CWE-125

Out-of-bounds Read

Parent: CWE-119 - Improper Restriction of Operations within the Bounds of a Memory Buffer

The product reads data past the end, or before the beginning, of the intended buffer.

8,865 vulnerabilities with CWE-125
CVE-2023-32206 MEDIUM
Firefox < 113.0 and Firefox ESR < 102.11 - Out-of-bounds Read in RLBox Expat Driver
CVSS 6.5
CVE-2023-25738 MEDIUM
Firefox < 110.0 and Firefox ESR < 102.8 - Out-of-bounds Read via DEVMODEW Struct Validation
CVSS 6.5
CVE-2023-2977 HIGH
OpenSC - Heap-Based Buffer Overflow in cardos_have_verifyrc_package ASN1 Parser
CVSS 7.1
CVE-2023-34256 MEDIUM
Linux Kernel < 6.3.3 - Out-of-bounds Read in crc16
CVSS 5.5
CVE-2023-23301 CRITICAL
Garmin Connect IQ 1.0.0-4.1.7 - Out-of-bounds Read via MonkeyC News Operation
CVSS 9.8
CVE-2023-2838 CRITICAL
gpac < 2.2.2 - Out-of-bounds Read
CVSS 9.1
CVE-2023-2597 HIGH
Eclipse Openj9 < 0.38.0 - Out-of-bounds Read in Shared Cache String Handling
CVSS 7.0
CVE-2023-33285 MEDIUM
Qt <5.15.14, <6.2.9, <=6.5.0 - Buffer Overflow
CVSS 5.3
CVE-2023-21118 MEDIUM
Android - Out-of-bounds Read in Sensor.cpp unflattenString8
CVSS 5.5
CVE-2023-21112 MEDIUM
Android - Out-of-Bounds Read in NxpMfcReader.cc AnalyzeMfcResp
CVSS 5.5
CVE-2023-20719 MEDIUM
Android - Out-of-bounds Read in pqframework
CVSS 4.4
CVE-2023-20711 MEDIUM
Android - Out-of-bounds Read in keyinstall
CVSS 4.4
CVE-2023-20706 MEDIUM
Android - Out-of-bounds Read in APU
CVSS 5.5
CVE-2023-20703 MEDIUM
Android - Out-of-bounds Read in APU
CVSS 5.5
CVE-2023-20698 MEDIUM
Android - Out-of-bounds Read in keyinstall
CVSS 4.4
CVE-2023-20697 MEDIUM
Android - Out-of-bounds Read in keyinstall
CVSS 4.4
CVE-2023-25008 HIGH
3ds Max USD < 0.3 - Out-of-bounds Read via Malicious USD File
CVSS 7.8
CVE-2023-2512 MEDIUM
cloudflare/workerd < 1.20230419.0 - Integer Overflow in FormData forEach Method
CVSS 6.5
CVE-2023-29281 HIGH
Adobe Substance 3D Painter <8.3.0 - Memory Corruption
CVSS 7.8
CVE-2023-29280 HIGH
Adobe Substance 3D Painter <8.3.0 - Memory Corruption
CVSS 7.8
CVE-2023-29279 MEDIUM
Adobe Substance 3D Painter <8.3.0 - Info Disclosure
CVSS 5.5
CVE-2023-29277 MEDIUM
Adobe Substance 3D Painter <8.3.0 - Info Disclosure
CVSS 5.5
CVE-2023-29275 HIGH
Adobe Substance 3D Painter <8.3.0 - Memory Corruption
CVSS 7.8
CVE-2023-29274 HIGH
Adobe Substance 3D Painter <8.3.0 - Memory Corruption
CVSS 7.8
CVE-2023-29273 HIGH
Adobe Substance 3D Painter <8.3.0 - Memory Corruption
CVSS 7.8
Details
Vulnerabilities 8,865