CWE-125
9,172 CVEs • Abstraction: Base
Out-of-bounds Read
The product reads data past the end, or before the beginning, of the intended buffer.
CVEs (9,172)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
2Debian Openvswitch2Debian Linux OpenvswitchJun 17, 2026 Jan 10, 2023 N/A· v4 9.8 CRITICAL· v3 N/A· v2 An out-of-bounds read in Organization Specific TLV was found in various versions of OpenvSwitch. |
A denial of service vulnerability exists in the cfg_server cm_processConnDiagPktList opcode of Asus RT-AX82U 3.0.0.4.386_49674-ge182230 router's configuration service. A specially-crafted network packet can lead to denia...Show more |
1Qualcomm 193Aqt1000 Firmware Ar8031 FirmwareAr8035 Firmware+190 moreJun 17, 2026 Jan 9, 2023 N/A· v4 5.5 MEDIUM· v3 N/A· v2 Information disclosure due to buffer overread in Core |
1Qualcomm 160Aqt1000 Firmware Ar8031 FirmwareAr8035 Firmware+157 moreJun 17, 2026 Jan 9, 2023 N/A· v4 5.5 MEDIUM· v3 N/A· v2 Information disclosure due to buffer overread in Core |
1Qualcomm 281Apq8009 Firmware Apq8017 FirmwareApq8064au Firmware+278 moreJun 17, 2026 Jan 9, 2023 N/A· v4 6.5 MEDIUM· v3 N/A· v2 Transient DOS due to buffer over-read in WLAN while processing 802.11 management frames. |
1Qualcomm 278Apq8009 Firmware Apq8017 FirmwareApq8064au Firmware+275 moreJun 17, 2026 Jan 9, 2023 N/A· v4 6.5 MEDIUM· v3 N/A· v2 Transient DOS due to buffer over-read in WLAN while parsing WLAN CSA action frames. |
1Qualcomm 176Aqt1000 Firmware Ar8035 FirmwareAr9380 Firmware+173 moreJun 17, 2026 Jan 9, 2023 N/A· v4 6.5 MEDIUM· v3 N/A· v2 Information disclosure due to buffer over-read in WLAN while parsing BTM action frame. |
1Qualcomm 134Ar8035 Firmware Ar9380 FirmwareCsr8811 Firmware+131 moreJun 17, 2026 Jan 9, 2023 N/A· v4 6.5 MEDIUM· v3 N/A· v2 Information disclosure due to buffer over-read in WLAN while WLAN frame parsing due to missing frame length check. |
1Qualcomm 92Apq8009 Firmware Ar8031 FirmwareCsra6620 Firmware+89 moreJun 17, 2026 Jan 9, 2023 N/A· v4 6.5 MEDIUM· v3 N/A· v2 Information disclosure due to buffer over-read in Bluetooth HOST while processing GetFolderItems and GetItemAttribute Cmds from peer device. |
1Qualcomm 161Aqt1000 Firmware Ar8035 FirmwareAr9380 Firmware+158 moreJun 17, 2026 Jan 9, 2023 N/A· v4 5.5 MEDIUM· v3 N/A· v2 Transient DOS due to buffer over-read in WLAN while parsing corrupted NAN frames. |
1Qualcomm 161Aqt1000 Firmware Ar8035 FirmwareAr9380 Firmware+158 moreJun 17, 2026 Jan 9, 2023 N/A· v4 5.5 MEDIUM· v3 N/A· v2 Information disclosure due to buffer over-read in WLAN while handling IBSS beacons frame. |
1Qualcomm 46Apq8009 Firmware Apq8009w FirmwareApq8064au Firmware+43 moreJun 17, 2026 Jan 9, 2023 N/A· v4 4.6 MEDIUM· v3 N/A· v2 Denial of service while processing fastboot flash command on mmc due to buffer over read |
Bentley Systems MicroStation Connect versions 10.17.0.209 and prior are vulnerable to an Out-of-Bounds Read when when parsing DGN files, which may allow an attacker to crash the product, disclose sensitive information,...Show more |
The HW_KEYMASTER module has a problem in releasing memory.Successful exploitation of this vulnerability may result in out-of-bounds memory access. |
The HW_KEYMASTER module has a problem in releasing memory.Successful exploitation of this vulnerability may result in out-of-bounds memory access. |
A buffer over-read vulnerability was reported in the ThinkPadX13s BIOS LenovoRemoteConfigUpdateDxe driver that could allow a local attacker with elevated privileges to cause information disclosure. |
A buffer over-read vulnerability was reported in the ThinkPadX13s BIOS driver that could allow a local attacker with elevated privileges to cause information disclosure. |
A buffer over-read vulnerability was reported in the ThinkPadX13s BIOS LenovoSetupConfigDxe driver that could allow a local attacker with elevated privileges to cause information disclosure. |
A buffer over-read vulnerability was reported in the ThinkPadX13s BIOS PersistenceConfigDxe driver that could allow a local attacker with elevated privileges to cause information disclosure. |
NASM v2.16 was discovered to contain a segmentation violation in the component ieee_write_file at /output/outieee.c. |