CWE-125
Out-of-bounds Read
Description
The product reads data past the end, or before the beginning, of the intended buffer.
Hierarchy (View 1000)
Related attack patterns (CAPEC)
CAPEC-540
CVEs mapped to this weakness (9,427)
page 205 of 472| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2025-37785 | Hig | 0.44 | 7.8 | 0.00 | Apr 18, 2025 | In the Linux kernel, the following vulnerability has been resolved: ext4: fix OOB read when checking dotdot dir Mounting a corrupted filesystem with directory which contains '.' dir entry with rec_len == block size results in out-of-bounds read (later on, when the corrupted… | ||
| CVE-2025-20662 | Med | 0.44 | 6.7 | 0.00 | Apr 7, 2025 | In PlayReady TA, there is a possible out of bounds read due to a missing bounds check. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: DTV04428276; Issue… | ||
| CVE-2025-20661 | Med | 0.44 | 6.7 | 0.00 | Apr 7, 2025 | In PlayReady TA, there is a possible out of bounds read due to a missing bounds check. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: DTV04436357; Issue… | ||
| CVE-2025-20660 | Med | 0.44 | 6.7 | 0.00 | Apr 7, 2025 | In PlayReady TA, there is a possible out of bounds read due to a missing bounds check. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: DTV04436357; Issue… | ||
| CVE-2022-49051 | Med | 0.44 | 6.8 | 0.00 | Feb 26, 2025 | In the Linux kernel, the following vulnerability has been resolved: net: usb: aqc111: Fix out-of-bounds accesses in RX fixup aqc111_rx_fixup() contains several out-of-bounds accesses that can be triggered by a malicious (or defective) USB device, in particular: - The… | ||
| CVE-2024-57945 | Hig | 0.44 | 7.8 | 0.00 | Jan 21, 2025 | In the Linux kernel, the following vulnerability has been resolved: riscv: mm: Fix the out of bound issue of vmemmap address In sparse vmemmap model, the virtual address of vmemmap is calculated as: ((struct page *)VMEMMAP_START - (phys_ram_base >> PAGE_SHIFT)). And the struct… | ||
| CVE-2024-33061 | Med | 0.44 | 6.8 | 0.00 | Jan 6, 2025 | Information disclosure while processing IOCTL call made for releasing a trusted VM process release or opening a channel without initializing the process. | ||
| CVE-2024-49110 | Med | 0.44 | 6.8 | 0.01 | Dec 12, 2024 | Windows Mobile Broadband Driver Elevation of Privilege Vulnerability | ||
| CVE-2024-49092 | Med | 0.44 | 6.8 | 0.01 | Dec 12, 2024 | Windows Mobile Broadband Driver Elevation of Privilege Vulnerability | ||
| CVE-2024-49083 | Med | 0.44 | 6.8 | 0.01 | Dec 12, 2024 | Windows Mobile Broadband Driver Elevation of Privilege Vulnerability | ||
| CVE-2024-49078 | Med | 0.44 | 6.8 | 0.01 | Dec 12, 2024 | Windows Mobile Broadband Driver Elevation of Privilege Vulnerability | ||
| CVE-2024-49077 | Med | 0.44 | 6.8 | 0.01 | Dec 12, 2024 | Windows Mobile Broadband Driver Elevation of Privilege Vulnerability | ||
| CVE-2018-9390 | Med | 0.44 | 6.7 | 0.00 | Dec 5, 2024 | In procfile_write of gl_proc.c, there is a possible out of bounds read of a function pointer due to an incorrect bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. | ||
| CVE-2024-43643 | Med | 0.44 | 6.8 | 0.01 | Nov 12, 2024 | Windows USB Video Class System Driver Elevation of Privilege Vulnerability | ||
| CVE-2024-43638 | Med | 0.44 | 6.8 | 0.01 | Nov 12, 2024 | Windows USB Video Class System Driver Elevation of Privilege Vulnerability | ||
| CVE-2024-43637 | Med | 0.44 | 6.8 | 0.01 | Nov 12, 2024 | Windows USB Video Class System Driver Elevation of Privilege Vulnerability | ||
| CVE-2024-43634 | Med | 0.44 | 6.8 | 0.01 | Nov 12, 2024 | Windows USB Video Class System Driver Elevation of Privilege Vulnerability | ||
| CVE-2024-43449 | Med | 0.44 | 6.8 | 0.01 | Nov 12, 2024 | Windows USB Video Class System Driver Elevation of Privilege Vulnerability | ||
