CWE-125
9,136 CVEs • Abstraction: Base
Out-of-bounds Read
The product reads data past the end, or before the beginning, of the intended buffer.
CVEs (9,136)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix potencial out-of-bounds when buffer offset is invalid I found potencial out-of-bounds when buffer offset fields of a few requests is invali...Show more |
lunasvg v2.3.9 was discovered to contain a segmentation violation via the component composition_solid_source. |
lunasvg v2.3.9 was discovered to contain a stack-buffer-underflow at lunasvg/source/layoutcontext.cpp. |
An issue in FME Modules fileuploads v.2.0.3 and before and fixed in v2.0.4 allows a remote attacker to obtain sensitive information via the uploadfiles.php component. |
1Onosproject 1Traffic Steering Xapplication Jun 17, 2026 Apr 30, 2024 N/A· v4 7.5 HIGH· v3 N/A· v2 Open Networking Foundation SD-RAN Rimedo rimedo-ts 0.1.1 has a slice bounds out-of-range panic in "return plmnIdString[0:3], plmnIdString[3:]" in reader.go. |
Open Networking Foundation SD-RAN ONOS onos-lib-go 0.10.25 allows an index out-of-range condition in parseAlignBits. |
2Debian Linux2Debian Linux Linux KernelJun 17, 2026 Apr 28, 2024 N/A· v4 7.8 HIGH· v3 N/A· v2 In the Linux kernel, the following vulnerability has been resolved: firmware: arm_scmi: Harden accesses to the reset domains Accessing reset domains descriptors by the index upon the SCMI drivers requests through the S...Show more |
In the Linux kernel, the following vulnerability has been resolved: ipvlan: Fix out-of-bound bugs caused by unset skb->mac_header If an AF_PACKET socket is used to send packets through ipvlan and the default xmit funct...Show more |
2Fedoraproject Malaterre2Fedora Grassroots DicomJun 17, 2026 Apr 25, 2024 N/A· v4 6.5 MEDIUM· v3 N/A· v2 An out-of-bounds read vulnerability exists in the RAWCodec::DecodeBytes functionality of Mathieu Malaterre Grassroot DICOM 3.0.23. A specially crafted DICOM file can lead to an out-of-bounds read. An attacker can provide...Show more |
An out-of-bounds read vulnerability in WLAvalancheService component of Ivanti Avalanche before 6.4.3, in certain conditions can allow an unauthenticated remote attacker to read sensitive information in memory. |
2Fedoraproject Freerdp2Fedora FreerdpJun 17, 2026 Apr 23, 2024 N/A· v4 9.8 CRITICAL· v3 N/A· v2 FreeRDP is a free implementation of the Remote Desktop Protocol. FreeRDP based clients prior to version 3.5.1 are vulnerable to out-of-bounds read. This occurs when `WCHAR` string is read with twice the size it has and c...Show more |
2Fedoraproject Freerdp2Fedora FreerdpJun 17, 2026 Apr 23, 2024 N/A· v4 9.8 CRITICAL· v3 N/A· v2 FreeRDP is a free implementation of the Remote Desktop Protocol. FreeRDP based clients prior to version 3.5.1 are vulnerable to out-of-bounds read if `((nWidth == 0) and (nHeight == 0))`. Version 3.5.1 contains a patch f...Show more |
2Fedoraproject Freerdp2Fedora FreerdpJun 17, 2026 Apr 23, 2024 N/A· v4 9.8 CRITICAL· v3 N/A· v2 FreeRDP is a free implementation of the Remote Desktop Protocol. FreeRDP based clients prior to version 3.5.1 are vulnerable to out-of-bounds read. Version 3.5.1 contains a patch for the issue. No known workarounds are a...Show more |
The Tillitis TKey signer device application is an ed25519 signing tool. A vulnerability has been found that makes it possible to disclose portions of the TKey’s data in RAM over the USB interface. To exploit the vulnerab...Show more |
2Fedoraproject Freerdp2Fedora FreerdpJun 17, 2026 Apr 22, 2024 N/A· v4 9.8 CRITICAL· v3 N/A· v2 FreeRDP is a free implementation of the Remote Desktop Protocol. FreeRDP based based clients using `/bpp:32` legacy `GDI` drawing path with a version of FreeRDP prior to 3.5.0 or 2.11.6 are vulnerable to out-of-bounds re...Show more |
2Fedoraproject Freerdp2Fedora FreerdpJun 17, 2026 Apr 22, 2024 N/A· v4 9.8 CRITICAL· v3 N/A· v2 FreeRDP is a free implementation of the Remote Desktop Protocol. FreeRDP based clients and servers that use a version of FreeRDP prior to 3.5.0 or 2.11.6 are vulnerable to out-of-bounds read. Versions 3.5.0 and 2.11.6 pa...Show more |
2Fedoraproject Freerdp2Fedora FreerdpJun 17, 2026 Apr 22, 2024 N/A· v4 9.8 CRITICAL· v3 N/A· v2 FreeRDP is a free implementation of the Remote Desktop Protocol. FreeRDP based clients that use a version of FreeRDP prior to 3.5.0 or 2.11.6 are vulnerable to out-of-bounds read. Versions 3.5.0 and 2.11.6 patch the issu...Show more |
2Fedoraproject Freerdp2Fedora FreerdpJun 17, 2026 Apr 22, 2024 N/A· v4 9.8 CRITICAL· v3 N/A· v2 FreeRDP is a free implementation of the Remote Desktop Protocol. FreeRDP based clients that use a version of FreeRDP prior to 3.5.0 or 2.11.6 are vulnerable to out-of-bounds read. Versions 3.5.0 and 2.11.6 patch the issu...Show more |
Pytorch before v2.2.0 has an Out-of-bounds Read vulnerability via the component torch/csrc/jit/mobile/flatbuffer_loader.cpp. |
Buffer Overflow vulenrability in Ffmpeg v.N113007-g8d24a28d06 allows a local attacker to execute arbitrary code via the libavcodec/jpegxl_parser.c in gen_alias_map. |