CWE-131

High likelihood

Incorrect Calculation of Buffer Size

Parent: CWE-682 - Incorrect Calculation

The product does not correctly calculate the size to be used when allocating a buffer, which could lead to a buffer overflow.

182 vulnerabilities with CWE-131
CVE-2021-29521 LOW
TensorFlow 2.3.0-2.3.2 - Denial of Service via Negative Dense Shape in SparseCountSparseOutput
CVSS 2.5
CVE-2021-0254 CRITICAL
Juniper Networks Junos OS - Buffer Overflow
CVSS 9.8
CVE-2021-21782 HIGH
Accusoft ImageGear - Out-of-Bounds Write via SGI Format Buffer Size Processing
CVSS 8.8
CVE-2021-21776 HIGH
Accusoft ImageGear 19.8 - Out-of-Bounds Write via SGI Format Buffer Size Processing
CVSS 8.8
CVE-2021-21773 HIGH
Accusoft ImageGear 19.8 - Out-of-Bounds Write via TIFF Header Processing
CVSS 7.8
CVE-2021-28039 MEDIUM
Linux Kernel 5.9.0-5.11.3 - Denial of Service via Guest Physical Address Misuse
CVSS 6.5
CVE-2021-27378 CRITICAL
Rust rand_core <0.6.2 - Info Disclosure
CVSS 9.8
CVE-2020-36475 HIGH
Mbed TLS < 2.25.0, < 2.16.9 LTS, < 2.7.18 LTS - Denial of Service via mbedtls_mpi_exp_mod Buffer Size Miscalculations
CVSS 7.5
CVE-2020-11240 HIGH
Snapdragon Auto - Memory Corruption
CVSS 7.8
CVE-2020-13585 HIGH
Accusoft ImageGear 19.8 - Out-of-Bounds Write via PSD Header Processing
CVSS 8.8
CVE-2020-13546 HIGH
SoftMaker Office TextMaker 2021 <1014 - Buffer Overflow
CVSS 7.8
CVE-2020-17087 HIGH KEV
Windows Kernel - Privilege Escalation
CVSS 7.8
CVE-2020-1680 MEDIUM
Juniper Junos OS on MX Series - Unauthenticated Denial of Service via Malformed IPv6 Packet Handling
CVSS 5.3
CVE-2020-6108 HIGH
f2fs-tools < 1.14.0 - Heap Buffer Overflow via Crafted Filesystem
CVSS 7.8
CVE-2020-6106 MEDIUM
F2fs-Tools F2fs.Fsck <1.14 - Info Disclosure
CVSS 5.5
CVE-2020-6116 HIGH
Nitro Pro 13.13.2.242 - Code Injection
CVSS 7.8
CVE-2020-6113 HIGH
Nitro Pro <13.13.2.242 - Buffer Overflow
CVSS 7.8
CVE-2020-14385 MEDIUM
Linux Kernel < 5.9-rc4 - Denial of Service via XFS Metadata Validator Failure
CVSS 5.5
CVE-2020-3640 HIGH
Snapdragon Compute/Snapdragon Consumer IOT/Snapdragon Mobile/Snapdr...
CVSS 7.8
CVE-2020-6070 HIGH
f2fs-tools 1.12.0 - Remote Code Execution via Crafted f2fs File
CVSS 7.8
CVE-2020-15350 CRITICAL
RIOT 2020.04 - Buffer Overflow in Base64 Decoder
CVSS 9.8
CVE-2020-11901 CRITICAL
Treck TCP/IP < 6.0.1.66 - Remote Code Execution via Invalid DNS Response
CVSS 9.0
CVE-2020-8450 HIGH
Squid < 4.10 - Buffer Overflow via Reverse Proxy Buffer Management
CVSS 7.3
CVE-2019-25555 MEDIUM
TwistedBrush Pro Studio 24.06 Script Recorder Denial of Service
CVSS 6.2
CVE-2019-14078 HIGH
Snapdragon Auto-SDM845 - Memory Corruption
CVSS 7.8
Details
Vulnerabilities 182
Exploit Likelihood High