← Back
CWE-125

9,626 CVEs • Abstraction: Base

Out-of-bounds Read

The product reads data past the end, or before the beginning, of the intended buffer.

JSON object

Loading...

CVEs (9,626)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Openbsd
1Openbsd
Apr 16, 2026
May 4, 2004
N/A· v4
N/A· v3
5.0 MEDIUM· v2
isakmpd in OpenBSD 3.4 and earlier allows remote attackers to cause a denial of service (crash) via an ISAKMP packet with a delete payload containing a large number of SPIs, which triggers an out-of-bounds read error, as...Show more
isakmpd in OpenBSD 3.4 and earlier allows remote attackers to cause a denial of service (crash) via an ISAKMP packet with a delete payload containing a large number of SPIs, which triggers an out-of-bounds read error, as demonstrated by the Striker ISAKMP Protocol Test Suite.Show less
1Tcpdump
1Tcpdump
Apr 16, 2026
May 4, 2004
N/A· v4
N/A· v3
5.0 MEDIUM· v2
Integer underflow in the isakmp_id_print for TCPDUMP 3.8.1 and earlier allows remote attackers to cause a denial of service (crash) via an ISAKMP packet with an Identification payload with a length that becomes less than...Show more
Integer underflow in the isakmp_id_print for TCPDUMP 3.8.1 and earlier allows remote attackers to cause a denial of service (crash) via an ISAKMP packet with an Identification payload with a length that becomes less than 8 during byte order conversion, which causes an out-of-bounds read, as demonstrated by the Striker ISAKMP Protocol Test Suite.Show less
1Tcpdump
1Tcpdump
Apr 16, 2026
May 4, 2004
N/A· v4
N/A· v3
5.0 MEDIUM· v2
TCPDUMP 3.8.1 and earlier allows remote attackers to cause a denial of service (crash) via ISAKMP packets containing a Delete payload with a large number of SPI's, which causes an out-of-bounds read, as demonstrated by t...Show more
TCPDUMP 3.8.1 and earlier allows remote attackers to cause a denial of service (crash) via ISAKMP packets containing a Delete payload with a large number of SPI's, which causes an out-of-bounds read, as demonstrated by the Striker ISAKMP Protocol Test Suite.Show less
1Qualcomm
1Qpopper
Apr 16, 2026
Jul 14, 1998
N/A· v4
9.8 CRITICAL· v3
10.0 HIGH· v2
Buffer overflow in POP servers based on BSD/Qualcomm's qpopper allows remote attackers to gain root access using a long PASS command.
1Sgi
1Irix
Apr 16, 2026
Jul 16, 1997
N/A· v4
8.4 HIGH· v3
7.2 HIGH· v2
root privileges via buffer overflow in ordist command on SGI IRIX systems.
6Bsdi
FreebsdHp+3 more
7Aix
Bsd OsFreebsd+4 more
Apr 16, 2026
Jul 3, 1996
N/A· v4
7.8 HIGH· v3
7.2 HIGH· v2
Local user gains root privileges via buffer overflow in rdist, via expstr() function.