CWE-125
Out-of-bounds Read
Description
The product reads data past the end, or before the beginning, of the intended buffer.
Hierarchy (View 1000)
Related attack patterns (CAPEC)
CAPEC-540
CVEs mapped to this weakness (9,413)
page 136 of 471| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2024-38397 | Hig | 0.49 | 7.5 | 0.00 | Oct 7, 2024 | Transient DOS while parsing probe response and assoc response frame. | ||
| CVE-2024-33071 | Hig | 0.49 | 7.5 | 0.00 | Oct 7, 2024 | Transient DOS while parsing the MBSSID IE from the beacons when IE length is 0. | ||
| CVE-2024-33070 | Hig | 0.49 | 7.5 | 0.00 | Oct 7, 2024 | Transient DOS while parsing ESP IE from beacon/probe response frame. | ||
| CVE-2024-33049 | Hig | 0.49 | 7.5 | 0.00 | Oct 7, 2024 | Transient DOS while parsing noninheritance IE of Extension element when length of IE is 2 of beacon frame. | ||
| CVE-2024-44912 | Hig | 0.49 | 7.5 | 0.00 | Sep 27, 2024 | NASA CryptoLib v1.3.0 was discovered to contain an Out-of-Bounds read via the TM subsystem (crypto_tm.c). | ||
| CVE-2024-44911 | Hig | 0.49 | 7.5 | 0.01 | Sep 27, 2024 | NASA CryptoLib v1.3.0 was discovered to contain an Out-of-Bounds read via the TC subsystem (crypto_tc.c). | ||
| CVE-2024-44910 | Hig | 0.49 | 7.5 | 0.01 | Sep 27, 2024 | NASA CryptoLib v1.3.0 was discovered to contain an Out-of-Bounds read via the AOS subsystem (crypto_aos.c). | ||
| CVE-2024-36981 | Hig | 0.49 | 7.5 | 0.01 | Sep 18, 2024 | An out-of-bounds read vulnerability exists in the OpenPLC Runtime EtherNet/IP PCCC parser functionality of OpenPLC_v3 b4702061dc14d1024856f71b4543298d77007b88. A specially crafted network request can lead to denial of service. An attacker can send a series of EtherNet/IP… | ||
| CVE-2024-36980 | Hig | 0.49 | 7.5 | 0.01 | Sep 18, 2024 | An out-of-bounds read vulnerability exists in the OpenPLC Runtime EtherNet/IP PCCC parser functionality of OpenPLC_v3 b4702061dc14d1024856f71b4543298d77007b88. A specially crafted network request can lead to denial of service. An attacker can send a series of EtherNet/IP… | ||
| CVE-2024-44460 | Hig | 0.49 | 7.5 | 0.00 | Sep 12, 2024 | An invalid read size in Nanomq v0.21.9 allows attackers to cause a Denial of Service (DoS). | ||
| CVE-2024-33057 | Hig | 0.49 | 7.5 | 0.00 | Sep 2, 2024 | Transient DOS while parsing the multi-link element Control field when common information length check is missing before updating the location. | ||
| CVE-2024-33051 | Hig | 0.49 | 7.5 | 0.00 | Sep 2, 2024 | Transient DOS while processing TIM IE from beacon frame as there is no check for IE length. | ||
| CVE-2024-33050 | Hig | 0.49 | 7.5 | 0.00 | Sep 2, 2024 | Transient DOS while parsing MBSSID during new IE generation in beacon/probe frame when IE length check is either missing or improper. | ||
| CVE-2024-33048 | Hig | 0.49 | 7.5 | 0.00 | Sep 2, 2024 | Transient DOS while parsing the received TID-to-link mapping element of beacon/probe response frame. | ||
| CVE-2024-38132 | Hig | 0.49 | 7.5 | 0.03 | Aug 13, 2024 | Windows Network Address Translation (NAT) Denial of Service Vulnerability | ||
| CVE-2024-33026 | Hig | 0.49 | 7.5 | 0.00 | Aug 5, 2024 | Transient DOS while parsing probe response and assoc response frame when received frame length is less than max size of timestamp. | ||
| CVE-2024-33025 | Hig | 0.49 | 7.5 | 0.00 | Aug 5, 2024 | Transient DOS while parsing the BSS parameter change count or MLD capabilities fields of the ML IE. | ||
| CVE-2024-33020 | Hig | 0.49 | 7.5 | 0.00 | Aug 5, 2024 | Transient DOS while processing TID-to-link mapping IE elements. | ||
| CVE-2024-33019 | Hig | 0.49 | 7.5 | 0.00 | Aug 5, 2024 | Transient DOS while parsing the received TID-to-link mapping action frame. | ||
| CVE-2024-33018 | Hig | 0.49 | 7.5 | 0.00 | Aug 5, 2024 | Transient DOS while parsing the received TID-to-link mapping element of the TID-to-link mapping action frame. |
- risk 0.49cvss 7.5epss 0.00
Transient DOS while parsing probe response and assoc response frame.
