CWE-131

High likelihood

Incorrect Calculation of Buffer Size

Parent: CWE-682 - Incorrect Calculation

The product does not correctly calculate the size to be used when allocating a buffer, which could lead to a buffer overflow.

182 vulnerabilities with CWE-131
CVE-2004-0434 CRITICAL
Heimdal < 0.6.2 - Remote Code Execution via Kerberos 4 Compatibility Request
CVSS 9.8
CVE-2003-0899 CRITICAL
thttpd 2.21-2.23b1 - Remote Code Execution via Defang Buffer Overflow
CVSS 9.8
CVE-2002-1347 CRITICAL
Cyrus SASL library <2.1.9 - Buffer Overflow
CVSS 9.8
CVE-2002-0184 HIGH
sudo < 1.6.6 - Heap-Based Buffer Overflow via Prompt Argument Expansion
CVSS 7.8
CVE-2001-0334 HIGH
Internet Information Server < 5.0 - Denial of Service via FTP Wildcard Expansion
CVSS 7.5
CVE-2001-0248 CRITICAL
HP-UX 11 - Remote Code Execution via FTP STAT Command Buffer Overflow
CVSS 9.8
CVE-2001-0249 CRITICAL
Solaris 8 - Remote Code Execution via FTP LIST Command Heap Overflow
CVSS 9.8
Details
Vulnerabilities 182
Exploit Likelihood High