CWE-125
9,136 CVEs • Abstraction: Base
Out-of-bounds Read
The product reads data past the end, or before the beginning, of the intended buffer.
CVEs (9,136)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Qualcomm 330Apq8053 Apq8064auApq8096au+327 moreJun 17, 2026 Jan 21, 2021 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 Buffer over-read while parsing RPS due to lack of check of input validation on values received from user side. in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industri...Show more |
1Qualcomm 404Apq8009 Apq8009wApq8017+401 moreJun 17, 2026 Jan 21, 2021 N/A· v4 7.0 HIGH· v3 6.9 MEDIUM· v2 Arbitrary read and write to kernel addresses by temporarily overwriting ring buffer pointer and creating a race condition. in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdra...Show more |
1Qualcomm 414Apq8009 Apq8009wApq8017+411 moreJun 17, 2026 Jan 21, 2021 N/A· v4 9.1 CRITICAL· v3 6.4 MEDIUM· v2 Buffer over-read while UE process invalid DL ROHC packet for decompression due to lack of check of size of compresses packet in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapd...Show more |
1Qualcomm 506Apq8009 Apq8009wApq8017+503 moreJun 17, 2026 Jan 21, 2021 N/A· v4 9.8 CRITICAL· v3 10.0 HIGH· v2 Buffer Over-read in audio driver while using malloc management function due to not returning NULL for zero sized memory requirement in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT...Show more |
1Qualcomm 471Apq8009 Firmware Apq8017 FirmwareApq8053 Firmware+468 moreJun 17, 2026 Jan 21, 2021 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 Buffer over-read can happen when the buffer length received from response handlers is more than the size of the payload in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Con...Show more |
NVIDIA SHIELD TV, all versions prior to 8.2.2, contains a vulnerability in the NVDEC component, in which an attacker can read from or write to a memory location that is outside the intended boundary of the buffer, which...Show more |
3Debian FedoraprojectLibsdl3Debian Linux FedoraSimple Directmedia LayerJun 17, 2026 Jan 19, 2021 N/A· v4 5.4 MEDIUM· v3 5.8 MEDIUM· v2 SDL (Simple DirectMedia Layer) through 2.0.12 has a heap-based buffer over-read in Blit_3or4_to_3or4__inversed_rgb in video/SDL_blit_N.c via a crafted .BMP file. |
1Huawei 9Nip6800 Firmware S12700 FirmwareS2700 Firmware+6 moreJun 17, 2026 Jan 13, 2021 N/A· v4 6.5 MEDIUM· v3 3.3 LOW· v2 There is an out-of-bounds read vulnerability in several products. The software reads data past the end of the intended buffer when parsing certain crafted DHCP messages. Successful exploit could cause certain service abn...Show more |
1Huawei 4Cloudengine 12800 Firmware Cloudengine 5800 FirmwareCloudengine 6800 Firmware+1 moreJun 17, 2026 Jan 13, 2021 N/A· v4 6.5 MEDIUM· v3 3.3 LOW· v2 There is an out-of-bounds read vulnerability in Huawei CloudEngine products. The software reads data past the end of the intended buffer when parsing certain PIM message, an adjacent attacker could send crafted PIM messa...Show more |
1Siemens 2Jt2go Teamcenter VisualizationJun 17, 2026 Jan 12, 2021 N/A· v4 8.8 HIGH· v3 6.8 MEDIUM· v2 A vulnerability has been identified in JT2Go (All versions < V13.1.0), Teamcenter Visualization (All versions < V13.1.0). Affected applications lack proper validation of user-supplied data when parsing of CG4 files. This...Show more |
1Sap 13d Visual Enterprise Viewer Jun 17, 2026 Jan 12, 2021 N/A· v4 8.8 HIGH· v3 6.8 MEDIUM· v2 SAP 3D Visual Enterprise Viewer, version - 9, allows a user to open manipulated PCX file received from untrusted sources which results in crashing of the application and becoming temporarily unavailable until the user re...Show more |
2Fedoraproject Python2Fedora PillowJun 17, 2026 Jan 12, 2021 N/A· v4 5.4 MEDIUM· v3 5.8 MEDIUM· v2 In Pillow before 8.1.0, SGIRleDecode has a 4-byte buffer over-read when decoding crafted SGI RLE image files because offsets and length tables are mishandled. |
3Debian FedoraprojectPython3Debian Linux FedoraPillowJun 17, 2026 Jan 12, 2021 N/A· v4 7.1 HIGH· v3 5.8 MEDIUM· v2 In Pillow before 8.1.0, PcxDecode has a buffer over-read when decoding a crafted PCX file because the user-supplied stride value is trusted for buffer calculations. |
Delta Electronics CNCSoft-B Versions 1.0.0.2 and prior is vulnerable to an out-of-bounds read while processing project files, which may allow an attacker to execute arbitrary code. |
1K7computing 4Antivrius Enterprise SecurityTotal Security+1 moreNov 21, 2024 Jan 11, 2021 N/A· v4 5.5 MEDIUM· v3 4.3 MEDIUM· v2 A Memory Leak issue was discovered in K7Computing K7AntiVirus Premium 15.01.00.53. |
Out of bounds read in networking in Google Chrome prior to 87.0.4280.88 allowed a remote attacker who had compromised the renderer process to obtain potentially sensitive information from process memory via a crafted HTM...Show more |
NVIDIA vGPU manager contains a vulnerability in the vGPU plugin, in which an input offset is not validated, which may lead to a buffer overread, which in turn may cause tampering of data, information disclosure, or denia...Show more |
The Eaton's easySoft software v7.xx prior to v7.22 are susceptible to Out-of-bounds remote code execution vulnerability. A malicious entity can execute a malicious code or make the application crash by tricking user to u...Show more |
1Foxitsoftware 2Phantompdf ReaderNov 21, 2024 Jan 7, 2021 N/A· v4 8.1 HIGH· v3 6.8 MEDIUM· v2 Foxit Reader before 9.5, and PhantomPDF before 8.3.10 and 9.x before 9.5, has a proxyDoAction race condition that can cause a stack-based buffer overflow or an out-of-bounds read, a different issue than CVE-2018-20310 be...Show more |
1Foxitsoftware 2Phantompdf ReaderNov 21, 2024 Jan 7, 2021 N/A· v4 8.1 HIGH· v3 6.8 MEDIUM· v2 Foxit Reader before 9.5, and PhantomPDF before 8.3.10 and 9.x before 9.5, has a proxyCheckLicence race condition that can cause a stack-based buffer overflow or an out-of-bounds read. |