CWE-120

High likelihood

Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')

Parent: CWE-787 - Out-of-bounds Write

The product copies an input buffer to an output buffer without verifying that the size of the input buffer is less than the size of the output buffer.

4,199 vulnerabilities with CWE-120
CVE-2025-43520 MEDIUM KEV
iPadOS < 18.7.2 - Memory Corruption via Malicious Application
CVSS 5.5
CVE-2025-36931 HIGH
Android - Buffer Overflow in GetHostAddress
CVSS 7.8
CVE-2025-36930 HIGH
Android - Local Privilege Escalation via GetHostAddress Buffer Overflow
CVSS 7.8
CVE-2025-36928 HIGH
Android - Local Privilege Escalation via GetHostAddress Bounds Check Bypass
CVSS 7.8
CVE-2025-36927 HIGH
Android - Local Privilege Escalation via GetTachyonCommand Buffer Overflow
CVSS 7.8
CVE-2025-36924 HIGH
Android - Buffer Overflow in ss_DecodeLcsAssistDataReqMsg
CVSS 8.0
CVE-2025-36917 MEDIUM
Android - Denial of Service in SwDcpItg Bounds Check
CVSS 6.5
CVE-2025-14535 CRITICAL
UTT 进取 512W <3.1.7.7-171114 - Buffer Overflow
CVSS 9.8
CVE-2025-14534 CRITICAL
UTT 进取 512W <=3.1.7.7-171114 - Buffer Overflow
CVSS 9.8
CVE-2025-14526 HIGH
Tenda CH22 1.0.0.1 - Buffer Overflow
CVSS 8.8
CVE-2025-65288 MEDIUM
Mercury MR816v2 4.8.7 - Buffer Overflow via Long Hostname
CVSS 6.5
CVE-2025-14310 CRITICAL
rethinkdb < 2.4.4 - Classic Buffer Overflow
CVE-2025-14196 HIGH
H3C Magic B1 <100R004 - Buffer Overflow
CVSS 8.8
CVE-2025-14191 HIGH
UTT 进取 512W <1.7.7-171114 - Buffer Overflow
CVSS 8.8
CVE-2025-14187 HIGH
UGREEN DH2100+ <5.3.0.251125 - Buffer Overflow
CVSS 7.2
CVE-2025-14141 HIGH
UTT 进取 520W 1.7.7-180627 - Buffer Overflow
CVSS 8.8
CVE-2025-14140 MEDIUM
UTT 进取 520W 1.7.7-180627 - Buffer Overflow
CVSS 6.5
CVE-2025-14139 MEDIUM
UTT 进取 520W 1.7.7-180627 - Buffer Overflow
CVSS 5.7
CVE-2025-64053 HIGH
Fanvil x210 Firmware 2.12.20 - Buffer Overflow via Webconfig Upload Endpoint
CVSS 7.5
CVE-2025-14015 HIGH
H3C Magic B0 < 100R002 - Buffer Overflow via EditWlanMacList param
CVSS 8.8
CVE-2025-66287 HIGH
WebKitGTK < 2.50.3 - Denial of Service via Memory Handling Issue
CVSS 8.8
CVE-2025-50361 MEDIUM
SmallBASIC <v12_28 - Buffer Overflow
CVSS 5.1
CVE-2025-11780 CRITICAL
Circutor SGE-PLC1000/SGE-PLC50 v9.0.2 - Buffer Overflow in showMeterReport() Function
CVSS 9.8
CVE-2025-65404 MEDIUM
Live555 Streaming Media 2018.09.02 - Denial of Service via MP3 Stream Buffer Overflow in getSideInfo2
CVSS 6.5
CVE-2025-65403 MEDIUM
LightFTP 2.0 - Denial of Service via g_cfg.MaxUsers Buffer Overflow
CVSS 6.5
Details
Vulnerabilities 4,199
Exploit Likelihood High