VYPR

CWE-125

Out-of-bounds Read

BaseDraft

Description

The product reads data past the end, or before the beginning, of the intended buffer.

Hierarchy (View 1000)

Parents

Related attack patterns (CAPEC)

CAPEC-540

CVEs mapped to this weakness (9,427)

page 199 of 472
  • CVE-2019-20352HigJan 6, 2020
    risk 0.46cvss 7.1epss 0.01

    In Netwide Assembler (NASM) 2.15rc0, a heap-based buffer over-read occurs (via a crafted .asm file) in set_text_free when called from expand_one_smacro in asm/preproc.c.

  • CVE-2019-8576HigDec 18, 2019
    risk 0.46cvss 7.1epss 0.00

    An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in iOS 12.3, macOS Mojave 10.14.5, tvOS 12.3, watchOS 5.2.1. A local user may be able to cause unexpected system termination or read kernel memory.

  • CVE-2019-17533HigOct 13, 2019
    risk 0.46cvss 8.2epss 0.02

    Mat_VarReadNextInfo4 in mat4.c in MATIO 1.5.17 omits a certain '\0' character, leading to a heap-based buffer over-read in strdup_vprintf when uninitialized memory is accessed.

  • CVE-2019-1347MedOct 10, 2019
    risk 0.46cvss 6.5epss 0.15

    A denial of service vulnerability exists when Windows improperly handles objects in memory, aka 'Windows Denial of Service Vulnerability'. This CVE ID is unique from CVE-2019-1343, CVE-2019-1346.

  • CVE-2019-1346MedOct 10, 2019
    risk 0.46cvss 6.5epss 0.11

    A denial of service vulnerability exists when Windows improperly handles objects in memory, aka 'Windows Denial of Service Vulnerability'. This CVE ID is unique from CVE-2019-1343, CVE-2019-1347.

  • CVE-2019-14975HigAug 14, 2019
    risk 0.46cvss 7.1epss 0.01

    Artifex MuPDF before 1.16.0 has a heap-based buffer over-read in fz_chartorune in fitz/string.c because pdf/pdf-op-filter.c does not check for a missing string.

  • CVE-2019-5522HigJun 6, 2019
    risk 0.46cvss 7.1epss 0.01

    VMware Tools for Windows update addresses an out of bounds read vulnerability in vm3dmp driver which is installed with vmtools in Windows guest machines. This issue is present in versions 10.2.x and 10.3.x prior to 10.3.10. A local attacker with non-administrative access to a…

  • CVE-2019-12515HigJun 2, 2019
    risk 0.46cvss 7.1epss 0.02

    There is an out-of-bounds read vulnerability in the function FlateStream::getChar() located at Stream.cc in Xpdf 4.01.01. It can, for example, be triggered by sending a crafted PDF document to the pdftoppm tool. It might allow an attacker to cause Information Disclosure or a…

  • CVE-2019-12493HigMay 31, 2019
    risk 0.46cvss 7.1epss 0.02

    A stack-based buffer over-read exists in PostScriptFunction::transform in Function.cc in Xpdf 4.01.01 because GfxSeparationColorSpace and GfxDeviceNColorSpace mishandle tint transform functions. It can, for example, be triggered by sending a crafted PDF document to the pdftops…

  • CVE-2019-12360HigMay 27, 2019
    risk 0.46cvss 7.1epss 0.02

    A stack-based buffer over-read exists in FoFiTrueType::dumpString in fofi/FoFiTrueType.cc in Xpdf 4.01.01. It can, for example, be triggered by sending crafted TrueType data in a PDF document to the pdftops tool. It might allow an attacker to cause Denial of Service or leak…

  • CVE-2019-11455HigApr 22, 2019
    risk 0.46cvss 8.1epss 0.03

    A buffer over-read in Util_urlDecode in util.c in Tildeslash Monit before 5.25.3 allows a remote authenticated attacker to retrieve the contents of adjacent memory via manipulation of GET or POST parameters. The attacker can also cause a denial of service (application outage).

  • CVE-2017-7771HigApr 15, 2019
    risk 0.46cvss 8.1epss 0.01

    Out-of-bounds read in Graphite2 Library in Firefox before 54 in graphite2::Pass::readPass function.

  • CVE-2018-4434HigApr 3, 2019
    risk 0.46cvss 7.1epss 0.00

    An out-of-bounds read was addressed with improved input validation. This issue affected versions prior to macOS Mojave 10.14.2.

  • CVE-2018-18994HigMar 27, 2019
    risk 0.46cvss 7.1epss 0.01

    LCDS Laquis SCADA prior to version 4.1.0.4150 allows an out of bounds read when opening a specially crafted project file, which may cause a system crash or allow data exfiltration.

  • CVE-2019-5007HigJan 3, 2019
    risk 0.46cvss 7.1epss 0.01

    An issue was discovered in Foxit Reader and PhantomPDF before 9.4 on Windows. It is an Out-of-Bounds Read Information Disclosure and crash due to a NULL pointer dereference when reading TIFF data during TIFF parsing.

  • CVE-2018-19566HigNov 26, 2018
    risk 0.46cvss 7.1epss 0.01

    A heap buffer over-read in parse_tiff_ifd in dcraw through 9.28 could be used by attackers able to supply malicious files to crash an application that bundles the dcraw code or leak private information.

  • CVE-2018-19565HigNov 26, 2018
    risk 0.46cvss 7.1epss 0.01

    A buffer over-read in crop_masked_pixels in dcraw through 9.28 could be used by attackers able to supply malicious files to crash an application that bundles the dcraw code or leak private information.

  • CVE-2018-19348HigNov 17, 2018
    risk 0.46cvss 7.1epss 0.02

    The u3d plugin 9.3.0.10809 (aka plugins\U3DBrowser.fpi) in FoxitReader.exe in Foxit Reader 9.3.0.10826 allows remote attackers to cause a denial of service (out-of-bounds read) or obtain sensitive information via a U3D sample because of a "Data from Faulting Address controls…

  • CVE-2018-19347HigNov 17, 2018
    risk 0.46cvss 7.1epss 0.01

    The u3d plugin 9.3.0.10809 (aka plugins\U3DBrowser.fpi) in FoxitReader.exe in Foxit Reader 9.3.0.10826 allows remote attackers to cause a denial of service (out-of-bounds read) or obtain sensitive information via a U3D sample because of a "Data from Faulting Address controls…

  • CVE-2018-19346HigNov 17, 2018
    risk 0.46cvss 7.1epss 0.01

    The u3d plugin 9.3.0.10809 (aka plugins\U3DBrowser.fpi) in FoxitReader.exe in Foxit Reader 9.3.0.10826 allows remote attackers to cause a denial of service (out-of-bounds read) or obtain sensitive information via a U3D sample because of a "Data from Faulting Address controls…