CVEbaza.plSłownik CWECWE-788
Common Weakness Enumeration

CWE-788

Access of Memory Location After End of Buffer

Kategoria: BaseCVE: 147
Opis

Produkt odczytuje lub zapisuje dane do bufora, używając indeksu lub wskaźnika, który odwołuje się do lokalizacji pamięci poza buforem. Ta sytuacja prowadzi do dostępu do niewłaściwych obszarów pamięci, potencjalnie powodując niestabilność systemu lub naruszenia bezpieczeństwa.

Description (EN)

The product reads or writes to a buffer using an index or pointer that references a memory location after the end of the buffer.

Podatności CVE z CWE-788 (147)
9.8
CVSS
CRITICAL
CVE-2021-27384

W komponencie SmartVNC wbudowanym w panele HMI oraz napędy SINAMICS firmy Siemens wykryto podatność typu out-of-bounds memory access w procedurze obsługi układu urządzenia (device layout handler). Błąd może prowadzić do wykonania dowolnego kodu przez zdalnego atakującego bez uwierzytelnienia, co czyni go krytycznym zagrożeniem dla środowisk przemysłowych (OT/ICS).

pub. 2021-05-12
9.8
CVSS
CRITICAL
CVE-2019-8264

UltraVNC w rewizji 1203 zawiera podatność odczytu/zapisu poza granicami bufora w kliencie VNC, w module dekodera Ultra2. Luka umożliwia zdalne wykonanie kodu bez uwierzytelnienia, co czyni ją krytycznym zagrożeniem dla każdego systemu korzystającego z podatnego klienta.

pub. 2019-03-08
9.8
CVSS
CRITICAL
CVE-2019-8265

UltraVNC w rewizji 1207 zawiera wiele podatności typu out-of-bounds access w kodzie klienta VNC, wynikających z nieprawidłowego użycia makra SETPIXELS. Luki umożliwiają potencjalnie zdalne wykonanie kodu (RCE) przez sieć bez uwierzytelnienia.

pub. 2019-03-08
9.8
CVSS
CRITICAL
CVE-2019-8266

UltraVNC w rewizji 1207 zawiera wiele podatności typu out-of-bounds access w kodzie klienta VNC, związanych z nieprawidłowym użyciem funkcji ClientConnection::Copybuffer. Luki mogą prowadzić do zdalnego wykonania kodu (RCE) i zostały ocenione jako krytyczne (CVSS 9.8).

pub. 2019-03-08
9.8
CVSS
CRITICAL
CVE-2019-8280

UltraVNC w rewizji 1203 zawiera podatność dostępu poza granicami bufora (out-of-bounds access) w dekoderze RAW klienta VNC, która może prowadzić do zdalnego wykonania kodu. Podatność jest dostępna przez sieć bez uwierzytelnienia, co czyni ją szczególnie niebezpieczną.

pub. 2019-03-08
8.8
CVSS
HIGH
CVE-2021-21104

Adobe Illustrator version 25.2 (and earlier) is affected by a memory corruption vulnerability when parsing a specially crafted file. An unauthenticated attacker could leverage this vulnerability to remote code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

pub. 2021-09-08
8.8
CVSS
HIGH
CVE-2021-21105

Adobe Illustrator version 25.2 (and earlier) is affected by a memory corruption vulnerability when parsing a specially crafted file. An unauthenticated attacker could leverage this vulnerability to achieve remote code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

pub. 2021-09-08
8.6
CVSS
HIGH
CVE-2024-20330

A vulnerability in the Snort 2 and Snort 3 TCP and UDP detection engine of Cisco Firepower Threat Defense (FTD) Software for Cisco Firepower 2100 Series Appliances could allow an unauthenticated, remote attacker to cause memory corruption, which could cause the Snort detection engine to restart unexpectedly. This vulnerability is due to improper memory management when the Snort detection engine processes specific TCP or UDP packets. An attacker could exploit this vulnerability by sending crafted TCP or UDP packets through a device that is inspecting traffic using the Snort detection engine. A successful exploit could allow the attacker to restart the Snort detection engine repeatedly, which could cause a denial of service (DoS) condition. The DoS condition impacts only the traffic through the device that is examined by the Snort detection engine. The device can still be managed over the network. Note: Once a memory block is corrupted, it cannot be cleared until the Cisco Firepower 2100 Series Appliance is manually reloaded. This means that the Snort detection engine could crash repeatedly, causing traffic that is processed by the Snort detection engine to be dropped until the device is manually reloaded.

