CWE-125
9,161 CVEs • Abstraction: Base
Out-of-bounds Read
The product reads data past the end, or before the beginning, of the intended buffer.
CVEs (9,161)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
An out-of-bounds read was addressed with improved input validation. This issue is fixed in macOS Ventura 13.3. Processing an image may result in disclosure of process memory. |
3Debian FedoraprojectGoogle3Chrome Debian LinuxFedoraJun 17, 2026 Sep 5, 2023 N/A· v4 8.1 HIGH· v3 N/A· v2 Out of bounds memory access in FedCM in Google Chrome prior to 116.0.5845.179 allowed a remote attacker who had compromised the renderer process to perform an out of bounds memory read via a crafted HTML page. (Chromium...Show more |
Out-of-bounds Read in GitHub repository gpac/gpac prior to 2.3-DEV. |
An issue was discovered in lldpd before 1.0.17. By crafting a CDP PDU packet with specific CDP_TLV_ADDRESSES TLVs, a malicious actor can remotely force the lldpd daemon to perform an out-of-bounds read on heap memory. Th...Show more |
1Qualcomm 66Csr8811 Firmware Fastconnect 6900 FirmwareFastconnect 7800 Firmware+63 moreJun 17, 2026 Sep 5, 2023 N/A· v4 7.5 HIGH· v3 N/A· v2 Transient DOS in WLAN firmware while parsing MLO (multi-link operation). |
1Qualcomm 190315 5g Firmware Aqt1000 FirmwareAr8035 Firmware+187 moreJun 17, 2026 Sep 5, 2023 N/A· v4 7.5 HIGH· v3 N/A· v2 Transient DOS in WLAN Firmware while interpreting MBSSID IE of a received beacon frame. |
1Qualcomm 4Qcs405 Firmware Qcs605 FirmwareSd845 Firmware+1 moreJun 17, 2026 Sep 5, 2023 N/A· v4 9.8 CRITICAL· v3 N/A· v2 A malformed DLC can trigger Memory Corruption in SNPE library due to out of bounds read, such as by loading an untrusted model (e.g. from a remote source). |
1Qualcomm 43Qca6390 Firmware Qca6391 FirmwareQca6426 Firmware+40 moreJun 17, 2026 Sep 5, 2023 N/A· v4 6.5 MEDIUM· v3 N/A· v2 Transient DOS in Bluetooth HOST while passing descriptor to validate the blacklisted BT keyboard. |
1Qualcomm 38Aqt1000 Firmware Qca6390 FirmwareQca6391 Firmware+35 moreJun 17, 2026 Sep 5, 2023 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption due to buffer over-read in Modem while processing SetNativeHandle RTP service. |
1Qualcomm 45Aqt1000 Firmware Qam8295p FirmwareQca6390 Firmware+42 moreJun 17, 2026 Sep 5, 2023 N/A· v4 5.5 MEDIUM· v3 N/A· v2 Information disclosure in Automotive multimedia due to buffer over-read. |
Buffer Over-read in GitHub repository gpac/gpac prior to 2.3-DEV. |
In gnss service, there is a possible out of bounds read due to improper input validation. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploi...Show more |
In gnss service, there is a possible out of bounds read due to improper input validation. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploi...Show more |
3Google LinuxfoundationOpenwrt3Android OpenwrtYoctoJun 17, 2026 Sep 4, 2023 N/A· v4 4.4 MEDIUM· v3 N/A· v2 In gnss service, there is a possible out of bounds read due to improper input validation. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploi...Show more |
In gnss service, there is a possible out of bounds read due to improper input validation. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploi...Show more |
3Google LinuxLinuxfoundation3Android Linux KernelYoctoJun 17, 2026 Sep 4, 2023 N/A· v4 4.4 MEDIUM· v3 N/A· v2 In bluetooth driver, there is a possible out of bounds read due to improper input validation. This could lead to local information leak with System execution privileges needed. User interaction is not needed for exploita...Show more |
3Google LinuxfoundationMediatek3Android Iot YoctoYoctoJun 17, 2026 Sep 4, 2023 N/A· v4 4.4 MEDIUM· v3 N/A· v2 In wlan service, there is a possible out of bounds read due to improper input validation. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploi...Show more |
In stc, there is a possible out of bounds read due to a race condition. This could lead to local escalation of privilege with System execution privileges needed. User interaction is needed for exploitation. Patch ID: ALP...Show more |
4Google LinuxLinuxfoundation+1 more4Android Iot YoctoLinux Kernel+1 moreJun 17, 2026 Sep 4, 2023 N/A· v4 6.5 MEDIUM· v3 N/A· v2 In imgsys_cmdq, there is a possible out of bounds read due to a missing valid range checking. This could lead to local escalation of privilege with System execution privileges needed. User interaction is needed for explo...Show more |
4Google LinuxLinuxfoundation+1 more4Android Iot YoctoLinux Kernel+1 moreJun 17, 2026 Sep 4, 2023 N/A· v4 4.2 MEDIUM· v3 N/A· v2 In imgsys_cmdq, there is a possible out of bounds read due to a missing valid range checking. This could lead to local denial of service with System execution privileges needed. User interaction is needed for exploitatio...Show more |