Vulnerabilities (CVE)

Filtered by CWE-787
Total 10983 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2022-35454 1 Otfcc Project 1 Otfcc 2024-11-21 N/A 6.5 MEDIUM
OTFCC v0.10.4 was discovered to contain a heap-buffer overflow via /release-x64/otfccdump+0x6b05aa.
CVE-2022-35453 1 Otfcc Project 1 Otfcc 2024-11-21 N/A 6.5 MEDIUM
OTFCC v0.10.4 was discovered to contain a heap-buffer overflow via /release-x64/otfccdump+0x6c08a6.
CVE-2022-35452 1 Otfcc Project 1 Otfcc 2024-11-21 N/A 6.5 MEDIUM
OTFCC v0.10.4 was discovered to contain a heap-buffer overflow via /release-x64/otfccdump+0x6b0b2c.
CVE-2022-35451 1 Otfcc Project 1 Otfcc 2024-11-21 N/A 6.5 MEDIUM
OTFCC v0.10.4 was discovered to contain a heap-buffer overflow via /release-x64/otfccdump+0x6b03b5.
CVE-2022-35450 1 Otfcc Project 1 Otfcc 2024-11-21 N/A 6.5 MEDIUM
OTFCC v0.10.4 was discovered to contain a heap-buffer overflow via /release-x64/otfccdump+0x6b84b1.
CVE-2022-35449 1 Otfcc Project 1 Otfcc 2024-11-21 N/A 6.5 MEDIUM
OTFCC v0.10.4 was discovered to contain a heap-buffer overflow via /release-x64/otfccdump+0x6b0466.
CVE-2022-35448 1 Otfcc Project 1 Otfcc 2024-11-21 N/A 6.5 MEDIUM
OTFCC v0.10.4 was discovered to contain a heap-buffer overflow via /release-x64/otfccdump+0x6b55af.
CVE-2022-35447 1 Otfcc Project 1 Otfcc 2024-11-21 N/A 6.5 MEDIUM
OTFCC v0.10.4 was discovered to contain a heap-buffer overflow via /release-x64/otfccdump+0x6b04de.
CVE-2022-35407 1 Insyde 1 Kernel 2024-11-21 N/A 7.8 HIGH
An issue was discovered in Insyde InsydeH2O with kernel 5.0 through 5.5. A stack buffer overflow leads to arbitrary code execution in the SetupUtility driver on Intel platforms. An attacker can change the values of certain UEFI variables. If the size of the second variable exceeds the size of the first, then the buffer will be overwritten. This issue affects the SetupUtility driver of InsydeH2O.
CVE-2022-35260 4 Apple, Haxx, Netapp and 1 more 12 Macos, Curl, Clustered Data Ontap and 9 more 2024-11-21 N/A 6.5 MEDIUM
curl can be told to parse a `.netrc` file for credentials. If that file endsin a line with 4095 consecutive non-white space letters and no newline, curlwould first read past the end of the stack-based buffer, and if the readworks, write a zero byte beyond its boundary.This will in most cases cause a segfault or similar, but circumstances might also cause different outcomes.If a malicious user can provide a custom netrc file to an application or otherwise affect its contents, this flaw could be used as denial-of-service.
CVE-2022-35222 1 Hinet 1 Hicos Natural Person Credential Component Client 2024-11-21 N/A 6.8 MEDIUM
HiCOS Citizen verification component has a stack-based buffer overflow vulnerability due to insufficient parameter length validation. An unauthenticated physical attacker can exploit this vulnerability to execute arbitrary code, manipulate system command or disrupt service.
CVE-2022-35217 2 Microsoft, Nhi 2 Windows, Health Insurance Web Service Component 2024-11-21 N/A 7.8 HIGH
The NHI card’s web service component has a stack-based buffer overflow vulnerability due to insufficient validation for network packet header length. A local area network attacker with general user privilege can exploit this vulnerability to execute arbitrary code, manipulate system command or disrupt service.
CVE-2022-35113 1 Swftools 1 Swftools 2024-11-21 N/A 5.5 MEDIUM
SWFTools commit 772e55a2 was discovered to contain a heap-buffer overflow via swf_DefineLosslessBitsTagToImage at /modules/swfbits.c.
CVE-2022-35109 1 Swftools 1 Swftools 2024-11-21 N/A 5.5 MEDIUM
SWFTools commit 772e55a2 was discovered to contain a heap-buffer overflow via draw_stroke at /gfxpoly/stroke.c.
CVE-2022-35105 1 Swftools 1 Swftools 2024-11-21 N/A 5.5 MEDIUM
SWFTools commit 772e55a2 was discovered to contain a heap-buffer overflow via /bin/png2swf+0x552cea.
CVE-2022-35104 1 Swftools 1 Swftools 2024-11-21 N/A 5.5 MEDIUM
SWFTools commit 772e55a2 was discovered to contain a heap-buffer overflow via DCTStream::reset() at /xpdf/Stream.cc.
CVE-2022-35101 1 Swftools 1 Swftools 2024-11-21 N/A 5.5 MEDIUM
SWFTools commit 772e55a2 was discovered to contain a segmentation violation via /multiarch/memset-vec-unaligned-erms.S.
CVE-2022-35099 1 Swftools 1 Swftools 2024-11-21 N/A 5.5 MEDIUM
SWFTools commit 772e55a2 was discovered to contain a stack overflow via ImageStream::getPixel(unsigned char*) at /xpdf/Stream.cc.
CVE-2022-35098 1 Swftools 1 Swftools 2024-11-21 N/A 5.5 MEDIUM
SWFTools commit 772e55a2 was discovered to contain a heap-buffer overflow via GfxICCBasedColorSpace::getDefaultColor(GfxColor*) at /xpdf/GfxState.cc.
CVE-2022-35097 1 Swftools 1 Swftools 2024-11-21 N/A 5.5 MEDIUM
SWFTools commit 772e55a2 was discovered to contain a segmentation violation via FoFiTrueType::writeTTF at /xpdf/FoFiTrueType.cc.