CWE-129
603 CVEs • Abstraction: Variant • Likelihood of Exploit: High
Improper Validation of Array Index
The product uses untrusted input when calculating or using an array index, but the product does not validate or incorrectly validates the index to ensure the index references a valid position within the array.
CVEs (603)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Qualcomm 48Apq8009 Firmware Apq8053 FirmwareApq8096au Firmware+45 moreJun 17, 2026 Jun 2, 2020 N/A· v4 7.8 HIGH· v3 4.6 MEDIUM· v2 Possibility of out of bound access while processing the responses from video firmware in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile...Show more |
3Debian FreerdpOpensuse3Debian Linux FreerdpLeapJun 17, 2026 May 29, 2020 N/A· v4 2.7 LOW· v3 4.0 MEDIUM· v2 In FreeRDP less than or equal to 2.0.0, an outside controlled array index is used unchecked for data used as configuration for sound backend (alsa, oss, pulse, ...). The most likely outcome is a crash of the client insta...Show more |
Advantech WebAccess Node, Version 8.4.4 and prior, Version 9.0.0. An improper validation vulnerability exists that could allow an attacker to inject specially crafted input into memory where it can be executed. |
1Qualcomm 51Apq8053 Firmware Apq8096 FirmwareApq8096au Firmware+48 moreJun 17, 2026 Apr 16, 2020 N/A· v4 7.8 HIGH· v3 7.2 HIGH· v2 Possible out of bound array access as there is no check on carrier index passed in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables in APQ80...Show more |
This vulnerability allows local attackers to disclose information on affected installations of Parallels Desktop 15.1.2-47123. An attacker must first obtain the ability to execute low-privileged code on the target system...Show more |
This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop 15.1.2-47123. An attacker must first obtain the ability to execute low-privileged code on the target system...Show more |
NVIDIA Virtual GPU Manager, all versions, contains a vulnerability in the vGPU plugin in which an input index value is incorrectly validated which may lead to denial of service. |
1Qualcomm 54Apq8009 Firmware Apq8017 FirmwareApq8053 Firmware+51 moreJun 17, 2026 Mar 5, 2020 N/A· v4 9.8 CRITICAL· v3 10.0 HIGH· v2 Stack overflow can occur when SDP is received with multiple payload types in the FMTP attribute of a video M line in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT...Show more |
1Qualcomm 3Qcs605 Firmware Sdm439 FirmwareSdx24 FirmwareJun 17, 2026 Feb 7, 2020 N/A· v4 7.8 HIGH· v3 7.2 HIGH· v2 Out of bound access while allocating memory for an array in camera due to improper validation of elements parameters in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer Electronics Connectivity, Snapdragon Consum...Show more |
1Qualcomm 6Qcs605 Firmware Sdm439 FirmwareSdm630 Firmware+3 moreJun 17, 2026 Feb 7, 2020 N/A· v4 7.8 HIGH· v3 7.2 HIGH· v2 Out of bound access due to access of uninitialized memory segment in an array of pointers while normal camera open close in Snapdragon Consumer IOT, Snapdragon Mobile in QCS605, SDM439, SDM630, SDM636, SDM660, SDX24 |
1Qualcomm 47Apq8009 Firmware Apq8017 FirmwareApq8053 Firmware+44 moreJun 17, 2026 Feb 7, 2020 N/A· v4 9.8 CRITICAL· v3 10.0 HIGH· v2 Out of bound access while parsing dts atom, which is non-standard as it does not have valid number of tracks in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial...Show more |
1Dell 3Emc Unity Operating Environment Emc Unity Xt Operating EnvironmentEmc Unityvsa Operating EnvironmentJun 17, 2026 Feb 6, 2020 N/A· v4 7.5 HIGH· v3 7.8 HIGH· v2 Dell EMC Unity, Dell EMC Unity XT, and Dell EMC UnityVSA versions prior to 5.0.2.0.5.009 contain a Denial of Service vulnerability on NAS Server SSH implementation that is used to provide SFTP service on a NAS server. A...Show more |
A Denial of Service vulnerability exists in the WRITE_C function in the msg_server.exe module in SAP NetWeaver 2004s, 7.01 SR1, 7.02 SP06, and 7.30 SP04 when sending a crafted SAP Message Server packet to TCP ports 36NN...Show more |
1Qualcomm 10Apq8064 Firmware Apq8096au FirmwareIpq4019 Firmware+7 moreJun 17, 2026 Jan 21, 2020 N/A· v4 7.8 HIGH· v3 7.2 HIGH· v2 Possible buffer overflow issue in error processing due to improper validation of array index value in Snapdragon Auto, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Sna...Show more |
1Qualcomm 40Apq8009 Firmware Apq8017 FirmwareApq8053 Firmware+37 moreJun 17, 2026 Jan 21, 2020 N/A· v4 9.8 CRITICAL· v3 10.0 HIGH· v2 Buffer overflow can occur while processing clip due to lack of check of object size before parsing in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snap...Show more |
Array index error in smal_decode_segment function in LibRaw before 0.17.1 allows context-dependent attackers to cause memory errors and possibly execute arbitrary code via vectors related to indexes. |
1Apple 6Icloud Iphone OsItunes+3 moreJun 17, 2026 Dec 18, 2019 N/A· v4 8.8 HIGH· v3 6.8 MEDIUM· v2 Multiple memory corruption issues were addressed with improved memory handling. This issue is fixed in iOS 12.3, macOS Mojave 10.14.5, tvOS 12.3, Safari 12.1.1, iTunes for Windows 12.9.5, iCloud for Windows 7.12. Process...Show more |
1Qualcomm 16Apq8096au Firmware Ipq4019 FirmwareIpq8064 Firmware+13 moreJun 17, 2026 Dec 18, 2019 N/A· v4 7.8 HIGH· v3 7.2 HIGH· v2 Out of bound access can occur while processing firmware event due to lack of validation of WMI message received from firmware in Snapdragon Auto, Snapdragon Consumer Electronics Connectivity, Snapdragon Industrial IOT, S...Show more |
1Qualcomm 13Apq8096au Firmware Ipq4019 FirmwareIpq8064 Firmware+10 moreJun 17, 2026 Dec 18, 2019 N/A· v4 7.8 HIGH· v3 7.2 HIGH· v2 Out of bound access occurs while handling the WMI FW event due to lack of check of buffer argument which comes directly from the WLAN FW in Snapdragon Auto, Snapdragon Consumer Electronics Connectivity, Snapdragon Consum...Show more |
1Qualcomm 54Apq8009 Firmware Apq8017 FirmwareApq8053 Firmware+51 moreJun 17, 2026 Dec 12, 2019 N/A· v4 9.8 CRITICAL· v3 10.0 HIGH· v2 Possible out of bounds write in a MT SMS/SS scenario due to improper validation of array index in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile...Show more |