- risk 0.49cvss 7.5epss 0.00
Transient DOS while parsing the MBSSID IE from the beacons when IE length is 0.
- risk 0.49cvss 7.5epss 0.00
Transient DOS while parsing ESP IE from beacon/probe response frame.
- risk 0.49cvss 7.5epss 0.00
Transient DOS while parsing noninheritance IE of Extension element when length of IE is 2 of beacon frame.
- risk 0.49cvss 7.5epss 0.00
NASA CryptoLib v1.3.0 was discovered to contain an Out-of-Bounds read via the TM subsystem (crypto_tm.c).
- risk 0.49cvss 7.5epss 0.01
NASA CryptoLib v1.3.0 was discovered to contain an Out-of-Bounds read via the TC subsystem (crypto_tc.c).
- risk 0.49cvss 7.5epss 0.01
NASA CryptoLib v1.3.0 was discovered to contain an Out-of-Bounds read via the AOS subsystem (crypto_aos.c).
- risk 0.49cvss 7.5epss 0.01
An out-of-bounds read vulnerability exists in the OpenPLC Runtime EtherNet/IP PCCC parser functionality of OpenPLC_v3 b4702061dc14d1024856f71b4543298d77007b88. A specially crafted network request can lead to denial of service. An attacker can send a series of EtherNet/IP…
- risk 0.49cvss 7.5epss 0.01
An out-of-bounds read vulnerability exists in the OpenPLC Runtime EtherNet/IP PCCC parser functionality of OpenPLC_v3 b4702061dc14d1024856f71b4543298d77007b88. A specially crafted network request can lead to denial of service. An attacker can send a series of EtherNet/IP…
- risk 0.49cvss 7.5epss 0.00
An invalid read size in Nanomq v0.21.9 allows attackers to cause a Denial of Service (DoS).
- risk 0.49cvss 7.5epss 0.00
Transient DOS while parsing the multi-link element Control field when common information length check is missing before updating the location.
- risk 0.49cvss 7.5epss 0.00
Transient DOS while processing TIM IE from beacon frame as there is no check for IE length.
- risk 0.49cvss 7.5epss 0.00
Transient DOS while parsing MBSSID during new IE generation in beacon/probe frame when IE length check is either missing or improper.
- risk 0.49cvss 7.5epss 0.00
Transient DOS while parsing the received TID-to-link mapping element of beacon/probe response frame.
- risk 0.49cvss 7.5epss 0.03
Windows Network Address Translation (NAT) Denial of Service Vulnerability
- risk 0.49cvss 7.5epss 0.00
Transient DOS while parsing probe response and assoc response frame when received frame length is less than max size of timestamp.
- risk 0.49cvss 7.5epss 0.00
Transient DOS while parsing the BSS parameter change count or MLD capabilities fields of the ML IE.
- risk 0.49cvss 7.5epss 0.00
Transient DOS while processing TID-to-link mapping IE elements.
- risk 0.49cvss 7.5epss 0.00
Transient DOS while parsing the received TID-to-link mapping action frame.
- risk 0.49cvss 7.5epss 0.00
Transient DOS while parsing the received TID-to-link mapping element of the TID-to-link mapping action frame.