CWE-125
9,136 CVEs • Abstraction: Base
Out-of-bounds Read
The product reads data past the end, or before the beginning, of the intended buffer.
CVEs (9,136)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Microsoft 3Windows 10 Windows Server 2016Windows Server 2019Jun 17, 2026 Jun 9, 2020 N/A· v4 6.5 MEDIUM· v3 4.3 MEDIUM· v2 An information disclosure vulnerability exists when Media Foundation improperly handles objects in memory, aka 'Media Foundation Information Disclosure Vulnerability'. |
An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in macOS Catalina 10.15.5. A malicious application may be able to break out of its sandbox. |
An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in iOS 13.5 and iPadOS 13.5. A remote attacker may be able to cause arbitrary code execution. |
1Apple 4Ipados Iphone OsMac Os X+1 moreJun 17, 2026 Jun 9, 2020 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in iOS 13.5 and iPadOS 13.5, macOS Catalina 10.15.5, tvOS 13.4.5. A remote attacker may be able to leak memory. |
An out-of-bounds read was addressed with improved input validation. This issue is fixed in macOS Catalina 10.15.5. A malicious application may be able to determine kernel memory layout. |
An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in macOS Catalina 10.15.5. A malicious application may be able to determine kernel memory layout. |
1Apple 5Ipados Iphone OsMac Os X+2 moreJun 17, 2026 Jun 9, 2020 N/A· v4 7.8 HIGH· v3 9.3 HIGH· v2 An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in iOS 13.5 and iPadOS 13.5, macOS Catalina 10.15.5, tvOS 13.4.5, watchOS 6.2.5. Processing a maliciously crafted audio file may lead...Show more |
1Apple 7Icloud IpadosIphone Os+4 moreJun 17, 2026 Jun 9, 2020 N/A· v4 8.1 HIGH· v3 5.8 MEDIUM· v2 An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in iOS 13.5 and iPadOS 13.5, macOS Catalina 10.15.5, tvOS 13.4.5, watchOS 6.2.5, iTunes 12.10.7 for Windows, iCloud for Windows 11.2,...Show more |
1Apple 5Ipados Iphone OsMac Os X+2 moreJun 17, 2026 Jun 9, 2020 N/A· v4 7.8 HIGH· v3 9.3 HIGH· v2 An out-of-bounds read was addressed with improved input validation. This issue is fixed in iOS 13.5 and iPadOS 13.5, macOS Catalina 10.15.5, tvOS 13.4.5, watchOS 6.2.5. Processing a maliciously crafted audio file may lea...Show more |
Pengutronix Barebox through v2020.05.0 has an out-of-bounds read in nfs_read_reply in net/nfs.c because a field of an incoming network packet is directly used as a length field without any bounds check. |
ImageMagick 7.0.9-27 through 7.0.10-17 has a heap-based buffer over-read in BlobToStringInfo in MagickCore/string.c during TIFF image decoding. |
hw/pci/pci.c in QEMU 4.2.0 allows guest OS users to trigger an out-of-bounds access by providing an address near the end of the PCI configuration space. |
2Libjpeg Turbo Mozilla2Libjpeg Turbo MozjpegJun 17, 2026 Jun 3, 2020 N/A· v4 8.1 HIGH· v3 5.8 MEDIUM· v2 libjpeg-turbo 2.0.4, and mozjpeg 4.0.0, has a heap-based buffer over-read in get_rgb_row() in rdppm.c via a malformed PPM input file. |
1Qualcomm 41Apq8009 Firmware Apq8053 FirmwareApq8096au Firmware+38 moreJun 17, 2026 Jun 2, 2020 N/A· v4 7.1 HIGH· v3 3.6 LOW· v2 When attempting to create a new XFRM policy, a stack out-of-bounds read will occur if the user provides a template where the mode is set to a value that does not resolve to a valid XFRM mode in Snapdragon Auto, Snapdrago...Show more |
1Qualcomm 30Kamorta Firmware Mdm9150 FirmwareMdm9205 Firmware+27 moreJun 17, 2026 Jun 2, 2020 N/A· v4 7.1 HIGH· v3 3.6 LOW· v2 Out of bound read in Fingerprint application due to requested data is being used without length check in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, S...Show more |
1Qualcomm 23Kamorta Firmware Mdm9205 FirmwareNicobar Firmware+20 moreJun 17, 2026 Jun 2, 2020 N/A· v4 7.1 HIGH· v3 3.6 LOW· v2 Out of bound read in in fingerprint application due to requested data assigned to a local buffer without length check in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon I...Show more |
1Qualcomm 22Apq8053 Firmware Apq8098 FirmwareMdm9206 Firmware+19 moreJun 17, 2026 Jun 2, 2020 N/A· v4 7.1 HIGH· v3 3.6 LOW· v2 Out of bound read in adm call back function due to incorrect boundary check for payload in command response in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, S...Show more |
1Qualcomm 23Apq8009 Firmware Apq8053 FirmwareApq8098 Firmware+20 moreJun 17, 2026 Jun 2, 2020 N/A· v4 7.1 HIGH· v3 3.6 LOW· v2 Buffer over-read in ADSP parse function due to lack of check for availability of sufficient data payload received in command response in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial...Show more |
1Huawei 17Ar120 S Firmware Ar1200 S FirmwareAr1200 Firmware+14 moreJun 17, 2026 Jun 1, 2020 N/A· v4 6.5 MEDIUM· v3 4.0 MEDIUM· v2 There is a few bytes out-of-bounds read vulnerability in some Huawei products. The software reads data past the end of the intended buffer when parsing certain message, an authenticated attacker could exploit this vulner...Show more |
3Debian FreerdpOpensuse3Debian Linux FreerdpLeapJun 17, 2026 May 29, 2020 N/A· v4 5.5 MEDIUM· v3 6.0 MEDIUM· v2 In FreeRDP before 2.1.0, there is an out-of-bound read in irp functions (parallel_process_irp_create, serial_process_irp_create, drive_process_irp_write, printer_process_irp_write, rdpei_recv_pdu, serial_process_irp_writ...Show more |