VYPR

CWE-125

Out-of-bounds Read

BaseDraft

Description

The product reads data past the end, or before the beginning, of the intended buffer.

Hierarchy (View 1000)

Parents

Related attack patterns (CAPEC)

CAPEC-540

CVEs mapped to this weakness (9,413)

page 133 of 471
  • CVE-2024-42646HigJul 14, 2025
    risk 0.49cvss 7.5epss 0.00

    A segmentation fault in NanoMQ v0.21.10 allows attackers to cause a Denial of Service (DoS) via crafted messages.

  • CVE-2025-27057HigJul 8, 2025
    risk 0.49cvss 7.5epss 0.00

    Transient DOS while handling beacon frames with invalid IE header length.

  • CVE-2025-21454HigJul 8, 2025
    risk 0.49cvss 7.5epss 0.00

    Transient DOS while processing received beacon frame.

  • CVE-2025-21449HigJul 8, 2025
    risk 0.49cvss 7.5epss 0.00

    Transient DOS may occur while processing malformed length field in SSID IEs.

  • CVE-2025-21446HigJul 8, 2025
    risk 0.49cvss 7.5epss 0.00

    Transient DOS may occur when processing vendor-specific information elements while parsing a WLAN frame for BTM requests.

  • CVE-2022-31812HigMay 23, 2025
    risk 0.49cvss 7.5epss 0.01

    A vulnerability has been identified in SiPass integrated (All versions < V2.95.3.18). Affected server applications contain an out of bounds read past the end of an allocated buffer while checking the integrity of incoming packets. This could allow an unauthenticated remote…

  • CVE-2025-30176HigMay 13, 2025
    risk 0.49cvss 7.5epss 0.01

    A vulnerability has been identified in SIMATIC PCS neo V4.1 (All versions), SIMATIC PCS neo V5.0 (All versions), SINEC NMS (All versions < V4.0), SINEMA Remote Connect (All versions), Totally Integrated Automation Portal (TIA Portal) V17 (All versions), Totally Integrated…

  • CVE-2025-30174HigMay 13, 2025
    risk 0.49cvss 7.5epss 0.01

    A vulnerability has been identified in SIMATIC PCS neo V4.1 (All versions), SIMATIC PCS neo V5.0 (All versions), SINEC NMS (All versions < V4.0), SINEMA Remote Connect (All versions), Totally Integrated Automation Portal (TIA Portal) V17 (All versions), Totally Integrated…

  • CVE-2025-35995HigMay 7, 2025
    risk 0.49cvss 7.5epss 0.00

    When a BIG-IP PEM system is licensed with URL categorization, and the URL categorization policy or an iRule with the urlcat command is enabled on a virtual server, undisclosed requests can cause the Traffic Management Microkernel (TMM) to terminate. Note: Software versions…

  • CVE-2025-21459HigMay 6, 2025
    risk 0.49cvss 7.5epss 0.00

    Transient DOS while parsing per STA profile in ML IE.

  • CVE-2024-49847HigMay 6, 2025
    risk 0.49cvss 7.5epss 0.00

    Transient DOS while processing of a registration acceptance OTA due to incorrect ciphering key data IE.

  • CVE-2025-32906HigApr 14, 2025
    risk 0.49cvss 7.5epss 0.01

    A flaw was found in libsoup, where the soup_headers_parse_request() function may be vulnerable to an out-of-bound read. This flaw allows a malicious user to use a specially crafted HTTP request to crash the HTTP server.

  • CVE-2025-29834HigApr 12, 2025
    risk 0.49cvss 7.5epss 0.01

    Out-of-bounds read in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a network.

  • CVE-2024-12055HigMar 20, 2025
    risk 0.49cvss 7.5epss 0.01

    A vulnerability in Ollama versions <=0.3.14 allows a malicious user to create a customized gguf model file that can be uploaded to the public Ollama server. When the server processes this malicious model, it crashes, leading to a Denial of Service (DoS) attack. The root cause of…

  • CVE-2024-50600HigMar 6, 2025
    risk 0.49cvss 7.5epss 0.00

    An issue was discovered in Samsung Mobile Processor and Wearable Processor Exynos 980, 850, 1080, 1280, 1330, 1380, 1480, W920, W930, and W1000. Lack of a boundary check in STOP_KEEP_ALIVE_OFFLOAD leads to out-of-bounds access. An attacker can send a malformed message to the…

  • CVE-2025-24497HigFeb 5, 2025
    risk 0.49cvss 7.5epss 0.00

    When URL categorization is configured on a virtual server, undisclosed requests can cause TMM to terminate.  Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.

  • CVE-2024-38404HigFeb 3, 2025
    risk 0.49cvss 7.5epss 0.00

    Transient DOS when registration accept OTA is received with incorrect ciphering key data IE in modem.

  • CVE-2025-0612HigJan 22, 2025
    risk 0.49cvss 7.5epss 0.00

    Out of bounds memory access in V8 in Google Chrome prior to 132.0.6834.110 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

  • CVE-2024-24417HigJan 21, 2025
    risk 0.49cvss 7.5epss 0.01

    The Linux Foundation Magma <= 1.8.0 (fixed in v1.9 commit 08472ba98b8321f802e95f5622fa90fec2dea486) was discovered to contain a buffer overflow in the decode_protocol_configuration_options function at /3gpp/3gpp_24.008_sm_ies.c. This vulnerability allows attackers to cause a…

  • CVE-2024-46670HigJan 14, 2025
    risk 0.49cvss 7.5epss 0.01

    An Out-of-bounds Read vulnerability [CWE-125] in FortiOS version 7.6.0, version 7.4.4 and below, version 7.2.9 and below and FortiSASE FortiOS tenant version 24.3.b IPsec IKE service may allow an unauthenticated remote attacker to trigger memory consumption leading to Denial of…