CWE-120

High likelihood

Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')

Parent: CWE-787 - Out-of-bounds Write

The product copies an input buffer to an output buffer without verifying that the size of the input buffer is less than the size of the output buffer.

4,106 vulnerabilities with CWE-120
CVE-2011-3896
Google Chrome <15.0.874.120 - DoS
CVE-2011-2700
Linux Kernel < 2.6.39.4 - Buffer Overflow
CVE-2011-2788
Google Chrome < 13.0.782.107 - Buffer Overflow
CVE-2011-2690 HIGH
Libpng < 1.0.55 - Buffer Overflow
CVSS 8.8
CVE-2011-0213
Apple Quicktime < 7.7.0 - Buffer Overflow
CVE-2011-2534 HIGH
Linux Kernel < 2.6.39 - Buffer Overflow
CVSS 7.8
CVE-2011-1291
Google Chrome < 10.0.648.204 - Buffer Overflow
CVE-2011-1010
Linux Kernel < 2.6.37.2 - Buffer Overflow
CVE-2011-0712
Linux Kernel < 2.6.38 - Buffer Overflow
CVE-2011-0481
Google Chrome OS < 8.0.552.344 - Buffer Overflow
CVE-2011-0480
Google Chrome OS < 8.0.552.344 - Buffer Overflow
CVE-2010-10017 HIGH
WM Downloader 3.1.2.2 - Buffer Overflow
CVE-2010-10016 CRITICAL
BS.Player 2.57 - Buffer Overflow
CVE-2010-3844 HIGH
Ettercap - Buffer Overflow
CVSS 8.8
CVE-2010-5333 CRITICAL
Integard Pro/Home <2.0.0.9037 & 2.2.x <2.2.0.9037 - RCE
CVSS 9.8
CVE-2010-3441
abcm2ps <5.9.12 - RCE
CVE-2010-4527
Linux Kernel < 2.6.37 - Buffer Overflow
CVE-2010-2572 HIGH KEV
Microsoft Powerpoint - Buffer Overflow
CVSS 7.8
CVE-2010-0820 HIGH
Microsoft Windows - Buffer Overflow
CVSS 8.8
CVE-2010-2492 HIGH
Avaya IQ < 2.6.35 - Buffer Overflow
CVSS 7.8
CVE-2010-2808
FreeType <2.4.2 - Buffer Overflow
CVE-2010-2541
Freetype < 2.4.2 - Buffer Overflow
CVE-2010-2527
Freetype < 2.4.0 - Buffer Overflow
CVE-2010-2499
Freetype < 2.4.0 - Buffer Overflow
CVE-2010-1205 CRITICAL
libpng <1.2.44, <1.4.3 - Buffer Overflow
CVSS 9.8
Details
Vulnerabilities 4,106
Exploit Likelihood High