CWE-120

High likelihood

Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')

Parent: CWE-787 - Out-of-bounds Write

The product copies an input buffer to an output buffer without verifying that the size of the input buffer is less than the size of the output buffer.

4,106 vulnerabilities with CWE-120
CVE-2016-8668 MEDIUM
QEMU - DoS
CVSS 6.0
CVE-2016-5343 CRITICAL
Linux Kernel < 3.19.8 - Buffer Overflow
CVSS 9.8
CVE-2016-4303 CRITICAL
cJSON - Buffer Overflow
CVSS 9.8
CVE-2016-6366 HIGH KEV
Cisco ASA Authentication Bypass (EXTRABACON)
CVSS 8.8
CVE-2016-4001 HIGH
QEMU - Buffer Overflow
CVSS 8.6
CVE-2016-4002 CRITICAL
QEMU - Buffer Overflow
CVSS 9.8
CVE-2016-0099 HIGH KEV
MS16-032 Secondary Logon Handle Privilege Escalation
CVSS 7.8
CVE-2015-0843 CRITICAL
Debian Yubiserver - Buffer Overflow
CVSS 9.8
CVE-2015-20111 CRITICAL
miniupnp <4c90b87 - Buffer Overflow
CVSS 9.8
CVE-2015-10123 HIGH
Device <Version> - Buffer Overflow
CVSS 8.8
CVE-2015-20109 MEDIUM
GNU Glibc < 2.22 - Buffer Overflow
CVSS 5.5
CVE-2015-10065 MEDIUM
AenBleidd FiND - Buffer Overflow
CVSS 5.5
CVE-2015-2099 HIGH
Webgateinc Control Center - Buffer Overflow
CVSS 8.8
CVE-2015-2098 HIGH
Webgateinc Edvr Manager - Buffer Overflow
CVSS 8.8
CVE-2015-5524 CRITICAL
Samsung mobile devices KK(4.4)-2015-05.13 - Buffer Overflow
CVSS 9.8
CVE-2015-5684 CRITICAL
Lenovo LSE - Buffer Overflow
CVSS 9.8
CVE-2015-7747 HIGH
Audio File Library - Buffer Overflow
CVSS 8.8
CVE-2015-7890 MEDIUM
Exynos Seiren Audio < - Buffer Overflow
CVSS 5.5
CVE-2015-8011 CRITICAL
lldpd <0.8.0 - Buffer Overflow
CVSS 9.8
CVE-2015-0243 HIGH
Postgresql < 9.0.19 - Buffer Overflow
CVSS 8.8
CVE-2015-0241 HIGH
Postgresql < 9.0.19 - Buffer Overflow
CVSS 8.8
CVE-2015-5745 MEDIUM
QEMU <2.4.0 - Buffer Overflow
CVSS 6.5
CVE-2015-7874 CRITICAL
KiTTY Portable <0.65.0.2p - RCE
CVSS 9.8
CVE-2015-6458 HIGH
Moxa Softcms < 1.3 - Memory Corruption
CVSS 8.8
CVE-2015-7854 HIGH
NTP <4.2.8p4, <4.3.77 - Buffer Overflow
CVSS 8.8
Details
Vulnerabilities 4,106
Exploit Likelihood High