Vulnerabilities (CVE)

Filtered by CWE-120
Total 4148 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2024-56452 1 Huawei 1 Harmonyos 2026-06-17 N/A 5.5 MEDIUM
Vulnerability of input parameters not being verified during glTF model loading in the 3D engine module Impact: Successful exploitation of this vulnerability may affect availability.
CVE-2024-56450 1 Huawei 2 Emui, Harmonyos 2026-06-17 N/A 6.3 MEDIUM
Buffer overflow vulnerability in the component driver module Impact: Successful exploitation of this vulnerability may affect availability.
CVE-2024-55564 2026-06-17 N/A 9.8 CRITICAL
The POSIX::2008 package before 0.24 for Perl has a potential _execve50c env buffer overflow.
CVE-2024-55194 1 Openimageio 1 Openimageio 2026-06-17 N/A 9.8 CRITICAL
OpenImageIO v3.1.0.0dev was discovered to contain a heap overflow via the component /OpenImageIO/fmath.h.
CVE-2024-55045 2026-06-17 N/A 7.3 HIGH
Firmament-Autopilot FMT-Firmware commit de5aec was discovered to contain a buffer overflow via the task_mavobc_entry function at /comm/task_comm.c.
CVE-2024-54568 1 Apple 1 Macos 2026-06-17 N/A 4.3 MEDIUM
The issue was addressed with improved memory handling. This issue is fixed in macOS Sequoia 15.2. Parsing a maliciously crafted file may lead to an unexpected app termination.
CVE-2024-54105 1 Huawei 1 Harmonyos 2026-06-17 N/A 5.1 MEDIUM
Read/Write vulnerability in the image decoding module Impact: Successful exploitation of this vulnerability will affect availability.
CVE-2024-53901 1 Tonycoz 1 Imager 2026-06-17 N/A 5.5 MEDIUM
The Imager package before 1.025 for Perl has a heap-based buffer overflow leading to denial of service, or possibly unspecified other impact, when the trim() method is called on a crafted input image.
CVE-2024-53695 1 Qnap 1 Hybrid Backup Sync 2026-06-17 N/A 9.1 CRITICAL
A buffer overflow vulnerability has been reported to affect HBS 3 Hybrid Backup Sync. If exploited, the vulnerability could allow remote attackers to modify memory or crash processes. We have already fixed the vulnerability in the following version: HBS 3 Hybrid Backup Sync 25.1.4.952 and later
CVE-2024-53681 1 Linux 1 Linux Kernel 2026-06-17 N/A 5.5 MEDIUM
In the Linux kernel, the following vulnerability has been resolved: nvmet: Don't overflow subsysnqn nvmet_root_discovery_nqn_store treats the subsysnqn string like a fixed size buffer, even though it is dynamically allocated to the size of the string. Create a new string with kstrndup instead of using the old buffer.
CVE-2024-53589 2026-06-17 N/A 8.4 HIGH
GNU objdump 2.43 is vulnerable to Buffer Overflow in the BFD (Binary File Descriptor) library's handling of tekhex format files.
CVE-2024-53426 2026-06-17 N/A 6.2 MEDIUM
A heap-buffer-overflow vulnerability has been identified in ntopng 6.2 in the Flow::dissectMDNS function.
CVE-2024-53425 1 Assimp 1 Assimp 2026-06-17 N/A 6.2 MEDIUM
A heap-buffer-overflow vulnerability was discovered in the SkipSpacesAndLineEnd function in Assimp v5.4.3. This issue occurs when processing certain malformed MD5 model files, leading to an out-of-bounds read and potential application crash.
CVE-2024-53379 2026-06-17 N/A 7.5 HIGH
Heap buffer overflow in the server site handshake implementation in Real Time Logic LLC's SharkSSL version (from 05/05/24) commit 64808a5e12c83b38f85c943dee0112e428dc2a43 allows a remote attacker to trigger a Denial-of-Service via a malformed Client-Hello message.
CVE-2024-53335 1 Totolink 2 A810r, A810r Firmware 2026-06-17 N/A 7.8 HIGH
TOTOLINK A810R V4.1.2cu.5182_B20201026 is vulnerable to Buffer Overflow in downloadFlile.cgi.
CVE-2024-53334 1 Totolink 2 A810r, A810r Firmware 2026-06-17 N/A 8.8 HIGH
TOTOLINK A810R V4.1.2cu.5182_B20201026 is vulnerable to Buffer Overflow in infostat.cgi.
CVE-2024-53320 2026-06-17 N/A 9.8 CRITICAL
Qualisys C++ SDK commit a32a21a was discovered to contain multiple stack buffer overflows via the GetCurrentFrame, SaveCapture, and LoadProject functions.
CVE-2024-53319 2026-06-17 N/A 7.5 HIGH
A heap buffer overflow in the XML Text Escaping component of Qualisys C++ SDK commit a32a21a allows attackers to cause Denial of Service (DoS) via escaping special XML characters.
CVE-2024-53027 1 Qualcomm 424 205, 205 Firmware, Apq8017 and 421 more 2026-06-17 N/A 7.5 HIGH
Transient DOS may occur while processing the country IE.
CVE-2024-53013 1 Qualcomm 120 C-v2x 9150, C-v2x 9150 Firmware, Fastconnect 6800 and 117 more 2026-06-17 N/A 6.6 MEDIUM
Memory corruption may occur while processing voice call registration with user.