CWE-120

High likelihood

Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')

Parent: CWE-787 - Out-of-bounds Write

The product copies an input buffer to an output buffer without verifying that the size of the input buffer is less than the size of the output buffer.

4,198 vulnerabilities with CWE-120
CVE-2026-4729 CRITICAL
Memory safety bugs fixed in Firefox 149 and Thunderbird 149
CVSS 9.8
CVE-2026-4721 CRITICAL
Memory safety bugs fixed in Firefox ESR 115.34, Firefox ESR 140.9, Thunderbird ESR 140.9, Firefox 149 and Thunderbird 149
CVSS 9.8
CVE-2026-4720 CRITICAL
Memory safety bugs fixed in Firefox ESR 140.9, Thunderbird ESR 140.9, Firefox 149 and Thunderbird 149
CVSS 9.8
CVE-2026-4690 HIGH
Sandbox escape due to incorrect boundary conditions, integer overflow in the XPCOM component
CVSS 8.6
CVE-2026-4689 CRITICAL
Sandbox escape due to incorrect boundary conditions, integer overflow in the XPCOM component
CVSS 10.0
CVE-2026-4687 HIGH
Sandbox escape due to incorrect boundary conditions in the Telemetry component
CVSS 8.6
CVE-2026-30006 MEDIUM
XnSoft NConvert 7.230 - Buffer Overflow
CVSS 6.2
CVE-2026-4565 HIGH
Tenda AC21 SetNetControlList formSetQosBand buffer overflow
CVSS 8.8
CVE-2026-4488 HIGH
UTT HiPER 1250GW setSysAdm strcpy buffer overflow
CVSS 8.8
CVE-2026-4487 HIGH
UTT HiPER 1200GW websHostFilter strcpy buffer overflow
CVSS 8.8
CVE-2026-27459 CRITICAL
pyOpenSSL DTLS cookie callback buffer overflow
CVSS 9.8
CVE-2026-4318 HIGH
UTT HiPER 810G formApLbConfig strcpy buffer overflow
CVSS 8.8
CVE-2026-4227 HIGH
LB-LINK BL-WR9000 get_hidessid_cfg sub_44D844 buffer overflow
CVSS 8.8
CVE-2026-32706 HIGH
PX4 autopilot <1.17.0-rc2 - Memory Corruption
CVSS 7.1
CVE-2026-0849 LOW
Zephyr crypto driver - Buffer Overflow
CVSS 3.8
CVE-2026-32746 CRITICAL
GNU inetutils through 2.7 - Buffer Overflow
CVSS 9.8
CVE-2026-0110 CRITICAL
cn_NrSmMsgHdlrFromMM.cpp - Privilege Escalation
CVSS 9.8
CVE-2026-31795 HIGH
iccdev < 2.3.1.5 - Stack Buffer Overflow in CIccXform3DLut::Apply()
CVSS 7.8
CVE-2026-30987 HIGH
iccdev < 2.3.1.5 - Stack Buffer Overflow in CIccTagNum GetValues
CVSS 7.8
CVE-2026-30985 HIGH
iccDEV <2.3.1.5 - Memory Corruption
CVSS 7.8
CVE-2026-30983 HIGH
iccdev < 2.3.1.5 - Stack Buffer Overflow in icFixXml
CVSS 7.8
CVE-2026-30981 MEDIUM
iccDEV <2.3.1.5 - Memory Corruption
CVSS 6.1
CVE-2026-30979 HIGH
iccDEV <2.3.1.5 - Memory Corruption
CVSS 7.8
CVE-2026-22627 HIGH
Fortinet FortiSwitchAXFixed 1.0.0-1.0.1 - Buffer Overflow
CVSS 8.8
CVE-2026-3815 HIGH
UTT HiPER 810G <=1.7.7-1711 - Buffer Overflow
CVSS 8.8
Details
Vulnerabilities 4,198
Exploit Likelihood High