VYPR

CWE-125

Out-of-bounds Read

BaseDraft

Description

The product reads data past the end, or before the beginning, of the intended buffer.

Hierarchy (View 1000)

Parents

Related attack patterns (CAPEC)

CAPEC-540

CVEs mapped to this weakness (9,413)

page 310 of 471
  • CVE-2023-47081MedDec 13, 2023
    risk 0.36cvss 5.5epss 0.00

    Adobe Substance 3D Stager versions 2.1.1 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to bypass mitigations such as ASLR. Exploitation of this issue requires user…

  • CVE-2023-47080MedDec 13, 2023
    risk 0.36cvss 5.5epss 0.00

    Adobe Substance 3D Stager versions 2.1.1 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to bypass mitigations such as ASLR. Exploitation of this issue requires user…

  • CVE-2023-47079MedDec 13, 2023
    risk 0.36cvss 5.5epss 0.00

    Adobe Dimension versions 3.4.10 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to bypass mitigations such as ASLR. Exploitation of this issue requires user…

  • CVE-2023-47078MedDec 13, 2023
    risk 0.36cvss 5.5epss 0.00

    Adobe Dimension versions 3.4.10 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to bypass mitigations such as ASLR. Exploitation of this issue requires user…

  • CVE-2023-47062MedDec 13, 2023
    risk 0.36cvss 5.5epss 0.00

    Adobe Dimension versions 3.4.10 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to bypass mitigations such as ASLR. Exploitation of this issue requires user…

  • CVE-2023-47061MedDec 13, 2023
    risk 0.36cvss 5.5epss 0.00

    Adobe Dimension versions 3.4.10 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to bypass mitigations such as ASLR. Exploitation of this issue requires user…

  • CVE-2023-47077MedDec 13, 2023
    risk 0.36cvss 5.5epss 0.00

    Adobe InDesign versions 19.0 (and earlier) and 17.4.2 (and earlier) are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to bypass mitigations such as ASLR. Exploitation of this issue…

  • CVE-2023-35635MedDec 12, 2023
    risk 0.36cvss 5.5epss 0.01

    Windows Kernel Denial of Service Vulnerability

  • CVE-2023-48422MedDec 8, 2023
    risk 0.36cvss 5.5epss 0.00

    In Init of protocolnetadapter.cpp, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.

  • CVE-2023-48415MedDec 8, 2023
    risk 0.36cvss 5.5epss 0.00

    In Init of protocolembmsadapter.cpp, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.

  • CVE-2023-48411MedDec 8, 2023
    risk 0.36cvss 5.5epss 0.00

    In SignalStrengthAdapter::FillGsmSignalStrength() of protocolmiscadapter.cpp, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with baseband firmware compromise required. User interaction is not needed for…

  • CVE-2023-48408MedDec 8, 2023
    risk 0.36cvss 5.5epss 0.00

    In ProtocolNetSimFileInfoAdapter() of protocolnetadapter.cpp, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with baseband firmware compromise required. User interaction is not needed for exploitation.

  • CVE-2023-48401MedDec 8, 2023
    risk 0.36cvss 5.5epss 0.00

    In GetSizeOfEenlRecords of protocoladapter.cpp, there is a possible out of bounds read due to an incorrect bounds check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.

  • CVE-2023-48399MedDec 8, 2023
    risk 0.36cvss 5.5epss 0.00

    In ProtocolMiscATCommandAdapter::Init() of protocolmiscadapter.cpp, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with baseband firmware compromise required. User interaction is not needed for exploitation.

  • CVE-2023-45781MedDec 4, 2023
    risk 0.36cvss 5.5epss 0.00

    In parse_gap_data of utils.cc, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with User execution privileges needed. User interaction is not needed for exploitation.

  • CVE-2023-40083MedDec 4, 2023
    risk 0.36cvss 5.5epss 0.00

    In parse_gap_data of utils.cc, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with User execution privileges needed. User interaction is not needed for exploitation.

  • CVE-2023-42728MedDec 4, 2023
    risk 0.36cvss 5.5epss 0.00

    In phasecheckserver, there is a possible out of bounds read due to a missing bounds check. This could lead to local denial of service with no additional execution privileges needed

  • CVE-2023-42723MedDec 4, 2023
    risk 0.36cvss 5.5epss 0.00

    In camera service, there is a possible out of bounds read due to a missing bounds check. This could lead to local denial of service with no additional execution privileges needed

  • CVE-2023-42720MedDec 4, 2023
    risk 0.36cvss 5.5epss 0.00

    In video service, there is a possible out of bounds read due to a missing bounds check. This could lead to local denial of service with no additional execution privileges needed

  • CVE-2023-42719MedDec 4, 2023
    risk 0.36cvss 5.5epss 0.00

    In video service, there is a possible out of bounds read due to a incorrect bounds check. This could lead to local denial of service with no additional execution privileges needed