<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"><channel><title>RuntimeRebel — #Buffer Overflow</title><description>Cybersecurity articles tagged #Buffer Overflow on RuntimeRebel.</description><link>https://runtimerebel.com</link><item><title>CVE-2026-73749: HPE ArubaOS-CX RCE Flaw Patched</title><link>https://runtimerebel.com/blog/cve-2026-73749-hpe-arubaos-cx-rce-flaw-patched</link><guid isPermaLink="true">https://runtimerebel.com/blog/cve-2026-73749-hpe-arubaos-cx-rce-flaw-patched</guid><description>HPE patches a critical remote code execution flaw, CVE-2026-73749, in ArubaOS-CX switches. Unauthenticated attackers can exploit a buffer overflow.</description><pubDate>Thu, 03 Sep 2026 19:00:03 GMT</pubDate><category>Remote Code Execution</category><category>Buffer Overflow</category><category>HPE</category><category>ArubaOS CX</category><category>CVE-2026-73749</category></item><item><title>Chrome, Firefox, Thunderbird Updates Patch Dozens of High-Severity Flaws</title><link>https://runtimerebel.com/blog/chrome-firefox-thunderbird-updates-patch-dozens-of-high-severity-flaws</link><guid isPermaLink="true">https://runtimerebel.com/blog/chrome-firefox-thunderbird-updates-patch-dozens-of-high-severity-flaws</guid><description>Google and Mozilla release urgent updates for Chrome 151, Firefox 154, and Thunderbird 154, addressing critical and high-severity vulnerabilities including RCE.</description><pubDate>Wed, 19 Aug 2026 08:26:41 GMT</pubDate><category>Chrome</category><category>Firefox</category><category>Buffer Overflow</category><category>Use After Free</category><category>Privilege Escalation</category></item><item><title>7-Zip RCE via CVE-2026-14266: XZ Archive Extraction Patch Guidance</title><link>https://runtimerebel.com/blog/7-zip-rce-via-cve-2026-14266-xz-archive-extraction-patch-guidance</link><guid isPermaLink="true">https://runtimerebel.com/blog/7-zip-rce-via-cve-2026-14266-xz-archive-extraction-patch-guidance</guid><description>7-Zip versions prior to 26.02 are vulnerable to a heap-based buffer overflow. Learn how to mitigate CVE-2026-14266 and secure XZ archive extractions.</description><pubDate>Mon, 20 Jul 2026 10:54:46 GMT</pubDate><category>7 Zip</category><category>CVE-2026-14266</category><category>XZ Archive</category><category>Buffer Overflow</category><category>RCE</category></item><item><title>Understanding Stack Overflow Exploitation: A Primer</title><link>https://runtimerebel.com/blog/understanding-stack-overflow-exploitation-a-primer</link><guid isPermaLink="true">https://runtimerebel.com/blog/understanding-stack-overflow-exploitation-a-primer</guid><description>Gain a foundational understanding of how program stacks work and why stack overflows are a critical attack vector for hijacking execution flow.</description><pubDate>Wed, 08 Jul 2026 10:44:20 GMT</pubDate><category>Stack Overflow</category><category>Memory Corruption</category><category>Exploit Development</category><category>Buffer Overflow</category><category>Security Fundamentals</category></item><item><title>Rockwell RSLinx &lt;4.50.00 RCE via CVE-2020-13573 — Patch Now</title><link>https://runtimerebel.com/blog/rockwell-rslinx-4-50-00-rce-via-cve-2020-13573-patch-now</link><guid isPermaLink="true">https://runtimerebel.com/blog/rockwell-rslinx-4-50-00-rce-via-cve-2020-13573-patch-now</guid><description>Urgent advisory for Rockwell RSLinx Classic users. CVE-2020-13573, a stack-based buffer overflow, enables remote code execution and DoS. Patch &lt;=4.50.00.