CWE-125
9,136 CVEs • Abstraction: Base
Out-of-bounds Read
The product reads data past the end, or before the beginning, of the intended buffer.
CVEs (9,136)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
The Cpanel::JSON::XS package before 4.33 for Perl performs out-of-bounds accesses in a way that allows attackers to obtain sensitive information or cause a denial of service. |
Exiv2 is a command-line utility and C++ library for reading, writing, deleting, and modifying the metadata of image files. An out-of-bounds read was found in Exiv2 version v0.28.1. The vulnerable function, `QuickTimeVide...Show more |
2Cisco Fedoraproject3Fedora Secure EndpointSecure Endpoint Private CloudJun 17, 2026 Feb 7, 2024 N/A· v4 7.5 HIGH· v3 N/A· v2 A vulnerability in the OLE2 file format parser of ClamAV could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. This vulnerability is due to an incorrect ch...Show more |
Espruino 2v20 (commit fcc9ba4) was discovered to contain an Out-of-bounds Read via jsvStringIteratorPrintfCallback at src/jsvar.c. |
1Qualcomm 232315 5g Iot Modem Firmware Aqt1000 FirmwareAr8035 Firmware+229 moreJun 17, 2026 Feb 6, 2024 N/A· v4 7.5 HIGH· v3 N/A· v2 Transient DOS in WLAN Firmware when the length of received beacon is less than length of ieee802.11 beacon frame. |
1Qualcomm 101Aqt1000 Firmware Ar8035 FirmwareC V2x 9150 Firmware+98 moreJun 17, 2026 Feb 6, 2024 N/A· v4 7.1 HIGH· v3 N/A· v2 Information disclosure in Audio while accessing AVCS services from ADSP payload. |
1Qualcomm 88Aqt1000 Firmware Ar8035 FirmwareC V2x 9150 Firmware+85 moreJun 17, 2026 Feb 6, 2024 N/A· v4 5.5 MEDIUM· v3 N/A· v2 Transient DOS in Audio when invoking callback function of ASM driver. |
1Qualcomm 45Ar8035 Firmware Fastconnect 6700 FirmwareFastconnect 6900 Firmware+42 moreJun 17, 2026 Feb 6, 2024 N/A· v4 5.5 MEDIUM· v3 N/A· v2 Transient DOS in Core when DDR memory check is called while DDR is not initialized. |
1Qualcomm 45Ar8035 Firmware Fastconnect 6700 FirmwareFastconnect 6900 Firmware+42 moreJun 17, 2026 Feb 6, 2024 N/A· v4 9.1 CRITICAL· v3 N/A· v2 Information disclosure in Modem while processing SIB5. |
Improper input validation in bootloader prior to SMR Feb-2024 Release 1 allows local privileged attackers to cause an Out-Of-Bounds read. |
Out-of-bounds Read in padmd_vld_ac_prog_refine of libpadm.so prior to SMR Feb-2024 Release 1 allows local attackers access unauthorized information. |
1Silabs 1Gecko Software Development Kit Jun 17, 2026 Feb 2, 2024 N/A· v4 7.5 HIGH· v3 N/A· v2 A potential buffer overflow exists in the Bluetooth LE HCI CPC sample application in the Gecko SDK which may result in a denial of service or remote code execution |
in OpenHarmony v3.2.4 and prior versions allow a local attacker causes information leak through out-of-bounds Read.
|
in OpenHarmony v3.2.4 and prior versions allow a local attacker causes information leak through out-of-bounds Read.
|
Graphviz 2.36.0 through 9.x before 10.0.1 has an out-of-bounds read via a crafted config6a file. NOTE: exploitability may be uncommon because this file is typically owned by root. |
2Fedoraproject Redhat3Enterprise Linux FedoraShimJun 17, 2026 Jan 29, 2024 N/A· v4 5.1 MEDIUM· v3 N/A· v2 A flaw was found in the MZ binary format in Shim. An out-of-bounds read may occur, leading to a crash or possible exposure of sensitive data during the system's boot phase. |
2Fedoraproject Redhat3Enterprise Linux FedoraShimJun 17, 2026 Jan 29, 2024 N/A· v4 5.5 MEDIUM· v3 N/A· v2 An out-of-bounds read flaw was found in Shim when it tried to validate the SBAT information. This issue may expose sensitive data during the system's boot phase. |
2Fedoraproject Redhat3Enterprise Linux FedoraShimJun 17, 2026 Jan 29, 2024 N/A· v4 5.5 MEDIUM· v3 N/A· v2 An out-of-bounds read flaw was found in Shim due to the lack of proper boundary verification during the load of a PE binary. This flaw allows an attacker to load a crafted PE binary, triggering the issue and crashing Shi...Show more |
Vba32 Antivirus v3.36.0 is vulnerable to a Denial of Service vulnerability by triggering the 0x2220A7 IOCTL code of the Vba32m64.sys driver. |
Buffer over-read vulnerability in the dtls_sha256_update function in Contiki-NG tinyDTLS through master branch 53a0d97 allows remote attackers to cause a denial of service via crafted data packet. |