CWE-125

Out-of-bounds Read

Parent: CWE-119 - Improper Restriction of Operations within the Bounds of a Memory Buffer

The product reads data past the end, or before the beginning, of the intended buffer.

8,863 vulnerabilities with CWE-125
CVE-2024-29943 CRITICAL
Firefox < 124.0.1 - Memory Corruption
CVSS 9.8
CVE-2024-1848 HIGH
SOLIDWORKS Desktop Release SOLIDWORKS 2024 SP0 - Heap-based Buffer Overflow in File Reading Procedure
CVSS 7.8
CVE-2024-28756 MEDIUM
SolarEdge mySolarEdge < 2.20.1 - Machine-in-the-Middle via Certificate Verification Issue
CVSS 5.9
CVE-2024-27094 MEDIUM
OpenZeppelin Contracts <5.0.2/4.9.6 - Memory Corruption
CVSS 6.5
CVE-2024-2626 MEDIUM
Google Chrome <123.0.6312.58 - Memory Corruption
CVSS 6.5
CVE-2024-28579 MEDIUM
FreeImage 3.19.0 - Denial of Service via HDR Image Processing in FreeImage_Unload
CVSS 6.2
CVE-2024-28578 HIGH
FreeImage 3.19.0 - Buffer Overflow via RAS Image Load Function
CVSS 8.4
CVE-2024-28571 MEDIUM
FreeImage 3.19.0 - Denial of Service via JPEG Image Processing Buffer Overflow
CVSS 5.5
CVE-2024-20764 MEDIUM
Animate <24.0,23.0.3 - Info Disclosure
CVSS 5.5
CVE-2024-20763 MEDIUM
Animate <24.0,23.0.3 - Info Disclosure
CVSS 5.5
CVE-2024-20762 MEDIUM
Animate <24.0, 23.0.3 - Info Disclosure
CVSS 5.5
CVE-2024-20757 MEDIUM
Adobe Bridge < 13.0.6 - Out-of-bounds Read via Malicious File
CVSS 5.5
CVE-2024-28537 CRITICAL
Tenda AC18 V15.03.05.05 - Stack Overflow via fromNatStaticSetting Page Parameter
CVSS 9.8
CVE-2024-28640 HIGH
TOTOLink X5000R V9.1.0u.6118-B20201102 and A7000R V9.1.0u.6115-B20201022 - Buffer Overflow via Command Field
CVSS 7.5
CVE-2024-28319 MEDIUM
gpac 2.3-DEV-rev921-g422b78ecf-master - Out-of-Bounds Read in gf_dash_setup_period
CVSS 6.2
CVE-2024-0173 LOW
Dell PowerEdge Server BIOS & Dell Precision Rack BIOS - Info Disclo...
CVSS 3.8
CVE-2024-0154 LOW
Dell PowerEdge Server BIOS & Dell Precision Rack BIOS - Info Disclo...
CVSS 3.8
CVE-2024-26174 MEDIUM
Windows Kernel - Information Disclosure via Out-of-bounds Read
CVSS 5.5
CVE-2024-21430 MEDIUM
Windows 10 1507-22H2 - Remote Code Execution via USB Attached SCSI Protocol
CVSS 5.7
CVE-2024-22040 HIGH
Siemens Cerberus PRO and Sinteso FS20 - Unauthenticated Denial of Service via HMAC Validation Buffer Overread
CVSS 7.5
CVE-2024-26003 HIGH
CHARX SEC-3000/3050/3100/3150 Firmware < 1.5.1 - Unauthenticated Denial of Service via Out-of-Bounds Read
CVSS 7.5
CVE-2024-26000 MEDIUM
CHARX SEC-3000/3050/3100/3150 Firmware < 1.5.1 - Unauthenticated Out-of-bounds Read in MQTT Stack
CVSS 5.9
CVE-2024-27235 MEDIUM
Plugin Extern Func - Info Disclosure
CVSS 5.5
CVE-2024-27234 MEDIUM
Android - Out-of-Bounds Read in fvp_set_target
CVSS 5.9
CVE-2024-27230 MEDIUM
ProtocolPsKeepAliveStatusAdapter - Info Disclosure
CVSS 5.1
Details
Vulnerabilities 8,863