pub. 2024-10-23
8.6
CVSS
HIGH
CVE-2024-20402

A vulnerability in the SSL VPN feature for Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause an affected device to reload unexpectedly, resulting in a denial of service (DoS) condition. This vulnerability is due to a logic error in memory management when the device is handling SSL VPN connections. An attacker could exploit this vulnerability by sending crafted SSL/TLS packets to the SSL VPN server of the affected device. A successful exploit could allow the attacker to cause the device to reload, resulting in a DoS condition.

pub. 2024-10-23
8.2
CVSS
HIGH
CVE-2023-22297

Access of memory location after end of buffer in some Intel(R) Server Board BMC firmware before version 2.90 may allow a privileged user to enable escalation of privilege via local access.

pub. 2023-05-10
7.8
CVSS
HIGH
CVE-2026-25584

iccDEV provides a set of libraries and tools that allow for the interaction, manipulation, and application of ICC color management profiles. Prior to version 2.3.1.3, there is a stack-buffer-overflow vulnerability in CIccTagFloatNum<>::GetValues(). This is triggered when processing a malformed ICC profile. The vulnerability allows an out-of-bounds write on the stack, potentially leading to memory corruption, information disclosure, or code execution when processing specially crafted ICC files. This issue has been patched in version 2.3.1.3.

pub. 2026-02-04
7.8
CVSS
HIGH
CVE-2024-27828

The issue was addressed with improved memory handling. This issue is fixed in iOS 17.5 and iPadOS 17.5, tvOS 17.5, visionOS 1.2, watchOS 10.5. An app may be able to execute arbitrary code with kernel privileges.

pub. 2024-06-10
7.8
CVSS
HIGH
CVE-2024-27829

The issue was addressed with improved memory handling. This issue is fixed in macOS Sonoma 14.5. Processing a file may lead to unexpected app termination or arbitrary code execution.

pub. 2024-05-14
7.8
CVSS
HIGH
CVE-2021-40727

Access of Memory Location After End of Buffer (CWE-788

pub. 2022-06-15
7.8
CVSS
HIGH
CVE-2021-42732

Access of Memory Location After End of Buffer (CWE-788)

pub. 2022-06-15
7.8
CVSS
HIGH
CVE-2021-42735

Adobe Photoshop version 22.5.1 (and earlier versions ) is affected by an Access of Memory Location After End of Buffer vulnerability, potentially resulting in arbitrary code execution in the context of the current user. User interaction is required to exploit this vulnerability.

pub. 2022-06-15
7.8
CVSS
HIGH
CVE-2021-40734

Adobe Audition version 14.4 (and earlier) is affected by a memory corruption vulnerability when parsing a SVG file, potentially resulting in arbitrary code execution in the context of the current user. User interaction is required to exploit this vulnerability.

pub. 2022-03-16
7.8
CVSS
HIGH
CVE-2021-40735

Adobe Audition version 14.4 (and earlier) is affected by a memory corruption vulnerability, potentially resulting in arbitrary code execution in the context of the current user. User interaction is required to exploit this vulnerability.

pub. 2022-03-16
7.8
CVSS
HIGH
CVE-2021-40736

Adobe Audition version 14.4 (and earlier) is affected by a memory corruption vulnerability, potentially resulting in arbitrary code execution in the context of the current user. User interaction is required to exploit this vulnerability.

pub. 2022-03-16
7.8
CVSS
HIGH
CVE-2021-40738

Adobe Audition version 14.4 (and earlier) is affected by a memory corruption vulnerability when parsing a WAV file, potentially resulting in arbitrary code execution in the context of the current user. User interaction is required to exploit this vulnerability.

pub. 2022-03-16
Pokazano 20 z 147 podatności
Informacje
ID: CWE-788
Typ: Base
Podatności: 147
MITRE CWE ↗
← Słownik CWE