VYPR

CWE-125

Out-of-bounds Read

BaseDraft

Description

The product reads data past the end, or before the beginning, of the intended buffer.

Hierarchy (View 1000)

Parents

Related attack patterns (CAPEC)

CAPEC-540

CVEs mapped to this weakness (9,410)

page 366 of 471
  • CVE-2021-46671MedFeb 4, 2022
    risk 0.35cvss 5.3epss 0.01

    options.c in atftp before 0.7.5 reads past the end of an array, and consequently discloses server-side /etc/group data to a remote client.

  • CVE-2022-22816MedJan 10, 2022
    risk 0.35cvss 6.5epss 0.02

    path_getbbox in path.c in Pillow before 9.0.0 has a buffer over-read during initialization of ImagePath.Path.

  • CVE-2020-21049MedSep 14, 2021
    risk 0.35cvss 6.5epss 0.01

    An invalid read in the stb_image.h component of libsixel prior to v1.8.5 allows attackers to cause a denial of service (DOS) via a crafted PSD file.

  • CVE-2021-27791MedAug 12, 2021
    risk 0.35cvss 5.4epss 0.01

    The function that is used to parse the Authentication header in Brocade Fabric OS Web application service before Brocade Fabric OS v9.0.1a and v8.2.3a fails to properly process a malformed authentication header from the client, resulting in reading memory addresses outside the…

  • CVE-2021-3504MedMay 11, 2021
    risk 0.35cvss 5.4epss 0.02

    A flaw was found in the hivex library in versions before 1.3.20. It is caused due to a lack of bounds check within the hivex_open function. An attacker could input a specially crafted Windows Registry (hive) file which would cause hivex to read memory beyond its normal bounds or…

  • CVE-2021-29997MedApr 13, 2021
    risk 0.35cvss 5.3epss 0.01

    An issue was discovered in Wind River VxWorks 7 before 21.03. A specially crafted packet may lead to buffer over-read on IKE.

  • CVE-2021-25901MedJan 26, 2021
    risk 0.35cvss 5.3epss 0.01

    An issue was discovered in the lazy-init crate through 2021-01-17 for Rust. Lazy lacks a Send bound, leading to a data race.

  • CVE-2020-14410MedJan 19, 2021
    risk 0.35cvss 5.4epss 0.02

    SDL (Simple DirectMedia Layer) through 2.0.12 has a heap-based buffer over-read in Blit_3or4_to_3or4__inversed_rgb in video/SDL_blit_N.c via a crafted .BMP file.

  • CVE-2020-29362MedDec 16, 2020
    risk 0.35cvss 5.3epss 0.02

    An issue was discovered in p11-kit 0.21.1 through 0.23.21. A heap-based buffer over-read has been discovered in the RPC protocol used by thep11-kit server/remote commands and the client library. When the remote entity supplies a byte array through a serialized PKCS#11 function…

  • CVE-2020-26242MedNov 25, 2020
    risk 0.35cvss 6.5epss 0.01

    Go Ethereum, or "Geth", is the official Golang implementation of the Ethereum protocol. In Geth before version 1.9.18, there is a Denial-of-service (crash) during block processing. This is fixed in 1.9.18.

  • CVE-2020-0279MedSep 17, 2020
    risk 0.35cvss 6.5epss 0.01

    In the AAC parser, there is a possible out of bounds read due to a missing bounds check. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is needed for exploitation.Product: AndroidVersions: Android-11Android ID:…

  • CVE-2020-8244MedAug 30, 2020
    risk 0.35cvss 6.5epss 0.02

    A buffer over-read vulnerability exists in bl <4.0.3, <3.0.1, <2.2.1, and <1.2.3 which could allow an attacker to supply user input (even typed) that if it ends up in consume() argument and can become negative, the BufferList state can be corrupted, tricking it into exposing…

  • CVE-2020-17507MedAug 12, 2020
    risk 0.35cvss 5.3epss 0.04

    An issue was discovered in Qt through 5.12.9, and 5.13.x through 5.15.x before 5.15.1. read_xbm_body in gui/image/qxbmhandler.cpp has a buffer over-read.

  • CVE-2020-11913MedJun 17, 2020
    risk 0.35cvss 5.3epss 0.03

    The Treck TCP/IP stack before 6.0.1.66 has an IPv6 Out-of-bounds Read.

  • CVE-2020-11912MedJun 17, 2020
    risk 0.35cvss 5.3epss 0.05

    The Treck TCP/IP stack before 6.0.1.66 has a TCP Out-of-bounds Read.

  • CVE-2020-11910MedJun 17, 2020
    risk 0.35cvss 5.3epss 0.11

    The Treck TCP/IP stack before 6.0.1.66 has an ICMPv4 Out-of-bounds Read.

  • CVE-2020-8674MedJun 15, 2020
    risk 0.35cvss 5.3epss 0.02

    Out-of-bounds read in DHCPv6 subsystem in Intel(R) AMT and Intel(R)ISM versions before 11.8.77, 11.12.77, 11.22.77, 12.0.64 and 14.0.33 may allow an unauthenticated user to potentially enable information disclosure via network access.

  • CVE-2018-21233MedMay 4, 2020
    risk 0.35cvss 6.5epss 0.01

    TensorFlow before 1.7.0 has an integer overflow that causes an out-of-bounds read, possibly causing disclosure of the contents of process memory. This occurs in the DecodeBmp feature of the BMP decoder in core/kernels/decode_bmp_op.cc.

  • CVE-2020-1830MedFeb 18, 2020
    risk 0.35cvss 5.3epss 0.01

    Huawei NIP6800 versions V500R001C30, V500R001C60SPC500, and V500R005C00; Secospace USG6600 and USG9500 versions V500R001C30SPC200, V500R001C30SPC600, V500R001C60SPC500, and V500R005C00 have a vulnerability that a memory management error exists when IPSec Module handing a…

  • CVE-2016-7524MedFeb 6, 2020
    risk 0.35cvss 6.5epss 0.02

    coders/meta.c in ImageMagick allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted file.