With buffer overflow attacks costing between $385 million and $1.
If buffer overflow does occur in C, it is not detected unless the programmer has written an explicit check.
The vulnerabilities range from buffer overflow issues, PL/SQL Injection, trigger abuse, character set conversion bugs and denial of service.
The "Image of Death" is reportedly a buffer overflow that potentially allows an attacker to make a special JPEG file that takes control of a user's PC when the JPEG is viewed at a website.