buffer-overflow
106 articles with this tag
HIGH
HIGH
HIGH
MEDIUM
MEDIUM
MEDIUM
MEDIUM
HIGH
MEDIUM
HIGH
CRITICAL
INFO
INFO
INFO
MEDIUM
MEDIUM
MEDIUM
MEDIUM
HIGH
INFO
INFO
CRITICAL
HIGH
HIGH
HIGH
HIGH
HIGH
MEDIUM
HIGH
HIGH
HIGH
CRITICAL
HIGH
MEDIUM
MEDIUM
MEDIUM
MEDIUM
HIGH
HIGH
HIGH
HIGH
MEDIUM
CRITICAL
HIGH
HIGH
HIGH
HIGH
CRITICAL
HIGH
HIGH
HIGH
HIGH
HIGH
CRITICAL
HIGH
CRITICAL
HIGH
HIGH
MEDIUM
CRITICAL
CRITICAL
CRITICAL
CRITICAL
HIGH
HIGH
CRITICAL
HIGH
MEDIUM
MEDIUM
MEDIUM
MEDIUM
MEDIUM
MEDIUM
MEDIUM
HIGH
HIGH
MEDIUM
MEDIUM
MEDIUM
MEDIUM
MEDIUM
HIGH
HIGH
MEDIUM
HIGH
HIGH
CRITICAL
CRITICAL
CRITICAL
HIGH
HIGH
MEDIUM
MEDIUM
HIGH
MEDIUM
MEDIUM
CRITICAL
CRITICAL
HIGH
HIGH
USN-8611-1: GNU C Library vulnerabilities
CVE-2026-16461 Rpcbind: rpcbind: stack buffer overflow in rpcinfo rpcbdump() short-mode version-list formatting
MZ Automation libIEC61850
CVE-2026-53910 Heap-based Buffer Overflow in GNU diffutils
CVE-2026-16277 Rpcbind: rpcbind: stack buffer overflow in rpcinfo rpcbaddrlist()
USN-8586-1: libgphoto2 vulnerabilities
USN-8573-1: libde265 vulnerabilities
USN-8560-1: libXfont vulnerabilities
OpenSSL Silently Fixes ‘HollowByte’ DoS Vulnerability
CVE-2026-58534 Windows Input Method Editor (IME) Elevation of Privilege Vulnerability
CVE-2026-50370 DHCP Server Service Remote Code Execution Vulnerability
CVE-2026-55023 Microsoft Office Information Disclosure Vulnerability
CVE-2026-55125 Microsoft Office Remote Code Execution Vulnerability
CVE-2026-55048 Microsoft Excel Remote Code Execution Vulnerability
Buffer overread in authd and wad daemon
CVE-2026-40468 Heap buffer overflow in gawk
CVE-2026-40553 Stack-based buffer overflow in gawk
CVE-2026-40469 Heap buffer overflow in gawk
Palo Alto Networks Patches 13 Vulnerabilities
RHSA-2026:36211: Moderate: freeipmi security update
RHSA-2026:36210: Moderate: freeipmi security update
Siemens SINEC OS
Labcenter Proteus 9
Hitachi Energy e-mesh EMS
7 vulnerabilities found in widely used FatFs library
FreeBSD-SA-26:41.libalias
Mitsubishi Electric MELSOFT Update Manager SW1DND-UDM-M
CVE-2026-53147 thunderbolt: Validate XDomain request packet size before type cast
CVE-2026-55200 libssh2 - Out-of-Bounds Write via Unchecked packet_length in transport.c
Siemens Products using OpenSSL
FFmpeg vulnerability ‘PixelSmash’ could enable RCE via video file
VU#936962: Multiple file parsing vulnerabilities in FastStone Image Viewer 8.3.0.0
Rockwell Automation RSLinx
CVE-2026-44631 Apache HTTP Server: Heap Underflow in `ap_regname` via Signed Char Overflow
CVE-2026-34356 Apache HTTP Server: ProxyPassReverseCookieMap buffer overflow
CVE-2026-44185 Apache HTTP Server: Stack Buffer Over-Read in mod_ssl OCSP `send_request`
CVE-2026-34355 Apache HTTP Server: mod_proxy_html buffer overflow
CVE-2026-50258 Xorg-x11-server: xorg-x11-server-xwayland: xorg-x11-server: stack buffer overflow in xkb key types due to unchecked shift levels
CVE-2026-50031 ipmi-oem in FreeIPMI before 1.6.18 has exploitable buffer overflows on response messages. The Intelligent Platform Management Interface (IPMI) specification defines a set of interfaces for platform management. It is implemented by a large number of hardware manufacturers to support system management. It is most commonly used for sensor reading (e.g., CPU temperatures through the ipmi-sensors command within FreeIPMI) and remote power control (the ipmipower command). The ipmi-oem client command implements a set of a IPMI OEM commands for specific hardware vendors. If a user has supported hardware, they may wish to use the ipmi-oem command to send a request to a server to retrieve specific information. Two subcommands "ipmi-oem dell get-active-directory-config" and "ipmi-oem fujitsu get-sel-entry-long-text" were found to have exploitable buffer overflows on response messages.