| CVE-2024-47723 | Hig | 0.44 | 7.8 | 0.00 | Oct 21, 2024 | In the Linux kernel, the following vulnerability has been resolved: jfs: fix out-of-bounds in dbNextAG() and diAlloc() In dbNextAG() , there is no check for the case where bmp->db_numag is greater or same than MAXAG due to a polluted image, which causes an out-of-bounds.… | ||
| CVE-2023-49144 | Med | 0.44 | 6.7 | 0.00 | Aug 14, 2024 | Out of bounds read in OpenBMC Firmware for some Intel(R) Server Platforms before versions egs-1.15-0, bhs-0.27 may allow a privileged user to potentially enable information disclosure via local access. |
- risk 0.44cvss 7.8epss 0.00
In the Linux kernel, the following vulnerability has been resolved: ext4: fix OOB read when checking dotdot dir Mounting a corrupted filesystem with directory which contains '.' dir entry with rec_len == block size results in out-of-bounds read (later on, when the corrupted…
- risk 0.44cvss 6.7epss 0.00
In PlayReady TA, there is a possible out of bounds read due to a missing bounds check. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: DTV04428276; Issue…
- risk 0.44cvss 6.7epss 0.00
In PlayReady TA, there is a possible out of bounds read due to a missing bounds check. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: DTV04436357; Issue…
- risk 0.44cvss 6.7epss 0.00
In PlayReady TA, there is a possible out of bounds read due to a missing bounds check. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: DTV04436357; Issue…
- risk 0.44cvss 6.8epss 0.00
In the Linux kernel, the following vulnerability has been resolved: net: usb: aqc111: Fix out-of-bounds accesses in RX fixup aqc111_rx_fixup() contains several out-of-bounds accesses that can be triggered by a malicious (or defective) USB device, in particular: - The…
- risk 0.44cvss 7.8epss 0.00
In the Linux kernel, the following vulnerability has been resolved: riscv: mm: Fix the out of bound issue of vmemmap address In sparse vmemmap model, the virtual address of vmemmap is calculated as: ((struct page *)VMEMMAP_START - (phys_ram_base >> PAGE_SHIFT)). And the struct…
- risk 0.44cvss 6.8epss 0.00
Information disclosure while processing IOCTL call made for releasing a trusted VM process release or opening a channel without initializing the process.
- risk 0.44cvss 6.8epss 0.01
Windows Mobile Broadband Driver Elevation of Privilege Vulnerability
- risk 0.44cvss 6.8epss 0.01
Windows Mobile Broadband Driver Elevation of Privilege Vulnerability
- risk 0.44cvss 6.8epss 0.01
Windows Mobile Broadband Driver Elevation of Privilege Vulnerability
- risk 0.44cvss 6.8epss 0.01
Windows Mobile Broadband Driver Elevation of Privilege Vulnerability
- risk 0.44cvss 6.8epss 0.01
Windows Mobile Broadband Driver Elevation of Privilege Vulnerability
- risk 0.44cvss 6.7epss 0.00
In procfile_write of gl_proc.c, there is a possible out of bounds read of a function pointer due to an incorrect bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.
- risk 0.44cvss 6.8epss 0.01
Windows USB Video Class System Driver Elevation of Privilege Vulnerability
- risk 0.44cvss 6.8epss 0.01
Windows USB Video Class System Driver Elevation of Privilege Vulnerability
- risk 0.44cvss 6.8epss 0.01
Windows USB Video Class System Driver Elevation of Privilege Vulnerability
- risk 0.44cvss 6.8epss 0.01
Windows USB Video Class System Driver Elevation of Privilege Vulnerability
- risk 0.44cvss 6.8epss 0.01
Windows USB Video Class System Driver Elevation of Privilege Vulnerability
- risk 0.44cvss 7.8epss 0.00
In the Linux kernel, the following vulnerability has been resolved: jfs: fix out-of-bounds in dbNextAG() and diAlloc() In dbNextAG() , there is no check for the case where bmp->db_numag is greater or same than MAXAG due to a polluted image, which causes an out-of-bounds.…
- risk 0.44cvss 6.7epss 0.00
Out of bounds read in OpenBMC Firmware for some Intel(R) Server Platforms before versions egs-1.15-0, bhs-0.27 may allow a privileged user to potentially enable information disclosure via local access.