CWE-125
9,136 CVEs • Abstraction: Base
Out-of-bounds Read
The product reads data past the end, or before the beginning, of the intended buffer.
CVEs (9,136)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
In decrypt and decrypt_1_2 of CryptoPlugin.cpp, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with no additional execution privileges needed. User i...Show more |
1Vmware 3Horizon Client Workstation PlayerWorkstation ProJun 17, 2026 Sep 16, 2020 N/A· v4 6.5 MEDIUM· v3 2.1 LOW· v2 VMware Workstation (15.x) and Horizon Client for Windows (5.x before 5.4.4) contain an information disclosure vulnerability due to an integer overflow issue in Cortado ThinPrint component. A malicious actor with normal a...Show more |
1Vmware 3Horizon Client Workstation PlayerWorkstation ProJun 17, 2026 Sep 16, 2020 N/A· v4 6.1 MEDIUM· v3 3.6 LOW· v2 VMware Workstation (15.x) and Horizon Client for Windows (5.x before 5.4.4) contain an out-of-bounds read vulnerability in Cortado ThinPrint component (JPEG2000 parser). A malicious actor with normal access to a virtual...Show more |
1Vmware 3Horizon Client Workstation PlayerWorkstation ProJun 17, 2026 Sep 16, 2020 N/A· v4 6.1 MEDIUM· v3 3.6 LOW· v2 VMware Workstation (15.x) and Horizon Client for Windows (5.x before 5.4.4) contain an out-of-bounds read vulnerability in Cortado ThinPrint component (EMR STRETCHDIBITS parser). A malicious actor with normal access to a...Show more |
1Vmware 3Horizon Client Workstation PlayerWorkstation ProJun 17, 2026 Sep 16, 2020 N/A· v4 6.1 MEDIUM· v3 3.6 LOW· v2 VMware Workstation (15.x) and Horizon Client for Windows (5.x before 5.4.4) contain an out-of-bounds read vulnerability in Cortado ThinPrint component (EMF Parser). A malicious actor with normal access to a virtual machi...Show more |
4Canonical DebianLinux+1 more4Debian Linux Linux KernelStarwind Virtual San+1 moreJun 17, 2026 Sep 15, 2020 N/A· v4 5.5 MEDIUM· v3 2.1 LOW· v2 A memory out-of-bounds read flaw was found in the Linux kernel before 5.9-rc2 with the ext3/ext4 file system, in the way it accesses a directory with broken indexing. This flaw allows a local user to crash the system if...Show more |
It is possible for an unauthenticated remote DCOM websocket connection to crash the Command Centre service due to an out-of-bounds buffer access. Affected versions are v8.20 prior to v8.20.1166(MR3), v8.10 prior to v8.10...Show more |
<p>An information disclosure vulnerability exists when Microsoft Office software reads out of bound memory due to an uninitialized variable, which could disclose the contents of memory. An attacker who successfully explo...Show more |
Adobe FrameMaker version 2019.0.6 (and earlier versions) has an out-of-bounds read vulnerability that could be exploited to read past the end of an allocated buffer, possibly resulting in a crash or disclosure of sensiti...Show more |
An out-of-bounds read/write vulnerability when executing lazily compiled inner generator functions in Facebook Hermes prior to commit 091835377369c8fd5917d9b87acffa721ad2a168 allows attackers to potentially execute arbit...Show more |
1Sap 13d Visual Enterprise Viewer Jun 17, 2026 Sep 9, 2020 N/A· v4 4.3 MEDIUM· v3 4.3 MEDIUM· v2 SAP 3D Visual Enterprise Viewer, version - 9, allows a user to open manipulated TGA file received from untrusted sources which results in crashing of the application and becoming temporarily unavailable until the user re...Show more |
1Sap 13d Visual Enterprise Viewer Jun 17, 2026 Sep 9, 2020 N/A· v4 4.3 MEDIUM· v3 4.3 MEDIUM· v2 SAP 3D Visual Enterprise Viewer, version - 9, allows a user to open manipulated EPS file received from untrusted sources which results in crashing of the application and becoming temporarily unavailable until the user re...Show more |
1Sap 13d Visual Enterprise Viewer Jun 17, 2026 Sep 9, 2020 N/A· v4 4.3 MEDIUM· v3 4.3 MEDIUM· v2 SAP 3D Visual Enterprise Viewer, version - 9, allows a user to open manipulated 3DM file received from untrusted sources which results in crashing of the application and becoming temporarily unavailable until the user re...Show more |
1Sap 13d Visual Enterprise Viewer Jun 17, 2026 Sep 9, 2020 N/A· v4 4.3 MEDIUM· v3 4.3 MEDIUM· v2 SAP 3D Visual Enterprise Viewer, version - 9, allows a user to open manipulated 3DM file received from untrusted sources which results in crashing of the application and becoming temporarily unavailable until the user re...Show more |
1Qualcomm 8Nicobar Firmware Qcs405 FirmwareSaipan Firmware+5 moreJun 17, 2026 Sep 9, 2020 N/A· v4 5.5 MEDIUM· v3 2.1 LOW· v2 Information can leak into userspace due to improper transfer of data from kernel to userspace in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voic...Show more |
1Qualcomm 16Kamorta Firmware Nicobar FirmwareQcs605 Firmware+13 moreJun 17, 2026 Sep 9, 2020 N/A· v4 7.1 HIGH· v3 6.6 MEDIUM· v2 u'Buffer over-read Issue in Q6 testbus framework due to diag packet length is not completely validated before accessing the field and leads to Information disclosure.' in Snapdragon Compute, Snapdragon Consumer IOT, Snap...Show more |
1Qualcomm 48Apq8009 Firmware Apq8053 FirmwareApq8096au Firmware+45 moreJun 17, 2026 Sep 8, 2020 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 u'Buffer over read occurs while processing information element from beacon due to lack of check of data received from beacon' in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer Electronics Connectivity, Snapdrag...Show more |
1Noise Java Project 1Noise Java Jun 17, 2026 Sep 4, 2020 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 An issue was discovered in Noise-Java through 2020-08-27. AESGCMOnCtrCipherState.encryptWithAd() allows out-of-bounds access. |
1Noise Java Project 1Noise Java Jun 17, 2026 Sep 4, 2020 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 An issue was discovered in Noise-Java through 2020-08-27. AESGCMFallbackCipherState.encryptWithAd() allows out-of-bounds access. |
1Noise Java Project 1Noise Java Jun 17, 2026 Sep 4, 2020 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 An issue was discovered in Noise-Java through 2020-08-27. ChaChaPolyCipherState.encryptWithAd() allows out-of-bounds access. |