CWE-125
9,168 CVEs • Abstraction: Base
Out-of-bounds Read
The product reads data past the end, or before the beginning, of the intended buffer.
CVEs (9,168)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
An out-of-bounds read issue was addressed with improved input validation. This issue is fixed in GarageBand for macOS 10.4.8. Parsing a maliciously crafted MIDI file may lead to an unexpected application termination or a...Show more |
An out-of-bounds read was addressed with improved input validation. This issue is fixed in macOS Ventura 13.3, tvOS 16.4, iOS 16.4 and iPadOS 16.4, watchOS 9.4. Processing a maliciously crafted image may result in disclo...Show more |
An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in tvOS 16.4, iOS 16.4 and iPadOS 16.4. Processing a maliciously crafted Bluetooth packet may result in disclosure of process memory. |
llvm-project commit a0138390 was discovered to contain a segmentation fault via the component mlir::Type::isa<mlir::LLVM::LLVMVoidType. |
llvm-project commit a0138390 was discovered to contain a segmentation fault via the component matchAndRewriteSortOp<mlir::sparse_tensor::SortOp>(mlir::sparse_tensor::SortOp. |
llvm-project commit a0138390 was discovered to contain a segmentation fault via the component mlir::spirv::TargetEnv::TargetEnv(mlir::spirv::TargetEnvAttr). |
llvm-project commit 6c01b5c was discovered to contain a segmentation fault via the component mlir::Type::getDialect(). |
llvm-project commit bd456297 was discovered to contain a segmentation fault via the component mlir::Block::getArgument. |
1Samsung 1Samsung Blockchain Keystore Jun 17, 2026 May 4, 2023 N/A· v4 5.5 MEDIUM· v3 N/A· v2 Out-of-bounds Read vulnerability while processing CMD_COLDWALLET_BTC_SET_PRV_UTXO in bc_core trustlet from Samsung Blockchain Keystore prior to version 1.3.12.1 allows local attacker to read arbitrary memory. |
1Samsung 1Samsung Blockchain Keystore Jun 17, 2026 May 4, 2023 N/A· v4 5.5 MEDIUM· v3 N/A· v2 Out-of-bounds Read vulnerability while processing BC_TUI_CMD_UPDATE_SCREEN in bc_tui trustlet from Samsung Blockchain Keystore prior to version 1.3.12.1 allows local attacker to read arbitrary memory. |
1Samsung 1Samsung Blockchain Keystore Jun 17, 2026 May 4, 2023 N/A· v4 5.5 MEDIUM· v3 N/A· v2 Out-of-bounds Read vulnerability while processing BC_TUI_CMD_SEND_RESOURCE_DATA_ARRAY command in bc_tui trustlet from Samsung Blockchain Keystore prior to version 1.3.12.1 allows local attacker to read arbitrary memory. |
2Debian Frrouting2Debian Linux FrroutingJun 17, 2026 May 3, 2023 N/A· v4 6.5 MEDIUM· v3 N/A· v2 An out-of-bounds read exists in the BGP daemon of FRRouting FRR through 8.4. When sending a malformed BGP OPEN message that ends with the option length octet (or the option length word, in case of an extended OPEN messag...Show more |
2Debian Frrouting2Debian Linux FrroutingJun 17, 2026 May 3, 2023 N/A· v4 6.5 MEDIUM· v3 N/A· v2 An issue was discovered in bgpd in FRRouting (FRR) through 8.4. By crafting a BGP OPEN message with an option of type 0xff (Extended Length from RFC 9072), attackers may cause a denial of service (assertion failure and d...Show more |
2Debian Frrouting2Debian Linux FrroutingJun 17, 2026 May 3, 2023 N/A· v4 6.5 MEDIUM· v3 N/A· v2 An issue was discovered in bgpd in FRRouting (FRR) through 8.4. By crafting a BGP OPEN message with an option of type 0xff (Extended Length from RFC 9072), attackers may cause a denial of service (assertion failure and d...Show more |
Insufficient length checks in the ShapeShift KeepKey hardware wallet firmware before 7.7.0 allow a global buffer overflow via crafted messages. Flaws in cf_confirmExecTx() in ethereum_contracts.c can be used to reveal ar...Show more |
1Qualcomm 99Aqt1000 Firmware Ar8035 FirmwareQam8295p Firmware+96 moreJun 17, 2026 May 2, 2023 N/A· v4 5.5 MEDIUM· v3 N/A· v2 Information disclosure due to buffer over-read in Trusted Execution Environment while QRKS report generation. |
1Qualcomm 139205 Lte Modem Firmware 9206 Lte Modem Firmware9207 Lte Modem Firmware+10 moreJun 17, 2026 May 2, 2023 N/A· v4 7.5 HIGH· v3 N/A· v2 Information disclosure due to buffer over-read in Modem while parsing DNS hostname. |
Contiki-NG is an operating system for Internet of Things devices. An off-by-one error can be triggered in the Antelope database management system in the Contiki-NG operating system in versions 4.8 and prior. The problem...Show more |
VMware Workstation and Fusion contain an out-of-bounds read vulnerability that exists in the functionality for sharing host Bluetooth devices with the virtual machine. |
NVIDIA CUDA toolkit for Linux and Windows contains a vulnerability in cuobjdump, where an attacker may cause an out-of-bounds read by tricking a user into running cuobjdump on a malformed input file. A successful exploit...Show more |