VYPR

CWE-125

Out-of-bounds Read

BaseDraft

Description

The product reads data past the end, or before the beginning, of the intended buffer.

Hierarchy (View 1000)

Parents

Related attack patterns (CAPEC)

CAPEC-540

CVEs mapped to this weakness (9,427)

page 205 of 472
  • CVE-2025-37785HigApr 18, 2025
    risk 0.44cvss 7.8epss 0.00

    In the Linux kernel, the following vulnerability has been resolved: ext4: fix OOB read when checking dotdot dir Mounting a corrupted filesystem with directory which contains '.' dir entry with rec_len == block size results in out-of-bounds read (later on, when the corrupted…

  • CVE-2025-20662MedApr 7, 2025
    risk 0.44cvss 6.7epss 0.00

    In PlayReady TA, there is a possible out of bounds read due to a missing bounds check. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: DTV04428276; Issue…

  • CVE-2025-20661MedApr 7, 2025
    risk 0.44cvss 6.7epss 0.00

    In PlayReady TA, there is a possible out of bounds read due to a missing bounds check. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: DTV04436357; Issue…

  • CVE-2025-20660MedApr 7, 2025
    risk 0.44cvss 6.7epss 0.00

    In PlayReady TA, there is a possible out of bounds read due to a missing bounds check. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: DTV04436357; Issue…

  • CVE-2022-49051MedFeb 26, 2025
    risk 0.44cvss 6.8epss 0.00

    In the Linux kernel, the following vulnerability has been resolved: net: usb: aqc111: Fix out-of-bounds accesses in RX fixup aqc111_rx_fixup() contains several out-of-bounds accesses that can be triggered by a malicious (or defective) USB device, in particular: - The…

  • CVE-2024-57945HigJan 21, 2025
    risk 0.44cvss 7.8epss 0.00

    In the Linux kernel, the following vulnerability has been resolved: riscv: mm: Fix the out of bound issue of vmemmap address In sparse vmemmap model, the virtual address of vmemmap is calculated as: ((struct page *)VMEMMAP_START - (phys_ram_base >> PAGE_SHIFT)). And the struct…

  • CVE-2024-33061MedJan 6, 2025
    risk 0.44cvss 6.8epss 0.00

    Information disclosure while processing IOCTL call made for releasing a trusted VM process release or opening a channel without initializing the process.

  • CVE-2024-49110MedDec 12, 2024
    risk 0.44cvss 6.8epss 0.01

    Windows Mobile Broadband Driver Elevation of Privilege Vulnerability

  • CVE-2024-49092MedDec 12, 2024
    risk 0.44cvss 6.8epss 0.01

    Windows Mobile Broadband Driver Elevation of Privilege Vulnerability

  • CVE-2024-49083MedDec 12, 2024
    risk 0.44cvss 6.8epss 0.01

    Windows Mobile Broadband Driver Elevation of Privilege Vulnerability

  • CVE-2024-49078MedDec 12, 2024
    risk 0.44cvss 6.8epss 0.01

    Windows Mobile Broadband Driver Elevation of Privilege Vulnerability

  • CVE-2024-49077MedDec 12, 2024
    risk 0.44cvss 6.8epss 0.01

    Windows Mobile Broadband Driver Elevation of Privilege Vulnerability

  • CVE-2018-9390MedDec 5, 2024
    risk 0.44cvss 6.7epss 0.00

    In procfile_write of gl_proc.c, there is a possible out of bounds read of a function pointer due to an incorrect bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.

  • CVE-2024-43643MedNov 12, 2024
    risk 0.44cvss 6.8epss 0.01

    Windows USB Video Class System Driver Elevation of Privilege Vulnerability

  • CVE-2024-43638MedNov 12, 2024
    risk 0.44cvss 6.8epss 0.01

    Windows USB Video Class System Driver Elevation of Privilege Vulnerability

  • CVE-2024-43637MedNov 12, 2024
    risk 0.44cvss 6.8epss 0.01

    Windows USB Video Class System Driver Elevation of Privilege Vulnerability

  • CVE-2024-43634MedNov 12, 2024
    risk 0.44cvss 6.8epss 0.01

    Windows USB Video Class System Driver Elevation of Privilege Vulnerability

  • CVE-2024-43449MedNov 12, 2024
    risk 0.44cvss 6.8epss 0.01

    Windows USB Video Class System Driver Elevation of Privilege Vulnerability

  • CVE-2024-47723HigOct 21, 2024
    risk 0.44cvss 7.8epss 0.00

    In the Linux kernel, the following vulnerability has been resolved: jfs: fix out-of-bounds in dbNextAG() and diAlloc() In dbNextAG() , there is no check for the case where bmp->db_numag is greater or same than MAXAG due to a polluted image, which causes an out-of-bounds.…

  • CVE-2023-49144MedAug 14, 2024
    risk 0.44cvss 6.7epss 0.00

    Out of bounds read in OpenBMC Firmware for some Intel(R) Server Platforms before versions egs-1.15-0, bhs-0.27 may allow a privileged user to potentially enable information disclosure via local access.