VYPR

CWE-125

Out-of-bounds Read

BaseDraft

Description

The product reads data past the end, or before the beginning, of the intended buffer.

Hierarchy (View 1000)

Parents

Related attack patterns (CAPEC)

CAPEC-540

CVEs mapped to this weakness (9,413)

page 137 of 471
  • CVE-2024-33015HigAug 5, 2024
    risk 0.49cvss 7.5epss 0.00

    Transient DOS while parsing SCAN RNR IE when bytes received from AP is such that the size of the last param of IE is less than neighbor report.

  • CVE-2024-33014HigAug 5, 2024
    risk 0.49cvss 7.5epss 0.00

    Transient DOS while parsing ESP IE from beacon/probe response frame.

  • CVE-2024-33013HigAug 5, 2024
    risk 0.49cvss 7.5epss 0.00

    Transient DOS when driver accesses the ML IE memory and offset value is incremented beyond ML IE length.

  • CVE-2024-33012HigAug 5, 2024
    risk 0.49cvss 7.5epss 0.00

    Transient DOS while parsing the multiple MBSSID IEs from the beacon, when the tag length is non-zero value but with end of beacon.

  • CVE-2024-33011HigAug 5, 2024
    risk 0.49cvss 7.5epss 0.00

    Transient DOS while parsing the MBSSID IE from the beacons, when the MBSSID IE length is zero.

  • CVE-2024-23353HigAug 5, 2024
    risk 0.49cvss 7.5epss 0.00

    Transient DOS while decoding attach reject message received by UE, when IEI is set to ESM_IEI.

  • CVE-2024-21479HigAug 5, 2024
    risk 0.49cvss 7.5epss 0.00

    Transient DOS during music playback of ALAC content.

  • CVE-2022-48827HigJul 16, 2024
    risk 0.49cvss 7.5epss 0.01

    In the Linux kernel, the following vulnerability has been resolved: NFSD: Fix the behavior of READ near OFFSET_MAX Dan Aloni reports: > Due to commit 8cfb9015280d ("NFS: Always provide aligned buffers to > the RPC read layers") on the client, a read of 0xfff is aligned up > to…

  • CVE-2024-38073HigJul 9, 2024
    risk 0.49cvss 7.5epss 0.02

    Windows Remote Desktop Licensing Service Denial of Service Vulnerability

  • CVE-2024-37795HigJun 17, 2024
    risk 0.49cvss 7.5epss 0.00

    A segmentation fault in CVC5 Solver v1.1.3 allows attackers to cause a Denial of Service (DoS) via a crafted SMT-LIB input file containing the `set-logic` command with specific formatting errors.

  • CVE-2024-32894HigJun 13, 2024
    risk 0.49cvss 7.5epss 0.00

    In bc_get_converted_received_bearer of bc_utilities.c, there is a possible out of bounds read due to a missing bounds check. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.

  • CVE-2024-29781HigJun 13, 2024
    risk 0.49cvss 7.5epss 0.00

    In ss_AnalyzeOssReturnResUssdArgIe of ss_OssAsnManagement.c, there is a possible out of bounds read due to improper input validation. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.

  • CVE-2024-23363HigJun 3, 2024
    risk 0.49cvss 7.5epss 0.00

    Transient DOS while processing an improperly formatted Fine Time Measurement (FTM) management frame.

  • CVE-2024-36114HigMay 29, 2024
    risk 0.49cvss 8.6epss 0.01

    Aircompressor is a library with ports of the Snappy, LZO, LZ4, and Zstandard compression algorithms to Java. All decompressor implementations of Aircompressor (LZ4, LZO, Snappy, Zstandard) can crash the JVM for certain input, and in some cases also leak the content of other…

  • CVE-2024-31714HigMay 20, 2024
    risk 0.49cvss 7.5epss 0.00

    Buffer Overflow vulnerability in Waxlab wax v.0.9-3 and before allows an attacker to cause a denial of service via the Lua library component.

  • CVE-2024-34950HigMay 14, 2024
    risk 0.49cvss 7.5epss 0.05

    D-Link DIR-822+ v1.0.5 was discovered to contain a stack-based buffer overflow vulnerability in the SetNetworkTomographySettings module.

  • CVE-2024-34244HigMay 8, 2024
    risk 0.49cvss 7.5epss 0.01

    libmodbus v3.1.10 is vulnerable to Buffer Overflow via the modbus_write_bits function. This issue can be triggered when the function is fed with specially crafted input, which leads to out-of-bounds read and can potentially cause a crash or other unintended behaviors.

  • CVE-2024-33781HigMay 7, 2024
    risk 0.49cvss 7.5epss 0.01

    MP-SPDZ v0.3.8 was discovered to contain a stack overflow via the function octetStream::get_bytes in /Tools/octetStream.cpp. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted message.

  • CVE-2024-34251HigMay 6, 2024
    risk 0.49cvss 7.5epss 0.01

    An out-of-bound memory read vulnerability was discovered in Bytecode Alliance wasm-micro-runtime v2.0.0 which allows a remote attacker to cause a denial of service via the "block_type_get_arity" function in core/iwasm/interpreter/wasm.h.

  • CVE-2024-34246HigMay 6, 2024
    risk 0.49cvss 7.5epss 0.01

    wasm3 v0.5.0 was discovered to contain an out-of-bound memory read which leads to segmentation fault via the function "main" in wasm3/platforms/app/main.c.