Show filters
292 Total Results
Displaying 51-60 of 292
Sort by:
Attacker Value
Unknown

CVE-2022-21214

Disclosure Date: March 31, 2022 (last updated February 23, 2025)
The affected product is vulnerable to a heap-based buffer overflow, which may lead to code execution.
Attacker Value
Unknown

CVE-2022-1160

Disclosure Date: March 30, 2022 (last updated February 23, 2025)
heap buffer overflow in get_one_sourceline in GitHub repository vim/vim prior to 8.2.4647.
Attacker Value
Unknown

CVE-2022-1177

Disclosure Date: March 30, 2022 (last updated February 23, 2025)
Accounting User Can Download Patient Reports in openemr in GitHub repository openemr/openemr prior to 6.1.0.
Attacker Value
Unknown

CVE-2022-1052

Disclosure Date: March 24, 2022 (last updated February 23, 2025)
Heap Buffer Overflow in iterate_chained_fixups in GitHub repository radareorg/radare2 prior to 5.6.6.
Attacker Value
Unknown

CVE-2022-1061

Disclosure Date: March 24, 2022 (last updated February 23, 2025)
Heap Buffer Overflow in parseDragons in GitHub repository radareorg/radare2 prior to 5.6.8.
Attacker Value
Unknown

CVE-2021-40426

Disclosure Date: March 23, 2022 (last updated February 23, 2025)
A heap-based buffer overflow vulnerability exists in the sphere.c start_read() functionality of Sound Exchange libsox 14.4.2 and master commit 42b3557e. A specially-crafted file can lead to a heap buffer overflow. An attacker can provide a malicious file to trigger this vulnerability.
Attacker Value
Unknown

CVE-2021-23165

Disclosure Date: March 16, 2022 (last updated February 23, 2025)
A flaw was found in htmldoc before v1.9.12. Heap buffer overflow in pspdf_prepare_outpages(), in ps-pdf.cxx may lead to execute arbitrary code and denial of service.
Attacker Value
Unknown

CVE-2021-43304

Disclosure Date: March 14, 2022 (last updated February 23, 2025)
Heap buffer overflow in Clickhouse's LZ4 compression codec when parsing a malicious query. There is no verification that the copy operations in the LZ4::decompressImpl loop and especially the arbitrary copy operation wildCopy<copy_amount>(op, ip, copy_end), don’t exceed the destination buffer’s limits.
Attacker Value
Unknown

CVE-2021-43305

Disclosure Date: March 14, 2022 (last updated February 23, 2025)
Heap buffer overflow in Clickhouse's LZ4 compression codec when parsing a malicious query. There is no verification that the copy operations in the LZ4::decompressImpl loop and especially the arbitrary copy operation wildCopy<copy_amount>(op, ip, copy_end), don’t exceed the destination buffer’s limits. This issue is very similar to CVE-2021-43304, but the vulnerable copy operation is in a different wildCopy call.
Attacker Value
Unknown

CVE-2022-0943

Disclosure Date: March 14, 2022 (last updated February 23, 2025)
Heap-based Buffer Overflow occurs in vim in GitHub repository vim/vim prior to 8.2.4563.