VYPR

CWE-125

Out-of-bounds Read

BaseDraft

Description

The product reads data past the end, or before the beginning, of the intended buffer.

Hierarchy (View 1000)

Parents

Related attack patterns (CAPEC)

CAPEC-540

CVEs mapped to this weakness (9,410)

page 365 of 471
  • CVE-2023-40181MedAug 31, 2023
    risk 0.35cvss 5.3epss 0.01

    FreeRDP is a free implementation of the Remote Desktop Protocol (RDP), released under the Apache license. Affected versions are subject to an Integer-Underflow leading to Out-Of-Bound Read in the `zgfx_decompress_segment` function. In the context of `CopyMemory`, it's possible…

  • CVE-2023-39356MedAug 31, 2023
    risk 0.35cvss 5.3epss 0.02

    FreeRDP is a free implementation of the Remote Desktop Protocol (RDP), released under the Apache license. In affected versions a missing offset validation may lead to an Out Of Bound Read in the function `gdi_multi_opaque_rect`. In particular there is no code to validate if the…

  • CVE-2023-39353MedAug 31, 2023
    risk 0.35cvss 5.3epss 0.01

    FreeRDP is a free implementation of the Remote Desktop Protocol (RDP), released under the Apache license. Affected versions are subject to a missing offset validation leading to Out Of Bound Read. In the `libfreerdp/codec/rfx.c` file there is no offset validation in…

  • CVE-2023-33285MedMay 22, 2023
    risk 0.35cvss 5.3epss 0.01

    An issue was discovered in Qt 5.x before 5.15.14, 6.x before 6.2.9, and 6.3.x through 6.5.x before 6.5.1. QDnsLookup has a buffer over-read via a crafted reply from a DNS server.

  • CVE-2023-2512MedMay 12, 2023
    risk 0.35cvss 6.5epss 0.01

    Prior to version v1.20230419.0, the FormData API implementation was subject to an integer overflow. If a FormData instance contained more than 2^31 elements, the forEach() method could end up reading from the wrong location in memory while iterating over elements. This would…

  • CVE-2023-0645MedApr 11, 2023
    risk 0.35cvss 5.3epss 0.01

    An out of bounds read exists in libjxl. An attacker using a specifically crafted file could cause an out of bounds read in the exif handler. We recommend upgrading to version 0.8.1 or past commit  https://github.com/libjxl/libjxl/pull/2101/commits/d95b050c1822a5b1ede9e0dc937e43f…

  • CVE-2023-24473MedMar 30, 2023
    risk 0.35cvss 5.3epss 0.01

    An information disclosure vulnerability exists in the TGAInput::read_tga2_header functionality of OpenImageIO Project OpenImageIO v2.4.7.1. A specially crafted targa file can lead to a disclosure of sensitive information. An attacker can provide a malicious file to trigger this…

  • CVE-2023-28866MedMar 27, 2023
    risk 0.35cvss 5.3epss 0.01

    In the Linux kernel through 6.2.8, net/bluetooth/hci_sync.c allows out-of-bounds access because amp_init1[] and amp_init2[] are supposed to have an intentionally invalid element, but do not.

  • CVE-2023-21699MedFeb 14, 2023
    risk 0.35cvss 5.3epss 0.01

    Windows Internet Storage Name Service (iSNS) Server Information Disclosure Vulnerability

  • CVE-2023-22485MedJan 24, 2023
    risk 0.35cvss 5.3epss 0.01

    cmark-gfm is GitHub's fork of cmark, a CommonMark parsing and rendering library and program in C. In versions prior 0.29.0.gfm.7, a crafted markdown document can trigger an out-of-bounds read in the `validate_protocol` function. We believe this bug is harmless in practice,…

  • CVE-2023-21682MedJan 10, 2023
    risk 0.35cvss 5.3epss 0.01

    Windows Point-to-Point Protocol (PPP) Information Disclosure Vulnerability

  • CVE-2021-21200MedJan 2, 2023
    risk 0.35cvss 5.4epss 0.00

    Out of bounds read in WebUI Settings in Google Chrome prior to 89.0.4389.72 allowed a remote attacker to perform an out of bounds memory read via a crafted HTML page. (Chrome security severity: Low)

  • CVE-2022-32943MedDec 15, 2022
    risk 0.35cvss 5.3epss 0.01

    The issue was addressed with improved bounds checks. This issue is fixed in iOS 16.2 and iPadOS 16.2, macOS Ventura 13.1. Shake-to-undo may allow a deleted photo to be re-surfaced without authentication.

  • CVE-2022-20688MedDec 12, 2022
    risk 0.35cvss 5.3epss 0.01

    A vulnerability in the Cisco Discovery Protocol functionality of Cisco ATA 190 Series Analog Telephone Adapter firmware could allow an unauthenticated, remote attacker to execute arbitrary code on an affected device and cause Cisco Discovery Protocol service to restart. This…

  • CVE-2022-39881MedNov 9, 2022
    risk 0.35cvss 5.3epss 0.01

    Improper input validation vulnerability for processing SIB12 PDU in Exynos modems prior to SMR Sep-2022 Release allows remote attacker to read out of bounds memory.

  • CVE-2022-3576MedOct 20, 2022
    risk 0.35cvss 5.3epss 0.01

    A vulnerability regarding out-of-bounds read is found in the session processing functionality of Out-of-Band (OOB) Management. This allows remote attackers to obtain sensitive information via unspecified vectors. The following models with Synology DiskStation Manager (DSM)…

  • CVE-2022-25872MedJun 17, 2022
    risk 0.35cvss 5.3epss 0.01

    All versions of package fast-string-search are vulnerable to Out-of-bounds Read due to incorrect memory freeing and length calculation for any non-string input as the source. This allows the attacker to read previously allocated memory.

  • CVE-2022-28330MedJun 9, 2022
    risk 0.35cvss 5.3epss 0.04

    Apache HTTP Server 2.4.53 and earlier on Windows may read beyond bounds when configured to process requests with the mod_isapi module.

  • CVE-2022-23937MedMar 29, 2022
    risk 0.35cvss 5.3epss 0.01

    In Wind River VxWorks 6.9 and 7, a specific crafted packet may lead to an out-of-bounds read during an IKE initial exchange scenario.

  • CVE-2021-33120MedFeb 9, 2022
    risk 0.35cvss 5.4epss 0.01

    Out of bounds read under complex microarchitectural condition in memory subsystem for some Intel Atom(R) Processors may allow authenticated user to potentially enable information disclosure or cause denial of service via network access.