CWE-125

Out-of-bounds Read

Parent: CWE-119 - Improper Restriction of Operations within the Bounds of a Memory Buffer

The product reads data past the end, or before the beginning, of the intended buffer.

8,865 vulnerabilities with CWE-125
CVE-2023-30362 HIGH
libcoap < 4.3.1-120-ge242200 - Out-of-bounds Read via Malformed PDU in coap_send
CVSS 7.5
CVE-2023-36356 HIGH
TP-Link TL-WR940N/TL-WR841N/TL-WR941ND/TL-WR740N - Denial of Service via VirtualServerRpm GET Request
CVSS 7.7
CVE-2023-2989 CRITICAL
Globalscape EFT Server < 8.1.0.16 - Out-of-bounds Read in Administration Server
CVSS 9.1
CVE-2023-20896 MEDIUM
VMware vCenter Server 4.0-6.x - Denial of Service via DCERPC Protocol Out-of-bounds Read
CVSS 5.9
CVE-2023-3110 CRITICAL
SiLabs Unify Software Development Kit < 1.3.1 - Unauthenticated Stack Buffer Overflow
CVSS 9.6
CVE-2023-0972 CRITICAL
SiLabs Z/IP Gateway SDK < 7.18.01 - Unauthenticated Stack Buffer Overflow
CVSS 9.6
CVE-2023-0970 HIGH
SiLabs Z/IP Gateway SDK < 7.18.01 - Buffer Overflow via Invasive Physical Access
CVSS 7.1
CVE-2023-0969 LOW
SiLabs Z/IP Gateway SDK < 7.18.01 - Authenticated Memory Disclosure via Array Pointer Manipulation
CVSS 3.5
CVE-2023-35862 MEDIUM
libcoap 4.3.1 - Out-of-bounds Read in coap_parse_oscore_conf_mem
CVSS 6.5
CVE-2023-32542 HIGH
Fujielectric TELLUS and TELLUS Lite 4.0.15.0 - Out-of-bounds Read via V8 File
CVSS 7.8
CVE-2023-32288 HIGH
Fujielectric TELLUS and TELLUS Lite 4.0.15.0 - Out-of-bounds Read via SIM File
CVSS 7.8
CVE-2023-32270 HIGH
Fujielectric TELLUS and TELLUS Lite 4.0.15.0 - Memory Corruption via V8 File Parsing
CVSS 7.8
CVE-2023-31239 HIGH
V-Server <4.0.15.0 - Buffer Overflow
CVSS 7.8
CVE-2023-3268 HIGH
Linux Kernel < 6.4 - Out-of-bounds Read in relay_file_read_start_pos
CVSS 7.1
CVE-2023-21130 CRITICAL
Android 13 - Remote Code Execution via Buffer Overflow in btm_ble_periodic_adv_sync_lost
CVSS 9.8
CVE-2023-34101 HIGH
Contiki-NG <4.8 - Memory Corruption
CVSS 7.3
CVE-2023-3040 LOW
lua-resty-json <3ef9492bd3a44d9e51301d6adc3cd1789c8f534a - DoS
CVSS 3.7
CVE-2023-3036 HIGH
cloudflare/cfnts < 2023-06-01 - Denial of Service via NTSAuthenticator Packet Extension Length
CVSS 8.6
CVE-2023-33139 MEDIUM
Visual Studio 2017 15.0-15.7, 2019 < 16.10, 2022 < 17.0.22 - Out-of-bounds Read
CVSS 5.5
CVE-2023-32029 HIGH
Microsoft Excel - Remote Code Execution via Out-of-bounds Read
CVSS 7.8
CVE-2023-32017 HIGH
Microsoft PostScript Printer Driver - RCE
CVSS 7.8
CVE-2023-32011 HIGH
Windows iSCSI Discovery Service - DoS
CVSS 7.5
CVE-2023-29373 HIGH
Microsoft ODBC Driver - Remote Code Execution
CVSS 8.8
CVE-2023-29167 HIGH
FRENIC RHC Loader <1.1.0.3 - Info Disclosure/Code Injection
CVSS 7.8
CVE-2023-33123 HIGH
JT2Go, Teamcenter Visualization <14.2.0.3 - Info Disclosure
CVSS 7.8
Details
Vulnerabilities 8,865