</description><pubDate>Thu, 18 Jun 2026 09:58:04 GMT</pubDate><category>Rockwell Automation</category><category>RSLinx Classic</category><category>CVE-2020-13573</category><category>Buffer Overflow</category><category>RCE</category><category>Denial of Service</category><category>ICS</category><category>Critical Manufacturing</category><category>Energy</category></item><item><title>Hitachi Energy MACH HiDraw RCE via CVE-2026-7310 — Patch Guide</title><link>https://runtimerebel.com/blog/hitachi-energy-mach-hidraw-rce-via-cve-2026-7310-patch-guide</link><guid isPermaLink="true">https://runtimerebel.com/blog/hitachi-energy-mach-hidraw-rce-via-cve-2026-7310-patch-guide</guid><description>Hitachi Energy addresses a heap-based buffer overflow in MACH HiDraw version 9.22. Learn how to mitigate CVE-2026-7310 and protect critical ICS assets.</description><pubDate>Thu, 04 Jun 2026 17:11:13 GMT</pubDate><category>Hitachi Energy</category><category>MACH HiDraw</category><category>CVE-2026-7310</category><category>ICS</category><category>Buffer Overflow</category></item><item><title>HP VoIP Phone RCE via CVE-2024-40615 — Mitigation Guide</title><link>https://runtimerebel.com/blog/hp-voip-phone-rce-via-cve-2024-40615-mitigation-guide</link><guid isPermaLink="true">https://runtimerebel.com/blog/hp-voip-phone-rce-via-cve-2024-40615-mitigation-guide</guid><description>HP Poly CCX and Edge E Series phones face a critical stack-based buffer overflow allowing unauthenticated RCE and enterprise network breaches.</description><pubDate>Tue, 02 Jun 2026 13:28:13 GMT</pubDate><category>CVE-2024-40615</category><category>HP Poly</category><category>VoIP</category><category>RCE</category><category>Buffer Overflow</category></item><item><title>CVE-2023-47359 &amp; More: Critical Vulnerabilities in ABB Ability Camera Connect</title><link>https://runtimerebel.com/blog/cve-2023-47359-more-critical-vulnerabilities-in-abb-ability-camera-connect</link><guid isPermaLink="true">https://runtimerebel.com/blog/cve-2023-47359-more-critical-vulnerabilities-in-abb-ability-camera-connect</guid><description>Multiple critical and high-severity vulnerabilities in ABB Ability Camera Connect (VLC component &lt;=1.5.0.14) could lead to RCE or DoS. Update to 1.5.0.15 now.</description><pubDate>Tue, 26 May 2026 20:49:50 GMT</pubDate><category>CVE-2023-47359</category><category>CVE-2019-13962</category><category>CVE-2017-10699</category><category>ABB Ability Camera Connect</category><category>VLC Media Player</category><category>Buffer Overflow</category><category>Integer Underflow</category><category>ICS Security</category></item><item><title>ABB B&amp;R Automation Studio &lt;6.5: Multiple Critical SQLite Vulnerabilities</title><link>https://runtimerebel.com/blog/abb-b-r-automation-studio-6-5-multiple-critical-sqlite-vulnerabilities</link><guid isPermaLink="true">https://runtimerebel.com/blog/abb-b-r-automation-studio-6-5-multiple-critical-sqlite-vulnerabilities</guid><description>Critical SQLite vulnerabilities in ABB B&amp;R Automation Studio &lt;6.5 expose ICS to RCE, data exposure, and unauthorized access. Update to version 6.5 immediately.