security issue in nginx resolver was identified, which might allow an attacker who is able to forge UDP packets from the DNS server to cau
ВысокаяCVSS 7,7Proof of conceptEPSS 53 %f5 · nginx1 июн. 2021 г.
- CVE-2023-2870944В плане
Apache Tomcat: Fix for CVE-2023-24998 is incomplete
ВысокаяCVSS 7,5Эксплойта нетEPSS 48 %apache · tomcat22 мая 2023 г.
- CVE-2001-060944В плане
Format string vulnerability in Infodrom cfingerd 1.4.3 and earlier allows a remote attacker to gain additional privileges via a malformed id
КритическаяCVSS 9,8Proof of conceptEPSS 18 %infodrom · cfingerd2 авг. 2001 г.
- CVE-2003-025244В плане
Off-by-one error in the xlog function of mountd in the Linux NFS utils package (nfs-utils) before 1.0.4 allows remote attackers to cause a d
КритическаяCVSS 9,8Эксплойта нетEPSS 16 %linux-nfs · nfs-utils18 авг. 2003 г.
- CVE-2002-008343В плане
Off-by-one error in the channel code of OpenSSH 2.0 through 3.0.2 allows local users or remote malicious servers to gain privileges.
КритическаяCVSS 9,8Proof of conceptEPSS 15 %immunix · immunix15 мар. 2002 г.
- CVE-2004-000542В плане
Multiple buffer overflows in Gaim 0.75 allow remote attackers to cause a denial of service and possibly execute arbitrary code via (1) octal
КритическаяCVSS 9,8Эксплойта нетEPSS 11 %gaim project · gaim3 мар. 2004 г.
- CVE-2003-035642В плане
Multiple off-by-one vulnerabilities in Ethereal 0.9.11 and earlier allow remote attackers to cause a denial of service and possibly execute
КритическаяCVSS 9,8Эксплойта нетEPSS 10 %ethereal · ethereal9 июн. 2003 г.
- CVE-2002-181642В плане
Off-by-one buffer overflow in the sock_gets function in sockhelp.c for ATPhttpd 0.4b and earlier allows remote attackers to execute arbitrar
КритическаяCVSS 9,8Proof of conceptEPSS 9 %redshift · atphttpd31 дек. 2002 г.
- CVE-2016-1016041В плане
Off-by-one error in the phar_parse_pharfile function in ext/phar/phar.c in PHP before 5.6.30 and 7.0.x before 7.0.15 allows remote attackers
КритическаяCVSS 9,8Эксплойта нетEPSS 7 %php · php24 янв. 2017 г.
- CVE-2010-345440В плане
Multiple off-by-one errors in the WW8DopTypography::ReadFromMem function in oowriter in OpenOffice.org (OOo) 2.x and 3.x before 3.3 allow re
КритическаяCVSS 9,3Эксплойта нетEPSS 10 %apache · openoffice28 янв. 2011 г.
- CVE-2001-149640В плане
Off-by-one buffer overflow in Basic Authentication in Acme Labs thttpd 1.95 through 2.20 allows remote attackers to cause a denial of servic
КритическаяCVSS 9,8Эксплойта нетEPSS 5 %acme · thttpd31 дек. 2001 г.
- CVE-2018-1459940В плане
An issue was discovered in libX11 through 1.6.5.
КритическаяCVSS 9,8Эксплойта нетEPSS 5 %x.org · libx1124 авг. 2018 г.
- CVE-2022-3497040В плане
Crow before 1.0+4 has a heap-based buffer overflow via the function qs_parse in query_string.h.
КритическаяCVSS 9,8Proof of conceptEPSS 4 %crowcpp · crow4 авг. 2022 г.
- CVE-2019-826840В плане
UltraVNC revision 1206 has multiple off-by-one vulnerabilities in VNC client code connected with improper usage of ClientConnection::ReadStr
КритическаяCVSS 9,8Эксплойта нетEPSS 4 %uvnc · ultravnc8 мар. 2019 г.
- CVE-2019-827240В плане
UltraVNC revision 1211 has multiple off-by-one vulnerabilities in VNC server code, which can potentially result in code execution.
КритическаяCVSS 9,8Эксплойта нетEPSS 4 %uvnc · ultravnc8 мар. 2019 г.
- CVE-2020-1006240В плане
Packet length decoding error in MQTT
КритическаяCVSS 9,8Эксплойта нетEPSS 3 %zephyrproject · zephyr5 июн. 2020 г.
- CVE-2020-844340В плане
In OSSEC-HIDS 2.7 through 3.5.0, the server component responsible for log analysis (ossec-analysisd) is vulnerable to an off-by-one heap-bas
КритическаяCVSS 9,8Эксплойта нетEPSS 3 %ossec · ossec29 янв. 2020 г.
- CVE-2020-1451040В плане
OFF-BY-ONE ERROR CWE-193
КритическаяCVSS 9,8Эксплойта нетEPSS 2 %secomea · gatemanager 8250 firmware25 авг. 2020 г.
- CVE-2021-3187540В плане
In mjs_json.c in Cesanta MongooseOS mJS 1.26, a maliciously formed JSON string can trigger an off-by-one heap-based buffer overflow in mjs_j
КритическаяCVSS 9,8Эксплойта нетEPSS 2 %cesanta · mongooseos mjs28 апр. 2021 г.
- CVE-2019-1453240В плане
An issue was discovered in The Sleuth Kit (TSK) 4.6.6.
КритическаяCVSS 9,8Эксплойта нетEPSS 2 %sleuthkit · the sleuth kit2 авг. 2019 г.
- CVE-2020-1450840В плане
OFF-BY-ONE ERROR CWE-193
КритическаяCVSS 9,8Эксплойта нетEPSS 2 %secomea · gatemanager 8250 firmware25 авг. 2020 г.