CWE-823
98 CVEs • Abstraction: Base
Use of Out-of-range Pointer Offset
The product performs pointer arithmetic on a valid pointer, but it uses an offset that can point outside of the intended range of valid memory locations for the resulting pointer.
CVEs (98)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Qualcomm 118Snapdragon 425 Mobile Platform Firmware Snapdragon 427 Mobile Platform FirmwareSnapdragon 429 Mobile Platform Firmware+115 moreJun 17, 2026 Jan 2, 2024 N/A· v4 7.0 HIGH· v3 N/A· v2 The session index variable in PCM host voice audio driver initialized before PCM open, accessed during event callback from ADSP and reset during PCM close may lead to race condition between event callback - PCM close and...Show more |
1Qualcomm 259315 5g Iot Modem Firmware 9205 Lte Modem Firmware9206 Lte Modem Firmware+256 moreJun 17, 2026 Jan 2, 2024 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption in Audio during playback with speaker protection. |
An out-of-bounds memory access flaw was found in the io_uring SQ/CQ rings functionality in the Linux kernel. This issue could allow a local user to crash the system. |
1Qualcomm 147Ar8035 Firmware Csra6620 FirmwareCsra6640 Firmware+144 moreJun 17, 2026 Dec 5, 2023 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption while submitting a large list of sync points in an AUX command to the IOCTL_KGSL_GPU_AUX_COMMAND. |
1Qualcomm 143Apq5053 Aa Firmware Ar8035 FirmwareCsra6620 Firmware+140 moreJun 17, 2026 Dec 5, 2023 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption in Audio while running invalid audio recording from ADSP. |
1Qualcomm 223315 5g Iot Modem Firmware 9205 Lte Modem Firmware9206 Lte Modem Firmware+220 moreJun 17, 2026 Nov 7, 2023 N/A· v4 9.8 CRITICAL· v3 N/A· v2 Memory Corruption in Multi-mode Call Processor while processing bit mask API. |
Squid is a caching proxy for the Web. Due to an Improper Validation of Specified Index bug, Squid versions 3.3.0.1 through 5.9 and 6.0 prior to 6.4 compiled using `--with-openssl` are vulnerable to a Denial of Service at...Show more |
1Qualcomm 61Ar8035 Firmware Fastconnect 6200 FirmwareFastconnect 6700 Firmware+58 moreJun 17, 2026 Oct 3, 2023 N/A· v4 9.8 CRITICAL· v3 N/A· v2 Memory corruption in Modem while processing security related configuration before AS Security Exchange. |
A vulnerability in the Multicast Leaf Recycle Elimination (mLRE) feature of Cisco IOS XE Software for Cisco ASR 1000 Series Aggregation Services Routers could allow an unauthenticated, remote attacker to cause the affect...Show more |
1Qualcomm 247Aqt1000 Firmware Ar8031 FirmwareAr9380 Firmware+244 moreJun 17, 2026 Sep 5, 2023 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption in WLAN HAL while passing command parameters through WMI interfaces. |
1Qualcomm 59205 Firmware 215 FirmwareAqt1000 Firmware+56 moreJun 17, 2026 Aug 8, 2023 N/A· v4 7.8 HIGH· v3 N/A· v2 The cam_get_device_priv function does not check the type of handle being returned (device/session/link). This would lead to invalid type usage if a wrong handle is passed to it. |
1Qualcomm 266205 Firmware 215 Firmware315 5g Iot Firmware+263 moreJun 17, 2026 Jul 4, 2023 N/A· v4 7.8 HIGH· v3 N/A· v2 Arbitrary memory overwrite when VM gets compromised in TX write leading to Memory Corruption. |
An out-of-bounds read vulnerability exists in the PORT command parameter extraction functionality of Weston Embedded uC-FTPs v 1.98.00. A specially-crafted set of network packets can lead to denial of service. An attacke...Show more |
An out-of-bounds read vulnerability exists in the PORT command parameter extraction functionality of Weston Embedded uC-FTPs v 1.98.00. A specially-crafted set of network packets can lead to denial of service. An attacke...Show more |
Use of Out-of-range Pointer Offset in GitHub repository vim/vim prior to 9.0.1499. |
1Qualcomm 68Ar8035 Firmware Qca6174a FirmwareQca6310 Firmware+65 moreJun 17, 2026 Mar 10, 2023 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption in modem due to use of out of range pointer offset while processing qmi msg |
1Qualcomm 208Apq8009 Firmware Apq8009w FirmwareApq8017 Firmware+205 moreJun 17, 2026 Mar 10, 2023 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption in Modem due to usage of Out-of-range pointer offset in UIM |
1Qualcomm 42Apq8096au Firmware Aqt1000 FirmwareMsm8996au Firmware+39 moreJun 17, 2026 Feb 12, 2023 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption in Audio due to use of out-of-range pointer offset while Initiating a voice call session from user space with invalid session id. |
A denial of service vulnerability exists in the malware scan functionality of ESTsoft Alyac 2.5.8.645. A specially-crafted PE file can lead to killing target process. An attacker can provide a malicious file to trigger t...Show more |
1Nvidia 3Cloud Gaming Gpu Display DriverVirtual GpuJun 17, 2026 Dec 30, 2022 N/A· v4 7.8 HIGH· v3 N/A· v2 NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel mode layer, where an unprivileged regular user can cause the use of an out-of-range pointer offset, which may lead to data tampering, data loss,...Show more |