</description><pubDate>Sat, 23 May 2026 00:56:27 GMT</pubDate><category>ABB</category><category>B R Automation Studio</category><category>SQLite</category><category>ICS</category><category>OT</category><category>CVE-2025-6965</category><category>CVE-2025-3277</category><category>CVE-2019-19646</category><category>CVE-2019-8457</category><category>CVE-2017-10989</category><category>RCE</category><category>Buffer Overflow</category><category>Memory Corruption</category><category>Zero Trust</category></item><item><title>ABB Terra AC Wallbox &lt;=1.8.33 Buffer Overflows: Patch Now</title><link>https://runtimerebel.com/blog/abb-terra-ac-wallbox-1-8-33-buffer-overflows-patch-now</link><guid isPermaLink="true">https://runtimerebel.com/blog/abb-terra-ac-wallbox-1-8-33-buffer-overflows-patch-now</guid><description>CISA warns of three buffer overflow vulnerabilities (CVE-2025-10504, CVE-2025-12142, CVE-2025-12143) in ABB Terra AC Wallbox EV chargers, leading to potential remote…</description><pubDate>Thu, 21 May 2026 20:43:05 GMT</pubDate><category>ABB</category><category>Terra AC Wallbox</category><category>EV Charger</category><category>CVE-2025-10504</category><category>CVE-2025-12142</category><category>CVE-2025-12143</category><category>Buffer Overflow</category><category>Heap Based Buffer Overflow</category><category>Stack Based Buffer Overflow</category><category>Energy Sector</category></item><item><title>CVE-2026-0300: Siemens RUGGEDCOM APE1808 RCE via PAN-OS Vulnerability</title><link>https://runtimerebel.com/blog/cve-2026-0300-siemens-ruggedcom-ape1808-rce-via-pan-os-vulnerability</link><guid isPermaLink="true">https://runtimerebel.com/blog/cve-2026-0300-siemens-ruggedcom-ape1808-rce-via-pan-os-vulnerability</guid><description>Critical RCE (CVE-2026-0300) in Siemens RUGGEDCOM APE1808 devices via PAN-OS User-ID Captive Portal buffer overflow. Unauthenticated root code execution possible.</description><pubDate>Tue, 19 May 2026 20:43:35 GMT</pubDate><category>CVE-2026-0300</category><category>Siemens RUGGEDCOM APE1808</category><category>Palo Alto Networks PAN OS</category><category>Buffer Overflow</category><category>RCE</category><category>Critical Manufacturing</category></item><item><title>CVE-2021-23017: NGINX DNS Resolver Buffer Overflow — Patch Now</title><link>https://runtimerebel.com/blog/cve-2021-23017-nginx-dns-resolver-buffer-overflow-patch-now</link><guid isPermaLink="true">https://runtimerebel.com/blog/cve-2021-23017-nginx-dns-resolver-buffer-overflow-patch-now</guid><description>An 18-year-old stack-based buffer overflow in the NGINX DNS resolver could lead to DoS or RCE. Learn how to secure your web server configuration today.</description><pubDate>Thu, 14 May 2026 16:46:42 GMT</pubDate><category>NGINX</category><category>CVE-2021-23017</category><category>DNS Resolver</category><category>Buffer Overflow</category><category>RCE</category></item><item><title>CISA Adds 5 KEVs: Apple Buffer Overflow, Code Injections Exploited</title><link>https://runtimerebel.com/blog/cisa-adds-5-kevs-apple-buffer-overflow-code-injections-exploited</link><guid isPermaLink="true">https://runtimerebel.com/blog/cisa-adds-5-kevs-apple-buffer-overflow-code-injections-exploited</guid><description>CISA&apos;s KEV Catalog updated with 5 actively exploited vulnerabilities impacting Apple products, Craft CMS, and Laravel Livewire. Immediate patching is critical.</description><pubDate>Fri, 20 Mar 2026 16:21:21 GMT</pubDate><category>CISA KEV Catalog</category><category>CVE-2025-31277</category><category>CVE-2025-32432</category><category>CVE-2025-43510</category><category>CVE-2025-43520</category><category>CVE-2025-54068</category><category>Apple</category><category>Craft CMS</category><category>Laravel Livewire</category><category>Buffer Overflow</category><category>Code Injection</category></item></channel></rss>