VYPR

CWE-126

Buffer Over-read

VariantDraft

Description

The product reads from a buffer using buffer access mechanisms such as indexes or pointers that reference memory locations after the targeted buffer.

Hierarchy (View 1000)

Children

none

CVEs mapped to this weakness (529)

page 7 of 27
  • CVE-2026-25275HigSep 17, 2026
    risk 0.49cvss 7.5epss 0.00

    Transient DOS when processing authentication frames with invalid FILS information element header lengths.

  • CVE-2026-72932HigSep 8, 2026
    risk 0.49cvss 7.5epss 0.01

    Buffer over-read in Windows Message Queuing Queue Manager allows an unauthorized attacker to disclose information over a network.

  • CVE-2026-84640HigSep 1, 2026
    risk 0.49cvss 7.5epss 0.00

    A maliciously constructed mail header could lead to a one byte read past the end of a buffer. This vulnerability was fixed in Thunderbird 155, Thunderbird 140.15, and Thunderbird 153.2.

  • CVE-2026-41992HigJun 29, 2026
    risk 0.49cvss 7.5epss 0.01

    GNU gzip contains a global buffer overflow vulnerability in the LZH decompression logic caused by improper reuse of shared global state between different decompression formats within a single execution. GNU gzip maintains a global array that is shared across the LZ77, LZW, and…

  • CVE-2026-21381HigApr 6, 2026
    risk 0.49cvss 7.6epss 0.00

    Transient DOS when receiving a service data frame with excessive length during device matching over a neighborhood awareness network protocol connection.

  • CVE-2026-21367HigApr 6, 2026
    risk 0.49cvss 7.6epss 0.00

    Transient DOS when processing nonstandard FILS Discovery Frames with out-of-range action sizes during initial scans.

  • CVE-2026-20846HigFeb 10, 2026
    risk 0.49cvss 7.5epss 0.01

    Buffer over-read in Windows GDI+ allows an unauthorized attacker to deny service over a network.

  • CVE-2025-60003HigJan 15, 2026
    risk 0.49cvss 7.5epss 0.00

    A Buffer Over-read vulnerability in the routing protocol daemon (rpd) of Juniper Networks Junos OS and Junos OS Evolved allows an unauthenticated, network-based attacker to cause a Denial-of-Service (DoS). When an affected device receives a BGP update with a set of specific…

  • CVE-2025-62792HigOct 29, 2025
    risk 0.49cvss 7.5epss 0.00

    Wazuh is a free and open source platform used for threat prevention, detection, and response. Prior to 4.12.0, a buffer over-read occurs in w_expression_match() when strlen() is called on str_test, because the corresponding buffer is not being properly NULL terminated during its…

  • CVE-2025-47328HigSep 24, 2025
    risk 0.49cvss 7.5epss 0.00

    Transient DOS while processing power control requests with invalid antenna or stream values.

  • CVE-2025-47326HigSep 24, 2025
    risk 0.49cvss 7.5epss 0.00

    Transient DOS while handling command data during power control processing.

  • CVE-2025-47318HigSep 24, 2025
    risk 0.49cvss 7.5epss 0.00

    Transient DOS while parsing the EPTM test control message to get the test pattern.

  • CVE-2025-27065HigAug 6, 2025
    risk 0.49cvss 7.5epss 0.00

    Transient DOS while processing a frame with malformed shared-key descriptor.

  • CVE-2025-27057HigJul 8, 2025
    risk 0.49cvss 7.5epss 0.00

    Transient DOS while handling beacon frames with invalid IE header length.

  • CVE-2025-21454HigJul 8, 2025
    risk 0.49cvss 7.5epss 0.00

    Transient DOS while processing received beacon frame.

  • CVE-2025-21449HigJul 8, 2025
    risk 0.49cvss 7.5epss 0.00

    Transient DOS may occur while processing malformed length field in SSID IEs.

  • CVE-2025-21446HigJul 8, 2025
    risk 0.49cvss 7.5epss 0.00

    Transient DOS may occur when processing vendor-specific information elements while parsing a WLAN frame for BTM requests.

  • CVE-2025-27029HigJun 3, 2025
    risk 0.49cvss 7.5epss 0.00

    Transient DOS while processing the tone measurement response buffer when the response buffer is out of range.

  • CVE-2025-21463HigJun 3, 2025
    risk 0.49cvss 7.5epss 0.00

    Transient DOS while processing the EHT operation IE in the received beacon frame.

  • CVE-2024-52879HigMay 15, 2025
    risk 0.49cvss 7.5epss 0.00

    An issue was discovered in Insyde InsydeH2O kernel 5.2 before version 05.29.50, kernel 5.3 before version 05.38.50, kernel 5.4 before version 05.46.50, kernel 5.5 before version 05.54.50, kernel 5.6 before version 05.61.50, and kernel 5.7 before version 05.70.50. In…