CWE-126
Buffer Over-read
Description
The product reads from a buffer using buffer access mechanisms such as indexes or pointers that reference memory locations after the targeted buffer.
Hierarchy (View 1000)
CVEs mapped to this weakness (529)
page 11 of 27| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2023-33016 | Hig | 0.49 | 7.5 | 0.00 | Sep 5, 2023 | Transient DOS in WLAN firmware while parsing MLO (multi-link operation). | ||
| CVE-2023-33015 | Hig | 0.49 | 7.5 | 0.00 | Sep 5, 2023 | Transient DOS in WLAN Firmware while interpreting MBSSID IE of a received beacon frame. | ||
| CVE-2023-38172 | Hig | 0.49 | 7.5 | 0.02 | Aug 8, 2023 | Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability | ||
| CVE-2023-28555 | Hig | 0.49 | 7.5 | 0.00 | Aug 8, 2023 | Transient DOS in Audio while remapping channel buffer in media codec decoding. | ||
| CVE-2023-35330 | Hig | 0.49 | 7.5 | 0.02 | Jul 11, 2023 | Windows Extended Negotiation Denial of Service Vulnerability | ||
| CVE-2023-23571 | Hig | 0.49 | 7.5 | 0.01 | Jul 6, 2023 | An access violation vulnerability exists in the eventcore functionality of Milesight UR32L v32.3.0.5. A specially crafted network request can lead to denial of service. An attacker can send a network request to trigger this vulnerability. | ||
| CVE-2023-21661 | Hig | 0.49 | 7.5 | 0.00 | Jun 6, 2023 | Transient DOS while parsing WLAN beacon or probe-response frame. | ||
| CVE-2023-21660 | Hig | 0.49 | 7.5 | 0.00 | Jun 6, 2023 | Transient DOS in WLAN Firmware while parsing FT Information Elements. | ||
| CVE-2023-21659 | Hig | 0.49 | 7.5 | 0.00 | Jun 6, 2023 | Transient DOS in WLAN Firmware while processing frames with missing header fields. | ||
| CVE-2023-21658 | Hig | 0.49 | 7.5 | 0.00 | Jun 6, 2023 | Transient DOS in WLAN Firmware while processing the received beacon or probe response frame. | ||
| CVE-2023-24942 | Hig | 0.49 | 7.5 | 0.02 | May 9, 2023 | Remote Procedure Call Runtime Denial of Service Vulnerability | ||
| CVE-2023-24901 | Hig | 0.49 | 7.5 | 0.02 | May 9, 2023 | Windows NFS Portmapper Information Disclosure Vulnerability | ||
| CVE-2023-24858 | Hig | 0.49 | 7.5 | 0.01 | Mar 14, 2023 | Microsoft PostScript and PCL6 Class Printer Driver Information Disclosure Vulnerability | ||
| CVE-2022-40535 | Hig | 0.49 | 7.5 | 0.00 | Mar 10, 2023 | Transient DOS due to buffer over-read in WLAN while sending a packet to device. | ||
| CVE-2022-33309 | Hig | 0.49 | 7.5 | 0.00 | Mar 10, 2023 | Transient DOS due to buffer over-read in WLAN Firmware while parsing secure FTMR frame with size lesser than 39 Bytes. | ||
| CVE-2023-21813 | Hig | 0.49 | 7.5 | 0.02 | Feb 14, 2023 | Windows Secure Channel Denial of Service Vulnerability | ||
| CVE-2023-21811 | Hig | 0.49 | 7.5 | 0.02 | Feb 14, 2023 | Windows iSCSI Service Denial of Service Vulnerability | ||
| CVE-2023-21701 | Hig | 0.49 | 7.5 | 0.02 | Feb 14, 2023 | Microsoft Protected Extensible Authentication Protocol (PEAP) Denial of Service Vulnerability | ||
| CVE-2022-40512 | Hig | 0.49 | 7.5 | 0.00 | Feb 12, 2023 | Transient DOS in WLAN Firmware due to buffer over-read while processing probe response or beacon. | ||
| CVE-2022-34145 | Hig | 0.49 | 7.5 | 0.00 | Feb 12, 2023 | Transient DOS due to buffer over-read in WLAN Host while parsing frame information. |
- risk 0.49cvss 7.5epss 0.00
Transient DOS in WLAN firmware while parsing MLO (multi-link operation).
- risk 0.49cvss 7.5epss 0.00
Transient DOS in WLAN Firmware while interpreting MBSSID IE of a received beacon frame.
- risk 0.49cvss 7.5epss 0.02
Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability
- risk 0.49cvss 7.5epss 0.00
Transient DOS in Audio while remapping channel buffer in media codec decoding.
- risk 0.49cvss 7.5epss 0.02
Windows Extended Negotiation Denial of Service Vulnerability
- risk 0.49cvss 7.5epss 0.01
An access violation vulnerability exists in the eventcore functionality of Milesight UR32L v32.3.0.5. A specially crafted network request can lead to denial of service. An attacker can send a network request to trigger this vulnerability.
- risk 0.49cvss 7.5epss 0.00
Transient DOS while parsing WLAN beacon or probe-response frame.
- risk 0.49cvss 7.5epss 0.00
Transient DOS in WLAN Firmware while parsing FT Information Elements.
- risk 0.49cvss 7.5epss 0.00
Transient DOS in WLAN Firmware while processing frames with missing header fields.
- risk 0.49cvss 7.5epss 0.00
Transient DOS in WLAN Firmware while processing the received beacon or probe response frame.
- risk 0.49cvss 7.5epss 0.02
Remote Procedure Call Runtime Denial of Service Vulnerability
- risk 0.49cvss 7.5epss 0.02
Windows NFS Portmapper Information Disclosure Vulnerability
- risk 0.49cvss 7.5epss 0.01
Microsoft PostScript and PCL6 Class Printer Driver Information Disclosure Vulnerability
- risk 0.49cvss 7.5epss 0.00
Transient DOS due to buffer over-read in WLAN while sending a packet to device.
- risk 0.49cvss 7.5epss 0.00
Transient DOS due to buffer over-read in WLAN Firmware while parsing secure FTMR frame with size lesser than 39 Bytes.
- risk 0.49cvss 7.5epss 0.02
Windows Secure Channel Denial of Service Vulnerability
- risk 0.49cvss 7.5epss 0.02
Windows iSCSI Service Denial of Service Vulnerability
- risk 0.49cvss 7.5epss 0.02
Microsoft Protected Extensible Authentication Protocol (PEAP) Denial of Service Vulnerability
- risk 0.49cvss 7.5epss 0.00
Transient DOS in WLAN Firmware due to buffer over-read while processing probe response or beacon.
- risk 0.49cvss 7.5epss 0.00
Transient DOS due to buffer over-read in WLAN Host while parsing frame information.