VYPR

CWE-125

Out-of-bounds Read

BaseDraft

Description

The product reads data past the end, or before the beginning, of the intended buffer.

Hierarchy (View 1000)

Parents

Related attack patterns (CAPEC)

CAPEC-540

CVEs mapped to this weakness (9,383)

page 58 of 470
  • CVE-2023-33536HigJun 7, 2023
    risk 0.53cvss 8.1epss 0.01

    TP-Link TL-WR940N V2/V4, TL-WR841N V8/V10, and TL-WR740N V1/V2 was discovered to contain a buffer overflow via the component /userRpm/WlanMacFilterRpm.

  • CVE-2023-21669HigJun 6, 2023
    risk 0.53cvss 8.2epss 0.00

    Information Disclosure in WLAN HOST while sending DPP action frame to peer with an invalid source address.

  • CVE-2021-26365HigMay 9, 2023
    risk 0.53cvss 8.2epss 0.01

    Certain size values in firmware binary headers could trigger out of bounds reads during signature validation, leading to denial of service or potentially limited leakage of information about out-of-bounds memory contents.

  • CVE-2022-40505HigMay 2, 2023
    risk 0.53cvss 8.2epss 0.00

    Information disclosure due to buffer over-read in Modem while parsing DNS hostname.

  • CVE-2022-40503HigApr 13, 2023
    risk 0.53cvss 8.2epss 0.00

    Information disclosure due to buffer over-read in Bluetooth Host while A2DP streaming.

  • CVE-2022-33295HigApr 13, 2023
    risk 0.53cvss 8.2epss 0.00

    Information disclosure in Modem due to buffer over-read while parsing the wms message received given the buffer and its length.

  • CVE-2022-33291HigApr 13, 2023
    risk 0.53cvss 8.2epss 0.00

    Information disclosure in Modem due to buffer over-read while receiving a IP header with malformed length.

  • CVE-2022-33287HigApr 13, 2023
    risk 0.53cvss 8.2epss 0.00

    Information disclosure in Modem due to buffer over-read while getting length of Unfragmented headers in an IPv6 packet.

  • CVE-2022-33258HigApr 13, 2023
    risk 0.53cvss 8.2epss 0.00

    Information disclosure due to buffer over-read in modem while reading configuration parameters.

  • CVE-2022-33228HigApr 13, 2023
    risk 0.53cvss 8.2epss 0.00

    Information disclosure sue to buffer over-read in modem while processing ipv6 packet with hop-by-hop or destination option in header.

  • CVE-2022-33222HigApr 13, 2023
    risk 0.53cvss 8.2epss 0.00

    Information disclosure due to buffer over-read while parsing DNS response packets in Modem.

  • CVE-2022-25747HigApr 13, 2023
    risk 0.53cvss 8.2epss 0.00

    Information disclosure in modem due to improper input validation during parsing of upcoming CoAP message

  • CVE-2022-25730HigApr 13, 2023
    risk 0.53cvss 8.2epss 0.00

    Information disclosure in modem due to improper check of IP type while processing DNS server query

  • CVE-2022-25726HigApr 13, 2023
    risk 0.53cvss 8.2epss 0.00

    Information disclosure in modem data due to array out of bound access while handling the incoming DNS response packet

  • CVE-2022-33271HigFeb 12, 2023
    risk 0.53cvss 8.2epss 0.00

    Information disclosure due to buffer over-read in WLAN while parsing NMF frame.

  • CVE-2022-33229HigFeb 12, 2023
    risk 0.53cvss 8.2epss 0.00

    Information disclosure due to buffer over-read in Modem while using static array to process IPv4 packets.

  • CVE-2022-25738HigFeb 12, 2023
    risk 0.53cvss 8.2epss 0.00

    Information disclosure in modem due to buffer over-red while performing checksum of packet received

  • CVE-2022-25732HigFeb 12, 2023
    risk 0.53cvss 8.2epss 0.00

    Information disclosure in modem due to buffer over read in dns client due to missing length check

  • CVE-2022-25728HigFeb 12, 2023
    risk 0.53cvss 8.2epss 0.00

    Information disclosure in modem due to buffer over-read while processing response from DNS server

  • CVE-2022-33284HigJan 9, 2023
    risk 0.53cvss 8.2epss 0.00

    Information disclosure due to buffer over-read in WLAN while parsing BTM action frame.