CVE-2026-50259 Xorg-x11-server: xorg-x11-server-xwayland: xorg-x11-server: stack buffer overflow in xkb setmap request via mapwidths indexing
Hitachi Energy MACH HiDraw
CVE-2026-4224 Stack overflow parsing XML with deeply nested DTD content models
CVE-2026-0826: Critical unauthenticated stack buffer overflow in HP Poly VVX and Trio VoIP Phones (FIXED)
CVE-2026-42015 Gnutls: gnutls: memory corruption due to off-by-one error in pkcs#12 bag handling
CVE-2026-9150 Libsolv: stack-based buffer overflow in libsolv's debian metadata parser when handling sha384/sha512 checksums
CVE-2026-8376 Perl versions through 5.43.10 have a heap buffer overflow when compiling regular expressions with a repeated fixed string on 32-bit builds
ABB Ability Camera Connect
Siemens RUGGEDCOM APE1808 Devices
TP-Link, Photoshop, OpenVPN, Norton VPN vulnerabilities
NCSC-2026-0164 [1.00] [M/H] Kwetsbaarheid verholpen in NGINX ngx_http_rewrite_module
CVE-2026-44673 libyang: lyb_read_string() integer overflow → heap buffer overflow
CVE-2026-6637 PostgreSQL refint allows stack buffer overflow and SQL injection
CVE-2026-44662 rust-openssl: Heap buffer overflow when encrypting with AES key-wrap-with-padding
18-Year-Old NGINX Rewrite Module Flaw Enables Unauthenticated RCE
Chipmaker Patch Tuesday: Intel and AMD Patch 70 Vulnerabilities
Patch Tuesday - May 2026
CVE-2026-6664 PgBouncer integer overflow in PgBouncer network packet parsing
CVE-2026-6665 PgBouncer buffer overflow in SCRAM
CVE-2026-45130 Vim: Heap Buffer Overflow in spell file loading
State-sponsored hackers likely behind zero-day attacks on Palo Alto firewalls
PAN-OS RCE Exploit Under Active Use Enabling Root Access and Espionage
Critical Palo Alto Networks software bug hits exposed firewalls
Palo Alto Networks firewall zero-day exploited for nearly a month
Critical Buffer Overflow in Palo Alto Networks PAN-OS User-ID Authentication Portal (CVE-2026-0300)
2026-006: Critical Vulnerability in PAN-OS
Palo Alto PAN-OS Flaw Under Active Exploitation Enables Remote Code Execution
Palo Alto Networks to Patch Zero-Day Exploited to Hack Firewalls
CVE-2026-40170 ngtcp2 has a qlog transport parameter serialization stack buffer overflow
[webapps] GeographicLib v2.5.1 - stack buffer overflow
CVE-2026-41676 rust-openssl: Deriver::derive and PkeyCtxRef::derive can overflow short buffers on OpenSSL 1.1.1
CVE-2026-31505 iavf: fix out-of-bounds writes in iavf_get_ethtool_stats()
CVE-2026-31449 ext4: validate p_idx bounds in ext4_ext_correct_indexes
CVE-2026-27820 zlib: Buffer Overflow in Zlib::GzipReader ungetc via large input leads to memory corruption
CVE-2026-34267
NCSC-2026-0125 [1.00] [M/H] Kwetsbaarheden verholpen in Oracle Enterprise Manager
Hardy Barth Salia EV Charge Controller
CVE-2025-66037 OpenSC: Out of Bounds vulnerability
CVE-2026-21714
CVE-2025-49010 OpenSC: Stack-buffer-overflow WRITE in GET RESPONSE
CVE-2025-66215 OpenSC: Stack-buffer-overflow WRITE in card-oberthur
CVE-2026-39979 jq: Out-of-Bounds Read in jv_parse_sized() Error Formatting for Non-NUL-Terminated Counted Buffers
CVE-2026-5295 Stack Buffer Overflow in wolfSSL PKCS7 wc_PKCS7_DecryptOri() via Oversized OID
CVE-2026-5772 MatchDomainName 1-Byte Stack Buffer Over-Read in Hostname Validation
CVE-2026-4739 Integer overflow vulnerabilities in InsightSoftwareConsortium/ITK
Heap-based buffer overflow in oftpd daemon
CISA Adds Five Known Exploited Vulnerabilities to Catalog
Telnet vulnerability opens door to remote code execution as root
CVE-2026-32746 GNU telnetd Buffer Overflow PoC - Critical (9.8)
Critical Unpatched Telnetd Flaw (CVE-2026-32746) Enables Unauthenticated Root RCE via Port 23
Buffer Overflow in LLDP OUI field
Buffer overflow via fgtupdates service
[webapps] Easy File Sharing Web Server v7.2 - Buffer Overflow
[local] glibc 2.38 - Buffer Overflow
USN-8004-1: FreeRDP vulnerabilities
VU#481830: Libheif uncompressed codec lacks bounds check leading to application crash
VU#271649: Stack-based buffer overflow in libtasn1 versions v4.20.0 and earlier
CISA Adds Actively Exploited VMware vCenter Flaw CVE-2024-37079 to KEV Catalog
Ancient telnet bug happily hands out root to attackers
CVE-2025-27821: Out-of-bounds Write vulnerability in Apache Hadoop HDFS native client.
This issue affects Apache Ha...
CVE-2026-1283: A Heap-based Buffer Overflow vulnerability affecting the EPRT file reading procedure in SOLIDWORKS e...