CWE-125
9,136 CVEs • Abstraction: Base
Out-of-bounds Read
The product reads data past the end, or before the beginning, of the intended buffer.
CVEs (9,136)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Qualcomm 18Apq8053 Firmware Apq8096au FirmwareIpq4019 Firmware+15 moreJun 17, 2026 Jul 30, 2020 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 Possible out of bounds read due to a missing bounds check and could lead to local information disclosure in the wifi driver with no additional execution privileges needed in Snapdragon Auto, Snapdragon Compute, Snapdrago...Show more |
1Qualcomm 9Kamorta Firmware Qcs404 FirmwareRennell Firmware+6 moreJun 17, 2026 Jul 30, 2020 N/A· v4 7.8 HIGH· v3 4.6 MEDIUM· v2 Possible buffer overflow and over read possible due to missing bounds checks for fixed limits if we consider widevine HLOS client as non-trustable in Snapdragon Auto, Snapdragon Compute, Snapdragon Mobile, Snapdragon Wir...Show more |
1Qualcomm 57Apq8009 Firmware Apq8096 FirmwareApq8096au Firmware+54 moreJun 17, 2026 Jul 30, 2020 N/A· v4 7.1 HIGH· v3 3.6 LOW· v2 Out of bounds read can happen in diag event set mask command handler when user provided length in the command request is less than expected length in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdrag...Show more |
1Adobe 2Photoshop Photoshop CcJun 17, 2026 Jul 22, 2020 N/A· v4 6.5 MEDIUM· v3 4.3 MEDIUM· v2 Adobe Photoshop versions Photoshop CC 2019, and Photoshop 2020 have an out-of-bounds read vulnerability. Successful exploitation could lead to arbitrary code execution. |
Adobe Photoshop versions Photoshop CC 2019, and Photoshop 2020 have an out-of-bounds read vulnerability. Successful exploitation could lead to arbitrary code execution. |
Adobe Prelude versions 9.0 and earlier have an out-of-bounds read vulnerability. Successful exploitation could lead to arbitrary code execution. |
Adobe Prelude versions 9.0 and earlier have an out-of-bounds read vulnerability. Successful exploitation could lead to arbitrary code execution. |
Adobe Bridge versions 10.0.3 and earlier have an out-of-bounds read vulnerability. Successful exploitation could lead to arbitrary code execution. |
3Canonical DebianLuajit3Debian Linux LuajitUbuntu LinuxJun 17, 2026 Jul 21, 2020 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 LuaJit through 2.1.0-beta3 has an out-of-bounds read because __gc handler frame traversal is mishandled. |
Lua 5.4.0 has a getobjname heap-based buffer over-read because youngcollection in lgc.c uses markold for an insufficient number of list members. |
Lua through 5.4.0 mishandles the interaction between stack resizes and garbage collection, leading to a heap-based buffer overflow, heap-based buffer over-read, or use-after-free. |
Adobe Media Encoder versions 14.2 and earlier have an out-of-bounds read vulnerability. Successful exploitation could lead to information disclosure. |
An issue was discovered in GNU LibreDWG through 0.9.3. Crafted input will lead to a heap-based buffer over-read in bit_write_TF in bits.c. |
An issue was discovered in GNU LibreDWG through 0.9.3. Crafted input will lead to a heap-based buffer over-read in dwg_encode_entity in common_entity_data.spec. |
An issue was discovered in GNU LibreDWG through 0.9.3. Crafted input will lead to a heap-based buffer over-read in decode_R13_R2000 in decode.c, a different vulnerability than CVE-2019-20011. |
1Trendmicro 4Antivirus+ 2020 Internet Security 2020Maximum Security 2020+1 moreJun 17, 2026 Jul 15, 2020 N/A· v4 7.5 HIGH· v3 7.8 HIGH· v2 An invalid memory read vulnerability in a Trend Micro Secuity 2020 (v16.0.0.1302 and below) consumer family of products' driver could allow an attacker to manipulate the specific driver to do a system call operation with...Show more |
2Opensuse Oracle2Leap Vm VirtualboxJun 17, 2026 Jul 15, 2020 N/A· v4 5.3 MEDIUM· v3 4.7 MEDIUM· v2 Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are Prior to 5.2.44, prior to 6.0.24 and prior to 6.1.12. Difficult to exploit vulnerabil...Show more |
2Opensuse Oracle2Leap Vm VirtualboxJun 17, 2026 Jul 15, 2020 N/A· v4 5.3 MEDIUM· v3 4.7 MEDIUM· v2 Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are Prior to 5.2.44, prior to 6.0.24 and prior to 6.1.12. Difficult to exploit vulnerabil...Show more |
2Opensuse Oracle2Leap Vm VirtualboxJun 17, 2026 Jul 15, 2020 N/A· v4 5.3 MEDIUM· v3 4.7 MEDIUM· v2 Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are Prior to 5.2.44, prior to 6.0.24 and prior to 6.1.12. Difficult to exploit vulnerabil...Show more |
2Opensuse Oracle2Leap Vm VirtualboxJun 17, 2026 Jul 15, 2020 N/A· v4 5.3 MEDIUM· v3 4.7 MEDIUM· v2 Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are Prior to 5.2.44, prior to 6.0.24 and prior to 6.1.12. Difficult to exploit vulnerabil...Show more |