CWE-125

Out-of-bounds Read

Parent: CWE-119 - Improper Restriction of Operations within the Bounds of a Memory Buffer

The product reads data past the end, or before the beginning, of the intended buffer.

8,863 vulnerabilities with CWE-125
CVE-2023-48344 MEDIUM
Android - Out-of-bounds Read in Video Decoder
CVSS 5.5
CVE-2023-48341 MEDIUM
Android - Out-of-Bounds Read in Video Decoder
CVSS 5.5
CVE-2023-45231 MEDIUM
EDK2 < 202311 - Out-of-bounds Read in Network Package Neighbor Discovery Redirect Message
CVSS 6.5
CVE-2023-45229 MEDIUM
EDK2 < 202311 - Out-of-bounds Read in DHCPv6 Advertise Message Processing
CVSS 6.5
CVE-2023-44112 HIGH
Device Authentication Module - Memory Corruption
CVSS 7.5
CVE-2023-6040 HIGH
Linux Kernel 4.16-4.19.305 - Out-of-bounds Read in netfilter nf_tables_newtable
CVSS 7.8
CVE-2023-42865 MEDIUM
iPadOS < 16.4 - Out-of-bounds Read via Image Processing
CVSS 6.5
CVE-2023-42862 MEDIUM
iPadOS < 16.4 - Out-of-bounds Read via Image Processing
CVSS 6.5
CVE-2023-47993 MEDIUM
FreeImage 3.18.0 - Out-of-bounds Read in Exif.cpp::ReadInt32
CVSS 6.5
CVE-2023-51439 HIGH
JT2Go, Teamcenter Visualization <V14.3.0.6 - Code Injection
CVSS 7.8
CVE-2023-49127 HIGH
Solid Edge SE2023 <V223.0 Update 10 - Code Injection
CVSS 7.8
CVE-2023-49126 HIGH
Solid Edge SE2023 <V223.0 Update 10 - Code Injection
CVSS 7.8
CVE-2023-49124 HIGH
Solid Edge SE2023 <V223.0 Update 10 - Code Injection
CVSS 7.8
CVE-2023-36629 MEDIUM
ST ST54-android-packages-apps-nfc < 130-20230215-23w07p0 - Out-of-bounds Read
CVSS 5.5
CVE-2023-38678 MEDIUM
PaddlePaddle < 2.6.0 - Denial of Service via Out-of-Bounds Read in paddle.mode
CVSS 4.7
CVE-2023-49552 HIGH
Cesanta mjs 2.20.0 - Denial of Service via mjs_op_json_stringify Out-of-Bounds Write
CVSS 7.5
CVE-2023-4280 CRITICAL
Silicon Labs TrustZone <v4.3.x - Memory Corruption
CVSS 9.3
CVE-2023-43512 HIGH
Qualcomm QCN7606 Firmware - Denial of Service via GATT Service Data Parsing
CVSS 7.5
CVE-2023-33116 HIGH
Qualcomm AR8035 Firmware - Denial of Service via IEEE80211 MSCS IE Parsing
CVSS 7.5
CVE-2023-26157 MEDIUM
libredwg < 0.12.5.6384 - Denial of Service via Out-of-Bounds Read in decode_r2007.c
CVSS 5.5
CVE-2023-32880 MEDIUM
Android - Local Information Disclosure via Missing Bounds Check in Battery Component
CVSS 4.4
CVE-2023-32878 MEDIUM
Android - Local Information Disclosure via Missing Bounds Check in Battery Component
CVSS 4.4
CVE-2023-32876 MEDIUM
Android - Local Information Disclosure via Missing Bounds Check in keyInstall
CVSS 4.4
CVE-2023-32875 MEDIUM
Android - Out-of-bounds Read in keyInstall
CVSS 4.4
CVE-2023-52267 HIGH
ehttp 1.0.6 - Out-of-bounds Read in Error Logging
CVSS 7.5
Details
Vulnerabilities 8,863